Guest Balaji R98 Posted November 14, 2019 Posted November 14, 2019 Hi All, I was looking into the MPlogs of Windows Defender & I came across this events:- 2019-11-14T08:57:40.258Z [Mini-filter] Unsuccessful scan status: \Drive\sap\dev_krnlreg. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1669368, FileId: 0x1000000074830, Reason: OnClose, IoStatusBlockForNewFile: 0x3, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2019-11-14T09:11:46.481Z Task(GetDeviceTicket -AccessKey (<Keyvalue>) ) launched as network service 2019-11-14T09:11:46.511Z [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext - Force), ShouldSendEvenOnPaidNetworks: 1 2019-11-14T09:11:46.511Z [Cloud] Start of cloud request. 2019-11-14T09:11:46.511Z [Cloud] Queued cloud request. 2019-11-14T09:11:46.511Z [Cloud] Dequeued cloud request. 2019-11-14T09:11:46.511Z [Cloud] RpcSpynetQueueGenerateReport(). hr = 0x0 2019-11-14T09:11:46.766Z [Cloud] MpEngineParseSpyNetResponse(). hr = 0x0 2019-11-14T09:11:46.766Z [Cloud] End of cloud request. Can you please let me know what was being done in the below step? 2019-11-14T08:57:40.258Z [Mini-filter] Unsuccessful scan status: \Drive\sap\dev_krnlreg. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1669368, FileId: 0x1000000074830, Reason: OnClose, IoStatusBlockForNewFile: 0x3, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 More... Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.