I have an issue with Avira flagging request to printwithwave.co blocked. I thought i had downloaded malware accidentally (coincidence with my download of gog games and third party mods). Reinstall windows fully (delete all partition, reinstall via usb).
After less than one week, the same request came out. I was working with claude to find where this comes from, until accidentally when i see my unused edge for some reason cannot set secure dns, and was pointed to check policies of edge in registry.
A shock to me when i see a sub folder under edge
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge\LocalNetworkAccessAllowedForUrls, with the following
(Default) REG_SZ (value not set), 1 REG_SZ https://www,xyaz.cn
Googled and found https://www,xyaz.cn is the chinese website of memu.
I've been using memu player for quite a few for emulator games and never knew it could silently write into my registry!!!