Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 3d9c.3564: supR3HardenedWinInitAppBin(0x2): '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox'
- 3d9c.3564: SUPR3HardenedMain: Respawn #1
- 3d9c.3564: System32: \Device\HarddiskVolume4\Windows\System32
- 3d9c.3564: WinSxS: \Device\HarddiskVolume4\Windows\WinSxS
- 3d9c.3564: KnownDllPath: C:\WINDOWS\System32
- 3d9c.3564: supR3HardenedWinInit: Performing a limited self purification...
- 3d9c.3564: supHardNtVpScanVirtualMemory: enmKind=SELF_PURIFICATION
- 3d9c.3564: *0000000000000000-000000000032ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000330000-000000000033ffff 0x0004/0x0004 0x0040000
- 3d9c.3564: 0000000000340000-000000000034ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000350000-000000000036afff 0x0002/0x0002 0x0040000
- 3d9c.3564: 000000000036b000-000000000036ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000370000-0000000000373fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 0000000000374000-000000000037ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000380000-0000000000381fff 0x0004/0x0004 0x0020000
- 3d9c.3564: 0000000000382000-000000000038ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000390000-0000000000391fff 0x0004/0x0004 0x0020000
- 3d9c.3564: 0000000000392000-00000000003a9fff 0x0000/0x0004 0x0020000
- 3d9c.3564: 00000000003aa000-00000000003dffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00000000003e0000-00000000003eefff 0x0004/0x0004 0x0020000
- 3d9c.3564: 00000000003ef000-00000000003effff 0x0000/0x0004 0x0020000
- 3d9c.3564: 00000000003f0000-00000000003fffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000400000-00000000004b8fff 0x0000/0x0004 0x0020000
- 3d9c.3564: 00000000004b9000-00000000004bbfff 0x0004/0x0004 0x0020000
- 3d9c.3564: 00000000004bc000-00000000005fffff 0x0000/0x0004 0x0020000
- 3d9c.3564: *0000000000600000-00000000006b8fff 0x0000/0x0004 0x0020000
- 3d9c.3564: 00000000006b9000-00000000006bbfff 0x0104/0x0004 0x0020000
- 3d9c.3564: 00000000006bc000-00000000006fffff 0x0004/0x0004 0x0020000
- 3d9c.3564: 0000000000700000-000000000072ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000730000-000000000073afff 0x0004/0x0004 0x0020000
- 3d9c.3564: 000000000073b000-000000000082ffff 0x0000/0x0004 0x0020000
- 3d9c.3564: *0000000000830000-00000000008f6fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 00000000008f7000-00000000008fffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000900000-0000000000907fff 0x0000/0x0004 0x0020000
- 3d9c.3564: 0000000000908000-0000000000af8fff 0x0004/0x0004 0x0020000
- 3d9c.3564: 0000000000af9000-0000000000af9fff 0x0000/0x0004 0x0020000
- 3d9c.3564: 0000000000afa000-0000000000afffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000b00000-0000000000b1cfff 0x0004/0x0004 0x0020000
- 3d9c.3564: 0000000000b1d000-0000000000bfffff 0x0000/0x0004 0x0020000
- 3d9c.3564: 0000000000c00000-000000007ffdffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000
- 3d9c.3564: 000000007ffe1000-000000007ffeefff 0x0001/0x0000 0x0000000
- 3d9c.3564: *000000007ffef000-000000007ffeffff 0x0002/0x0002 0x0020000
- 3d9c.3564: 000000007fff0000-00007ff4495cffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ff4495d0000-00007ff4495d4fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 00007ff4495d5000-00007ff4496cffff 0x0000/0x0002 0x0040000
- 3d9c.3564: *00007ff4496d0000-00007ff5496effff 0x0000/0x0004 0x0020000
- 3d9c.3564: *00007ff5496f0000-00007ff54b6effff 0x0000/0x0004 0x0020000
- 3d9c.3564: 00007ff54b6f0000-00007ff54b6f0fff 0x0004/0x0004 0x0020000
- 3d9c.3564: 00007ff54b6f1000-00007ff54b6fffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ff54b700000-00007ff54b700fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 00007ff54b701000-00007ff54b70ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ff54b710000-00007ff54b732fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 00007ff54b733000-00007ff603eeffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ff603ef0000-00007ff603ef0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603ef1000-00007ff603f66fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603f67000-00007ff603f67fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603f68000-00007ff603faffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb0000-00007ff603fb2fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb3000-00007ff603fb5fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb6000-00007ff603fb8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb9000-00007ff603fb9fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fba000-00007ff603fbbfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fbc000-00007ff603fbcfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fbd000-00007ff604005fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff604006000-00007ffd0f32ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ffd0f330000-00007ffd0f330fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\apphelp.dll
- 3d9c.3564: 00007ffd0f331000-00007ffd0f37dfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\apphelp.dll
- 3d9c.3564: 00007ffd0f37e000-00007ffd0f39ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\apphelp.dll
- 3d9c.3564: 00007ffd0f3a0000-00007ffd0f3a2fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\apphelp.dll
- 3d9c.3564: 00007ffd0f3a3000-00007ffd0f3befff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\apphelp.dll
- 3d9c.3564: 00007ffd0f3bf000-00007ffd1193ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ffd11940000-00007ffd11940fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\KernelBase.dll
- 3d9c.3564: 00007ffd11941000-00007ffd11a45fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\KernelBase.dll
- 3d9c.3564: 00007ffd11a46000-00007ffd11ba7fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\KernelBase.dll
- 3d9c.3564: 00007ffd11ba8000-00007ffd11babfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\KernelBase.dll
- 3d9c.3564: 00007ffd11bac000-00007ffd11bacfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\KernelBase.dll
- 3d9c.3564: 00007ffd11bad000-00007ffd11be2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\KernelBase.dll
- 3d9c.3564: 00007ffd11be3000-00007ffd13e6ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ffd13e70000-00007ffd13e70fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\kernel32.dll
- 3d9c.3564: 00007ffd13e71000-00007ffd13ee5fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\kernel32.dll
- 3d9c.3564: 00007ffd13ee6000-00007ffd13f17fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\kernel32.dll
- 3d9c.3564: 00007ffd13f18000-00007ffd13f18fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\kernel32.dll
- 3d9c.3564: 00007ffd13f19000-00007ffd13f19fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\kernel32.dll
- 3d9c.3564: 00007ffd13f1a000-00007ffd13f21fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\kernel32.dll
- 3d9c.3564: 00007ffd13f22000-00007ffd142bffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ffd142c0000-00007ffd142c0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd142c1000-00007ffd143d7fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd143d8000-00007ffd1441efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd1441f000-00007ffd1441ffff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd14420000-00007ffd14421fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd14422000-00007ffd1442afff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd1442b000-00007ffd144affff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd144b0000-00007ffffffeffff 0x0001/0x0000 0x0000000
- 3d9c.3564: kernel32.dll: timestamp 0xd0cecc10 (rc=VINF_SUCCESS)
- 3d9c.3564: kernelbase.dll: timestamp 0x50cc8d5a (rc=VINF_SUCCESS)
- 3d9c.3564: apphelp.dll: timestamp 0xff74693c (rc=VINF_SUCCESS)
- 3d9c.3564: VirtualBoxVM.exe: timestamp 0x5defad4f (rc=VINF_SUCCESS)
- 3d9c.3564: '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe' has no imports
- 3d9c.3564: '\Device\HarddiskVolume4\Windows\System32\ntdll.dll' has no imports
- 3d9c.3564: apphelp.dll: Differences in section #2 (.rdata) between file and memory:
- 3d9c.3564: 00007ffd0f37fe98 / 0x004fe98: 90 != e0
- 3d9c.3564: 00007ffd0f37fe99 / 0x004fe99: e1 != ed
- 3d9c.3564: 00007ffd0f37fe9a / 0x004fe9a: 9b != e8
- 3d9c.3564: 00007ffd0f37fe9b / 0x004fe9b: 11 != 13
- 3d9c.3564: 00007ffd0f37fea0 / 0x004fea0: 00 != 50
- 3d9c.3564: 00007ffd0f37fea1 / 0x004fea1: 0a != 5e
- 3d9c.3564: 00007ffd0f37fea2 / 0x004fea2: 99 != e8
- 3d9c.3564: 00007ffd0f37fea3 / 0x004fea3: 11 != 13
- 3d9c.3564: 00007ffd0f37fea8 / 0x004fea8: 00 != b0
- 3d9c.3564: 00007ffd0f37fea9 / 0x004fea9: 48 != 1d
- 3d9c.3564: 00007ffd0f37feaa / 0x004feaa: 9a != e9
- 3d9c.3564: 00007ffd0f37feab / 0x004feab: 11 != 13
- 3d9c.3564: 00007ffd0f37feb1 / 0x004feb1: a7 != b7
- 3d9c.3564: 00007ffd0f37feb2 / 0x004feb2: 9a != e8
- 3d9c.3564: 00007ffd0f37feb3 / 0x004feb3: 11 != 13
- 3d9c.3564: 00007ffd0f37feb9 / 0x004feb9: 22 != 1d
- 3d9c.3564: 00007ffd0f37feba / 0x004feba: 9a != e9
- 3d9c.3564: 00007ffd0f37febb / 0x004febb: 11 != 13
- 3d9c.3564: 00007ffd0f37fec0 / 0x004fec0: 90 != 40
- 3d9c.3564: 00007ffd0f37fec1 / 0x004fec1: bc != be
- 3d9c.3564: 00007ffd0f37fec2 / 0x004fec2: 99 != e8
- 3d9c.3564: 00007ffd0f37fec3 / 0x004fec3: 11 != 13
- 3d9c.3564: 00007ffd0f37fec8 / 0x004fec8: b0 != 60
- 3d9c.3564: 00007ffd0f37fec9 / 0x004fec9: 66 != a1
- 3d9c.3564: 00007ffd0f37feca / 0x004feca: 9a != e8
- 3d9c.3564: 00007ffd0f37fecb / 0x004fecb: 11 != 13
- 3d9c.3564: 00007ffd0f37fed8 / 0x004fed8: c0 != a0
- 3d9c.3564: 00007ffd0f37fed9 / 0x004fed9: 72 != a1
- 3d9c.3564: 00007ffd0f37feda / 0x004feda: 96 != e8
- 3d9c.3564: 00007ffd0f37fedb / 0x004fedb: 11 != 13
- 3d9c.3564: Restored 0x2000 bytes of original file content at 00007ffd0f37e000
- 3d9c.3564: supR3HardenedWinInit: SUPHARDNTVPKIND_SELF_PURIFICATION_LIMITED -> VINF_SUCCESS, cFixes=1
- 3d9c.3564: '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe' has no imports
- 3d9c.3564: supHardenedWinVerifyImageByHandle: -> 24202 (\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe)
- 3d9c.3564: supR3HardNtEnableThreadCreationEx:
- 3d9c.3564: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffd143317f0 pvNtTerminateThread=00007ffd1435cb10
- 3d9c.3564: supR3HardenedWinDoReSpawn(1): New child 3f54.2dc4 [kernel32].
- 3d9c.3564: supR3HardNtChildGatherData: PebBaseAddress=0000000000f04000 cbPeb=0x388
- 3d9c.3564: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffd142c0000 uNtDllChildAddr=00007ffd142c0000
- 3d9c.3564: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffd143317f0
- 3d9c.3564: supR3HardenedWinSetupChildInit: Initial context:
- rax=0000000000000000 rbx=0000000000000000 rcx=00007ff603ef7900 rdx=0000000000f04000
- rsi=0000000000000000 rdi=0000000000000000 r8 =0000000000000000 r9 =0000000000000000
- r10=0000000000000000 r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000 P1=0000000000000000 P2=0000000000000000
- rip=00007ffd1432ceb0 rsp=000000000113fc38 rbp=0000000000000000 ctxflags=0010001b
- cs=0033 ss=002b ds=0000 es=0000 fs=0000 gs=0000 eflags=00000200 mxcrx=00001f80
- P3=0000000000000000 P4=0000000000000000 P5=0000000000000000 P6=0000000000000000
- dr0=0000000000000000 dr1=0000000000000000 dr2=0000000000000000 dr3=0000000000000000
- dr6=0000000000000000 dr7=0000000000000000 vcr=0000000000000000 dcr=0000000000000000
- lbt=0000000000000000 lbf=0000000000000000 lxt=0000000000000000 lxf=0000000000000000
- 3d9c.3564: supR3HardenedWinSetupChildInit: Start child.
- 3d9c.3564: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
- 3d9c.3564: supR3HardNtChildPurify: Startup delay kludge #1/0: 265 ms, 18 sleeps
- 3d9c.3564: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
- 3d9c.3564: *0000000000000000-0000000000deffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000df0000-0000000000df3fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 0000000000df4000-0000000000dfffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000000e00000-0000000000f03fff 0x0000/0x0004 0x0020000
- 3d9c.3564: 0000000000f04000-0000000000f06fff 0x0004/0x0004 0x0020000
- 3d9c.3564: 0000000000f07000-0000000000ffffff 0x0000/0x0004 0x0020000
- 3d9c.3564: *0000000001000000-000000000101ffff 0x0004/0x0004 0x0020000
- 3d9c.3564: *0000000001020000-000000000103afff 0x0002/0x0002 0x0040000
- 3d9c.3564: 000000000103b000-000000000103ffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *0000000001040000-000000000113afff 0x0000/0x0004 0x0020000
- 3d9c.3564: 000000000113b000-000000000113dfff 0x0104/0x0004 0x0020000
- 3d9c.3564: 000000000113e000-000000000113ffff 0x0004/0x0004 0x0020000
- 3d9c.3564: *0000000001140000-0000000001141fff 0x0004/0x0004 0x0020000
- 3d9c.3564: 0000000001142000-000000007ffdffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000
- 3d9c.3564: 000000007ffe1000-000000007ffeefff 0x0001/0x0000 0x0000000
- 3d9c.3564: *000000007ffef000-000000007ffeffff 0x0002/0x0002 0x0020000
- 3d9c.3564: 000000007fff0000-00007ff54adcffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ff54add0000-00007ff54add0fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 00007ff54add1000-00007ff54addffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ff54ade0000-00007ff54ae02fff 0x0002/0x0002 0x0040000
- 3d9c.3564: 00007ff54ae03000-00007ff603eeffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ff603ef0000-00007ff603ef0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603ef1000-00007ff603f66fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603f67000-00007ff603f67fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603f68000-00007ff603faffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb0000-00007ff603fb0fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb1000-00007ff603fb1fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb2000-00007ff603fb6fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb7000-00007ff603fb7fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb8000-00007ff603fb8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fb9000-00007ff603fbcfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff603fbd000-00007ff604005fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBoxVM.exe
- 3d9c.3564: 00007ff604006000-00007ffd142bffff 0x0001/0x0000 0x0000000
- 3d9c.3564: *00007ffd142c0000-00007ffd142c0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd142c1000-00007ffd143d7fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd143d8000-00007ffd1441efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd1441f000-00007ffd1442afff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd1442b000-00007ffd14439fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd1443a000-00007ffd1443afff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd1443b000-00007ffd1443dfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd1443e000-00007ffd144affff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
- 3d9c.3564: 00007ffd144b0000-00007ffffffeffff 0x0001/0x0000 0x0000000
- 3d9c.3564: supR3HardNtChildPurify: Done after 272 ms and 0 fixes (loop #0).
- 3f54.2dc4: Log file opened: 6.1.0r135406 g_hStartupLog=0000000000000004 g_uNtVerCombined=0xa047ba00
- 3f54.2dc4: supR3HardenedVmProcessInit: uNtDllAddr=00007ffd142c0000 g_uNtVerCombined=0xa047ba00 (stack ~000000000113f6c8)
- 3f54.2dc4: ntdll.dll: timestamp 0x99ca0526 (rc=VINF_SUCCESS)
- 3f54.2dc4: New simple heap: #1 0000000001250000 LB 0x400000 (for 2031616 allocation)
- 3f54.2dc4: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox'
- 3d9c.3564: supR3HardNtEnableThreadCreationEx:
- 3f54.2dc4: System32: \Device\HarddiskVolume4\Windows\System32
- 3f54.2dc4: WinSxS: \Device\HarddiskVolume4\Windows\WinSxS
- 3f54.2dc4: KnownDllPath: C:\WINDOWS\System32
- 3f54.2dc4: supR3HardenedVmProcessInit: Opening vboxdrv stub...
- 3f54.2dc4: Error opening VBoxDrvStub: STATUS_NO_SUCH_DEVICE
- 3f54.2dc4: supR3HardenedWinReadErrorInfoDevice: NtCreateFile -> 0xc000000e
- 3f54.2dc4: Error -101 in supR3HardenedWinReSpawn! (enmWhat=3)
- 3f54.2dc4: NtCreateFile(\Device\VBoxDrvStub) failed: 0xc000000e STATUS_NO_SUCH_DEVICE (136 retries)
- Driver is probably stuck stopping/starting. Try 'sc.exe query vboxdrv' to get more information about its state. Rebooting may actually help.
- 3d9c.3564: supR3HardenedWinCheckChild: enmRequest=2 rc=-101 enmWhat=3 supR3HardenedWinReSpawn: NtCreateFile(\Device\VBoxDrvStub) failed: 0xc000000e STATUS_NO_SUCH_DEVICE (136 retries)
- Driver is probably stuck stopping/starting. Try 'sc.exe query vboxdrv' to get more information about its state. Rebooting may actually help.
- 3f54.2dc4: KiUserExceptionDispatcher: 0xc0000005 (0000000000000001, 0000000000000024) @ 00007ffd142c72a6 (flags=0x0)
- rax=0000000000000000 rbx=00007ffd144252c0 rcx=00007ffd144252c0 rdx=00000000fffffffa
- rsi=0000000000000000 rdi=00007ffd14424f00 r8 =0000000000000000 r9 =00007ffd14425200
- r10=0000000000000000 r11=0000000001138f60 r12=0000000000000000 r13=0000000000f05000
- r14=0000000000000001 r15=0000000000000000 P1=0000000000000000 P2=0000000000000000
- rip=00007ffd142c72a6 rsp=0000000001138dc0 rbp=00000000ffffff00 ctxflags=0010005f
- cs=0033 ss=002b ds=002b es=002b fs=0053 gs=002b eflags=00010213 mxcrx=00001f80
- P3=0000000000000000 P4=0000000000000000 P5=000000000113a8c0 P6=0000000000000003
- dr0=0000000000000000 dr1=0000000000000000 dr2=0000000000000000 dr3=0000000000000000
- dr6=0000000000000000 dr7=0000000000000000 vcr=0000000000000000 dcr=0000000000000000
- lbt=0000000000000000 lbf=0000000000000000 lxt=0000000000000000 lxf=0000000000000000
- 3d9c.3564: Error -101 in supR3HardenedWinReSpawn! (enmWhat=3)
- 3d9c.3564: NtCreateFile(\Device\VBoxDrvStub) failed: 0xc000000e STATUS_NO_SUCH_DEVICE (136 retries)
- Driver is probably stuck stopping/starting. Try 'sc.exe query vboxdrv' to get more information about its state. Rebooting may actually help.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement