VirtualBox

Ticket #14237: VBoxStartup.log

File VBoxStartup.log, 31.3 KB (added by SagarShetty, 10 years ago)

ErrorLog

Line 
12908.290c: Log file opened: 4.2.30r100415 g_hStartupLog=0000000000000014 g_uNtVerCombined=0x611db110
22908.290c: \SystemRoot\System32\ntdll.dll:
32908.290c: CreationTime: 2015-04-27T04:23:01.494643100Z
42908.290c: LastWriteTime: 2015-03-17T05:19:37.641771700Z
52908.290c: ChangeTime: 2015-07-02T13:04:37.739428500Z
62908.290c: FileAttributes: 0x20
72908.290c: Size: 0x1a5da0
82908.290c: NT Headers: 0xe0
92908.290c: Timestamp: 0x5507b864
102908.290c: Machine: 0x8664 - amd64
112908.290c: Timestamp: 0x5507b864
122908.290c: Image Version: 6.1
132908.290c: SizeOfImage: 0x1a8000 (1736704)
142908.290c: Resource Dir: 0x14c000 LB 0x5a028
152908.290c: ProductName: Microsoft® Windows® Operating System
162908.290c: ProductVersion: 6.1.7601.18798
172908.290c: FileVersion: 6.1.7601.18798 (win7sp1_gdr.150316-1654)
182908.290c: FileDescription: NT Layer DLL
192908.290c: \SystemRoot\System32\kernel32.dll:
202908.290c: CreationTime: 2015-06-17T05:27:08.277509700Z
212908.290c: LastWriteTime: 2015-05-09T03:26:36.862000000Z
222908.290c: ChangeTime: 2015-07-02T13:04:37.769442600Z
232908.290c: FileAttributes: 0x20
242908.290c: Size: 0x11be00
252908.290c: NT Headers: 0xe8
262908.290c: Timestamp: 0x554d7df0
272908.290c: Machine: 0x8664 - amd64
282908.290c: Timestamp: 0x554d7df0
292908.290c: Image Version: 6.1
302908.290c: SizeOfImage: 0x11f000 (1175552)
312908.290c: Resource Dir: 0x116000 LB 0x528
322908.290c: ProductName: Microsoft® Windows® Operating System
332908.290c: ProductVersion: 6.1.7601.18847
342908.290c: FileVersion: 6.1.7601.18847 (win7sp1_gdr.150508-1512)
352908.290c: FileDescription: Windows NT BASE API Client DLL
362908.290c: \SystemRoot\System32\KernelBase.dll:
372908.290c: CreationTime: 2015-06-17T05:27:08.424509700Z
382908.290c: LastWriteTime: 2015-05-09T03:26:36.862000000Z
392908.290c: ChangeTime: 2015-07-02T13:04:37.789452000Z
402908.290c: FileAttributes: 0x20
412908.290c: Size: 0x67c00
422908.290c: NT Headers: 0xe8
432908.290c: Timestamp: 0x554d7df1
442908.290c: Machine: 0x8664 - amd64
452908.290c: Timestamp: 0x554d7df1
462908.290c: Image Version: 6.1
472908.290c: SizeOfImage: 0x6c000 (442368)
482908.290c: Resource Dir: 0x6a000 LB 0x530
492908.290c: ProductName: Microsoft® Windows® Operating System
502908.290c: ProductVersion: 6.1.7601.18847
512908.290c: FileVersion: 6.1.7601.18847 (win7sp1_gdr.150508-1512)
522908.290c: FileDescription: Windows NT BASE API Client DLL
532908.290c: \SystemRoot\System32\apisetschema.dll:
542908.290c: CreationTime: 2015-04-27T04:23:09.731443100Z
552908.290c: LastWriteTime: 2015-03-17T05:11:07.952000000Z
562908.290c: ChangeTime: 2015-07-02T13:04:37.794454400Z
572908.290c: FileAttributes: 0x20
582908.290c: Size: 0x1a00
592908.290c: NT Headers: 0xc0
602908.290c: Timestamp: 0x5507b7b1
612908.290c: Machine: 0x8664 - amd64
622908.290c: Timestamp: 0x5507b7b1
632908.290c: Image Version: 6.1
642908.290c: SizeOfImage: 0x50000 (327680)
652908.290c: Resource Dir: 0x30000 LB 0x3f8
662908.290c: ProductName: Microsoft® Windows® Operating System
672908.290c: ProductVersion: 6.1.7601.18798
682908.290c: FileVersion: 6.1.7601.18798 (win7sp1_gdr.150316-1654)
692908.290c: FileDescription: ApiSet Schema DLL
702908.290c: NtOpenDirectoryObject failed on \Driver: 0xc0000022
712908.290c: supR3HardenedWinFindAdversaries: 0x20
722908.290c: \SystemRoot\System32\drivers\mfeapfk.sys:
732908.290c: CreationTime: 2014-08-20T16:14:00.261285700Z
742908.290c: LastWriteTime: 2014-08-20T16:12:49.777254200Z
752908.290c: ChangeTime: 2015-07-02T13:04:37.851482300Z
762908.290c: FileAttributes: 0x20
772908.290c: Size: 0x2c030
782908.290c: NT Headers: 0xe8
792908.290c: Timestamp: 0x52ab7fef
802908.290c: Machine: 0x8664 - amd64
812908.290c: Timestamp: 0x52ab7fef
822908.290c: Image Version: 0.0
832908.290c: SizeOfImage: 0x29d00 (171264)
842908.290c: Resource Dir: 0x29500 LB 0x340
852908.290c: ProductName: SYSCORE
862908.290c: FileVersion: SYSCORE.15.1.0.656
872908.290c: PrivateBuild: SYSCORE.15.1.0.656 F16
882908.290c: FileDescription: Access Protection Filter Driver
892908.290c: \SystemRoot\System32\drivers\mfeavfk.sys:
902908.290c: CreationTime: 2014-08-20T16:13:59.450239300Z
912908.290c: LastWriteTime: 2014-08-20T16:12:49.945263800Z
922908.290c: ChangeTime: 2015-07-02T13:04:37.911510500Z
932908.290c: FileAttributes: 0x20
942908.290c: Size: 0x4c130
952908.290c: NT Headers: 0xf0
962908.290c: Timestamp: 0x52ab8004
972908.290c: Machine: 0x8664 - amd64
982908.290c: Timestamp: 0x52ab8004
992908.290c: Image Version: 0.0
1002908.290c: SizeOfImage: 0x49b00 (301824)
1012908.290c: Resource Dir: 0x48d00 LB 0x718
1022908.290c: ProductName: SYSCORE
1032908.290c: FileVersion: SYSCORE.15.1.0.656
1042908.290c: PrivateBuild: SYSCORE.15.1.0.656 F15,F16,F19
1052908.290c: FileDescription: Anti-Virus File System Filter Driver
1062908.290c: \SystemRoot\System32\drivers\mfefirek.sys:
1072908.290c: CreationTime: 2014-08-20T16:21:46.648961500Z
1082908.290c: LastWriteTime: 2013-12-17T04:56:26.000000000Z
1092908.290c: ChangeTime: 2015-07-02T13:04:37.961532500Z
1102908.290c: FileAttributes: 0x20
1112908.290c: Size: 0x7ef78
1122908.290c: NT Headers: 0xf0
1132908.290c: Timestamp: 0x52ab8072
1142908.290c: Machine: 0x8664 - amd64
1152908.290c: Timestamp: 0x52ab8072
1162908.290c: Image Version: 0.0
1172908.290c: SizeOfImage: 0x7c480 (509056)
1182908.290c: Resource Dir: 0x79b00 LB 0x350
1192908.290c: ProductName: SYSCORE
1202908.290c: FileVersion: SYSCORE.15.1.0.656
1212908.290c: PrivateBuild: SYSCORE.15.1.0.656 F17,F18
1222908.290c: FileDescription: McAfee Core Firewall Engine Driver
1232908.290c: \SystemRoot\System32\drivers\mfehidk.sys:
1242908.290c: CreationTime: 2014-08-20T16:13:56.755085100Z
1252908.290c: LastWriteTime: 2014-08-20T16:12:50.455293000Z
1262908.290c: ChangeTime: 2015-07-02T10:47:48.983398300Z
1272908.290c: FileAttributes: 0x20
1282908.290c: Size: 0xbf278
1292908.290c: NT Headers: 0xf0
1302908.290c: Timestamp: 0x52ab7fc4
1312908.290c: Machine: 0x8664 - amd64
1322908.290c: Timestamp: 0x52ab7fc4
1332908.290c: Image Version: 0.0
1342908.290c: SizeOfImage: 0xbc180 (770432)
1352908.290c: Resource Dir: 0xb9b80 LB 0x348
1362908.290c: ProductName: SYSCORE
1372908.290c: FileVersion: SYSCORE.15.1.0.656
1382908.290c: PrivateBuild: SYSCORE.15.1.0.656 F14,F15,F16,F18,F20
1392908.290c: FileDescription: McAfee Link Driver
1402908.290c: \SystemRoot\System32\drivers\mfewfpk.sys:
1412908.290c: CreationTime: 2014-08-20T16:13:01.926949100Z
1422908.290c: LastWriteTime: 2014-08-20T16:12:51.184334700Z
1432908.290c: ChangeTime: 2015-07-02T10:47:49.201798300Z
1442908.290c: FileAttributes: 0x20
1452908.290c: Size: 0x54070
1462908.290c: NT Headers: 0xf0
1472908.290c: Timestamp: 0x52ab7fd3
1482908.290c: Machine: 0x8664 - amd64
1492908.290c: Timestamp: 0x52ab7fd3
1502908.290c: Image Version: 0.0
1512908.290c: SizeOfImage: 0x51980 (334208)
1522908.290c: Resource Dir: 0x50e80 LB 0x348
1532908.290c: ProductName: SYSCORE
1542908.290c: FileVersion: SYSCORE.15.1.0.656
1552908.290c: PrivateBuild: SYSCORE.15.1.0.656 F17,F18
1562908.290c: FileDescription: Anti-Virus Mini-Firewall Driver
1572908.290c: Calling main()
1582908.290c: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
1592908.290c: SUPR3HardenedMain: Respawn #1
1602908.290c: System32: \Device\HarddiskVolume1\Windows\System32
1612908.290c: WinSxS: \Device\HarddiskVolume1\Windows\winsxs
1622908.290c: KnownDllPath: C:\Windows\system32
1632908.290c: '\Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
1642908.290c: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe)
1652908.290c: supR3HardNtEnableThreadCreation:
1662908.290c: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00000000779cb690 pvNtTerminateThread=00000000779ee100
1672908.290c: supR3HardenedWinDoReSpawn(1): New child 2944.2948 [kernel32].
1682908.290c: supR3HardNtChildGatherData: PebBaseAddress=000007fffffd9000 cbPeb=0x380
1692908.290c: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00000000779a0000 uNtDllChildAddr=00000000779a0000
1702908.290c: supR3HardenedWinSetupChildInit: uLdrInitThunk=00000000779cb690
1712908.290c: supR3HardenedWinSetupChildInit: Start child.
1722908.290c: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 20 ms.
1732908.290c: supR3HardNtChildPurify: Startup delay kludge #1/0: 520 ms, 52 sleeps
1742908.290c: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
1752908.290c: *0000000000000000-fffffffffffeffff 0x0001/0x0000 0x0000000
1762908.290c: *0000000000010000-fffffffffffeffff 0x0004/0x0004 0x0020000
1772908.290c: *0000000000030000-000000000002efff 0x0040/0x0040 0x0020000 !!
1782908.290c: supHardNtVpFreeOrReplacePrivateExecMemory: Freeing exec mem at 0000000000030000 (LB 0x1000, 0000000000030000 LB 0x1000)
1792908.290c: supHardNtVpFreeOrReplacePrivateExecMemory: Free attempt #1 succeeded: 0x0 [0000000000030000/0000000000030000 LB 0/0x1000]
1802908.290c: supHardNtVpFreeOrReplacePrivateExecMemory: QVM after free 0: [0000000000000000]/0000000000030000 LB 0x10000 s=0x10000 ap=0x0 rp=0x00000000000001
1812908.290c: 0000000000031000-0000000000021fff 0x0001/0x0000 0x0000000
1822908.290c: *0000000000040000-000000000003bfff 0x0002/0x0002 0x0040000
1832908.290c: 0000000000044000-0000000000037fff 0x0001/0x0000 0x0000000
1842908.290c: *0000000000050000-000000000004efff 0x0004/0x0004 0x0020000
1852908.290c: 0000000000051000-fffffffffff21fff 0x0001/0x0000 0x0000000
1862908.290c: *0000000000180000-0000000000083fff 0x0000/0x0004 0x0020000
1872908.290c: 000000000027c000-0000000000278fff 0x0104/0x0004 0x0020000
1882908.290c: 000000000027f000-000000000027dfff 0x0004/0x0004 0x0020000
1892908.290c: 0000000000280000-ffffffff88b5ffff 0x0001/0x0000 0x0000000
1902908.290c: *00000000779a0000-00000000779a0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
1912908.290c: 00000000779a1000-0000000077a9dfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
1922908.290c: 0000000077a9e000-0000000077accfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
1932908.290c: 0000000077acd000-0000000077ad4fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
1942908.290c: 0000000077ad5000-0000000077ad5fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
1952908.290c: 0000000077ad6000-0000000077ad8fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
1962908.290c: 0000000077ad9000-0000000077b47fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
1972908.290c: 0000000077b48000-00000000706affff 0x0001/0x0000 0x0000000
1982908.290c: *000000007efe0000-000000007dfdffff 0x0000/0x0002 0x0020000
1992908.290c: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
2002908.290c: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
2012908.290c: 000000007fff0000-ffffffffc0f1ffff 0x0001/0x0000 0x0000000
2022908.290c: *000000013f0c0000-000000013f0c0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2032908.290c: 000000013f0c1000-000000013f144fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2042908.290c: 000000013f145000-000000013f145fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2052908.290c: 000000013f146000-000000013f183fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2062908.290c: 000000013f184000-000000013f184fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2072908.290c: 000000013f185000-000000013f185fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2082908.290c: 000000013f186000-000000013f187fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2092908.290c: 000000013f188000-000000013f188fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2102908.290c: 000000013f189000-000000013f189fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2112908.290c: 000000013f18a000-000000013f18dfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2122908.290c: 000000013f18e000-000000013f1c6fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2132908.290c: 000000013f1c7000-fffff8037e6cdfff 0x0001/0x0000 0x0000000
2142908.290c: *000007feffcc0000-000007feffcc0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\apisetschema.dll
2152908.290c: 000007feffcc1000-000007fdff9d1fff 0x0001/0x0000 0x0000000
2162908.290c: *000007fffffb0000-000007fffff8cfff 0x0002/0x0002 0x0040000
2172908.290c: 000007fffffd3000-000007fffffccfff 0x0001/0x0000 0x0000000
2182908.290c: *000007fffffd9000-000007fffffd7fff 0x0004/0x0004 0x0020000
2192908.290c: 000007fffffda000-000007fffffd5fff 0x0001/0x0000 0x0000000
2202908.290c: *000007fffffde000-000007fffffdbfff 0x0004/0x0004 0x0020000
2212908.290c: *000007fffffe0000-000007fffffcffff 0x0001/0x0002 0x0020000
2222908.290c: apisetschema.dll: timestamp 0x5507b7b1 (rc=VINF_SUCCESS)
2232908.290c: VirtualBox.exe: timestamp 0x555ae68e (rc=VINF_SUCCESS)
2242908.290c: '\Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
2252908.290c: '\Device\HarddiskVolume1\Windows\System32\apisetschema.dll' has no imports
2262908.290c: '\Device\HarddiskVolume1\Windows\System32\ntdll.dll' has no imports
2272908.290c: supR3HardNtChildPurify: cFixes=1 g_fSupAdversaries=0x20 cPatchCount=0
2282908.290c: supR3HardNtChildPurify: Startup delay kludge #1/1: 515 ms, 51 sleeps
2292908.290c: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
2302908.290c: *0000000000000000-fffffffffffeffff 0x0001/0x0000 0x0000000
2312908.290c: *0000000000010000-fffffffffffeffff 0x0004/0x0004 0x0020000
2322908.290c: 0000000000030000-000000000001ffff 0x0001/0x0000 0x0000000
2332908.290c: *0000000000040000-000000000003bfff 0x0002/0x0002 0x0040000
2342908.290c: 0000000000044000-0000000000037fff 0x0001/0x0000 0x0000000
2352908.290c: *0000000000050000-000000000004efff 0x0004/0x0004 0x0020000
2362908.290c: 0000000000051000-fffffffffff21fff 0x0001/0x0000 0x0000000
2372908.290c: *0000000000180000-0000000000083fff 0x0000/0x0004 0x0020000
2382908.290c: 000000000027c000-0000000000278fff 0x0104/0x0004 0x0020000
2392908.290c: 000000000027f000-000000000027dfff 0x0004/0x0004 0x0020000
2402908.290c: 0000000000280000-ffffffff88b5ffff 0x0001/0x0000 0x0000000
2412908.290c: *00000000779a0000-00000000779a0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2422908.290c: 00000000779a1000-0000000077a9dfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2432908.290c: 0000000077a9e000-0000000077accfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2442908.290c: 0000000077acd000-0000000077ad4fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2452908.290c: 0000000077ad5000-0000000077ad5fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2462908.290c: 0000000077ad6000-0000000077ad6fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2472908.290c: 0000000077ad7000-0000000077ad8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2482908.290c: 0000000077ad9000-0000000077b47fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\ntdll.dll
2492908.290c: 0000000077b48000-00000000706affff 0x0001/0x0000 0x0000000
2502908.290c: *000000007efe0000-000000007dfdffff 0x0000/0x0002 0x0020000
2512908.290c: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
2522908.290c: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
2532908.290c: 000000007fff0000-ffffffffc0f1ffff 0x0001/0x0000 0x0000000
2542908.290c: *000000013f0c0000-000000013f0c0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2552908.290c: 000000013f0c1000-000000013f144fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2562908.290c: 000000013f145000-000000013f145fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2572908.290c: 000000013f146000-000000013f183fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2582908.290c: 000000013f184000-000000013f18dfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2592908.290c: 000000013f18e000-000000013f1c6fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe
2602908.290c: 000000013f1c7000-fffff8037e6cdfff 0x0001/0x0000 0x0000000
2612908.290c: *000007feffcc0000-000007feffcc0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume1\Windows\System32\apisetschema.dll
2622908.290c: 000007feffcc1000-000007fdff9d1fff 0x0001/0x0000 0x0000000
2632908.290c: *000007fffffb0000-000007fffff8cfff 0x0002/0x0002 0x0040000
2642908.290c: 000007fffffd3000-000007fffffccfff 0x0001/0x0000 0x0000000
2652908.290c: *000007fffffd9000-000007fffffd7fff 0x0004/0x0004 0x0020000
2662908.290c: 000007fffffda000-000007fffffd5fff 0x0001/0x0000 0x0000000
2672908.290c: *000007fffffde000-000007fffffdbfff 0x0004/0x0004 0x0020000
2682908.290c: *000007fffffe0000-000007fffffcffff 0x0001/0x0002 0x0020000
2692908.290c: supR3HardNtChildPurify: Done after 1175 ms and 1 fixes (loop #1).
2702908.290c: supR3HardNtEnableThreadCreation:
2712944.2948: Log file opened: 4.2.30r100415 g_hStartupLog=0000000000000004 g_uNtVerCombined=0x611db110
2722944.2948: supR3HardenedVmProcessInit: uNtDllAddr=00000000779a0000
2732944.2948: ntdll.dll: timestamp 0x5507b864 (rc=VINF_SUCCESS)
2742944.2948: New simple heap: #1 0000000000280000 LB 0x400000 (for 1736704 allocation)
2752944.2948: System32: \Device\HarddiskVolume1\Windows\System32
2762944.2948: WinSxS: \Device\HarddiskVolume1\Windows\winsxs
2772944.2948: KnownDllPath: C:\Windows\system32
2782944.2948: supR3HardenedVmProcessInit: Opening vboxdrv stub...
2792944.2948: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk...
2802944.2948: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk...
2812944.2948: Registered Dll notification callback with NTDLL.
2822944.2948: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume1\Windows\System32\kernel32.dll)
2832944.2948: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume1\Windows\System32\kernel32.dll
2842944.2948: supR3HardenedMonitor_LdrLoadDll: pName=C:\Windows\system32\kernel32.dll (Input=kernel32.dll, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000000000:<flags> [calling]
2852944.2948: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume1\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
2862944.2948: supR3HardenedDllNotificationCallback: load 0000000077880000 LB 0x0011f000 C:\Windows\system32\kernel32.dll [fFlags=0x0]
2872944.2948: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume1\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
2882944.2948: supR3HardenedDllNotificationCallback: load 000007fefd9c0000 LB 0x0006c000 C:\Windows\system32\KERNELBASE.dll [fFlags=0x0]
2892944.2948: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume1\Windows\System32\KernelBase.dll)
2902944.2948: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume1\Windows\System32\KernelBase.dll
2912944.2948: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=0000000077880000 'C:\Windows\system32\kernel32.dll'
2922944.2948: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00000000779cb690 pvNtTerminateThread=00000000779ee100
2932908.290c: supR3HardNtChildWaitFor: Found expected request 1 (CloseEvents) after 60 ms.
2942944.2948: \SystemRoot\System32\ntdll.dll:
2952944.2948: CreationTime: 2015-04-27T04:23:01.494643100Z
2962944.2948: LastWriteTime: 2015-03-17T05:19:37.641771700Z
2972944.2948: ChangeTime: 2015-07-02T13:04:37.739428500Z
2982944.2948: FileAttributes: 0x20
2992944.2948: Size: 0x1a5da0
3002944.2948: NT Headers: 0xe0
3012944.2948: Timestamp: 0x5507b864
3022944.2948: Machine: 0x8664 - amd64
3032944.2948: Timestamp: 0x5507b864
3042944.2948: Image Version: 6.1
3052944.2948: SizeOfImage: 0x1a8000 (1736704)
3062944.2948: Resource Dir: 0x14c000 LB 0x5a028
3072944.2948: ProductName: Microsoft® Windows® Operating System
3082944.2948: ProductVersion: 6.1.7601.18798
3092944.2948: FileVersion: 6.1.7601.18798 (win7sp1_gdr.150316-1654)
3102944.2948: FileDescription: NT Layer DLL
3112944.2948: \SystemRoot\System32\kernel32.dll:
3122944.2948: CreationTime: 2015-06-17T05:27:08.277509700Z
3132944.2948: LastWriteTime: 2015-05-09T03:26:36.862000000Z
3142944.2948: ChangeTime: 2015-07-02T13:04:37.769442600Z
3152944.2948: FileAttributes: 0x20
3162944.2948: Size: 0x11be00
3172944.2948: NT Headers: 0xe8
3182944.2948: Timestamp: 0x554d7df0
3192944.2948: Machine: 0x8664 - amd64
3202944.2948: Timestamp: 0x554d7df0
3212944.2948: Image Version: 6.1
3222944.2948: SizeOfImage: 0x11f000 (1175552)
3232944.2948: Resource Dir: 0x116000 LB 0x528
3242944.2948: ProductName: Microsoft® Windows® Operating System
3252944.2948: ProductVersion: 6.1.7601.18847
3262944.2948: FileVersion: 6.1.7601.18847 (win7sp1_gdr.150508-1512)
3272944.2948: FileDescription: Windows NT BASE API Client DLL
3282944.2948: \SystemRoot\System32\KernelBase.dll:
3292944.2948: CreationTime: 2015-06-17T05:27:08.424509700Z
3302944.2948: LastWriteTime: 2015-05-09T03:26:36.862000000Z
3312944.2948: ChangeTime: 2015-07-02T13:04:37.789452000Z
3322944.2948: FileAttributes: 0x20
3332944.2948: Size: 0x67c00
3342944.2948: NT Headers: 0xe8
3352944.2948: Timestamp: 0x554d7df1
3362944.2948: Machine: 0x8664 - amd64
3372944.2948: Timestamp: 0x554d7df1
3382944.2948: Image Version: 6.1
3392944.2948: SizeOfImage: 0x6c000 (442368)
3402944.2948: Resource Dir: 0x6a000 LB 0x530
3412944.2948: ProductName: Microsoft® Windows® Operating System
3422944.2948: ProductVersion: 6.1.7601.18847
3432944.2948: FileVersion: 6.1.7601.18847 (win7sp1_gdr.150508-1512)
3442944.2948: FileDescription: Windows NT BASE API Client DLL
3452944.2948: \SystemRoot\System32\apisetschema.dll:
3462944.2948: CreationTime: 2015-04-27T04:23:09.731443100Z
3472944.2948: LastWriteTime: 2015-03-17T05:11:07.952000000Z
3482944.2948: ChangeTime: 2015-07-02T13:04:37.794454400Z
3492944.2948: FileAttributes: 0x20
3502944.2948: Size: 0x1a00
3512944.2948: NT Headers: 0xc0
3522944.2948: Timestamp: 0x5507b7b1
3532944.2948: Machine: 0x8664 - amd64
3542944.2948: Timestamp: 0x5507b7b1
3552944.2948: Image Version: 6.1
3562944.2948: SizeOfImage: 0x50000 (327680)
3572944.2948: Resource Dir: 0x30000 LB 0x3f8
3582944.2948: ProductName: Microsoft® Windows® Operating System
3592944.2948: ProductVersion: 6.1.7601.18798
3602944.2948: FileVersion: 6.1.7601.18798 (win7sp1_gdr.150316-1654)
3612944.2948: FileDescription: ApiSet Schema DLL
3622944.2948: NtOpenDirectoryObject failed on \Driver: 0xc0000022
3632944.2948: supR3HardenedWinFindAdversaries: 0x2020
3642944.2948: \SystemRoot\System32\drivers\mfeapfk.sys:
3652944.2948: CreationTime: 2014-08-20T16:14:00.261285700Z
3662944.2948: LastWriteTime: 2014-08-20T16:12:49.777254200Z
3672944.2948: ChangeTime: 2015-07-02T13:04:37.851482300Z
3682944.2948: FileAttributes: 0x20
3692944.2948: Size: 0x2c030
3702944.2948: NT Headers: 0xe8
3712944.2948: Timestamp: 0x52ab7fef
3722944.2948: Machine: 0x8664 - amd64
3732944.2948: Timestamp: 0x52ab7fef
3742944.2948: Image Version: 0.0
3752944.2948: SizeOfImage: 0x29d00 (171264)
3762944.2948: Resource Dir: 0x29500 LB 0x340
3772944.2948: ProductName: SYSCORE
3782944.2948: FileVersion: SYSCORE.15.1.0.656
3792944.2948: PrivateBuild: SYSCORE.15.1.0.656 F16
3802944.2948: FileDescription: Access Protection Filter Driver
3812944.2948: \SystemRoot\System32\drivers\mfeavfk.sys:
3822944.2948: CreationTime: 2014-08-20T16:13:59.450239300Z
3832944.2948: LastWriteTime: 2014-08-20T16:12:49.945263800Z
3842944.2948: ChangeTime: 2015-07-02T13:04:37.911510500Z
3852944.2948: FileAttributes: 0x20
3862944.2948: Size: 0x4c130
3872944.2948: NT Headers: 0xf0
3882944.2948: Timestamp: 0x52ab8004
3892944.2948: Machine: 0x8664 - amd64
3902944.2948: Timestamp: 0x52ab8004
3912944.2948: Image Version: 0.0
3922944.2948: SizeOfImage: 0x49b00 (301824)
3932944.2948: Resource Dir: 0x48d00 LB 0x718
3942944.2948: ProductName: SYSCORE
3952944.2948: FileVersion: SYSCORE.15.1.0.656
3962944.2948: PrivateBuild: SYSCORE.15.1.0.656 F15,F16,F19
3972944.2948: FileDescription: Anti-Virus File System Filter Driver
3982944.2948: \SystemRoot\System32\drivers\mfefirek.sys:
3992944.2948: CreationTime: 2014-08-20T16:21:46.648961500Z
4002944.2948: LastWriteTime: 2013-12-17T04:56:26.000000000Z
4012944.2948: ChangeTime: 2015-07-02T13:04:37.961532500Z
4022944.2948: FileAttributes: 0x20
4032944.2948: Size: 0x7ef78
4042944.2948: NT Headers: 0xf0
4052944.2948: Timestamp: 0x52ab8072
4062944.2948: Machine: 0x8664 - amd64
4072944.2948: Timestamp: 0x52ab8072
4082944.2948: Image Version: 0.0
4092944.2948: SizeOfImage: 0x7c480 (509056)
4102944.2948: Resource Dir: 0x79b00 LB 0x350
4112944.2948: ProductName: SYSCORE
4122944.2948: FileVersion: SYSCORE.15.1.0.656
4132944.2948: PrivateBuild: SYSCORE.15.1.0.656 F17,F18
4142944.2948: FileDescription: McAfee Core Firewall Engine Driver
4152944.2948: \SystemRoot\System32\drivers\mfehidk.sys:
4162944.2948: CreationTime: 2014-08-20T16:13:56.755085100Z
4172944.2948: LastWriteTime: 2014-08-20T16:12:50.455293000Z
4182944.2948: ChangeTime: 2015-07-02T10:47:48.983398300Z
4192944.2948: FileAttributes: 0x20
4202944.2948: Size: 0xbf278
4212944.2948: NT Headers: 0xf0
4222944.2948: Timestamp: 0x52ab7fc4
4232944.2948: Machine: 0x8664 - amd64
4242944.2948: Timestamp: 0x52ab7fc4
4252944.2948: Image Version: 0.0
4262944.2948: SizeOfImage: 0xbc180 (770432)
4272944.2948: Resource Dir: 0xb9b80 LB 0x348
4282944.2948: ProductName: SYSCORE
4292944.2948: FileVersion: SYSCORE.15.1.0.656
4302944.2948: PrivateBuild: SYSCORE.15.1.0.656 F14,F15,F16,F18,F20
4312944.2948: FileDescription: McAfee Link Driver
4322944.2948: \SystemRoot\System32\drivers\mfewfpk.sys:
4332944.2948: CreationTime: 2014-08-20T16:13:01.926949100Z
4342944.2948: LastWriteTime: 2014-08-20T16:12:51.184334700Z
4352944.2948: ChangeTime: 2015-07-02T10:47:49.201798300Z
4362944.2948: FileAttributes: 0x20
4372944.2948: Size: 0x54070
4382944.2948: NT Headers: 0xf0
4392944.2948: Timestamp: 0x52ab7fd3
4402944.2948: Machine: 0x8664 - amd64
4412944.2948: Timestamp: 0x52ab7fd3
4422944.2948: Image Version: 0.0
4432944.2948: SizeOfImage: 0x51980 (334208)
4442944.2948: Resource Dir: 0x50e80 LB 0x348
4452944.2948: ProductName: SYSCORE
4462944.2948: FileVersion: SYSCORE.15.1.0.656
4472944.2948: PrivateBuild: SYSCORE.15.1.0.656 F17,F18
4482944.2948: FileDescription: Anti-Virus Mini-Firewall Driver
4492944.2948: \SystemRoot\System32\drivers\dgmaster.sys:
4502944.2948: CreationTime: 2014-08-20T16:23:57.605451800Z
4512944.2948: LastWriteTime: 2013-06-11T08:34:28.000000000Z
4522944.2948: ChangeTime: 2014-08-20T16:23:57.885467800Z
4532944.2948: FileAttributes: 0x20
4542944.2948: Size: 0x1556f0
4552944.2948: NT Headers: 0x108
4562944.2948: Timestamp: 0x51b766a9
4572944.2948: Machine: 0x8664 - amd64
4582944.2948: Timestamp: 0x51b766a9
4592944.2948: Image Version: 6.1
4602944.2948: SizeOfImage: 0x16a000 (1482752)
4612944.2948: Resource Dir: 0x12d000 LB 0x35f80
4622944.2948: Calling main()
4632944.2948: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
4642944.2948: '\Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
4652944.2948: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume1\Program Files\Oracle\VirtualBox\VirtualBox.exe)
4662944.2948: SUPR3HardenedMain: Respawn #2
4672944.2948: supR3HardNtEnableThreadCreation:
4682944.2948: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume1\Windows\System32\apphelp.dll)
4692944.2948: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume1\Windows\System32\apphelp.dll
4702944.2948: supR3HardenedMonitor_LdrLoadDll: pName=C:\Windows\system32\apphelp.dll (rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000000000:<flags> [calling]
4712944.2948: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume1\Windows\System32\apphelp.dll [lacks WinVerifyTrust]
4722944.2948: supR3HardenedDllNotificationCallback: load 000007fefd590000 LB 0x00057000 C:\Windows\system32\apphelp.dll [fFlags=0x0]
4732944.2948: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume1\Windows\System32\apphelp.dll [lacks WinVerifyTrust]
4742944.2948: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=000007fefd590000 'C:\Windows\system32\apphelp.dll'
4752944.2948: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00000000779cb690 pvNtTerminateThread=00000000779ee100
4762944.2948: supR3HardenedWinDoReSpawn(2): New child 29ac.29b0 [kernel32].
4772944.2948: supR3HardNtChildGatherData: PebBaseAddress=000007fffffdd000 cbPeb=0x380
4782944.2948: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00000000779a0000 uNtDllChildAddr=00000000779a0000
4792944.2948: supR3HardenedWinSetupChildInit: uLdrInitThunk=00000000779cb690
4802944.2948: supR3HardenedWinSetupChildInit: Start child.
4812944.2948: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 30 ms.
4822944.2948: supR3HardNtChildPurify: Startup delay kludge #1/0: 515 ms, 51 sleeps
4832944.2948: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
4842944.2948: *0000000000000000-fffffffffffeffff 0x0001/0x0000 0x0000000
4852944.2948: *0000000000010000-fffffffffffeffff 0x0004/0x0004 0x0020000
4862944.2948: *0000000000030000-000000000002efff 0x0040/0x0040 0x0020000 !!
4872944.2948: supHardNtVpFreeOrReplacePrivateExecMemory: Replacing exec mem at 0000000000030000 (LB 0x1000, 0000000000030000 LB 0x1000)
4882944.2948: supHardNtVpFreeOrReplacePrivateExecMemory: Free attempt #1 succeeded: 0x0 [0000000000030000/0000000000030000 LB 0/0x1000]
4892944.2948: supHardNtVpFreeOrReplacePrivateExecMemory: QVM after free 0: [0000000000000000]/0000000000030000 LB 0x10000 s=0x10000 ap=0x0 rp=0x00000000000001
4902944.2948: Error (rc=-5673):
4912944.2948: NtAllocateVirtualMemory (0000000000030000 LB 0x1000) failed with rcNt=0xc0000018 allocating replacement memory for working around buggy protection software. See VBoxStartup.log for more details

© 2024 Oracle Support Privacy / Do Not Sell My Info Terms of Use Trademark Policy Automated Access Etiquette