1dec.2438: Log file opened: 5.2.16r123759 g_hStartupLog=0000000000000068 g_uNtVerCombined=0xa042ee00 1dec.2438: \SystemRoot\System32\ntdll.dll: 1dec.2438: CreationTime: 2018-07-10T20:54:19.748029500Z 1dec.2438: LastWriteTime: 2018-07-06T07:25:51.438518000Z 1dec.2438: ChangeTime: 2018-07-11T17:14:17.947224700Z 1dec.2438: FileAttributes: 0x20 1dec.2438: Size: 0x1db0b8 1dec.2438: NT Headers: 0xe8 1dec.2438: Timestamp: 0xf4df6dc2 1dec.2438: Machine: 0x8664 - amd64 1dec.2438: Timestamp: 0xf4df6dc2 1dec.2438: Image Version: 10.0 1dec.2438: SizeOfImage: 0x1e1000 (1970176) 1dec.2438: Resource Dir: 0x174000 LB 0x6b338 1dec.2438: [Version info resource found at 0xd8! (ID/Name: 0x1; SubID/SubName: 0x409)] 1dec.2438: [Raw version resource data: 0x1740f0 LB 0x380, codepage 0x0 (reserved 0x0)] 1dec.2438: ProductName: Microsoft® Windows® Operating System 1dec.2438: ProductVersion: 10.0.17134.165 1dec.2438: FileVersion: 10.0.17134.165 (WinBuild.160101.0800) 1dec.2438: FileDescription: NT Layer DLL 1dec.2438: \SystemRoot\System32\kernel32.dll: 1dec.2438: CreationTime: 2018-04-11T23:34:40.510607900Z 1dec.2438: LastWriteTime: 2018-04-11T23:34:40.510607900Z 1dec.2438: ChangeTime: 2018-06-03T15:59:42.361946400Z 1dec.2438: FileAttributes: 0x20 1dec.2438: Size: 0xafef8 1dec.2438: NT Headers: 0xe8 1dec.2438: Timestamp: 0x5f488a51 1dec.2438: Machine: 0x8664 - amd64 1dec.2438: Timestamp: 0x5f488a51 1dec.2438: Image Version: 10.0 1dec.2438: SizeOfImage: 0xb2000 (729088) 1dec.2438: Resource Dir: 0xb0000 LB 0x520 1dec.2438: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)] 1dec.2438: [Raw version resource data: 0xb00b0 LB 0x3a4, codepage 0x0 (reserved 0x0)] 1dec.2438: ProductName: Microsoft® Windows® Operating System 1dec.2438: ProductVersion: 10.0.17134.1 1dec.2438: FileVersion: 10.0.17134.1 (WinBuild.160101.0800) 1dec.2438: FileDescription: Windows NT BASE API Client DLL 1dec.2438: \SystemRoot\System32\KernelBase.dll: 1dec.2438: CreationTime: 2018-07-10T20:54:24.220169600Z 1dec.2438: LastWriteTime: 2018-07-06T07:25:54.438736600Z 1dec.2438: ChangeTime: 2018-07-11T17:14:17.915983600Z 1dec.2438: FileAttributes: 0x20 1dec.2438: Size: 0x273dd0 1dec.2438: NT Headers: 0xf8 1dec.2438: Timestamp: 0xb0bb231d 1dec.2438: Machine: 0x8664 - amd64 1dec.2438: Timestamp: 0xb0bb231d 1dec.2438: Image Version: 10.0 1dec.2438: SizeOfImage: 0x273000 (2568192) 1dec.2438: Resource Dir: 0x251000 LB 0x548 1dec.2438: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)] 1dec.2438: [Raw version resource data: 0x2510b0 LB 0x3bc, codepage 0x0 (reserved 0x0)] 1dec.2438: ProductName: Microsoft® Windows® Operating System 1dec.2438: ProductVersion: 10.0.17134.165 1dec.2438: FileVersion: 10.0.17134.165 (WinBuild.160101.0800) 1dec.2438: FileDescription: Windows NT BASE API Client DLL 1dec.2438: \SystemRoot\System32\apisetschema.dll: 1dec.2438: CreationTime: 2018-04-11T23:34:44.042150700Z 1dec.2438: LastWriteTime: 2018-04-11T23:34:44.042150700Z 1dec.2438: ChangeTime: 2018-06-02T23:22:55.854954000Z 1dec.2438: FileAttributes: 0x20 1dec.2438: Size: 0x1bd98 1dec.2438: NT Headers: 0xd0 1dec.2438: Timestamp: 0xd02ff418 1dec.2438: Machine: 0x8664 - amd64 1dec.2438: Timestamp: 0xd02ff418 1dec.2438: Image Version: 10.0 1dec.2438: SizeOfImage: 0x1c000 (114688) 1dec.2438: Resource Dir: 0x1b000 LB 0x408 1dec.2438: [Version info resource found at 0x48! (ID/Name: 0x1; SubID/SubName: 0x409)] 1dec.2438: [Raw version resource data: 0x1b060 LB 0x3a8, codepage 0x0 (reserved 0x0)] 1dec.2438: ProductName: Microsoft® Windows® Operating System 1dec.2438: ProductVersion: 10.0.17134.1 1dec.2438: FileVersion: 10.0.17134.1 (WinBuild.160101.0800) 1dec.2438: FileDescription: ApiSet Schema DLL 1dec.2438: NtOpenDirectoryObject failed on \Driver: 0xc0000022 1dec.2438: supR3HardenedWinFindAdversaries: 0x0 1dec.2438: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume2\Oracle\VirtualBox' 1dec.2438: Calling main() 1dec.2438: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2 1dec.2438: supR3HardenedWinInitAppBin(0x2): '\Device\HarddiskVolume2\Oracle\VirtualBox' 1dec.2438: SUPR3HardenedMain: Respawn #1 1dec.2438: System32: \Device\HarddiskVolume5\Windows\System32 1dec.2438: WinSxS: \Device\HarddiskVolume5\Windows\WinSxS 1dec.2438: KnownDllPath: C:\WINDOWS\System32 1dec.2438: '\Device\HarddiskVolume2\Oracle\VirtualBox\VirtualBox.exe' has no imports 1dec.2438: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Oracle\VirtualBox\VirtualBox.exe) 1dec.2438: supR3HardNtEnableThreadCreation: 1dec.2438: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffb43912fc0 pvNtTerminateThread=00007ffb4393a900 1dec.2438: supR3HardenedWinDoReSpawn(1): New child 3b4.380c [kernel32]. 1dec.2438: supR3HardNtChildGatherData: PebBaseAddress=0000000000805000 cbPeb=0x388 1dec.2438: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffb438a0000 uNtDllChildAddr=00007ffb438a0000 1dec.2438: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffb43912fc0 1dec.2438: supR3HardenedWinSetupChildInit: Start child. 1dec.2438: Error (rc=258): 1dec.2438: Timed out after 2001 ms waiting for child request #0 (PurifyChildAndCloseHandles). 1dec.2438: Error 258 in supR3HardNtChildWaitFor! (enmWhat=5) 1dec.2438: Timed out after 2001 ms waiting for child request #0 (PurifyChildAndCloseHandles). 1dec.2438: supR3HardNtEnableThreadCreation: