????

Your IP : 216.73.216.152


Current Path : C:/Program Files/Windows Defender/en-US/
Upload File :
Current File : C:/Program Files/Windows Defender/en-US/MpEvMsg.dll.mui

MZ����@���	�!�L�!This program cannot be run in DOS mode.

$��<߱�R���R���R�U�����R�U�P���R�Rich��R�PEL�!�

��q@ �8.rdata�@@.rsrc� �@@P�Mp
T88P�Mp$��8.rdata8x.rdata$zzzdbg �.rsrc$01� �.rsrc$02 ��
��c}H��<O���犻=�}���LP�Mp��(�@�X�p�����	�	�	�� ���!���P���MUI�����a��0%���b�JK��W�1\�|n�6���MUIen-US g�j�PP���0e�e�������\�i�P7k�n��Z~��(f�����n����lq���������x�����<���@���������������������������� AntiVirus%0

$AntiSpyware%0

$Antimalware%0

Full%0

Delta%0

 Full Scan%0

$Quick Scan%0

$Custom Scan%0

Remove%0

$Quarantine%0

Clean%0

Allow%0

Unknown%0

 Suspended%0

Allowed%0

User%0

 Scheduled%0

TSecurity intelligence Update Folder%0

8Real-Time Protection%0

@Downloads and attachments%0

System%0

$Heuristics%0

 Concrete%0

Generic%0

Current%0

Backup%0

Default%0

HMicrosoft Defender Antivirus%0

\Microsoft Forefront Endpoint Protection%0

TMicrosoft Standalone System Sweeper%0

Crash%0

Hang%0

,Not Applicable%0

hIE Downloads and Outlook Express Attachments%0

 On Access%0

4Behavior Monitoring%0

hThe filter driver has successfully restarted.%0

hThe filter driver was unloaded unexpectedly.%0

�The filter driver skipped scanning items and is in pass through mode. This may be due to low resource conditions.%0

�The filter driver has restarted scanning items and is out of pass through mode.%0

�Real-time protection has stopped functioning for an unknown reason. Restart the service in order to recover.%0

�Real-time protection has recovered from an unknown failure. It is recommended that you run a quick scan.%0

`The filter driver requires an up-to-date engine in order to function. You must install the latest security intelligence updates in order to enable real-time protection.%0

$Suspicious%0

Unknown%0

(Local machine%0

(Network share%0

 Internet%0

 Executing%0

hInternal security intelligence Update Server%0

$File Share%0

TMicrosoft Malware Protection Center%0

Search%0

 Download%0

Install%0

Low%0

Medium%0

High%0

4Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.%0

<Microsoft Update Server%0

8Microsoft Antimalware%0

8Microsoft Antimalware%0

 FastPath%0

HSecurity intelligence update%0

dSecurity intelligence disable notification%0

$VDM version%0

 Timestamp%0

 No limit%0

Manual%0

 Automatic%0

 Duration%0

None%0

LInformation Protection Control%0

Unknown%0

 Detected%0

Cleaned%0

$Quarantined%0

Removed%0

Allowed%0

(Clean Failed%0

0Quarantine Failed%0

(Remove Failed%0

(Allow Failed%0

Unknown%0

@Network Inspection System%0

,Not Applicable%0

0Outgoing traffic%0

0Incoming traffic%0

Block%0

\Internet Explorer Extension Validation%0

(The system is missing updates that are required for running Network Inspection System.  Install the required updates and restart the device.%0

@Early Launch Antimalware%0

4TCG Log Inspection%0

(Remote Server%0

�The Network Inspection System did not successfully start due to an error.%0

AMSI%0

0AMSI UAC provider%0

hMicrosoft Defender Advanced Threat Protection%0

PShared security intelligence Root%0

Enabled%0

 Disabled%0

Blocked%0

Ignored%0

Error

Warning

 Information

PMicrosoft-Windows-Windows Defender

lMicrosoft Defender Antivirus state updated to %1.

%1 scan has started.%n %tScan ID:%b%3%n %tScan Type:%b%5%n %tScan Parameters:%b%7%n %tScan Resources:%b%11%n %tUser:%b%8\%9

%1 scan has finished.%n %tScan ID:%b%3%n %tScan Type:%b%5%n %tScan Parameters:%b%7%n %tUser:%b%8\%9%n %tScan Time:%b%11:%12:%13

%1 scan has been stopped before completion.%n %tScan ID:%b%3%n %tScan Type:%b%5%n %tScan Parameters:%b%7%n  %tUser:%b%8\%9

�%1 scan has been paused.%n %tScan ID:%b%3%n %tScan Type:%b%5%n %tScan Parameters:%b%7%n %tUser:%b%8\%9

�%1 scan has resumed.%n %tScan ID:%b%3%n  %tScan Type:%b%5%n %tScan Parameters:%b%7%n %tUser:%b%8\%9

h%1 scan has encountered an error and terminated.%n %tScan ID:%b%3%n %tScan Type:%b%5%n %tScan Parameters:%b%7%n %tUser:%b%8\%9%n %tError Code:%b%11%n %tError description:%b%12

�%1 has detected malware or other potentially unwanted software.%n For more information please see the following:%n%15%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tPath Found:%b%16%n %tDetection Type:%b%22%n %tDetection Source:%b%5%n %tStatus:%b%20%n %tUser:%b%8\%9%n %tProcess Name:%b%7%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28

�%1 has taken action to protect this machine from malware or other potentially unwanted software.%n For more information please see the following:%n%15%n %tUser:%b%8\%9%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tAction:%b%20%n %tStatus:%b%7%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28

$%1 has encountered an error when taking action on malware or other potentially unwanted software.%n For more information please see the following:%n%15%n %tUser:%b%8\%9%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tPath:%b%16%n %tAction:%b%20%n %tError Code:%b%21%n %tError description:%b%22%n %tStatus:%b%7%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28

�%1 has restored an item from quarantine.%n For more information please see the following:%n%15%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tUser:%b%8\%9%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28

�%1 has encountered an error trying to restore an item from quarantine.%n For more information please see the following:%n%15%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tUser:%b%8\%9%n %tError Code:%b%3%n %tError description:%b%4%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28

�%1 has deleted an item from quarantine.%n For more information please see the following:%n%15%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tUser:%b%8\%9%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28

�%1 has encountered an error trying to delete an item from quarantine.%n For more information please see the following:%n%15%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tUser:%b%8\%9%n %tError Code:%b%3%n %tError description:%b%4%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28

�%1 has removed history of malware and other potentially unwanted software.%n %tTime:%b%3%n %tUser:%b%8\%9%n

x%1 has encountered an error trying to remove history of malware and other potentially unwanted software.%n %tTime:%b%3%n %tUser:%b%8\%9%n %tError Code:%b%4%n %tError description:%b%5

H%1 has detected a suspicious behavior.%n %tName:%b%11%n %tID:%b%12%n %tSeverity:%b%25%n %tCategory:%b%26%n %tPath Found:%b%16%n %tDetection Origin:%b%18%n %tDetection Type:%b%22%n %tDetection Source:%b%5%n %tStatus:%b%20%n %tUser:%b%8\%9%n %tProcess Name:%b%7%n %tSecurity intelligence ID:%b%30%n %tSecurity intelligence Version:%b%27%n %tEngine Version:%b%28%n %tFidelity Label: %b%32%n %tTarget File Name: %b%36%n

%1 has detected malware or other potentially unwanted software.%n For more information please see the following:%n%13%n %tName:%b%8%n %tID:%b%7%n %tSeverity:%b%10%n %tCategory:%b%12%n %tPath:%b%22%n %tDetection Origin:%b%24%n %tDetection Type:%b%28%n %tDetection Source:%b%18%n %tUser:%b%20%n %tProcess Name:%b%19%n %tSecurity intelligence Version:%b%41%n %tEngine Version:%b%42

�%1 has taken action to protect this machine from malware or other potentially unwanted software.%n For more information please see the following:%n%13%n %tName:%b%8%n %tID:%b%7%n %tSeverity:%b%10%n %tCategory:%b%12%n %tPath:%b%22%n %tDetection Origin:%b%24%n %tDetection Type:%b%28%n %tDetection Source:%b%18%n %tUser:%b%39%n %tProcess Name:%b%19%n %tAction:%b%31%n %tAction Status: %b%38%n %tError Code:%b%33%n %tError description:%b%34%n %tSecurity intelligence Version:%b%41%n %tEngine Version:%b%42

%1 has encountered a non-critical error when taking action on malware or other potentially unwanted software.%n For more information please see the following:%n%13%n %tName:%b%8%n %tID:%b%7%n %tSeverity:%b%10%n %tCategory:%b%12%n %tPath:%b%22%n %tDetection Origin:%b%24%n %tDetection Type:%b%28%n %tDetection Source:%b%18%n %tUser:%b%39%n %tProcess Name:%b%19%n %tAction:%b%31%n %tAction Status: %b%38%n %tError Code:%b%33%n %tError description:%b%34%n %tSecurity intelligence Version:%b%41%n %tEngine Version:%b%42

%1 has encountered a critical error when taking action on malware or other potentially unwanted software.%n For more information please see the following:%n%13%n %tName:%b%8%n %tID:%b%7%n %tSeverity:%b%10%n %tCategory:%b%12%n %tPath:%b%22%n %tDetection Origin:%b%24%n %tDetection Type:%b%28%n %tDetection Source:%b%18%n %tUser:%b%39%n %tProcess Name:%b%19%n %tAction:%b%31%n %tAction Status: %b%38%n %tError Code:%b%33%n %tError description:%b%34%n %tSecurity intelligence Version:%b%41%n %tEngine Version:%b%42

%1 has deduced the hashes for a threat resource.%n %tCurrent Platform Version:%b%2%n %tThreat resource path:%b%4%n %tHashes:%b%5

�Microsoft Defender Exploit Guard has blocked an operation that is not allowed by your IT administrator.%n For more information please contact your IT administrator.%n %tID:%b%4%n %tDetection time:%b%5%n %tUser:%b%6%n %tPath:%b%7%n %tProcess Name:%b%8%n %tTarget Commandline:%b%12%n %tParent Commandline:%b%13%n %tInvolved File:%b%14%n %tInheritance Flags:%b%15%n %tSecurity intelligence Version:%b%9%n %tEngine Version:%b%10%n %tProduct Version:%b%2%n

�Microsoft Defender Exploit Guard audited an operation that is not allowed by your IT administrator.%n For more information please contact your IT administrator.%n %tID:%b%4%n %tDetection time:%b%5%n %tUser:%b%6%n %tPath:%b%7%n %tProcess Name:%b%8%n %tTarget Commandline:%b%12%n %tParent Commandline:%b%13%n %tInvolved File:%b%14%n %tInheritance Flags:%b%15%n %tSecurity intelligence Version:%b%9%n %tEngine Version:%b%10%n %tProduct Version:%b%2%n

�%8 has been blocked from modifying %7 by Controlled Folder Access.%n %tDetection time:%b%5%n %tUser:%b%6%n %tPath:%b%7%n %tProcess Name:%b%8%n %tSecurity intelligence Version:%b%9%n %tEngine Version:%b%10%n %tProduct Version:%b%2%n

�%8 would have been blocked from modifying %7 by Controlled Folder Access.%n %tDetection time:%b%5%n %tUser:%b%6%n %tPath:%b%7%n %tProcess Name:%b%8%n %tSecurity intelligence Version:%b%9%n %tEngine Version:%b%10%n %tProduct Version:%b%2%n

�Your IT administrator would have caused Microsoft Defender Exploit Guard to block a potentially dangerous network connection.%n %tDetection time:%b%4%n %tUser:%b%5%n %tDestination:%b%6%n %tProcess Name:%b%7%n

�Your IT administrator has caused Microsoft Defender Exploit Guard to block a potentially dangerous network connection.%n %tDetection time:%b%4%n %tUser:%b%5%n %tDestination:%b%6%n %tProcess Name:%b%7%n

�Controlled Folder Access blocked %8 from making changes to memory.%n %tDetection time:%b%5%n %tUser:%b%6%n %tPath:%b%7%n %tProcess Name:%b%8%n %tSecurity intelligence Version:%b%9%n %tEngine Version:%b%10%n %tProduct Version:%b%2%n

�Controlled Folder Access would have blocked %8 from making changes to memory.%n %tDetection time:%b%5%n %tUser:%b%6%n %tPath:%b%7%n %tProcess Name:%b%8%n %tSecurity intelligence Version:%b%9%n %tEngine Version:%b%10%n %tProduct Version:%b%2%n

HA user has allowed a blocked Microsoft Defender Exploit Guard operation.%n %tID:%b%4%n %tUser:%b%5%n %tPath:%b%6%n %tProcess Name:%b%7%n %tInvolved File:%b%8%n

�%1 has blocked an operation that your administrator doesn't allow.%n For more information please contact your IT administrator.%n %tID:%b%4%n %tState:%b%5%n %tTimestamp:%b%6%n %tAction:%b%7%n %tProcess:%b%8%n %tSource:%b%9%n %tTarget:%b%10%n %tUser:%b%11%n %Security intelligence Version:%b%12%n %tEngine Version:%b%13%n %tProduct Version:%b%2%n

p%1 has audited an operation.%n For more information please contact your IT administrator.%n %tID:%b%4%n %tState:%b%5%n %tTimestamp:%b%6%n %tAction:%b%7%n %tProcess:%b%8%n %tSource:%b%9%n %tTarget:%b%10%n %tUser:%b%11%n %Security intelligence Version:%b%12%n %tEngine Version:%b%13%n %tProduct Version:%b%2%n

@%1 has blocked an operation that your administrator doesn't allow.%nFor more information please contact your IT administrator.%n%tPolicy Version:%b%4%n%tPolicy Rule ID:%b%5%n%tEnforcement Level:%b%6%n%tTimestamp:%b%8%n%tAction Type:%b%9%n%tProcess:%b%10%n%tSource:%b%11%n%tTarget:%b%12%n%tSession ID:%b%13%n%tUser SID:%b%14%n%Security intelligence Version:%b%15%n%tEngine Version:%b%16%n%tProduct Version:%b%2%n

 %1 has audited an operation.%nFor more information please contact your IT administrator.%n%tPolicy Version:%b%4%n%tPolicy Rule ID:%b%5%n%tEnforcement Level:%b%6%n%tAudit Reason:%b%7%n%tTimestamp:%b%8%n%tAction Type:%b%9%n%tProcess:%b%10%n%tSource:%b%11%n%tTarget:%b%12%n%tSession ID:%b%13%n%tUser SID:%b%14%n%Security intelligence Version:%b%15%n%tEngine Version:%b%16%n%tProduct Version:%b%2%n

@Endpoint Protection client is up and running in a healthy state.%n %tPlatform Version:%b%2%n %tEngine Version:%b%4%n %tSecurity intelligence Version:%b%5%n

Endpoint Protection client health report (time in UTC):%n %tPlatform Version:%b%2%n %tEngine Version:%b%4%n %tNetwork Realtime Inspection engine Version:%b%5%n %tAntivirus security intelligence Version:%b%6%n %tAntispyware security intelligence Version:%b%7%n %tNetwork Realtime Inspection security intelligence Version:%b%8%n %tRTP state:%b%9%n %tOA state:%b%10%n %tIOAV state:%b%11%n %tBM state:%b%12%n %tAntivirus security intelligence age:%b%13%n %tAntispyware security intelligence age:%b%14%n %tLast quick scan age:%b%15%n %tLast full scan age:%b%16%n %tAntivirus security intelligence creation time:%b%17%n %tAntispyware security intelligence creation time:%b%18%n %tLast quick scan start time:%b%19%n %tLast quick scan end time:%b%20%n %tLast quick scan source:%b%21%n %tLast full scan start time:%b%22%n %tLast full scan end time:%b%23%n %tLast full scan source:%b%24%n %tProduct status:%b%25%n

�%1 has detected potentially unwanted application(PUA).%n For more information please see the following:%n%13%n %tName:%b%8%n %tID:%b%7%n %tSeverity:%b%10%n %tCategory:%b%12%n %tPath:%b%22%n %tDetection Origin:%b%24%n %tDetection Type:%b%28%n %tDetection Source:%b%18%n %tUser:%b%20%n %tProcess Name:%b%19%n %tSecurity intelligence Version:%b%41%n %tEngine Version:%b%42

8%1 security intelligence version updated.%n %tCurrent security intelligence Version:%b%3%n %tPrevious security intelligence Version:%b%4%n %tSecurity intelligence Type:%b%12%n %tUpdate Type:%b%14%n %tUser:%b%8\%9%n %tCurrent Engine Version:%b%15%n %tPrevious Engine Version:%b%16

�%1 has encountered an error trying to update security intelligence.%n %tNew security intelligence Version:%b%3%n %tPrevious security intelligence Version:%b%4%n %tUpdate Source:%b%6%n %tSecurity intelligence Type:%b%12%n %tUpdate Type:%b%14%n %tUser:%b%8\%9%n %tCurrent Engine Version:%b%15%n %tPrevious Engine Version:%b%16%n %tError code:%b%17%n %tError description:%b%18

�%1 engine version has been updated.%n %tCurrent Engine Version:%b%3%n %tPrevious Engine Version:%b%4%n %tUser:%b%8\%9

x%1 has encountered an error trying to update the engine.%n %tNew Engine Version:%b%3%n %tPrevious Engine Version:%b%4%n %tUser:%b%8\%9%n %tError Code:%b%11%n %tError description:%b%12

$%1 has encountered an error trying to update security intelligence and will attempt to revert to a previous version.%n %tSecurity intelligence Attempted:%b%4%n %tError Code:%b%5%n %tError description:%b%6%n %tSecurity intelligence Version:%b%9%n %tEngine Version:%b%10

�%1 could not load antimalware engine because current platform version is not supported. %1 will revert back to the last known-good engine and a platform update will be attempted.%n %tCurrent Platform Version:%b%2

 %1 has encountered an error trying to update the platform.%n %tCurrent Platform Version:%b%2%n %tError code:%b%4%n %tError description:%b%5

�%1 will soon require a newer platform version to support future versions of the antimalware engine. Download the latest %1 platform to maintain the best level of protection available.%n %tCurrent Platform Version:%b%2

�%1 used cloud protection to get additional security intelligence.%n %tCurrent security intelligence Version:%b%3%n %tSecurity intelligence Type:%b%12%n %tUser:%b%8\%9%n %tCurrent Engine Version:%b%15%n %tCloud protection intelligence Type:%b%23%n %tPersistence Path:%b%24%n %tCloud protection intelligence Version:%b%25%n %tCloud protection intelligence Compilation Timestamp:%b%26%n %tPersistence Limit Type:%b%28%n %tPersistence Limit:%b%29

�%1 used cloud protection to discard obsolete security intelligence updates.%n %tCurrent security intelligence Version:%b%3%n %tSecurity intelligence Type:%b%12%n %tCurrent Engine Version:%b%15%n %tCloud protection intelligence Type:%b%23%n %tPersistence Path:%b%24%n %tCloud protection intelligence Version:%b%25%n %tCloud protection intelligence Compilation Timestamp:%b%26%n %tRemoval Reason:%b%31%n %tPersistence Limit Type:%b%28%n %tPersistence Limit:%b%29

�%1 has encountered an error trying to use cloud protection.%n %tCurrent security intelligence Version:%b%3%n %tSecurity intelligence Type:%b%12%n %tUser:%b%8\%9%n %tCurrent Engine Version:%b%15%n %tError code:%b%17%n %tError description:%b%18 %tCloud protection intelligence Type:%b%23%n %tPersistence Path:%b%24%n %tCloud protection intelligence Version:%b%25%n %tCloud protection intelligence Compilation Timestamp:%b%26%n %tPersistence Limit Type:%b%28%n %tPersistence Limit:%b%29

�%1 discarded all cloud protection intelligence.%n %tUser:%b%8\%9%n %tCurrent Engine Version:%b%15

�%1 downloaded and configured Microsoft Defender Offline to run on the next reboot.

%1 has encountered an error trying to download and configure Microsoft Defender Offline.%n%tError code:%b%4%n%tError description:%b%5

TThe support for your operating system will expire shortly. Running %1 on an out of support operating system is not an adequate solution to protect against threats.%n

DThe support for your operating system has expired. Running %1 on an out of support operating system is not an adequate solution to protect against threats.%n

lThe support for your operating system has expired. %1 is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.%n

�%1 has uploaded a file for further analysis.%n %tFilename:%b%3%n %tSha256:%b%4%n

�%1 has encountered an error trying to upload a suspicious file for further analysis.%n %tFilename:%b%3%n %tSha256:%b%4%n %tCurrent security intelligence Version:%b%5%n %tCurrent Engine Version:%b%6%n %tError code:%b%7%n

4%1 Real-Time Protection feature has encountered an error and failed.%n %tFeature:%b%3%n %tError Code:%b%5%n %tError description:%b%6%n %tReason:%b%4

�%1 Real-time Protection feature has restarted. It is recommended that you run a full system scan to detect any items that may have been missed while this agent was down.%n %tFeature:%b%3%n %tReason:%b%4

�%1 Real-time Protection scanning for malware and other potentially unwanted software was enabled.

�%1 Real-time Protection scanning for malware and other potentially unwanted software was disabled.

�%1 Real-time Protection feature configuration has changed.%n %tFeature:%b%3%n %tConfiguration:%b%4

X%1 Configuration has changed. If this is an unexpected event you should review the settings as this may be the result of malware.%n %tOld value:%b%3%n %tNew value:%b%4

�%1 engine has been terminated due to an unexpected error.%n %tFailure Type:%b%5%n %tException code:%b%6%n %tResource:%b%3

�%1 scanning for spyware and other potentially unwanted software has been enabled.

�%1 scanning for spyware and other potentially unwanted software is disabled.

\%1 scanning for viruses has been enabled.

T%1 scanning for viruses is disabled.

pTamper Protection %3 a change to %1.%n %tValue:%b%4

�4VS_VERSION_INFO��@s@s?�StringFileInfo�040904B0LCompanyNameMicrosoft CorporationTFileDescriptionEvent Resource Modulen'FileVersion4.18.1907.16384 (WinBuild.160101.0800)8InternalNameMpEvMsg.dll�.LegalCopyright� Microsoft Corporation. All rights reserved.HOriginalFilenameMpEvMsg.dll.muij%ProductNameMicrosoft� Windows� Operating SystemDProductVersion4.18.1907.16384DVarFileInfo$Translation	�PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADD