Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 9164.96cc: Log file opened: 6.1.16r140961 g_hStartupLog=0000000000000074 g_uNtVerCombined=0xa04a6100
- 9164.96cc: \SystemRoot\System32\ntdll.dll:
- 9164.96cc: CreationTime: 2020-12-10T19:02:25.584058600Z
- 9164.96cc: LastWriteTime: 2020-12-10T19:02:25.724650800Z
- 9164.96cc: ChangeTime: 2021-01-13T17:02:56.287236300Z
- 9164.96cc: FileAttributes: 0x20
- 9164.96cc: Size: 0x1ee738
- 9164.96cc: NT Headers: 0xe8
- 9164.96cc: Timestamp: 0x27bfa5f0
- 9164.96cc: Machine: 0x8664 - amd64
- 9164.96cc: Timestamp: 0x27bfa5f0
- 9164.96cc: Image Version: 10.0
- 9164.96cc: SizeOfImage: 0x1f6000 (2056192)
- 9164.96cc: Resource Dir: 0x185000 LB 0x6fdc8
- 9164.96cc: [Version info resource found at 0xd8! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9164.96cc: [Raw version resource data: 0x1850f0 LB 0x380, codepage 0x0 (reserved 0x0)]
- 9164.96cc: ProductName: Microsoft® Windows® Operating System
- 9164.96cc: ProductVersion: 10.0.19041.662
- 9164.96cc: FileVersion: 10.0.19041.662 (WinBuild.160101.0800)
- 9164.96cc: FileDescription: NT Layer DLL
- 9164.96cc: \SystemRoot\System32\kernel32.dll:
- 9164.96cc: CreationTime: 2020-12-10T19:01:37.103168400Z
- 9164.96cc: LastWriteTime: 2020-12-10T19:01:37.212531800Z
- 9164.96cc: ChangeTime: 2021-01-13T17:02:52.941999200Z
- 9164.96cc: FileAttributes: 0x20
- 9164.96cc: Size: 0xbac30
- 9164.96cc: NT Headers: 0xe8
- 9164.96cc: Timestamp: 0x4b3a140f
- 9164.96cc: Machine: 0x8664 - amd64
- 9164.96cc: Timestamp: 0x4b3a140f
- 9164.96cc: Image Version: 10.0
- 9164.96cc: SizeOfImage: 0xbd000 (774144)
- 9164.96cc: Resource Dir: 0xbb000 LB 0x520
- 9164.96cc: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9164.96cc: [Raw version resource data: 0xbb0b0 LB 0x3a4, codepage 0x0 (reserved 0x0)]
- 9164.96cc: ProductName: Microsoft® Windows® Operating System
- 9164.96cc: ProductVersion: 10.0.19041.662
- 9164.96cc: FileVersion: 10.0.19041.662 (WinBuild.160101.0800)
- 9164.96cc: FileDescription: Windows NT BASE API Client DLL
- 9164.96cc: \SystemRoot\System32\KernelBase.dll:
- 9164.96cc: CreationTime: 2020-12-10T19:02:28.976018700Z
- 9164.96cc: LastWriteTime: 2020-12-10T19:02:29.085324600Z
- 9164.96cc: ChangeTime: 2021-01-13T17:02:56.287236300Z
- 9164.96cc: FileAttributes: 0x20
- 9164.96cc: Size: 0x2c9798
- 9164.96cc: NT Headers: 0xf0
- 9164.96cc: Timestamp: 0xec58f015
- 9164.96cc: Machine: 0x8664 - amd64
- 9164.96cc: Timestamp: 0xec58f015
- 9164.96cc: Image Version: 10.0
- 9164.96cc: SizeOfImage: 0x2c9000 (2920448)
- 9164.96cc: Resource Dir: 0x2a0000 LB 0x548
- 9164.96cc: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9164.96cc: [Raw version resource data: 0x2a00b0 LB 0x3bc, codepage 0x0 (reserved 0x0)]
- 9164.96cc: ProductName: Microsoft® Windows® Operating System
- 9164.96cc: ProductVersion: 10.0.19041.662
- 9164.96cc: FileVersion: 10.0.19041.662 (WinBuild.160101.0800)
- 9164.96cc: FileDescription: Windows NT BASE API Client DLL
- 9164.96cc: \SystemRoot\System32\apisetschema.dll:
- 9164.96cc: CreationTime: 2019-12-07T09:08:13.518339400Z
- 9164.96cc: LastWriteTime: 2019-12-07T09:08:13.518339400Z
- 9164.96cc: ChangeTime: 2021-01-13T17:02:52.754478000Z
- 9164.96cc: FileAttributes: 0x20
- 9164.96cc: Size: 0x1f538
- 9164.96cc: NT Headers: 0xd0
- 9164.96cc: Timestamp: 0x31288ce0
- 9164.96cc: Machine: 0x8664 - amd64
- 9164.96cc: Timestamp: 0x31288ce0
- 9164.96cc: Image Version: 10.0
- 9164.96cc: SizeOfImage: 0x20000 (131072)
- 9164.96cc: Resource Dir: 0x1f000 LB 0x408
- 9164.96cc: [Version info resource found at 0x48! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9164.96cc: [Raw version resource data: 0x1f060 LB 0x3a8, codepage 0x0 (reserved 0x0)]
- 9164.96cc: ProductName: Microsoft® Windows® Operating System
- 9164.96cc: ProductVersion: 10.0.19041.1
- 9164.96cc: FileVersion: 10.0.19041.1 (WinBuild.160101.0800)
- 9164.96cc: FileDescription: ApiSet Schema DLL
- 9164.96cc: NtOpenDirectoryObject failed on \Driver: 0xc0000022
- 9164.96cc: supR3HardenedWinFindAdversaries: 0x0
- 9164.96cc: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox'
- 9164.96cc: Calling main()
- 9164.96cc: SUPR3HardenedMain: pszProgName=VirtualBoxVM fFlags=0x2
- 9164.96cc: supR3HardenedWinInitAppBin(0x2): '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox'
- 9164.96cc: SUPR3HardenedMain: Respawn #1
- 9164.96cc: System32: \Device\HarddiskVolume2\Windows\System32
- 9164.96cc: WinSxS: \Device\HarddiskVolume2\Windows\WinSxS
- 9164.96cc: KnownDllPath: C:\WINDOWS\System32
- 9164.96cc: supR3HardenedWinInit: Performing a limited self purification...
- 9164.96cc: supHardNtVpScanVirtualMemory: enmKind=SELF_PURIFICATION
- 9164.96cc: *0000000000000000-0000000000ceffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000000cf0000-0000000000cfffff 0x0004/0x0004 0x0040000
- 9164.96cc: 0000000000d00000-0000000000d0ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000000d10000-0000000000d2cfff 0x0002/0x0002 0x0040000
- 9164.96cc: 0000000000d2d000-0000000000d2ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000000d30000-0000000000d33fff 0x0002/0x0002 0x0040000
- 9164.96cc: 0000000000d34000-0000000000d3ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000000d40000-0000000000d41fff 0x0004/0x0004 0x0020000
- 9164.96cc: 0000000000d42000-0000000000d4ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000000d50000-0000000000d51fff 0x0004/0x0004 0x0020000
- 9164.96cc: 0000000000d52000-0000000000d81fff 0x0000/0x0004 0x0020000
- 9164.96cc: 0000000000d82000-0000000000dfffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000000e00000-0000000000f3afff 0x0000/0x0004 0x0020000
- 9164.96cc: 0000000000f3b000-0000000000f3dfff 0x0004/0x0004 0x0020000
- 9164.96cc: 0000000000f3e000-0000000000ffffff 0x0000/0x0004 0x0020000
- 9164.96cc: *0000000001000000-00000000010b8fff 0x0000/0x0004 0x0020000
- 9164.96cc: 00000000010b9000-00000000010bbfff 0x0104/0x0004 0x0020000
- 9164.96cc: 00000000010bc000-00000000010fffff 0x0004/0x0004 0x0020000
- 9164.96cc: *0000000001100000-00000000011c8fff 0x0002/0x0002 0x0040000
- 9164.96cc: 00000000011c9000-000000000125ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000001260000-0000000001265fff 0x0004/0x0004 0x0020000
- 9164.96cc: 0000000001266000-000000000135ffff 0x0000/0x0004 0x0020000
- 9164.96cc: *0000000001360000-000000000137cfff 0x0004/0x0004 0x0020000
- 9164.96cc: 000000000137d000-000000000145ffff 0x0000/0x0004 0x0020000
- 9164.96cc: *0000000001460000-000000000146efff 0x0004/0x0004 0x0020000
- 9164.96cc: 000000000146f000-000000000146ffff 0x0000/0x0004 0x0020000
- 9164.96cc: *0000000001470000-0000000001470fff 0x0000/0x0004 0x0020000
- 9164.96cc: 0000000001471000-0000000001667fff 0x0004/0x0004 0x0020000
- 9164.96cc: 0000000001668000-0000000001668fff 0x0000/0x0004 0x0020000
- 9164.96cc: 0000000001669000-000000007ffdffff 0x0001/0x0000 0x0000000
- 9164.96cc: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000
- 9164.96cc: 000000007ffe1000-000000007ffe9fff 0x0001/0x0000 0x0000000
- 9164.96cc: *000000007ffea000-000000007ffeafff 0x0002/0x0002 0x0020000
- 9164.96cc: 000000007ffeb000-00007ff417d7ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff417d80000-00007ff417d84fff 0x0002/0x0002 0x0040000
- 9164.96cc: 00007ff417d85000-00007ff417e7ffff 0x0000/0x0002 0x0040000
- 9164.96cc: *00007ff417e80000-00007ff517e9ffff 0x0000/0x0004 0x0020000
- 9164.96cc: *00007ff517ea0000-00007ff519e9ffff 0x0000/0x0004 0x0020000
- 9164.96cc: 00007ff519ea0000-00007ff519ea0fff 0x0004/0x0004 0x0020000
- 9164.96cc: 00007ff519ea1000-00007ff519eaffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff519eb0000-00007ff519eb0fff 0x0002/0x0002 0x0040000
- 9164.96cc: 00007ff519eb1000-00007ff519ebffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff519ec0000-00007ff519ee2fff 0x0002/0x0002 0x0040000
- 9164.96cc: 00007ff519ee3000-00007ff64f93ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff64f940000-00007ff64f940fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64f941000-00007ff64f9b7fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64f9b8000-00007ff64f9b8fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64f9b9000-00007ff64fa01fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa02000-00007ff64fa04fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa05000-00007ff64fa07fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa08000-00007ff64fa0afff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa0b000-00007ff64fa0bfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa0c000-00007ff64fa0dfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa0e000-00007ff64fa0efff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa0f000-00007ff64fa57fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa58000-00007ff963dcffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff963dd0000-00007ff963dd0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 9164.96cc: 00007ff963dd1000-00007ff963ee2fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 9164.96cc: 00007ff963ee3000-00007ff96405afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 9164.96cc: 00007ff96405b000-00007ff96405efff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 9164.96cc: 00007ff96405f000-00007ff96405ffff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 9164.96cc: 00007ff964060000-00007ff964098fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 9164.96cc: 00007ff964099000-00007ff96643ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff966440000-00007ff966440fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 9164.96cc: 00007ff966441000-00007ff9664befff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 9164.96cc: 00007ff9664bf000-00007ff9664f1fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 9164.96cc: 00007ff9664f2000-00007ff9664f2fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 9164.96cc: 00007ff9664f3000-00007ff9664f3fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 9164.96cc: 00007ff9664f4000-00007ff9664fcfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 9164.96cc: 00007ff9664fd000-00007ff96668ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff966690000-00007ff966690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966691000-00007ff9667abfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff9667ac000-00007ff9667f4fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff9667f5000-00007ff9667f5fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff9667f6000-00007ff9667f7fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff9667f8000-00007ff966800fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966801000-00007ff966885fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966886000-00007ffffffeffff 0x0001/0x0000 0x0000000
- 9164.96cc: kernel32.dll: timestamp 0x4b3a140f (rc=VINF_SUCCESS)
- 9164.96cc: kernelbase.dll: timestamp 0xec58f015 (rc=VINF_SUCCESS)
- 9164.96cc: VirtualBoxVM.exe: timestamp 0x5f89bd71 (rc=VINF_SUCCESS)
- 9164.96cc: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe: Signature #1/2: info status: 24202
- 9164.96cc: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe' has no imports
- 9164.96cc: '\Device\HarddiskVolume2\Windows\System32\ntdll.dll' has no imports
- 9164.96cc: supR3HardenedWinInit: SUPHARDNTVPKIND_SELF_PURIFICATION_LIMITED -> VINF_SUCCESS, cFixes=0
- 9164.96cc: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe: Signature #1/2: info status: 24202
- 9164.96cc: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe' has no imports
- 9164.96cc: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe)
- 9164.96cc: supR3HardNtEnableThreadCreationEx:
- 9164.96cc: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ff966704970 pvNtTerminateThread=00007ff96672ca00
- 9164.96cc: supR3HardenedWinDoReSpawn(1): New child 9464.7db8 [kernel32].
- 9164.96cc: supR3HardNtChildGatherData: PebBaseAddress=00000000010ac000 cbPeb=0x388
- 9164.96cc: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ff966690000 uNtDllChildAddr=00007ff966690000
- 9164.96cc: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ff966704970
- 9164.96cc: supR3HardenedWinSetupChildInit: Initial context:
- rax=0000000000000000 rbx=0000000000000000 rcx=00007ff64f947900 rdx=00000000010ac000
- rsi=0000000000000000 rdi=0000000000000000 r8 =0000000000000000 r9 =0000000000000000
- r10=0000000000000000 r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000 P1=0000000000000000 P2=0000000000000000
- rip=00007ff9666dd0b0 rsp=000000000133f7f8 rbp=0000000000000000 ctxflags=0010001b
- cs=0033 ss=002b ds=0000 es=0000 fs=0000 gs=0000 eflags=00000200 mxcrx=00001f80
- P3=0000000000000000 P4=0000000000000000 P5=0000000000000000 P6=0000000000000000
- dr0=0000000000000000 dr1=0000000000000000 dr2=0000000000000000 dr3=0000000000000000
- dr6=0000000000000000 dr7=0000000000000000 vcr=0000000000000000 dcr=0000000000000000
- lbt=0000000000000000 lbf=0000000000000000 lxt=0000000000000000 lxf=0000000000000000
- 9164.96cc: supR3HardenedWinSetupChildInit: Start child.
- 9164.96cc: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
- 9164.96cc: supR3HardNtChildPurify: Startup delay kludge #1/0: 264 ms, 17 sleeps
- 9164.96cc: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
- 9164.96cc: *0000000000000000-0000000000feffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000000ff0000-0000000000ff3fff 0x0002/0x0002 0x0040000
- 9164.96cc: 0000000000ff4000-0000000000ffffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000001000000-00000000010abfff 0x0000/0x0004 0x0020000
- 9164.96cc: 00000000010ac000-00000000010aefff 0x0004/0x0004 0x0020000
- 9164.96cc: 00000000010af000-00000000011fffff 0x0000/0x0004 0x0020000
- 9164.96cc: *0000000001200000-000000000121ffff 0x0004/0x0004 0x0020000
- 9164.96cc: *0000000001220000-000000000123cfff 0x0002/0x0002 0x0040000
- 9164.96cc: 000000000123d000-000000000123ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *0000000001240000-000000000133afff 0x0000/0x0004 0x0020000
- 9164.96cc: 000000000133b000-000000000133dfff 0x0104/0x0004 0x0020000
- 9164.96cc: 000000000133e000-000000000133ffff 0x0004/0x0004 0x0020000
- 9164.96cc: *0000000001340000-0000000001341fff 0x0004/0x0004 0x0020000
- 9164.96cc: 0000000001342000-000000007ffdffff 0x0001/0x0000 0x0000000
- 9164.96cc: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000
- 9164.96cc: 000000007ffe1000-000000007ffe9fff 0x0001/0x0000 0x0000000
- 9164.96cc: *000000007ffea000-000000007ffeafff 0x0002/0x0002 0x0020000
- 9164.96cc: 000000007ffeb000-00007ff555f6ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff555f70000-00007ff555f70fff 0x0002/0x0002 0x0040000
- 9164.96cc: 00007ff555f71000-00007ff555f7ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff555f80000-00007ff555fa2fff 0x0002/0x0002 0x0040000
- 9164.96cc: 00007ff555fa3000-00007ff64f93ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff64f940000-00007ff64f940fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64f941000-00007ff64f9b7fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64f9b8000-00007ff64f9b8fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64f9b9000-00007ff64fa01fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa02000-00007ff64fa02fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa03000-00007ff64fa03fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa04000-00007ff64fa08fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa09000-00007ff64fa09fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa0a000-00007ff64fa0afff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa0b000-00007ff64fa0efff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa0f000-00007ff64fa57fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9164.96cc: 00007ff64fa58000-00007ff96668ffff 0x0001/0x0000 0x0000000
- 9164.96cc: *00007ff966690000-00007ff966690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966691000-00007ff9667abfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff9667ac000-00007ff9667f4fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff9667f5000-00007ff966800fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966801000-00007ff96680ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966810000-00007ff966810fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966811000-00007ff966813fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966814000-00007ff966885fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9164.96cc: 00007ff966886000-00007ffffffeffff 0x0001/0x0000 0x0000000
- 9164.96cc: supR3HardNtChildPurify: Done after 268 ms and 0 fixes (loop #0).
- 9464.7db8: Log file opened: 6.1.16r140961 g_hStartupLog=0000000000000004 g_uNtVerCombined=0xa04a6100
- 9464.7db8: supR3HardenedVmProcessInit: uNtDllAddr=00007ff966690000 g_uNtVerCombined=0xa04a6100 (stack ~000000000133f288)
- 9464.7db8: ntdll.dll: timestamp 0x27bfa5f0 (rc=VINF_SUCCESS)
- 9464.7db8: New simple heap: #1 0000000001450000 LB 0x400000 (for 2056192 allocation)
- 9164.96cc: supR3HardNtEnableThreadCreationEx:
- 9464.7db8: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox'
- 9464.7db8: System32: \Device\HarddiskVolume2\Windows\System32
- 9464.7db8: WinSxS: \Device\HarddiskVolume2\Windows\WinSxS
- 9464.7db8: KnownDllPath: C:\WINDOWS\System32
- 9464.7db8: supR3HardenedVmProcessInit: Opening vboxdrv stub...
- 9464.7db8: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk...
- 9464.7db8: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk...
- 9464.7db8: Registered Dll notification callback with NTDLL.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\kernel32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\KERNEL32.DLL (Input=KERNEL32.DLL, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000004001:<flags> [calling]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff963dd0000 LB 0x002c9000 C:\WINDOWS\System32\KERNELBASE.dll [fFlags=0x0]
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\KernelBase.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff966440000 LB 0x000bd000 C:\WINDOWS\System32\KERNEL32.DLL [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff966440000 'C:\WINDOWS\System32\KERNEL32.DLL'
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff64f940000 LB 0x00118000 C:\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe [fFlags=0x0]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe: Signature #1/2: info status: 24202
- 9464.7db8: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe' has no imports
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 9464.7db8: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ff966704970 pvNtTerminateThread=00007ff96672ca00
- 9164.96cc: supR3HardNtChildWaitFor: Found expected request 1 (CloseEvents) after 131 ms.
- 9464.7db8: \SystemRoot\System32\ntdll.dll:
- 9464.7db8: CreationTime: 2020-12-10T19:02:25.584058600Z
- 9464.7db8: LastWriteTime: 2020-12-10T19:02:25.724650800Z
- 9464.7db8: ChangeTime: 2021-01-13T17:02:56.287236300Z
- 9464.7db8: FileAttributes: 0x20
- 9464.7db8: Size: 0x1ee738
- 9464.7db8: NT Headers: 0xe8
- 9464.7db8: Timestamp: 0x27bfa5f0
- 9464.7db8: Machine: 0x8664 - amd64
- 9464.7db8: Timestamp: 0x27bfa5f0
- 9464.7db8: Image Version: 10.0
- 9464.7db8: SizeOfImage: 0x1f6000 (2056192)
- 9464.7db8: Resource Dir: 0x185000 LB 0x6fdc8
- 9464.7db8: [Version info resource found at 0xd8! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9464.7db8: [Raw version resource data: 0x1850f0 LB 0x380, codepage 0x0 (reserved 0x0)]
- 9464.7db8: ProductName: Microsoft® Windows® Operating System
- 9464.7db8: ProductVersion: 10.0.19041.662
- 9464.7db8: FileVersion: 10.0.19041.662 (WinBuild.160101.0800)
- 9464.7db8: FileDescription: NT Layer DLL
- 9464.7db8: \SystemRoot\System32\kernel32.dll:
- 9464.7db8: CreationTime: 2020-12-10T19:01:37.103168400Z
- 9464.7db8: LastWriteTime: 2020-12-10T19:01:37.212531800Z
- 9464.7db8: ChangeTime: 2021-01-13T17:02:52.941999200Z
- 9464.7db8: FileAttributes: 0x20
- 9464.7db8: Size: 0xbac30
- 9464.7db8: NT Headers: 0xe8
- 9464.7db8: Timestamp: 0x4b3a140f
- 9464.7db8: Machine: 0x8664 - amd64
- 9464.7db8: Timestamp: 0x4b3a140f
- 9464.7db8: Image Version: 10.0
- 9464.7db8: SizeOfImage: 0xbd000 (774144)
- 9464.7db8: Resource Dir: 0xbb000 LB 0x520
- 9464.7db8: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9464.7db8: [Raw version resource data: 0xbb0b0 LB 0x3a4, codepage 0x0 (reserved 0x0)]
- 9464.7db8: ProductName: Microsoft® Windows® Operating System
- 9464.7db8: ProductVersion: 10.0.19041.662
- 9464.7db8: FileVersion: 10.0.19041.662 (WinBuild.160101.0800)
- 9464.7db8: FileDescription: Windows NT BASE API Client DLL
- 9464.7db8: \SystemRoot\System32\KernelBase.dll:
- 9464.7db8: CreationTime: 2020-12-10T19:02:28.976018700Z
- 9464.7db8: LastWriteTime: 2020-12-10T19:02:29.085324600Z
- 9464.7db8: ChangeTime: 2021-01-13T17:02:56.287236300Z
- 9464.7db8: FileAttributes: 0x20
- 9464.7db8: Size: 0x2c9798
- 9464.7db8: NT Headers: 0xf0
- 9464.7db8: Timestamp: 0xec58f015
- 9464.7db8: Machine: 0x8664 - amd64
- 9464.7db8: Timestamp: 0xec58f015
- 9464.7db8: Image Version: 10.0
- 9464.7db8: SizeOfImage: 0x2c9000 (2920448)
- 9464.7db8: Resource Dir: 0x2a0000 LB 0x548
- 9464.7db8: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9464.7db8: [Raw version resource data: 0x2a00b0 LB 0x3bc, codepage 0x0 (reserved 0x0)]
- 9464.7db8: ProductName: Microsoft® Windows® Operating System
- 9464.7db8: ProductVersion: 10.0.19041.662
- 9464.7db8: FileVersion: 10.0.19041.662 (WinBuild.160101.0800)
- 9464.7db8: FileDescription: Windows NT BASE API Client DLL
- 9464.7db8: \SystemRoot\System32\apisetschema.dll:
- 9464.7db8: CreationTime: 2019-12-07T09:08:13.518339400Z
- 9464.7db8: LastWriteTime: 2019-12-07T09:08:13.518339400Z
- 9464.7db8: ChangeTime: 2021-01-13T17:02:52.754478000Z
- 9464.7db8: FileAttributes: 0x20
- 9464.7db8: Size: 0x1f538
- 9464.7db8: NT Headers: 0xd0
- 9464.7db8: Timestamp: 0x31288ce0
- 9464.7db8: Machine: 0x8664 - amd64
- 9464.7db8: Timestamp: 0x31288ce0
- 9464.7db8: Image Version: 10.0
- 9464.7db8: SizeOfImage: 0x20000 (131072)
- 9464.7db8: Resource Dir: 0x1f000 LB 0x408
- 9464.7db8: [Version info resource found at 0x48! (ID/Name: 0x1; SubID/SubName: 0x409)]
- 9464.7db8: [Raw version resource data: 0x1f060 LB 0x3a8, codepage 0x0 (reserved 0x0)]
- 9464.7db8: ProductName: Microsoft® Windows® Operating System
- 9464.7db8: ProductVersion: 10.0.19041.1
- 9464.7db8: FileVersion: 10.0.19041.1 (WinBuild.160101.0800)
- 9464.7db8: FileDescription: ApiSet Schema DLL
- 9464.7db8: NtOpenDirectoryObject failed on \Driver: 0xc0000022
- 9464.7db8: supR3HardenedWinFindAdversaries: 0x0
- 9464.7db8: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox'
- 9464.7db8: Calling main()
- 9464.7db8: SUPR3HardenedMain: pszProgName=VirtualBoxVM fFlags=0x2
- 9464.7db8: supR3HardenedWinInitAppBin(0x2): '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox'
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe: Signature #1/2: info status: 24202
- 9464.7db8: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe' has no imports
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe)
- 9464.7db8: SUPR3HardenedMain: Respawn #2
- 9464.7db8: supR3HardNtEnableThreadCreationEx:
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9662b0000 LB 0x0012b000 C:\WINDOWS\System32\RPCRT4.dll [fFlags=0x0]
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff965870000 LB 0x0009c000 C:\WINDOWS\System32\sechost.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #11 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\sechost.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\sechost.dll
- 9464.7db8: '\Device\HarddiskVolume2\Windows\System32\ntdll.dll' has no imports
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ntdll.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\ntdll.dll (Input=ntdll.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff966690000 'C:\WINDOWS\System32\ntdll.dll'
- 9464.7db8: Error -104 in supR3HardenedWinReSpawn! (enmWhat=5)
- 9464.7db8: Error relaunching VirtualBox VM process: 5
- Command line: '60eaff78-4bdd-042d-2e72-669728efd737-suplib-3rdchild --comment "Ubuntu 2020" --startvm c8b8be09-d024-435a-a903-e591d40e4f59 --no-startvm-errormsgbox "--sup-hardening-log=C:\Users\12488\VirtualBox VMs\Ubuntu 2020\Logs\VBoxHardening.log"'
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'opengl32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'uicommon.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'vboxrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'msvcp100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'msvcr100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'qt5corevbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'qt5guivbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'qt5widgetsvbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #8 'qt5openglvbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #10 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #11 'ole32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #12 'oleaut32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #13 'winmm.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmm.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmm.dll' -> '\Device\HarddiskVolume2\Windows\System32\winmm.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msvcrt.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\winmm.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\winmm.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcp_win.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'combase.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #21 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\oleaut32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\oleaut32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #21 'rpcrt4.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #49 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #50 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #51 'combase.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ole32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ole32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'win32u.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #37 'gdi32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\user32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\user32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5openglvbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5openglvbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5openglvbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5OpenGLVBox.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'qt5widgetsvbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'qt5guivbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'qt5corevbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'msvcr100.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5OpenGLVBox.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5OpenGLVBox.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5widgetsvbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5widgetsvbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5widgetsvbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'qt5guivbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'qt5corevbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'shell32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'msvcp100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'msvcr100.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5guivbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5guivbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5guivbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'ole32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'opengl32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'qt5corevbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'msvcp100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'msvcr100.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5corevbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5corevbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5corevbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'shell32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'ole32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'advapi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'ws2_32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'mpr.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'msvcp100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #8 'msvcr100.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll: Signature #1/2: info status: 24202
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcr100.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'vboxrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'vboxrt.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\vboxrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcr100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msvcp100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'rpcrt4.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'ws2_32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'uicommon.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'uicommon.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\uicommon.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\UICommon.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'vboxrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msvcr100.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'qt5corevbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'qt5guivbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'qt5widgetsvbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'advapi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #8 'ole32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #9 'oleaut32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #10 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\UICommon.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\UICommon.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'opengl32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'opengl32.dll' -> '\Device\HarddiskVolume2\Windows\System32\opengl32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'advapi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #8 'glu32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\opengl32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\opengl32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'glu32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'glu32.dll' -> '\Device\HarddiskVolume2\Windows\System32\glu32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'opengl32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\glu32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\glu32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #9 'win32u.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\gdi32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\gdi32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'sechost.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #27 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\advapi32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\advapi32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\msvcrt.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msvcrt.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5widgetsvbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5widgetsvbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5widgetsvbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5guivbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5guivbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5guivbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5corevbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5corevbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5corevbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'vboxrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'vboxrt.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\vboxrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ws2_32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'ws2_32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ws2_32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #26 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ws2_32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ws2_32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'mpr.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'mpr.dll' -> '\Device\HarddiskVolume2\Windows\System32\mpr.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\mpr.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\mpr.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ws2_32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'ws2_32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ws2_32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ws2_32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shell32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'shell32.dll' -> '\Device\HarddiskVolume2\Windows\System32\shell32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcp_win.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #72 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #74 'gdi32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\shell32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\shell32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5corevbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5corevbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5corevbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'opengl32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'opengl32.dll' -> '\Device\HarddiskVolume2\Windows\System32\opengl32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\opengl32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shell32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'shell32.dll' -> '\Device\HarddiskVolume2\Windows\System32\shell32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\shell32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5corevbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5corevbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5corevbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5guivbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5guivbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5guivbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5corevbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5corevbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5corevbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5guivbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5guivbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5guivbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5widgetsvbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5widgetsvbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5widgetsvbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: '\Device\HarddiskVolume2\Windows\System32\win32u.dll' has no imports
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\win32u.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\win32u.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\combase.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\combase.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\combase.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'sechost.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'sechost.dll' -> '\Device\HarddiskVolume2\Windows\System32\sechost.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\sechost.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'opengl32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'opengl32.dll' -> '\Device\HarddiskVolume2\Windows\System32\opengl32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\opengl32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000a01:<flags> [calling]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\opengl32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\UICommon.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5OpenGLVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmm.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\glu32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\mpr.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9646f0000 LB 0x0009e000 C:\WINDOWS\System32\msvcrt.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964990000 LB 0x000ac000 C:\WINDOWS\System32\ADVAPI32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964340000 LB 0x00022000 C:\WINDOWS\System32\win32u.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9640d0000 LB 0x00100000 C:\WINDOWS\System32\ucrtbase.dll [fFlags=0x0]
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ucrtbase.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ucrtbase.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964220000 LB 0x0009d000 C:\WINDOWS\System32\msvcp_win.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964370000 LB 0x0010b000 C:\WINDOWS\System32\gdi32full.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcp_win.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #33 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #35 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #36 'win32u.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\gdi32full.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\gdi32full.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9659f0000 LB 0x0002a000 C:\WINDOWS\System32\GDI32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964a50000 LB 0x001a0000 C:\WINDOWS\System32\USER32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff965a20000 LB 0x00356000 C:\WINDOWS\System32\combase.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\combase.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9356f0000 LB 0x0002c000 C:\WINDOWS\SYSTEM32\GLU32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\glu32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff931a00000 LB 0x00125000 C:\WINDOWS\SYSTEM32\OPENGL32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\opengl32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 000000005ed80000 LB 0x000d2000 C:\Program Files\Oracle\VirtualBox\MSVCR100.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 000000005e200000 LB 0x00098000 C:\Program Files\Oracle\VirtualBox\MSVCP100.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964920000 LB 0x0006b000 C:\WINDOWS\System32\WS2_32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ws2_32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff92d8d0000 LB 0x005e1000 C:\Program Files\Oracle\VirtualBox\VBoxRT.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964ca0000 LB 0x00743000 C:\WINDOWS\System32\SHELL32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\shell32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9654c0000 LB 0x0012a000 C:\WINDOWS\System32\ole32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff951fa0000 LB 0x0001d000 C:\WINDOWS\SYSTEM32\MPR.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\mpr.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 000000005e810000 LB 0x00565000 C:\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff92ae00000 LB 0x005f7000 C:\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 000000005e2a0000 LB 0x00561000 C:\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5WidgetsVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9655f0000 LB 0x000cd000 C:\WINDOWS\System32\OLEAUT32.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff92b400000 LB 0x02317000 C:\Program Files\Oracle\VirtualBox\UICommon.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\UICommon.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 000000005dd80000 LB 0x00054000 C:\Program Files\Oracle\VirtualBox\Qt5OpenGLVBox.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5OpenGLVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff95ac40000 LB 0x00027000 C:\WINDOWS\SYSTEM32\WINMM.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmm.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9299f0000 LB 0x001c8000 C:\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-synch-l1-2-0) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-synch-l1-2-0 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-synch-l1-2-0'
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-fibers-l1-1-1) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-fibers-l1-1-1 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-fibers-l1-1-1'
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-fibers-l1-1-1) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-fibers-l1-1-1 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-fibers-l1-1-1'
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-synch-l1-2-0) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-synch-l1-2-0 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-synch-l1-2-0'
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-localization-l1-2-1) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-localization-l1-2-1 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-localization-l1-2-1'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\kernel32.dll (Input=kernel32, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff966440000 'C:\WINDOWS\System32\kernel32.dll'
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-string-l1-1-0) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-string-l1-1-0 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-string-l1-1-0'
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-datetime-l1-1-1) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-datetime-l1-1-1 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-datetime-l1-1-1'
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-localization-obsolete-l1-2-0) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-localization-obsolete-l1-2-0 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff963dd0000 'api-ms-win-core-localization-obsolete-l1-2-0'
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #25 'win32u.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\imm32.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\imm32.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\IMM32.DLL (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000009:<flags> [calling]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff966500000 LB 0x00030000 C:\WINDOWS\System32\IMM32.DLL [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\imm32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff966500000 'C:\WINDOWS\system32\IMM32.DLL'
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: error opening 'C:\WINDOWS\System32\edgegdi.dll': 0 (NtPath=\??\C:\WINDOWS\System32\edgegdi.dll; Input=edgegdi.dll; rcNtGetDll=0xc0000135
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0xc0000034 'C:\WINDOWS\System32\edgegdi.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxRT.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxRT.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxRT.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxRT.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxRT.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxRT.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxRT.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92d8d0000 'C:\Program Files\Oracle\VirtualBox\VBoxRT.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\ADVAPI32.DLL (Input=ADVAPI32.DLL, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff964990000 'C:\WINDOWS\System32\ADVAPI32.DLL'
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\cryptbase.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\cryptbase.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9636b0000 LB 0x0000c000 C:\WINDOWS\SYSTEM32\CRYPTBASE.DLL [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\cryptbase.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9642c0000 LB 0x00080000 C:\WINDOWS\System32\bcryptPrimitives.dll [fFlags=0x0]
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff9299f0000 'C:\Program Files\Oracle\VirtualBox\VirtualBoxVM.dll'
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #31 'combase.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #32 'msvcp_win.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #34 'wldp.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\windows.storage.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\windows.storage.dll
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\wldp.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\wldp.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff963760000 LB 0x0002c000 C:\WINDOWS\SYSTEM32\Wldp.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\wldp.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff961f50000 LB 0x0078f000 C:\WINDOWS\SYSTEM32\windows.storage.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\windows.storage.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964790000 LB 0x000ae000 C:\WINDOWS\System32\SHCORE.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #42 'combase.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\SHCore.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\SHCore.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9653f0000 LB 0x00055000 C:\WINDOWS\System32\shlwapi.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msvcrt.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\shlwapi.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\shlwapi.dll
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\combase.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'wldp.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'wldp.dll' -> '\Device\HarddiskVolume2\Windows\System32\wldp.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\wldp.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\combase.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\kernel32.dll (Input=kernel32.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff966440000 'C:\WINDOWS\System32\kernel32.dll'
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\profapi.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\profapi.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff963d00000 LB 0x00026000 C:\WINDOWS\SYSTEM32\profapi.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\profapi.dll [lacks WinVerifyTrust]
- 9464.7db8: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\platforms\qwindows.dll: Signature #1/2: info status: 24202
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'ole32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'imm32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'winmm.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'oleaut32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'shell32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'advapi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #8 'qt5guivbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #9 'qt5corevbox.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #10 'msvcr100.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\platforms\qwindows.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\platforms\qwindows.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5corevbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5corevbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5corevbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5CoreVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qt5guivbox.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'qt5guivbox.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qt5guivbox.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\Qt5GuiVBox.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shell32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'shell32.dll' -> '\Device\HarddiskVolume2\Windows\System32\shell32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\shell32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmm.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmm.dll' -> '\Device\HarddiskVolume2\Windows\System32\winmm.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmm.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'imm32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'imm32.dll' -> '\Device\HarddiskVolume2\Windows\System32\imm32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\imm32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\platforms\qwindows.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\platforms\qwindows.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff92e6c0000 LB 0x0012e000 C:\Program Files\Oracle\VirtualBox\platforms\qwindows.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 24202 (0x5e8a)) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\platforms\qwindows.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff92e6c0000 'C:\Program Files\Oracle\VirtualBox\platforms\qwindows.dll'
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #8 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\kernel.appcore.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\kernel.appcore.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff961d50000 LB 0x00012000 C:\WINDOWS\SYSTEM32\kernel.appcore.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\kernel.appcore.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #33 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #34 'user32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\uxtheme.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\uxtheme.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\uxtheme.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000009:<flags> [calling]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\uxtheme.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff961890000 LB 0x0009e000 C:\WINDOWS\system32\uxtheme.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\uxtheme.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff961890000 'C:\WINDOWS\system32\uxtheme.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff964a50000 'C:\WINDOWS\system32\user32.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\shell32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\shell32.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff964ca0000 'C:\WINDOWS\system32\shell32.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\SHCore.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\SHCore.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff964790000 'C:\WINDOWS\system32\SHCore.dll'
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: error opening 'C:\WINDOWS\system32\wintab32.dll': 0 (NtPath=\??\C:\WINDOWS\system32\wintab32.dll; Input=C:\WINDOWS\system32\wintab32.dll; rcNtGetDll=0x0
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0xc0000034 'C:\WINDOWS\system32\wintab32.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmm.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\winmm.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95ac40000 'C:\WINDOWS\system32\winmm.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmm.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\winmm.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95ac40000 'C:\WINDOWS\system32\winmm.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\shell32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\shell32.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff964ca0000 'C:\WINDOWS\system32\shell32.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\uxtheme.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\uxtheme.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff961890000 'C:\WINDOWS\system32\uxtheme.dll'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff9659f0000 'C:\WINDOWS\system32\gdi32.dll'
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff966530000 LB 0x00116000 C:\WINDOWS\System32\MSCTF.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #11 'oleaut32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #36 'user32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #37 'gdi32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #38 'imm32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\msctf.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msctf.dll
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'imm32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'imm32.dll' -> '\Device\HarddiskVolume2\Windows\System32\imm32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\imm32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff9662b0000 'C:\WINDOWS\System32\rpcrt4.dll'
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff964bf0000 LB 0x000a9000 C:\WINDOWS\System32\clbcatq.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #30 'rpcrt4.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\clbcatq.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\clbcatq.dll
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #26 'd3d11.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #27 'dcomp.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\DataExchange.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\DataExchange.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'dcomp.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'dcomp.dll' -> '\Device\HarddiskVolume2\Windows\System32\dcomp.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'win32u.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msvcp_win.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\dcomp.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\dcomp.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'd3d11.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'd3d11.dll' -> '\Device\HarddiskVolume2\Windows\System32\d3d11.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #26 'dxgi.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #28 'win32u.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\d3d11.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\d3d11.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'dxgi.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'dxgi.dll' -> '\Device\HarddiskVolume2\Windows\System32\dxgi.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'win32u.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\dxgi.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\dxgi.dll
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\dataexchange.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000002009:<flags> [calling]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\DataExchange.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\d3d11.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\dcomp.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\dxgi.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff962720000 LB 0x000f3000 C:\WINDOWS\system32\dxgi.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\dxgi.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff960310000 LB 0x00264000 C:\WINDOWS\system32\d3d11.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\d3d11.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff960b60000 LB 0x001e7000 C:\WINDOWS\system32\dcomp.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\dcomp.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff950240000 LB 0x0003e000 C:\WINDOWS\system32\dataexchange.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\DataExchange.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff9659f0000 'C:\WINDOWS\System32\gdi32.dll'
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff950240000 'C:\WINDOWS\system32\dataexchange.dll'
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #30 'rpcrt4.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #43 'combase.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #45 'msvcp_win.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\twinapi.appcore.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\twinapi.appcore.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff95fab0000 LB 0x00201000 C:\WINDOWS\system32\twinapi.appcore.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\twinapi.appcore.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\winmmbase.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\winmmbase.dll
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff951e60000 LB 0x00026000 C:\WINDOWS\SYSTEM32\winmmbase.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmmbase.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcp_win.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #16 'rpcrt4.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #28 'devobj.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #18 'cfgmgr32.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\devobj.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\devobj.dll
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff9641d0000 LB 0x0004e000 C:\WINDOWS\System32\cfgmgr32.dll [fFlags=0x0]
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\cfgmgr32.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\cfgmgr32.dll
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff963ab0000 LB 0x0002c000 C:\WINDOWS\SYSTEM32\DEVOBJ.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\devobj.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff95ea70000 LB 0x00085000 C:\WINDOWS\SYSTEM32\MMDevAPI.DLL [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'mmdevapi.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'ksuser.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #30 'avrt.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\wdmaud.drv)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\wdmaud.drv
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'avrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'avrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\avrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\avrt.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\avrt.dll
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ksuser.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'ksuser.dll' -> '\Device\HarddiskVolume2\Windows\System32\ksuser.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ksuser.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ksuser.dll
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'mmdevapi.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'mmdevapi.dll' -> '\Device\HarddiskVolume2\Windows\System32\mmdevapi.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'cfgmgr32.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'cfgmgr32.dll' -> '\Device\HarddiskVolume2\Windows\System32\cfgmgr32.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\cfgmgr32.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'devobj.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'devobj.dll' -> '\Device\HarddiskVolume2\Windows\System32\devobj.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\devobj.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\combase.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\wdmaud.drv (Input=wdmaud.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #15 'oleaut32.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #17 'rpcrt4.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #20 'coreuicomponents.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #21 'coremessaging.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\TextInputFramework.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\TextInputFramework.dll
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #35 'coremessaging.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #40 'rpcrt4.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #48 'shcore.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\CoreUIComponents.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\CoreUIComponents.dll
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #20 'ws2_32.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\CoreMessaging.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\CoreMessaging.dll
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ntmarta.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ntmarta.dll
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'combase.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #24 'rpcrt4.dll'.
- 9464.7db8: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #32 'bcryptprimitives.dll'.
- 9464.7db8: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\WinTypes.dll)
- 9464.7db8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\WinTypes.dll
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff962b10000 LB 0x00033000 C:\WINDOWS\SYSTEM32\ntmarta.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ntmarta.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff961230000 LB 0x000f2000 C:\WINDOWS\System32\CoreMessaging.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\CoreMessaging.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff9610d0000 LB 0x00154000 C:\WINDOWS\SYSTEM32\wintypes.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\WinTypes.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff961480000 LB 0x0035e000 C:\WINDOWS\System32\CoreUIComponents.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\CoreUIComponents.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedDllNotificationCallback: load 00007ff950330000 LB 0x000fb000 C:\WINDOWS\SYSTEM32\textinputframework.dll [fFlags=0x0]
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\TextInputFramework.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ksuser.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\avrt.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(ext-ms-win-rtcore-ntuser-window-ext-l1-1-0.dll) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=ext-ms-win-rtcore-ntuser-window-ext-l1-1-0.dll (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff964a50000 'ext-ms-win-rtcore-ntuser-window-ext-l1-1-0.dll'
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff95fe90000 LB 0x00009000 C:\WINDOWS\SYSTEM32\ksuser.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ksuser.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff958170000 LB 0x0000a000 C:\WINDOWS\SYSTEM32\AVRT.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\avrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff945020000 LB 0x00046000 C:\WINDOWS\System32\wdmaud.drv [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(ext-ms-win-rtcore-ntuser-integration-l1-1-0.dll) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=ext-ms-win-rtcore-ntuser-integration-l1-1-0.dll (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff964a50000 'ext-ms-win-rtcore-ntuser-integration-l1-1-0.dll'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'bcryptprimitives.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'bcryptprimitives.dll' -> '\Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.7db8: supR3HardenedIsApiSetDll: ApiSetQueryApiSetPresence(api-ms-win-core-com-l1-1-0.dll) -> 0x0, fPresent=1
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-com-l1-1-0.dll (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff965a20000 'api-ms-win-core-com-l1-1-0.dll'
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\combase.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ws2_32.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'ws2_32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ws2_32.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ws2_32.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shcore.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'shcore.dll' -> '\Device\HarddiskVolume2\Windows\System32\shcore.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\SHCore.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'coremessaging.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'coremessaging.dll' -> '\Device\HarddiskVolume2\Windows\System32\coremessaging.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\CoreMessaging.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'coremessaging.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'coremessaging.dll' -> '\Device\HarddiskVolume2\Windows\System32\coremessaging.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\CoreMessaging.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'coreuicomponents.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'coreuicomponents.dll' -> '\Device\HarddiskVolume2\Windows\System32\coreuicomponents.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\CoreUIComponents.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\system32\ole32.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000009:<flags> [calling]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff9654c0000 'C:\WINDOWS\system32\ole32.dll'
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\wdmaud.drv (Input=wdmaud.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\MMDEVAPI.DLL (Input=MMDEVAPI.DLL, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95ea70000 'C:\WINDOWS\System32\MMDEVAPI.DLL'
- 9464.7db8: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msctf.dll [lacks WinVerifyTrust]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\MSCTF.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000009:<flags> [calling]
- 9464.7db8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff966530000 'C:\WINDOWS\System32\MSCTF.dll'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\wdmaud.drv (Input=wdmaud.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\wdmaud.drv (Input=wdmaud.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\wdmaud.drv (Input=wdmaud.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcp_win.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'rpcrt4.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'oleaut32.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #29 'mmdevapi.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\AudioSes.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\AudioSes.dll
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'mmdevapi.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'mmdevapi.dll' -> '\Device\HarddiskVolume2\Windows\System32\mmdevapi.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\AUDIOSES.DLL (Input=AUDIOSES.DLL, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 9464.5698: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\AudioSes.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #12 'rpcrt4.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\powrprof.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\powrprof.dll
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff963c30000 LB 0x0004b000 C:\WINDOWS\SYSTEM32\powrprof.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\powrprof.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff95c5e0000 LB 0x00183000 C:\WINDOWS\System32\AUDIOSES.DLL [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\AudioSes.dll [lacks WinVerifyTrust]
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\umpdc.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\umpdc.dll
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff963c10000 LB 0x00012000 C:\WINDOWS\SYSTEM32\UMPDC.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\umpdc.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95c5e0000 'C:\WINDOWS\System32\AUDIOSES.DLL'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\wdmaud.drv (Input=wdmaud.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\wdmaud.drv (Input=wdmaud.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\wdmaud.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff945020000 'C:\WINDOWS\System32\wdmaud.drv'
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #12 'mmdevapi.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #13 'msacm32.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\msacm32.drv)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msacm32.drv
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msacm32.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msacm32.dll' -> '\Device\HarddiskVolume2\Windows\System32\msacm32.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\msacm32.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msacm32.dll
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'mmdevapi.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'mmdevapi.dll' -> '\Device\HarddiskVolume2\Windows\System32\mmdevapi.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msacm32.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff95ccb0000 LB 0x0001e000 C:\WINDOWS\SYSTEM32\MSACM32.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msacm32.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff95fe70000 LB 0x0000d000 C:\WINDOWS\System32\msacm32.drv [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95fe70000 'C:\WINDOWS\System32\msacm32.drv'
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 9464.5698: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'winmmbase.dll'.
- 9464.5698: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\midimap.dll)
- 9464.5698: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\midimap.dll
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmmbase.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmmbase.dll' -> '\Device\HarddiskVolume2\Windows\System32\winmmbase.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmmbase.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 9464.5698: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 9464.5698: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\midimap.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedDllNotificationCallback: load 00007ff95e1d0000 LB 0x0000b000 C:\WINDOWS\System32\midimap.dll [fFlags=0x0]
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\midimap.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95e1d0000 'C:\WINDOWS\System32\midimap.dll'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\midimap.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95e1d0000 'C:\WINDOWS\System32\midimap.dll'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\midimap.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95e1d0000 'C:\WINDOWS\System32\midimap.dll'
- 9464.5698: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\midimap.dll [lacks WinVerifyTrust]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
- 9464.5698: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95e1d0000 'C:\WINDOWS\System32\midimap.dll'
- 9464.96f0: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
- 9464.96f0: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\MMDevApi.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000002009:<flags> [calling]
- 9464.96f0: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ff95ea70000 'C:\WINDOWS\System32\MMDevApi.dll'
- 9164.96cc: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0x1 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 3547 ms, the end);
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement