| 1 | 970.8d4: Log file opened: 5.1.8r111374 g_hStartupLog=0000000000000060 g_uNtVerCombined=0xa03a7b00
|
|---|
| 2 | 970.8d4: \SystemRoot\System32\ntdll.dll:
|
|---|
| 3 | 970.8d4: CreationTime: 2016-11-12T10:03:35.068381200Z
|
|---|
| 4 | 970.8d4: LastWriteTime: 2016-11-12T10:03:35.068381200Z
|
|---|
| 5 | 970.8d4: ChangeTime: 2016-11-17T22:45:44.320934400Z
|
|---|
| 6 | 970.8d4: FileAttributes: 0x20
|
|---|
| 7 | 970.8d4: Size: 0x1cdc80
|
|---|
| 8 | 970.8d4: NT Headers: 0xe0
|
|---|
| 9 | 970.8d4: Timestamp: 0xdf1e957e
|
|---|
| 10 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 11 | 970.8d4: Timestamp: 0xdf1e957e
|
|---|
| 12 | 970.8d4: Image Version: 10.0
|
|---|
| 13 | 970.8d4: SizeOfImage: 0x1d2000 (1908736)
|
|---|
| 14 | 970.8d4: Resource Dir: 0x169000 LB 0x67d98
|
|---|
| 15 | 970.8d4: ProductName: Microsoft® Windows® Operating System
|
|---|
| 16 | 970.8d4: ProductVersion: 10.0.14971.1000
|
|---|
| 17 | 970.8d4: FileVersion: 10.0.14971.1000 (rs_prerelease.161111-1700)
|
|---|
| 18 | 970.8d4: FileDescription: NT Layer DLL
|
|---|
| 19 | 970.8d4: \SystemRoot\System32\kernel32.dll:
|
|---|
| 20 | 970.8d4: CreationTime: 2016-11-12T10:03:24.770618000Z
|
|---|
| 21 | 970.8d4: LastWriteTime: 2016-11-12T10:03:24.770618000Z
|
|---|
| 22 | 970.8d4: ChangeTime: 2016-11-17T22:45:43.727167600Z
|
|---|
| 23 | 970.8d4: FileAttributes: 0x20
|
|---|
| 24 | 970.8d4: Size: 0xaa1b8
|
|---|
| 25 | 970.8d4: NT Headers: 0xf0
|
|---|
| 26 | 970.8d4: Timestamp: 0x6d8baca5
|
|---|
| 27 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 28 | 970.8d4: Timestamp: 0x6d8baca5
|
|---|
| 29 | 970.8d4: Image Version: 10.0
|
|---|
| 30 | 970.8d4: SizeOfImage: 0xad000 (708608)
|
|---|
| 31 | 970.8d4: Resource Dir: 0xab000 LB 0x528
|
|---|
| 32 | 970.8d4: ProductName: Microsoft® Windows® Operating System
|
|---|
| 33 | 970.8d4: ProductVersion: 10.0.14971.1000
|
|---|
| 34 | 970.8d4: FileVersion: 10.0.14971.1000 (rs_prerelease.161111-1700)
|
|---|
| 35 | 970.8d4: FileDescription: Windows NT BASE API Client DLL
|
|---|
| 36 | 970.8d4: \SystemRoot\System32\KernelBase.dll:
|
|---|
| 37 | 970.8d4: CreationTime: 2016-11-12T10:03:32.615044200Z
|
|---|
| 38 | 970.8d4: LastWriteTime: 2016-11-12T10:03:32.615044200Z
|
|---|
| 39 | 970.8d4: ChangeTime: 2016-11-17T22:45:43.758408100Z
|
|---|
| 40 | 970.8d4: FileAttributes: 0x20
|
|---|
| 41 | 970.8d4: Size: 0x233690
|
|---|
| 42 | 970.8d4: NT Headers: 0xf0
|
|---|
| 43 | 970.8d4: Timestamp: 0x26f2fe1c
|
|---|
| 44 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 45 | 970.8d4: Timestamp: 0x26f2fe1c
|
|---|
| 46 | 970.8d4: Image Version: 10.0
|
|---|
| 47 | 970.8d4: SizeOfImage: 0x235000 (2314240)
|
|---|
| 48 | 970.8d4: Resource Dir: 0x217000 LB 0x550
|
|---|
| 49 | 970.8d4: ProductName: Microsoft® Windows® Operating System
|
|---|
| 50 | 970.8d4: ProductVersion: 10.0.14971.1000
|
|---|
| 51 | 970.8d4: FileVersion: 10.0.14971.1000 (rs_prerelease.161111-1700)
|
|---|
| 52 | 970.8d4: FileDescription: Windows NT BASE API Client DLL
|
|---|
| 53 | 970.8d4: \SystemRoot\System32\apisetschema.dll:
|
|---|
| 54 | 970.8d4: CreationTime: 2016-11-12T10:03:32.568165500Z
|
|---|
| 55 | 970.8d4: LastWriteTime: 2016-11-12T10:03:32.568165500Z
|
|---|
| 56 | 970.8d4: ChangeTime: 2016-11-17T22:45:42.586531500Z
|
|---|
| 57 | 970.8d4: FileAttributes: 0x20
|
|---|
| 58 | 970.8d4: Size: 0x19310
|
|---|
| 59 | 970.8d4: NT Headers: 0xc8
|
|---|
| 60 | 970.8d4: Timestamp: 0x6a79d354
|
|---|
| 61 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 62 | 970.8d4: Timestamp: 0x6a79d354
|
|---|
| 63 | 970.8d4: Image Version: 10.0
|
|---|
| 64 | 970.8d4: SizeOfImage: 0x1b000 (110592)
|
|---|
| 65 | 970.8d4: Resource Dir: 0x1a000 LB 0x418
|
|---|
| 66 | 970.8d4: ProductName: Microsoft® Windows® Operating System
|
|---|
| 67 | 970.8d4: ProductVersion: 10.0.14971.1000
|
|---|
| 68 | 970.8d4: FileVersion: 10.0.14971.1000 (rs_prerelease.161111-1700)
|
|---|
| 69 | 970.8d4: FileDescription: ApiSet Schema DLL
|
|---|
| 70 | 970.8d4: NtOpenDirectoryObject failed on \Driver: 0xc0000022
|
|---|
| 71 | 970.8d4: supR3HardenedWinFindAdversaries: 0x180
|
|---|
| 72 | 970.8d4: \SystemRoot\System32\drivers\MBAMSwissArmy.sys:
|
|---|
| 73 | 970.8d4: CreationTime: 2014-05-24T18:57:53.985094000Z
|
|---|
| 74 | 970.8d4: LastWriteTime: 2016-09-24T20:36:04.505996600Z
|
|---|
| 75 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 76 | 970.8d4: FileAttributes: 0x20
|
|---|
| 77 | 970.8d4: Size: 0x2eed8
|
|---|
| 78 | 970.8d4: NT Headers: 0xe0
|
|---|
| 79 | 970.8d4: Timestamp: 0x55b855d9
|
|---|
| 80 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 81 | 970.8d4: Timestamp: 0x55b855d9
|
|---|
| 82 | 970.8d4: Image Version: 6.1
|
|---|
| 83 | 970.8d4: SizeOfImage: 0x33000 (208896)
|
|---|
| 84 | 970.8d4: Resource Dir: 0x31000 LB 0x3b8
|
|---|
| 85 | 970.8d4: ProductName: Malwarebytes Anti-Malware
|
|---|
| 86 | 970.8d4: ProductVersion: 0.3.0.0
|
|---|
| 87 | 970.8d4: FileVersion: 0.3.0.0
|
|---|
| 88 | 970.8d4: FileDescription: Malwarebytes Anti-Malware
|
|---|
| 89 | 970.8d4: \SystemRoot\System32\drivers\mwac.sys:
|
|---|
| 90 | 970.8d4: CreationTime: 2015-10-29T22:40:16.367112500Z
|
|---|
| 91 | 970.8d4: LastWriteTime: 2016-03-10T13:09:10.000000000Z
|
|---|
| 92 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.068500000Z
|
|---|
| 93 | 970.8d4: FileAttributes: 0x20
|
|---|
| 94 | 970.8d4: Size: 0xff80
|
|---|
| 95 | 970.8d4: NT Headers: 0xe0
|
|---|
| 96 | 970.8d4: Timestamp: 0x53a0f444
|
|---|
| 97 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 98 | 970.8d4: Timestamp: 0x53a0f444
|
|---|
| 99 | 970.8d4: Image Version: 6.2
|
|---|
| 100 | 970.8d4: SizeOfImage: 0x13000 (77824)
|
|---|
| 101 | 970.8d4: Resource Dir: 0x11000 LB 0x3e0
|
|---|
| 102 | 970.8d4: ProductName: Malwarebytes Web Access Control
|
|---|
| 103 | 970.8d4: ProductVersion: 1.0.6.0
|
|---|
| 104 | 970.8d4: FileVersion: 1.0.6.0
|
|---|
| 105 | 970.8d4: FileDescription: Malwarebytes Web Access Control
|
|---|
| 106 | 970.8d4: \SystemRoot\System32\drivers\mbamchameleon.sys:
|
|---|
| 107 | 970.8d4: CreationTime: 2015-10-29T22:40:16.374118900Z
|
|---|
| 108 | 970.8d4: LastWriteTime: 2016-03-10T13:08:58.000000000Z
|
|---|
| 109 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 110 | 970.8d4: FileAttributes: 0x20
|
|---|
| 111 | 970.8d4: Size: 0x22580
|
|---|
| 112 | 970.8d4: NT Headers: 0xe0
|
|---|
| 113 | 970.8d4: Timestamp: 0x56a95753
|
|---|
| 114 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 115 | 970.8d4: Timestamp: 0x56a95753
|
|---|
| 116 | 970.8d4: Image Version: 6.1
|
|---|
| 117 | 970.8d4: SizeOfImage: 0x26000 (155648)
|
|---|
| 118 | 970.8d4: Resource Dir: 0x24000 LB 0xba8
|
|---|
| 119 | 970.8d4: ProductName: Malwarebytes Chameleon
|
|---|
| 120 | 970.8d4: ProductVersion: 1.1.22.0
|
|---|
| 121 | 970.8d4: FileVersion: 1.1.22.0
|
|---|
| 122 | 970.8d4: FileDescription: Malwarebytes Chameleon Protection Driver
|
|---|
| 123 | 970.8d4: \SystemRoot\System32\drivers\mbam.sys:
|
|---|
| 124 | 970.8d4: CreationTime: 2015-10-29T22:40:16.363293600Z
|
|---|
| 125 | 970.8d4: LastWriteTime: 2016-03-10T13:08:54.000000000Z
|
|---|
| 126 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 127 | 970.8d4: FileAttributes: 0x20
|
|---|
| 128 | 970.8d4: Size: 0x6980
|
|---|
| 129 | 970.8d4: NT Headers: 0xd8
|
|---|
| 130 | 970.8d4: Timestamp: 0x55ca3257
|
|---|
| 131 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 132 | 970.8d4: Timestamp: 0x55ca3257
|
|---|
| 133 | 970.8d4: Image Version: 6.1
|
|---|
| 134 | 970.8d4: SizeOfImage: 0xa000 (40960)
|
|---|
| 135 | 970.8d4: Resource Dir: 0x8000 LB 0x3a0
|
|---|
| 136 | 970.8d4: ProductName: Malwarebytes Anti-Malware
|
|---|
| 137 | 970.8d4: ProductVersion: 0.1.16.0
|
|---|
| 138 | 970.8d4: FileVersion: 0.1.16.0
|
|---|
| 139 | 970.8d4: FileDescription: Malwarebytes Anti-Malware
|
|---|
| 140 | 970.8d4: \SystemRoot\System32\drivers\avgrkx64.sys:
|
|---|
| 141 | 970.8d4: CreationTime: 2015-03-20T11:18:18.000000000Z
|
|---|
| 142 | 970.8d4: LastWriteTime: 2016-06-01T12:16:40.000000000Z
|
|---|
| 143 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 144 | 970.8d4: FileAttributes: 0x20
|
|---|
| 145 | 970.8d4: Size: 0xcf00
|
|---|
| 146 | 970.8d4: NT Headers: 0xd8
|
|---|
| 147 | 970.8d4: Timestamp: 0x574ec40f
|
|---|
| 148 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 149 | 970.8d4: Timestamp: 0x574ec40f
|
|---|
| 150 | 970.8d4: Image Version: 6.2
|
|---|
| 151 | 970.8d4: SizeOfImage: 0xb000 (45056)
|
|---|
| 152 | 970.8d4: Resource Dir: 0x9000 LB 0x510
|
|---|
| 153 | 970.8d4: ProductName: AVG Internet Security
|
|---|
| 154 | 970.8d4: ProductVersion: 16.90.0.7673
|
|---|
| 155 | 970.8d4: FileVersion: 16.90.0.7673
|
|---|
| 156 | 970.8d4: SpecialBuild: AvCompile_2016_0601_131222(7673), SVNRev cc10eaccfa4cdc44f6f43b26dbe769983b6f0839 (av/devel), av, gbn 16.90.2.18750
|
|---|
| 157 | 970.8d4: PrivateBuild: x64 Release_Unicode_DRIVER
|
|---|
| 158 | 970.8d4: FileDescription: AVG Anti-Rootkit Driver
|
|---|
| 159 | 970.8d4: \SystemRoot\System32\drivers\avgmfx64.sys:
|
|---|
| 160 | 970.8d4: CreationTime: 2016-09-26T17:19:22.000000000Z
|
|---|
| 161 | 970.8d4: LastWriteTime: 2016-09-26T17:19:22.000000000Z
|
|---|
| 162 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 163 | 970.8d4: FileAttributes: 0x20
|
|---|
| 164 | 970.8d4: Size: 0x3e100
|
|---|
| 165 | 970.8d4: NT Headers: 0xe8
|
|---|
| 166 | 970.8d4: Timestamp: 0x57e94a81
|
|---|
| 167 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 168 | 970.8d4: Timestamp: 0x57e94a81
|
|---|
| 169 | 970.8d4: Image Version: 6.2
|
|---|
| 170 | 970.8d4: SizeOfImage: 0x3c000 (245760)
|
|---|
| 171 | 970.8d4: Resource Dir: 0x3a000 LB 0x560
|
|---|
| 172 | 970.8d4: ProductName: AVG Internet Security
|
|---|
| 173 | 970.8d4: ProductVersion: 16.121.0.7858
|
|---|
| 174 | 970.8d4: FileVersion: 16.121.0.7858
|
|---|
| 175 | 970.8d4: SpecialBuild: AvCompile_2016_0926_180907(7858), SVNRev 89be4c719ae91eb486fd7c7ebc47674d4095f27f (release/SmallUpdate2016-12_release), av, gbn 16.121.0.7858
|
|---|
| 176 | 970.8d4: PrivateBuild: x64 Release_Unicode_DRIVER
|
|---|
| 177 | 970.8d4: FileDescription: AVG Resident Shield Minifilter Driver
|
|---|
| 178 | 970.8d4: \SystemRoot\System32\drivers\avgidsdrivera.sys:
|
|---|
| 179 | 970.8d4: CreationTime: 2016-09-22T13:44:20.000000000Z
|
|---|
| 180 | 970.8d4: LastWriteTime: 2016-09-22T13:44:20.000000000Z
|
|---|
| 181 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 182 | 970.8d4: FileAttributes: 0x20
|
|---|
| 183 | 970.8d4: Size: 0x4c100
|
|---|
| 184 | 970.8d4: NT Headers: 0xd8
|
|---|
| 185 | 970.8d4: Timestamp: 0x57e3d218
|
|---|
| 186 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 187 | 970.8d4: Timestamp: 0x57e3d218
|
|---|
| 188 | 970.8d4: Image Version: 6.2
|
|---|
| 189 | 970.8d4: SizeOfImage: 0x4f000 (323584)
|
|---|
| 190 | 970.8d4: Resource Dir: 0x4d000 LB 0x580
|
|---|
| 191 | 970.8d4: ProductName: AVG Internet Security
|
|---|
| 192 | 970.8d4: ProductVersion: 16.121.0.7856
|
|---|
| 193 | 970.8d4: FileVersion: 16.121.0.7856
|
|---|
| 194 | 970.8d4: SpecialBuild: AvCompile_2016_0922_143408(7856), SVNRev c564e87cd56715376966f7174afc5e317d57989c (release/SmallUpdate2016-12_release), av, gbn 16.121.0.7856
|
|---|
| 195 | 970.8d4: PrivateBuild: x64 Release_Unicode_DRIVER
|
|---|
| 196 | 970.8d4: FileDescription: AVG IDS Application Activity Monitor Driver.
|
|---|
| 197 | 970.8d4: \SystemRoot\System32\drivers\avgidsha.sys:
|
|---|
| 198 | 970.8d4: CreationTime: 2015-05-12T13:36:54.000000000Z
|
|---|
| 199 | 970.8d4: LastWriteTime: 2016-07-27T14:24:26.000000000Z
|
|---|
| 200 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 201 | 970.8d4: FileAttributes: 0x20
|
|---|
| 202 | 970.8d4: Size: 0x42900
|
|---|
| 203 | 970.8d4: NT Headers: 0xe8
|
|---|
| 204 | 970.8d4: Timestamp: 0x5798b5fa
|
|---|
| 205 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 206 | 970.8d4: Timestamp: 0x5798b5fa
|
|---|
| 207 | 970.8d4: Image Version: 6.2
|
|---|
| 208 | 970.8d4: SizeOfImage: 0x40000 (262144)
|
|---|
| 209 | 970.8d4: Resource Dir: 0x3e000 LB 0x540
|
|---|
| 210 | 970.8d4: ProductName: AVG Internet Security
|
|---|
| 211 | 970.8d4: ProductVersion: 16.110.0.7776
|
|---|
| 212 | 970.8d4: FileVersion: 16.110.0.7776
|
|---|
| 213 | 970.8d4: SpecialBuild: AvCompile_2016_0727_150904(7776), SVNRev f34fa864ac8775f2830386a2f76108bcc6d0f5bc (av/devel), av, gbn 16.110.0.7776
|
|---|
| 214 | 970.8d4: PrivateBuild: x64 Release_Unicode_DRIVER
|
|---|
| 215 | 970.8d4: FileDescription: AVG Application Activity Monitor Helper Driver
|
|---|
| 216 | 970.8d4: \SystemRoot\System32\drivers\avgloga.sys:
|
|---|
| 217 | 970.8d4: CreationTime: 2016-02-16T15:05:56.000000000Z
|
|---|
| 218 | 970.8d4: LastWriteTime: 2016-02-16T15:05:56.000000000Z
|
|---|
| 219 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 220 | 970.8d4: FileAttributes: 0x20
|
|---|
| 221 | 970.8d4: Size: 0x58120
|
|---|
| 222 | 970.8d4: NT Headers: 0xe0
|
|---|
| 223 | 970.8d4: Timestamp: 0x56c32c53
|
|---|
| 224 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 225 | 970.8d4: Timestamp: 0x56c32c53
|
|---|
| 226 | 970.8d4: Image Version: 6.2
|
|---|
| 227 | 970.8d4: SizeOfImage: 0x55000 (348160)
|
|---|
| 228 | 970.8d4: Resource Dir: 0x53000 LB 0x500
|
|---|
| 229 | 970.8d4: ProductName: AVG Internet Security
|
|---|
| 230 | 970.8d4: ProductVersion: 16.60.0.7513
|
|---|
| 231 | 970.8d4: FileVersion: 16.60.0.7513
|
|---|
| 232 | 970.8d4: SpecialBuild: AvCompile_2016_0216_145142(7513), SVNRev f797a3270884e4c0f85189d098fc7633e15c31ee (av/devel), av, gbn 16.60.1.59398
|
|---|
| 233 | 970.8d4: PrivateBuild: x64 Release_Unicode_DRIVER
|
|---|
| 234 | 970.8d4: FileDescription: AVG Logging Driver
|
|---|
| 235 | 970.8d4: \SystemRoot\System32\drivers\avgldx64.sys:
|
|---|
| 236 | 970.8d4: CreationTime: 2016-09-20T15:55:14.000000000Z
|
|---|
| 237 | 970.8d4: LastWriteTime: 2016-09-20T15:55:14.000000000Z
|
|---|
| 238 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 239 | 970.8d4: FileAttributes: 0x20
|
|---|
| 240 | 970.8d4: Size: 0x40d00
|
|---|
| 241 | 970.8d4: NT Headers: 0xe0
|
|---|
| 242 | 970.8d4: Timestamp: 0x57e14dbf
|
|---|
| 243 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 244 | 970.8d4: Timestamp: 0x57e14dbf
|
|---|
| 245 | 970.8d4: Image Version: 6.2
|
|---|
| 246 | 970.8d4: SizeOfImage: 0x41000 (266240)
|
|---|
| 247 | 970.8d4: Resource Dir: 0x3f000 LB 0x540
|
|---|
| 248 | 970.8d4: ProductName: AVG Internet Security
|
|---|
| 249 | 970.8d4: ProductVersion: 16.121.0.7854
|
|---|
| 250 | 970.8d4: FileVersion: 16.121.0.7854
|
|---|
| 251 | 970.8d4: SpecialBuild: AvCompile_2016_0920_163643(7854), SVNRev 63e7b1a36ebc6333db1e19a387b13388a7091d62 (release/SmallUpdate2016-12_release), av, gbn 16.121.0.7854
|
|---|
| 252 | 970.8d4: PrivateBuild: x64 Release_Unicode_DRIVER
|
|---|
| 253 | 970.8d4: FileDescription: AVG AVI Loader Driver
|
|---|
| 254 | 970.8d4: \SystemRoot\System32\drivers\avgdiska.sys:
|
|---|
| 255 | 970.8d4: CreationTime: 2016-05-13T06:52:10.000000000Z
|
|---|
| 256 | 970.8d4: LastWriteTime: 2016-05-13T06:52:10.000000000Z
|
|---|
| 257 | 970.8d4: ChangeTime: 2016-11-17T23:01:11.052875000Z
|
|---|
| 258 | 970.8d4: FileAttributes: 0x20
|
|---|
| 259 | 970.8d4: Size: 0x27d00
|
|---|
| 260 | 970.8d4: NT Headers: 0xe0
|
|---|
| 261 | 970.8d4: Timestamp: 0x57356b82
|
|---|
| 262 | 970.8d4: Machine: 0x8664 - amd64
|
|---|
| 263 | 970.8d4: Timestamp: 0x57356b82
|
|---|
| 264 | 970.8d4: Image Version: 6.2
|
|---|
| 265 | 970.8d4: SizeOfImage: 0x27000 (159744)
|
|---|
| 266 | 970.8d4: Resource Dir: 0x25000 LB 0x50c
|
|---|
| 267 | 970.8d4: ProductName: AVG Internet Security
|
|---|
| 268 | 970.8d4: ProductVersion: 16.90.0.7664
|
|---|
| 269 | 970.8d4: FileVersion: 16.90.0.7664
|
|---|
| 270 | 970.8d4: SpecialBuild: AvCompile_2016_0513_073811(7664), SVNRev 89c5fd034c9aa09052301d6769ab0e7ab54878fc (av/devel), av, gbn 16.90.2.14599
|
|---|
| 271 | 970.8d4: PrivateBuild: x64 Release_Unicode_DRIVER
|
|---|
| 272 | 970.8d4: FileDescription: AVG File Vault Driver
|
|---|
| 273 | 970.8d4: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox'
|
|---|
| 274 | 970.8d4: Calling main()
|
|---|
| 275 | 970.8d4: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
|
|---|
| 276 | 970.8d4: supR3HardenedWinInitAppBin(0x2): '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox'
|
|---|
| 277 | 970.8d4: SUPR3HardenedMain: Respawn #1
|
|---|
| 278 | 970.8d4: System32: \Device\HarddiskVolume4\Windows\System32
|
|---|
| 279 | 970.8d4: WinSxS: \Device\HarddiskVolume4\Windows\WinSxS
|
|---|
| 280 | 970.8d4: KnownDllPath: C:\WINDOWS\System32
|
|---|
| 281 | 970.8d4: '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
|
|---|
| 282 | 970.8d4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe)
|
|---|
| 283 | 970.8d4: supR3HardNtEnableThreadCreation:
|
|---|
| 284 | 970.8d4: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007fffeb406c60 pvNtTerminateThread=00007fffeb4359f0
|
|---|
| 285 | 970.8d4: supR3HardenedWinDoReSpawn(1): New child 8d8.98c [kernel32].
|
|---|
| 286 | 970.8d4: supR3HardNtChildGatherData: PebBaseAddress=0000000000df9000 cbPeb=0x388
|
|---|
| 287 | 970.8d4: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007fffeb390000 uNtDllChildAddr=00007fffeb390000
|
|---|
| 288 | 970.8d4: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007fffeb406c60
|
|---|
| 289 | 970.8d4: supR3HardenedWinSetupChildInit: Start child.
|
|---|
| 290 | 970.8d4: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
|
|---|
| 291 | 970.8d4: supR3HardNtChildPurify: Startup delay kludge #1/0: 515 ms, 62 sleeps
|
|---|
| 292 | 970.8d4: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
|
|---|
| 293 | 970.8d4: *0000000000000000-ffffffffff5cffff 0x0001/0x0000 0x0000000
|
|---|
| 294 | 970.8d4: *0000000000a30000-0000000000a0ffff 0x0004/0x0004 0x0020000
|
|---|
| 295 | 970.8d4: *0000000000a50000-0000000000a37fff 0x0002/0x0002 0x0040000
|
|---|
| 296 | 970.8d4: 0000000000a68000-0000000000a5ffff 0x0001/0x0000 0x0000000
|
|---|
| 297 | 970.8d4: *0000000000a70000-0000000000974fff 0x0000/0x0004 0x0020000
|
|---|
| 298 | 970.8d4: 0000000000b6b000-0000000000b67fff 0x0104/0x0004 0x0020000
|
|---|
| 299 | 970.8d4: 0000000000b6e000-0000000000b6bfff 0x0004/0x0004 0x0020000
|
|---|
| 300 | 970.8d4: *0000000000b70000-0000000000b6bfff 0x0002/0x0002 0x0040000
|
|---|
| 301 | 970.8d4: 0000000000b74000-0000000000b67fff 0x0001/0x0000 0x0000000
|
|---|
| 302 | 970.8d4: *0000000000b80000-0000000000b7dfff 0x0004/0x0004 0x0020000
|
|---|
| 303 | 970.8d4: 0000000000b82000-0000000000b03fff 0x0001/0x0000 0x0000000
|
|---|
| 304 | 970.8d4: *0000000000c00000-0000000000a06fff 0x0000/0x0004 0x0020000
|
|---|
| 305 | 970.8d4: 0000000000df9000-0000000000df5fff 0x0004/0x0004 0x0020000
|
|---|
| 306 | 970.8d4: 0000000000dfc000-0000000000df7fff 0x0000/0x0004 0x0020000
|
|---|
| 307 | 970.8d4: 0000000000e00000-ffffffff81c1ffff 0x0001/0x0000 0x0000000
|
|---|
| 308 | 970.8d4: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
|
|---|
| 309 | 970.8d4: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
|
|---|
| 310 | 970.8d4: 000000007fff0000-ffff8009ffa5ffff 0x0001/0x0000 0x0000000
|
|---|
| 311 | 970.8d4: *00007ff700580000-00007ff70055cfff 0x0002/0x0002 0x0040000
|
|---|
| 312 | 970.8d4: 00007ff7005a3000-00007ff700375fff 0x0001/0x0000 0x0000000
|
|---|
| 313 | 970.8d4: *00007ff7007d0000-00007ff7007d0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 314 | 970.8d4: 00007ff7007d1000-00007ff70083ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 315 | 970.8d4: 00007ff700840000-00007ff700840fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 316 | 970.8d4: 00007ff700841000-00007ff700885fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 317 | 970.8d4: 00007ff700886000-00007ff700886fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 318 | 970.8d4: 00007ff700887000-00007ff700887fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 319 | 970.8d4: 00007ff700888000-00007ff70088cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 320 | 970.8d4: 00007ff70088d000-00007ff70088dfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 321 | 970.8d4: 00007ff70088e000-00007ff70088efff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 322 | 970.8d4: 00007ff70088f000-00007ff700892fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 323 | 970.8d4: 00007ff700893000-00007ff7008dafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
|
|---|
| 324 | 970.8d4: 00007ff7008db000-00007fee15e25fff 0x0001/0x0000 0x0000000
|
|---|
| 325 | 970.8d4: *00007fffeb390000-00007fffeb390fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 326 | 970.8d4: 00007fffeb391000-00007fffeb499fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 327 | 970.8d4: 00007fffeb49a000-00007fffeb4ddfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 328 | 970.8d4: 00007fffeb4de000-00007fffeb4e5fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 329 | 970.8d4: 00007fffeb4e6000-00007fffeb4f3fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 330 | 970.8d4: 00007fffeb4f4000-00007fffeb4f4fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 331 | 970.8d4: 00007fffeb4f5000-00007fffeb4f7fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 332 | 970.8d4: 00007fffeb4f8000-00007fffeb561fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 333 | 970.8d4: 00007fffeb562000-00007fffd6ae3fff 0x0001/0x0000 0x0000000
|
|---|
| 334 | 970.8d4: *00007ffffffe0000-00007ffffffcffff 0x0001/0x0002 0x0020000
|
|---|
| 335 | 970.8d4: VirtualBox.exe: timestamp 0x58062715 (rc=VINF_SUCCESS)
|
|---|
| 336 | 970.8d4: '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
|
|---|
| 337 | 970.8d4: Error (rc=-23033):
|
|---|
| 338 | 970.8d4: supHardenedWinVerifyProcess failed with Unknown Status -23033 (0xffffa607): Certificate is not valid (ValidTime=2088-08-14T12:05:18.000000000Z Validity=[2014-05-28T17:33:33.000000000Z...2029-05-28T17:43:33.000000000Z]): \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 339 | 970.8d4: Error -23033 in supR3HardNtChildPurify! (enmWhat=5)
|
|---|
| 340 | 970.8d4: supHardenedWinVerifyProcess failed with Unknown Status -23033 (0xffffa607): Certificate is not valid (ValidTime=2088-08-14T12:05:18.000000000Z Validity=[2014-05-28T17:33:33.000000000Z...2029-05-28T17:43:33.000000000Z]): \Device\HarddiskVolume4\Windows\System32\ntdll.dll
|
|---|
| 341 | 970.8d4: supR3HardNtEnableThreadCreation:
|
|---|