VirtualBox

Ticket #13187: VBoxStartup.20.log

File VBoxStartup.20.log, 28.8 KB (added by deaforange, 10 years ago)
Line 
175c.d0c: Log file opened: 4.3.20r96997 g_hStartupLog=000000000000001c g_uNtVerCombined=0x63258000
275c.d0c: \SystemRoot\System32\ntdll.dll:
375c.d0c: CreationTime: 2014-11-20T19:36:25.725495900Z
475c.d0c: LastWriteTime: 2014-11-20T19:36:25.756745300Z
575c.d0c: ChangeTime: 2015-01-23T20:12:10.147543500Z
675c.d0c: FileAttributes: 0x20
775c.d0c: Size: 0x1a7540
875c.d0c: NT Headers: 0xd8
975c.d0c: Timestamp: 0x5450559e
1075c.d0c: Machine: 0x8664 - amd64
1175c.d0c: Timestamp: 0x5450559e
1275c.d0c: Image Version: 6.3
1375c.d0c: SizeOfImage: 0x1ac000 (1753088)
1475c.d0c: Resource Dir: 0x148000 LB 0x62450
1575c.d0c: ProductName: Microsoft® Windows® Operating System
1675c.d0c: ProductVersion: 6.3.9600.17415
1775c.d0c: FileVersion: 6.3.9600.17415 (winblue_r4.141028-1500)
1875c.d0c: FileDescription: NT Layer DLL
1975c.d0c: \SystemRoot\System32\kernel32.dll:
2075c.d0c: CreationTime: 2014-11-20T19:36:49.252056800Z
2175c.d0c: LastWriteTime: 2014-11-20T19:36:49.267681100Z
2275c.d0c: ChangeTime: 2015-01-28T06:22:54.952105500Z
2375c.d0c: FileAttributes: 0x20
2475c.d0c: Size: 0x13fc30
2575c.d0c: NT Headers: 0xf8
2675c.d0c: Timestamp: 0x545054ca
2775c.d0c: Machine: 0x8664 - amd64
2875c.d0c: Timestamp: 0x545054ca
2975c.d0c: Image Version: 6.3
3075c.d0c: SizeOfImage: 0x13e000 (1302528)
3175c.d0c: Resource Dir: 0x12e000 LB 0x518
3275c.d0c: ProductName: Microsoft® Windows® Operating System
3375c.d0c: ProductVersion: 6.3.9600.17415
3475c.d0c: FileVersion: 6.3.9600.17415 (winblue_r4.141028-1500)
3575c.d0c: FileDescription: Windows NT BASE API Client DLL
3675c.d0c: \SystemRoot\System32\KernelBase.dll:
3775c.d0c: CreationTime: 2014-11-20T19:36:25.475017800Z
3875c.d0c: LastWriteTime: 2014-11-20T19:36:25.495975500Z
3975c.d0c: ChangeTime: 2015-01-28T06:22:55.077448700Z
4075c.d0c: FileAttributes: 0x20
4175c.d0c: Size: 0x114a90
4275c.d0c: NT Headers: 0xf0
4375c.d0c: Timestamp: 0x54505737
4475c.d0c: Machine: 0x8664 - amd64
4575c.d0c: Timestamp: 0x54505737
4675c.d0c: Image Version: 6.3
4775c.d0c: SizeOfImage: 0x115000 (1134592)
4875c.d0c: Resource Dir: 0x110000 LB 0x3528
4975c.d0c: ProductName: Microsoft® Windows® Operating System
5075c.d0c: ProductVersion: 6.3.9600.17415
5175c.d0c: FileVersion: 6.3.9600.17415 (winblue_r4.141028-1500)
5275c.d0c: FileDescription: Windows NT BASE API Client DLL
5375c.d0c: \SystemRoot\System32\apisetschema.dll:
5475c.d0c: CreationTime: 2013-08-22T12:13:09.745625900Z
5575c.d0c: LastWriteTime: 2013-08-22T12:35:12.091034400Z
5675c.d0c: ChangeTime: 2015-01-23T20:12:08.600587400Z
5775c.d0c: FileAttributes: 0x20
5875c.d0c: Size: 0x11360
5975c.d0c: NT Headers: 0xd0
6075c.d0c: Timestamp: 0x52160049
6175c.d0c: Machine: 0x8664 - amd64
6275c.d0c: Timestamp: 0x52160049
6375c.d0c: Image Version: 6.3
6475c.d0c: SizeOfImage: 0x13000 (77824)
6575c.d0c: Resource Dir: 0x11000 LB 0x3f8
6675c.d0c: ProductName: Microsoft® Windows® Operating System
6775c.d0c: ProductVersion: 6.3.9600.16384
6875c.d0c: FileVersion: 6.3.9600.16384 (winblue_rtm.130821-1623)
6975c.d0c: FileDescription: ApiSet Schema DLL
7075c.d0c: NtOpenDirectoryObject failed on \Driver: 0xc0000022
7175c.d0c: supR3HardenedWinFindAdversaries: 0x80
7275c.d0c: \SystemRoot\System32\drivers\mbam.sys:
7375c.d0c: CreationTime: 2013-11-06T11:49:59.172386300Z
7475c.d0c: LastWriteTime: 2013-04-04T10:50:32.000000000Z
7575c.d0c: ChangeTime: 2015-01-23T20:26:36.443894700Z
7675c.d0c: FileAttributes: 0x20
7775c.d0c: Size: 0x6548
7875c.d0c: NT Headers: 0xf0
7975c.d0c: Timestamp: 0x512fbf03
8075c.d0c: Machine: 0x8664 - amd64
8175c.d0c: Timestamp: 0x512fbf03
8275c.d0c: Image Version: 6.0
8375c.d0c: SizeOfImage: 0xa000 (40960)
8475c.d0c: Resource Dir: 0x8000 LB 0x3d0
8575c.d0c: ProductName: Malwarebytes Anti-Malware
8675c.d0c: ProductVersion: 1.60.2.0000
8775c.d0c: FileVersion: 1.60.2.0000 built by: WinDDK
8875c.d0c: FileDescription: Malwarebytes Anti-Malware
8975c.d0c: Calling main()
9075c.d0c: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
9175c.d0c: SUPR3HardenedMain: Respawn #1
9275c.d0c: System32: \Device\HarddiskVolume5\Windows\System32
9375c.d0c: WinSxS: \Device\HarddiskVolume5\Windows\WinSxS
9475c.d0c: KnownDllPath: C:\WINDOWS\system32
9575c.d0c: '\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
9675c.d0c: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe)
9775c.d0c: supR3HardNtEnableThreadCreation:
9875c.d0c: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffcd334a650 pvNtTerminateThread=00007ffcd33c1170
9975c.d0c: supR3HardenedWinDoReSpawn(1): New child 134.17f0 [kernel32].
10075c.d0c: supR3HardNtChildGatherData: PebBaseAddress=00007ff6a839d000 cbPeb=0x388
10175c.d0c: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffcd3330000 uNtDllChildAddr=00007ffcd3330000
10275c.d0c: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffcd334a650
10375c.d0c: supR3HardenedWinSetupChildInit: Start child.
10475c.d0c: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
10575c.d0c: supR3HardNtChildPurify: Startup delay kludge #1/0: 513 ms, 36 sleeps
10675c.d0c: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
10775c.d0c: *0000000000000000-ffffffffff89ffff 0x0001/0x0000 0x0000000
10875c.d0c: *0000000000760000-000000000073ffff 0x0004/0x0004 0x0020000
10975c.d0c: *0000000000780000-0000000000770fff 0x0002/0x0002 0x0040000
11075c.d0c: 000000000078f000-000000000078dfff 0x0001/0x0000 0x0000000
11175c.d0c: *0000000000790000-0000000000693fff 0x0000/0x0004 0x0020000
11275c.d0c: 000000000088c000-0000000000888fff 0x0104/0x0004 0x0020000
11375c.d0c: 000000000088f000-000000000088dfff 0x0004/0x0004 0x0020000
11475c.d0c: *0000000000890000-000000000088bfff 0x0002/0x0002 0x0040000
11575c.d0c: 0000000000894000-0000000000887fff 0x0001/0x0000 0x0000000
11675c.d0c: *00000000008a0000-000000000089dfff 0x0004/0x0004 0x0020000
11775c.d0c: 00000000008a2000-ffffffff81163fff 0x0001/0x0000 0x0000000
11875c.d0c: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
11975c.d0c: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
12075c.d0c: 000000007fff0000-ffff800a57c6ffff 0x0001/0x0000 0x0000000
12175c.d0c: *00007ff6a8370000-00007ff6a834cfff 0x0002/0x0002 0x0040000
12275c.d0c: 00007ff6a8393000-00007ff6a8388fff 0x0001/0x0000 0x0000000
12375c.d0c: *00007ff6a839d000-00007ff6a839bfff 0x0004/0x0004 0x0020000
12475c.d0c: *00007ff6a839e000-00007ff6a839bfff 0x0004/0x0004 0x0020000
12575c.d0c: 00007ff6a83a0000-00007ff6a756ffff 0x0001/0x0000 0x0000000
12675c.d0c: *00007ff6a91d0000-00007ff6a91cefff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
12775c.d0c: 00007ff6a91d1000-00007ff6a914cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
12875c.d0c: 00007ff6a9255000-00007ff6a9253fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
12975c.d0c: 00007ff6a9256000-00007ff6a9218fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13075c.d0c: 00007ff6a9293000-00007ff6a9291fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13175c.d0c: 00007ff6a9294000-00007ff6a9292fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13275c.d0c: 00007ff6a9295000-00007ff6a9292fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13375c.d0c: 00007ff6a9297000-00007ff6a9295fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13475c.d0c: 00007ff6a9298000-00007ff6a9296fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13575c.d0c: 00007ff6a9299000-00007ff6a9294fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13675c.d0c: 00007ff6a929d000-00007ff6a9263fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
13775c.d0c: 00007ff6a92d6000-00007ff07f27bfff 0x0001/0x0000 0x0000000
13875c.d0c: *00007ffcd3330000-00007ffcd332efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
13975c.d0c: 00007ffcd3331000-00007ffcd3204fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
14075c.d0c: 00007ffcd345d000-00007ffcd3456fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
14175c.d0c: 00007ffcd3463000-00007ffcd3455fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
14275c.d0c: 00007ffcd3470000-00007ffcd346efff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
14375c.d0c: 00007ffcd3471000-00007ffcd346dfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
14475c.d0c: 00007ffcd3474000-00007ffcd3472fff 0x0010/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
14575c.d0c: 00007ffcd3475000-00007ffcd340dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
14675c.d0c: 00007ffcd34dc000-00007ff9a69d7fff 0x0001/0x0000 0x0000000
14775c.d0c: *00007ffffffe0000-00007ffffffcffff 0x0001/0x0002 0x0020000
14875c.d0c: VirtualBox.exe: timestamp 0x54731167 (rc=VINF_SUCCESS)
14975c.d0c: '\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
15075c.d0c: '\Device\HarddiskVolume5\Windows\System32\ntdll.dll' has no imports
15175c.d0c: supR3HardNtChildPurify: Done after 555 ms and 0 fixes (loop #0).
152134.17f0: Log file opened: 4.3.20r96997 g_hStartupLog=0000000000000004 g_uNtVerCombined=0x63258000
153134.17f0: supR3HardenedVmProcessInit: uNtDllAddr=00007ffcd3330000
15475c.d0c: supR3HardNtEnableThreadCreation:
155134.17f0: ntdll.dll: timestamp 0x5450559e (rc=VINF_SUCCESS)
156134.17f0: New simple heap: #1 00000000009b0000 LB 0x400000 (for 1753088 allocation)
157134.17f0: System32: \Device\HarddiskVolume5\Windows\System32
158134.17f0: WinSxS: \Device\HarddiskVolume5\Windows\WinSxS
159134.17f0: KnownDllPath: C:\WINDOWS\system32
160134.17f0: supR3HardenedVmProcessInit: Opening vboxdrv stub...
161134.17f0: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk...
162134.17f0: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk...
163134.17f0: Registered Dll notification callback with NTDLL.
164134.17f0: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Windows\System32\kernel32.dll)
165134.17f0: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume5\Windows\System32\kernel32.dll
166134.17f0: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\KERNEL32.DLL (Input=KERNEL32.DLL, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000000801:<flags> [calling]
167134.17f0: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume5\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
168134.17f0: supR3HardenedDllNotificationCallback: load 00007ffcd0550000 LB 0x00115000 C:\WINDOWS\system32\KERNELBASE.dll [fFlags=0x0]
169134.17f0: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Windows\System32\KernelBase.dll)
170134.17f0: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume5\Windows\System32\KernelBase.dll
171134.17f0: supR3HardenedDllNotificationCallback: load 00007ffcd09b0000 LB 0x0013e000 C:\WINDOWS\system32\KERNEL32.DLL [fFlags=0x0]
172134.17f0: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume5\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
173134.17f0: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffcd09b0000 'C:\WINDOWS\system32\KERNEL32.DLL'
174134.17f0: supR3HardenedDllNotificationCallback: load 00007ff6a91d0000 LB 0x00106000 C:\Program Files\Oracle\VirtualBox\VirtualBox.exe [fFlags=0x0]
175134.17f0: '\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
176134.17f0: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe)
177134.17f0: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
178134.17f0: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffcd334a650 pvNtTerminateThread=00007ffcd33c1170
17975c.d0c: supR3HardNtChildWaitFor: Found expected request 1 (CloseEvents) after 81 ms.
180134.17f0: \SystemRoot\System32\ntdll.dll:
181134.17f0: CreationTime: 2014-11-20T19:36:25.725495900Z
182134.17f0: LastWriteTime: 2014-11-20T19:36:25.756745300Z
183134.17f0: ChangeTime: 2015-01-23T20:12:10.147543500Z
184134.17f0: FileAttributes: 0x20
185134.17f0: Size: 0x1a7540
186134.17f0: NT Headers: 0xd8
187134.17f0: Timestamp: 0x5450559e
188134.17f0: Machine: 0x8664 - amd64
189134.17f0: Timestamp: 0x5450559e
190134.17f0: Image Version: 6.3
191134.17f0: SizeOfImage: 0x1ac000 (1753088)
192134.17f0: Resource Dir: 0x148000 LB 0x62450
193134.17f0: ProductName: Microsoft® Windows® Operating System
194134.17f0: ProductVersion: 6.3.9600.17415
195134.17f0: FileVersion: 6.3.9600.17415 (winblue_r4.141028-1500)
196134.17f0: FileDescription: NT Layer DLL
197134.17f0: \SystemRoot\System32\kernel32.dll:
198134.17f0: CreationTime: 2014-11-20T19:36:49.252056800Z
199134.17f0: LastWriteTime: 2014-11-20T19:36:49.267681100Z
200134.17f0: ChangeTime: 2015-01-28T06:22:54.952105500Z
201134.17f0: FileAttributes: 0x20
202134.17f0: Size: 0x13fc30
203134.17f0: NT Headers: 0xf8
204134.17f0: Timestamp: 0x545054ca
205134.17f0: Machine: 0x8664 - amd64
206134.17f0: Timestamp: 0x545054ca
207134.17f0: Image Version: 6.3
208134.17f0: SizeOfImage: 0x13e000 (1302528)
209134.17f0: Resource Dir: 0x12e000 LB 0x518
210134.17f0: ProductName: Microsoft® Windows® Operating System
211134.17f0: ProductVersion: 6.3.9600.17415
212134.17f0: FileVersion: 6.3.9600.17415 (winblue_r4.141028-1500)
213134.17f0: FileDescription: Windows NT BASE API Client DLL
214134.17f0: \SystemRoot\System32\KernelBase.dll:
215134.17f0: CreationTime: 2014-11-20T19:36:25.475017800Z
216134.17f0: LastWriteTime: 2014-11-20T19:36:25.495975500Z
217134.17f0: ChangeTime: 2015-01-28T06:22:55.077448700Z
218134.17f0: FileAttributes: 0x20
219134.17f0: Size: 0x114a90
220134.17f0: NT Headers: 0xf0
221134.17f0: Timestamp: 0x54505737
222134.17f0: Machine: 0x8664 - amd64
223134.17f0: Timestamp: 0x54505737
224134.17f0: Image Version: 6.3
225134.17f0: SizeOfImage: 0x115000 (1134592)
226134.17f0: Resource Dir: 0x110000 LB 0x3528
227134.17f0: ProductName: Microsoft® Windows® Operating System
228134.17f0: ProductVersion: 6.3.9600.17415
229134.17f0: FileVersion: 6.3.9600.17415 (winblue_r4.141028-1500)
230134.17f0: FileDescription: Windows NT BASE API Client DLL
231134.17f0: \SystemRoot\System32\apisetschema.dll:
232134.17f0: CreationTime: 2013-08-22T12:13:09.745625900Z
233134.17f0: LastWriteTime: 2013-08-22T12:35:12.091034400Z
234134.17f0: ChangeTime: 2015-01-23T20:12:08.600587400Z
235134.17f0: FileAttributes: 0x20
236134.17f0: Size: 0x11360
237134.17f0: NT Headers: 0xd0
238134.17f0: Timestamp: 0x52160049
239134.17f0: Machine: 0x8664 - amd64
240134.17f0: Timestamp: 0x52160049
241134.17f0: Image Version: 6.3
242134.17f0: SizeOfImage: 0x13000 (77824)
243134.17f0: Resource Dir: 0x11000 LB 0x3f8
244134.17f0: ProductName: Microsoft® Windows® Operating System
245134.17f0: ProductVersion: 6.3.9600.16384
246134.17f0: FileVersion: 6.3.9600.16384 (winblue_rtm.130821-1623)
247134.17f0: FileDescription: ApiSet Schema DLL
248134.17f0: NtOpenDirectoryObject failed on \Driver: 0xc0000022
249134.17f0: supR3HardenedWinFindAdversaries: 0x80
250134.17f0: \SystemRoot\System32\drivers\mbam.sys:
251134.17f0: CreationTime: 2013-11-06T11:49:59.172386300Z
252134.17f0: LastWriteTime: 2013-04-04T10:50:32.000000000Z
253134.17f0: ChangeTime: 2015-01-23T20:26:36.443894700Z
254134.17f0: FileAttributes: 0x20
255134.17f0: Size: 0x6548
256134.17f0: NT Headers: 0xf0
257134.17f0: Timestamp: 0x512fbf03
258134.17f0: Machine: 0x8664 - amd64
259134.17f0: Timestamp: 0x512fbf03
260134.17f0: Image Version: 6.0
261134.17f0: SizeOfImage: 0xa000 (40960)
262134.17f0: Resource Dir: 0x8000 LB 0x3d0
263134.17f0: ProductName: Malwarebytes Anti-Malware
264134.17f0: ProductVersion: 1.60.2.0000
265134.17f0: FileVersion: 1.60.2.0000 built by: WinDDK
266134.17f0: FileDescription: Malwarebytes Anti-Malware
267134.17f0: Calling main()
268134.17f0: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
269134.17f0: '\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
270134.17f0: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe)
271134.17f0: SUPR3HardenedMain: Respawn #2
272134.17f0: supR3HardNtEnableThreadCreation:
273134.17f0: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffcd334a650 pvNtTerminateThread=00007ffcd33c1170
274134.17f0: supR3HardenedWinDoReSpawn(2): New child 1a3c.1080 [kernel32].
275134.17f0: supR3HardenedWinReSpawn: NtSetInformationThread/ThreadHideFromDebugger failed: 0xc0000022 (harmless)
276134.17f0: supR3HardNtChildGatherData: PebBaseAddress=00007ff6a85b9000 cbPeb=0x388
277134.17f0: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffcd3330000 uNtDllChildAddr=00007ffcd3330000
278134.17f0: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffcd334a650
279134.17f0: supR3HardenedWinSetupChildInit: Start child.
280134.17f0: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
281134.17f0: supR3HardNtChildPurify: Startup delay kludge #1/0: 519 ms, 58 sleeps
282134.17f0: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
283134.17f0: *0000000000000000-ffffffffffa6ffff 0x0001/0x0000 0x0000000
284134.17f0: *0000000000590000-000000000056ffff 0x0004/0x0004 0x0020000
285134.17f0: *00000000005b0000-00000000005a0fff 0x0002/0x0002 0x0040000
286134.17f0: 00000000005bf000-00000000005bdfff 0x0001/0x0000 0x0000000
287134.17f0: *00000000005c0000-00000000004c3fff 0x0000/0x0004 0x0020000
288134.17f0: 00000000006bc000-00000000006b8fff 0x0104/0x0004 0x0020000
289134.17f0: 00000000006bf000-00000000006bdfff 0x0004/0x0004 0x0020000
290134.17f0: *00000000006c0000-00000000006bbfff 0x0002/0x0002 0x0040000
291134.17f0: 00000000006c4000-00000000006b7fff 0x0001/0x0000 0x0000000
292134.17f0: *00000000006d0000-00000000006cdfff 0x0004/0x0004 0x0020000
293134.17f0: 00000000006d2000-ffffffffa0da3fff 0x0001/0x0000 0x0000000
294134.17f0: *0000000060000000-000000005fffcfff 0x0080/0x0080 0x0040000 !!
295134.17f0: supHardNtVpScanVirtualMemory: Unmapping exec mem at 0000000060000000 (0000000060000000/0000000060000000 LB 0x3000)
296134.17f0: 0000000060003000-0000000040025fff 0x0001/0x0000 0x0000000
297134.17f0: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
298134.17f0: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
299134.17f0: 000000007fff0000-ffff800a57a4ffff 0x0001/0x0000 0x0000000
300134.17f0: *00007ff6a8590000-00007ff6a856cfff 0x0002/0x0002 0x0040000
301134.17f0: 00007ff6a85b3000-00007ff6a85acfff 0x0001/0x0000 0x0000000
302134.17f0: *00007ff6a85b9000-00007ff6a85b7fff 0x0004/0x0004 0x0020000
303134.17f0: 00007ff6a85ba000-00007ff6a85b5fff 0x0001/0x0000 0x0000000
304134.17f0: *00007ff6a85be000-00007ff6a85bbfff 0x0004/0x0004 0x0020000
305134.17f0: 00007ff6a85c0000-00007ff6a79affff 0x0001/0x0000 0x0000000
306134.17f0: *00007ff6a91d0000-00007ff6a91cefff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
307134.17f0: 00007ff6a91d1000-00007ff6a914cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
308134.17f0: 00007ff6a9255000-00007ff6a9253fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
309134.17f0: 00007ff6a9256000-00007ff6a9218fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
310134.17f0: 00007ff6a9293000-00007ff6a9291fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
311134.17f0: 00007ff6a9294000-00007ff6a9292fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
312134.17f0: 00007ff6a9295000-00007ff6a9292fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
313134.17f0: 00007ff6a9297000-00007ff6a9295fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
314134.17f0: 00007ff6a9298000-00007ff6a9296fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
315134.17f0: 00007ff6a9299000-00007ff6a9294fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
316134.17f0: 00007ff6a929d000-00007ff6a9263fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
317134.17f0: 00007ff6a92d6000-00007ff07f27bfff 0x0001/0x0000 0x0000000
318134.17f0: *00007ffcd3330000-00007ffcd332efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
319134.17f0: 00007ffcd3331000-00007ffcd3204fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
320134.17f0: 00007ffcd345d000-00007ffcd3456fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
321134.17f0: 00007ffcd3463000-00007ffcd3455fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
322134.17f0: 00007ffcd3470000-00007ffcd346efff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
323134.17f0: 00007ffcd3471000-00007ffcd346dfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
324134.17f0: 00007ffcd3474000-00007ffcd3472fff 0x0010/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
325134.17f0: 00007ffcd3475000-00007ffcd340dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
326134.17f0: 00007ffcd34dc000-00007ff9a69d7fff 0x0001/0x0000 0x0000000
327134.17f0: *00007ffffffe0000-00007ffffffcffff 0x0001/0x0002 0x0020000
328134.17f0: VirtualBox.exe: timestamp 0x54731167 (rc=VINF_SUCCESS)
329134.17f0: '\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
330134.17f0: '\Device\HarddiskVolume5\Windows\System32\ntdll.dll' has no imports
331134.17f0: supR3HardNtChildPurify: cFixes=1 g_fSupAdversaries=0x80
332134.17f0: supR3HardNtChildPurify: Startup delay kludge #1/1: 516 ms, 48 sleeps
333134.17f0: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
334134.17f0: *0000000000000000-ffffffffffa6ffff 0x0001/0x0000 0x0000000
335134.17f0: *0000000000590000-000000000056ffff 0x0004/0x0004 0x0020000
336134.17f0: *00000000005b0000-00000000005a0fff 0x0002/0x0002 0x0040000
337134.17f0: 00000000005bf000-00000000005bdfff 0x0001/0x0000 0x0000000
338134.17f0: *00000000005c0000-00000000004c3fff 0x0000/0x0004 0x0020000
339134.17f0: 00000000006bc000-00000000006b8fff 0x0104/0x0004 0x0020000
340134.17f0: 00000000006bf000-00000000006bdfff 0x0004/0x0004 0x0020000
341134.17f0: *00000000006c0000-00000000006bbfff 0x0002/0x0002 0x0040000
342134.17f0: 00000000006c4000-00000000006b7fff 0x0001/0x0000 0x0000000
343134.17f0: *00000000006d0000-00000000006cdfff 0x0004/0x0004 0x0020000
344134.17f0: 00000000006d2000-ffffffff80dc3fff 0x0001/0x0000 0x0000000
345134.17f0: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
346134.17f0: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
347134.17f0: 000000007fff0000-ffff800a57a4ffff 0x0001/0x0000 0x0000000
348134.17f0: *00007ff6a8590000-00007ff6a856cfff 0x0002/0x0002 0x0040000
349134.17f0: 00007ff6a85b3000-00007ff6a85acfff 0x0001/0x0000 0x0000000
350134.17f0: *00007ff6a85b9000-00007ff6a85b7fff 0x0004/0x0004 0x0020000
351134.17f0: 00007ff6a85ba000-00007ff6a85b5fff 0x0001/0x0000 0x0000000
352134.17f0: *00007ff6a85be000-00007ff6a85bbfff 0x0004/0x0004 0x0020000
353134.17f0: 00007ff6a85c0000-00007ff6a79affff 0x0001/0x0000 0x0000000
354134.17f0: *00007ff6a91d0000-00007ff6a91cefff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
355134.17f0: 00007ff6a91d1000-00007ff6a914cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
356134.17f0: 00007ff6a9255000-00007ff6a9253fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
357134.17f0: 00007ff6a9256000-00007ff6a9218fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
358134.17f0: 00007ff6a9293000-00007ff6a9288fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
359134.17f0: 00007ff6a929d000-00007ff6a9263fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
360134.17f0: 00007ff6a92d6000-00007ff07f27bfff 0x0001/0x0000 0x0000000
361134.17f0: *00007ffcd3330000-00007ffcd332efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
362134.17f0: 00007ffcd3331000-00007ffcd3204fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
363134.17f0: 00007ffcd345d000-00007ffcd3456fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
364134.17f0: 00007ffcd3463000-00007ffcd3455fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
365134.17f0: 00007ffcd3470000-00007ffcd346bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
366134.17f0: 00007ffcd3474000-00007ffcd3472fff 0x0010/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
367134.17f0: 00007ffcd3475000-00007ffcd340dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume5\Windows\System32\ntdll.dll
368134.17f0: 00007ffcd34dc000-00007ff9a69d7fff 0x0001/0x0000 0x0000000
369134.17f0: *00007ffffffe0000-00007ffffffcffff 0x0001/0x0002 0x0020000
370134.17f0: supR3HardNtChildPurify: Done after 1075 ms and 1 fixes (loop #1).
3711a3c.1080: Log file opened: 4.3.20r96997 g_hStartupLog=0000000000000004 g_uNtVerCombined=0x63258000
3721a3c.1080: supR3HardenedVmProcessInit: uNtDllAddr=00007ffcd3330000
3731a3c.1080: ntdll.dll: timestamp 0x5450559e (rc=VINF_SUCCESS)
3741a3c.1080: New simple heap: #1 00000000007e0000 LB 0x400000 (for 1753088 allocation)
375134.17f0: supR3HardenedEarlyCompact: Removed heap 1 (0x000000009b0000 LB 0x400000)
376134.17f0: supR3HardNtEnableThreadCreation:
3771a3c.1080: System32: \Device\HarddiskVolume5\Windows\System32
3781a3c.1080: WinSxS: \Device\HarddiskVolume5\Windows\WinSxS
3791a3c.1080: KnownDllPath: C:\WINDOWS\system32
3801a3c.1080: supR3HardenedVmProcessInit: Opening vboxdrv...
3811a3c.1080: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk...
3821a3c.1080: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk...
3831a3c.1080: Registered Dll notification callback with NTDLL.
3841a3c.1080: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Windows\System32\kernel32.dll)
3851a3c.1080: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume5\Windows\System32\kernel32.dll
3861a3c.1080: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\KERNEL32.DLL (Input=KERNEL32.DLL, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000000801:<flags> [calling]
3871a3c.1080: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume5\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
3881a3c.1080: supR3HardenedDllNotificationCallback: load 00007ffcd0550000 LB 0x00115000 C:\WINDOWS\system32\KERNELBASE.dll [fFlags=0x0]
3891a3c.1080: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Windows\System32\KernelBase.dll)
3901a3c.1080: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume5\Windows\System32\KernelBase.dll
3911a3c.1080: supR3HardenedDllNotificationCallback: load 00007ffcd09b0000 LB 0x0013e000 C:\WINDOWS\system32\KERNEL32.DLL [fFlags=0x0]
3921a3c.1080: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume5\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
3931a3c.1080: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffcd09b0000 'C:\WINDOWS\system32\KERNEL32.DLL'
3941a3c.1080: supR3HardenedDllNotificationCallback: load 00007ff6a91d0000 LB 0x00106000 C:\Program Files\Oracle\VirtualBox\VirtualBox.exe [fFlags=0x0]
3951a3c.1080: '\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
3961a3c.1080: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe)
3971a3c.1080: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume5\Program Files\Oracle\VirtualBox\VirtualBox.exe
398134.17f0: supR3HardNtChildWaitFor[2]: Quitting: ExitCode=0xc0000005 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 93 ms, CloseEvents);
39975c.d0c: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0xc0000005 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 1186 ms, the end);

© 2024 Oracle Support Privacy / Do Not Sell My Info Terms of Use Trademark Policy