| 1 | f60.914: Log file opened: 4.3.16r95972 g_hStartupLog=0000000000000018 g_uNtVerCombined=0x611db110
|
|---|
| 2 | f60.914: Calling main()
|
|---|
| 3 | f60.914: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
|
|---|
| 4 | f60.914: SUPR3HardenedMain: Respawn #1
|
|---|
| 5 | f60.914: System32: \Device\HarddiskVolume2\Windows\System32
|
|---|
| 6 | f60.914: WinSxS: \Device\HarddiskVolume2\Windows\winsxs
|
|---|
| 7 | f60.914: ProgDir: \Device\HarddiskVolume2\Program Files
|
|---|
| 8 | f60.914: ComDir: \Device\HarddiskVolume2\Program Files\Common Files
|
|---|
| 9 | f60.914: ProgDir32: \Device\HarddiskVolume2\Program Files (x86)
|
|---|
| 10 | f60.914: ComDir32: \Device\HarddiskVolume2\Program Files (x86)\Common Files
|
|---|
| 11 | f60.914: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
|
|---|
| 12 | f60.914: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe)
|
|---|
| 13 | f60.914: supR3HardNtEnableThreadCreation:
|
|---|
| 14 | f60.914: supR3HardNtDisableThreadCreation: pvLdrInitThunk=000000007730c340 pvNtTerminateThread=00000000773317e0
|
|---|
| 15 | f60.914: supR3HardenedWinDoReSpawn(1): New child f90.1320 [kernel32].
|
|---|
| 16 | f60.914: supR3HardenedWinPurifyChild: PebBaseAddress=000007fffffd7000 cbPeb=0x380
|
|---|
| 17 | f60.914: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00000000772e0000 uNtDllChildAddr=00000000772e0000
|
|---|
| 18 | f60.914: supR3HardNtPuChTriggerInitialImageEvents: uLdrInitThunk=000000007730c340 uNtTerminateThread=00000000773317e0
|
|---|
| 19 | f60.914: supR3HardNtDisableThreadCreation: pvLdrInitThunk=000000007730c340 pvNtTerminateThread=00000000773317e0
|
|---|
| 20 | f60.914: supR3HardNtPuChTriggerInitialImageEvents: mapping view of ntdll.dll[2nd]
|
|---|
| 21 | eb0.1380: Log file opened: 4.3.16r95972 g_hStartupLog=0000000000000018 g_uNtVerCombined=0x611db110
|
|---|
| 22 | eb0.1380: Calling main()
|
|---|
| 23 | eb0.1380: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
|
|---|
| 24 | eb0.1380: SUPR3HardenedMain: Respawn #1
|
|---|
| 25 | eb0.1380: System32: \Device\HarddiskVolume2\Windows\System32
|
|---|
| 26 | eb0.1380: WinSxS: \Device\HarddiskVolume2\Windows\winsxs
|
|---|
| 27 | eb0.1380: ProgDir: \Device\HarddiskVolume2\Program Files
|
|---|
| 28 | eb0.1380: ComDir: \Device\HarddiskVolume2\Program Files\Common Files
|
|---|
| 29 | eb0.1380: ProgDir32: \Device\HarddiskVolume2\Program Files (x86)
|
|---|
| 30 | eb0.1380: ComDir32: \Device\HarddiskVolume2\Program Files (x86)\Common Files
|
|---|
| 31 | eb0.1380: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
|
|---|
| 32 | eb0.1380: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe)
|
|---|
| 33 | eb0.1380: supR3HardNtEnableThreadCreation:
|
|---|
| 34 | eb0.1380: supR3HardNtDisableThreadCreation: pvLdrInitThunk=000000007730c340 pvNtTerminateThread=00000000773317e0
|
|---|
| 35 | eb0.1380: supR3HardenedWinDoReSpawn(1): New child 634.b24 [kernel32].
|
|---|
| 36 | eb0.1380: supR3HardenedWinPurifyChild: PebBaseAddress=000007fffffd7000 cbPeb=0x380
|
|---|
| 37 | eb0.1380: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00000000772e0000 uNtDllChildAddr=00000000772e0000
|
|---|
| 38 | eb0.1380: supR3HardNtPuChTriggerInitialImageEvents: uLdrInitThunk=000000007730c340 uNtTerminateThread=00000000773317e0
|
|---|
| 39 | eb0.1380: supR3HardNtDisableThreadCreation: pvLdrInitThunk=000000007730c340 pvNtTerminateThread=00000000773317e0
|
|---|
| 40 | eb0.1380: supR3HardNtPuChTriggerInitialImageEvents: mapping view of ntdll.dll[2nd]
|
|---|