Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 2700.3bc4: Log file opened: 4.3.40r110317 g_hStartupLog=0000000000000068 g_uNtVerCombined=0xa042ee00
- 2700.3bc4: \SystemRoot\System32\ntdll.dll:
- 2700.3bc4: CreationTime: 2019-06-12T13:24:21.785062700Z
- 2700.3bc4: LastWriteTime: 2019-05-17T06:06:58.140701600Z
- 2700.3bc4: ChangeTime: 2019-06-12T19:12:53.659007400Z
- 2700.3bc4: FileAttributes: 0x20
- 2700.3bc4: Size: 0x1da660
- 2700.3bc4: NT Headers: 0xe8
- 2700.3bc4: Timestamp: 0x7f828745
- 2700.3bc4: Machine: 0x8664 - amd64
- 2700.3bc4: Timestamp: 0x7f828745
- 2700.3bc4: Image Version: 10.0
- 2700.3bc4: SizeOfImage: 0x1e1000 (1970176)
- 2700.3bc4: Resource Dir: 0x174000 LB 0x6b3e8
- 2700.3bc4: ProductName: Microsoft® Windows® Operating System
- 2700.3bc4: ProductVersion: 10.0.17134.799
- 2700.3bc4: FileVersion: 10.0.17134.799 (WinBuild.160101.0800)
- 2700.3bc4: FileDescription: NT Layer DLL
- 2700.3bc4: \SystemRoot\System32\kernel32.dll:
- 2700.3bc4: CreationTime: 2019-05-15T17:54:54.877734600Z
- 2700.3bc4: LastWriteTime: 2019-04-19T10:54:56.743034000Z
- 2700.3bc4: ChangeTime: 2019-06-12T13:30:57.698020700Z
- 2700.3bc4: FileAttributes: 0x20
- 2700.3bc4: Size: 0xafd48
- 2700.3bc4: NT Headers: 0xe8
- 2700.3bc4: Timestamp: 0xda2d7146
- 2700.3bc4: Machine: 0x8664 - amd64
- 2700.3bc4: Timestamp: 0xda2d7146
- 2700.3bc4: Image Version: 10.0
- 2700.3bc4: SizeOfImage: 0xb1000 (724992)
- 2700.3bc4: Resource Dir: 0xaf000 LB 0x520
- 2700.3bc4: ProductName: Microsoft® Windows® Operating System
- 2700.3bc4: ProductVersion: 10.0.17134.753
- 2700.3bc4: FileVersion: 10.0.17134.753 (WinBuild.160101.0800)
- 2700.3bc4: FileDescription: Windows NT BASE API Client DLL
- 2700.3bc4: \SystemRoot\System32\KernelBase.dll:
- 2700.3bc4: CreationTime: 2019-06-12T13:24:25.038873000Z
- 2700.3bc4: LastWriteTime: 2019-05-17T06:07:07.278992600Z
- 2700.3bc4: ChangeTime: 2019-06-12T19:12:53.643313900Z
- 2700.3bc4: FileAttributes: 0x20
- 2700.3bc4: Size: 0x273d78
- 2700.3bc4: NT Headers: 0xf0
- 2700.3bc4: Timestamp: 0x8a3d2a4
- 2700.3bc4: Machine: 0x8664 - amd64
- 2700.3bc4: Timestamp: 0x8a3d2a4
- 2700.3bc4: Image Version: 10.0
- 2700.3bc4: SizeOfImage: 0x273000 (2568192)
- 2700.3bc4: Resource Dir: 0x251000 LB 0x548
- 2700.3bc4: ProductName: Microsoft® Windows® Operating System
- 2700.3bc4: ProductVersion: 10.0.17134.799
- 2700.3bc4: FileVersion: 10.0.17134.799 (WinBuild.160101.0800)
- 2700.3bc4: FileDescription: Windows NT BASE API Client DLL
- 2700.3bc4: \SystemRoot\System32\apisetschema.dll:
- 2700.3bc4: CreationTime: 2018-04-11T23:34:44.042150700Z
- 2700.3bc4: LastWriteTime: 2018-04-11T23:34:44.042150700Z
- 2700.3bc4: ChangeTime: 2019-03-20T16:34:26.845506400Z
- 2700.3bc4: FileAttributes: 0x80
- 2700.3bc4: Size: 0x1bd98
- 2700.3bc4: NT Headers: 0xd0
- 2700.3bc4: Timestamp: 0xd02ff418
- 2700.3bc4: Machine: 0x8664 - amd64
- 2700.3bc4: Timestamp: 0xd02ff418
- 2700.3bc4: Image Version: 10.0
- 2700.3bc4: SizeOfImage: 0x1c000 (114688)
- 2700.3bc4: Resource Dir: 0x1b000 LB 0x408
- 2700.3bc4: ProductName: Microsoft® Windows® Operating System
- 2700.3bc4: ProductVersion: 10.0.17134.1
- 2700.3bc4: FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
- 2700.3bc4: FileDescription: ApiSet Schema DLL
- 2700.3bc4: NtOpenDirectoryObject failed on \Driver: 0xc0000022
- 2700.3bc4: supR3HardenedWinFindAdversaries: 0x0
- 2700.3bc4: Calling main()
- 2700.3bc4: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
- 2700.3bc4: SUPR3HardenedMain: Respawn #1
- 2700.3bc4: System32: \Device\HarddiskVolume2\Windows\System32
- 2700.3bc4: WinSxS: \Device\HarddiskVolume2\Windows\WinSxS
- 2700.3bc4: KnownDllPath: C:\Windows\System32
- 2700.3bc4: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
- 2700.3bc4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe)
- 2700.3bc4: supR3HardNtEnableThreadCreation:
- 2700.3bc4: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffb8ab14f90 pvNtTerminateThread=00007ffb8ab3b3f0
- 2700.3bc4: supR3HardenedWinDoReSpawn(1): New child a44.3dc [kernel32].
- 2700.3bc4: supR3HardNtChildGatherData: PebBaseAddress=000000000116b000 cbPeb=0x388
- 2700.3bc4: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffb8aaa0000 uNtDllChildAddr=00007ffb8aaa0000
- 2700.3bc4: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffb8ab14f90
- 2700.3bc4: supR3HardenedWinSetupChildInit: Start child.
- 2700.3bc4: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
- 2700.3bc4: supR3HardNtChildPurify: Startup delay kludge #1/0: 270 ms, 16 sleeps
- 2700.3bc4: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
- 2700.3bc4: *0000000000000000-ffffffffff12ffff 0x0001/0x0000 0x0000000
- 2700.3bc4: *0000000000ed0000-0000000000eaffff 0x0004/0x0004 0x0020000
- 2700.3bc4: *0000000000ef0000-0000000000ed6fff 0x0002/0x0002 0x0040000
- 2700.3bc4: 0000000000f09000-0000000000f01fff 0x0001/0x0000 0x0000000
- 2700.3bc4: *0000000000f10000-0000000000f0bfff 0x0002/0x0002 0x0040000
- 2700.3bc4: 0000000000f14000-0000000000f07fff 0x0001/0x0000 0x0000000
- 2700.3bc4: *0000000000f20000-0000000000f1efff 0x0004/0x0004 0x0020000
- 2700.3bc4: 0000000000f21000-0000000000e41fff 0x0001/0x0000 0x0000000
- 2700.3bc4: *0000000001000000-0000000000e94fff 0x0000/0x0004 0x0020000
- 2700.3bc4: 000000000116b000-0000000001167fff 0x0004/0x0004 0x0020000
- 2700.3bc4: 000000000116e000-00000000010dbfff 0x0000/0x0004 0x0020000
- 2700.3bc4: *0000000001200000-0000000001104fff 0x0000/0x0004 0x0020000
- 2700.3bc4: 00000000012fb000-00000000012f7fff 0x0104/0x0004 0x0020000
- 2700.3bc4: 00000000012fe000-00000000012fbfff 0x0004/0x0004 0x0020000
- 2700.3bc4: 0000000001300000-ffffffff8261ffff 0x0001/0x0000 0x0000000
- 2700.3bc4: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
- 2700.3bc4: 000000007ffe1000-ffff800b0d061fff 0x0001/0x0000 0x0000000
- 2700.3bc4: *00007ff5f2f60000-00007ff5f2f3cfff 0x0002/0x0002 0x0040000
- 2700.3bc4: 00007ff5f2f83000-00007ff56b3d5fff 0x0001/0x0000 0x0000000
- 2700.3bc4: *00007ff67ab30000-00007ff67ab30fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67ab31000-00007ff67ab9ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67aba0000-00007ff67aba0fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67aba1000-00007ff67abd9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67abda000-00007ff67abdafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67abdb000-00007ff67abdbfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67abdc000-00007ff67abe0fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67abe1000-00007ff67abe1fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67abe2000-00007ff67abe2fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67abe3000-00007ff67abe6fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67abe7000-00007ff67ac1dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 2700.3bc4: 00007ff67ac1e000-00007ff16ad9bfff 0x0001/0x0000 0x0000000
- 2700.3bc4: *00007ffb8aaa0000-00007ffb8aaa0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8aaa1000-00007ffb8abaffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8abb0000-00007ffb8abf5fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8abf6000-00007ffb8ac00fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8ac01000-00007ffb8ac0efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8ac0f000-00007ffb8ac0ffff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8ac10000-00007ffb8ac12fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8ac13000-00007ffb8ac80fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- 2700.3bc4: 00007ffb8ac81000-00007ff715911fff 0x0001/0x0000 0x0000000
- 2700.3bc4: VirtualBox.exe: timestamp 0x57baf3c5 (rc=VINF_SUCCESS)
- 2700.3bc4: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
- 2700.3bc4: '\Device\HarddiskVolume2\Windows\System32\ntdll.dll' has no imports
- 2700.3bc4: supR3HardNtChildPurify: Done after 301 ms and 0 fixes (loop #0).
- a44.3dc: Log file opened: 4.3.40r110317 g_hStartupLog=0000000000000004 g_uNtVerCombined=0xa042ee00
- 2700.3bc4: supR3HardNtEnableThreadCreation:
- a44.3dc: supR3HardenedVmProcessInit: uNtDllAddr=00007ffb8aaa0000 g_uNtVerCombined=0xa042ee00
- a44.3dc: ntdll.dll: timestamp 0x7f828745 (rc=VINF_SUCCESS)
- a44.3dc: New simple heap: #1 0000000001400000 LB 0x400000 (for 1970176 allocation)
- a44.3dc: System32: \Device\HarddiskVolume2\Windows\System32
- a44.3dc: WinSxS: \Device\HarddiskVolume2\Windows\WinSxS
- a44.3dc: KnownDllPath: C:\Windows\System32
- a44.3dc: supR3HardenedVmProcessInit: Opening vboxdrv stub...
- a44.3dc: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk...
- a44.3dc: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk...
- a44.3dc: Registered Dll notification callback with NTDLL.
- a44.3dc: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\kernel32.dll)
- a44.3dc: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- a44.3dc: supR3HardenedMonitor_LdrLoadDll: pName=C:\Windows\System32\KERNEL32.DLL (Input=KERNEL32.DLL, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000004001:<flags> [calling]
- a44.3dc: supR3HardenedDllNotificationCallback: load 00007ffb87600000 LB 0x00273000 C:\Windows\System32\KERNELBASE.dll [fFlags=0x0]
- a44.3dc: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\KernelBase.dll)
- a44.3dc: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- a44.3dc: supR3HardenedDllNotificationCallback: load 00007ffb8a8a0000 LB 0x000b1000 C:\Windows\System32\KERNEL32.DLL [fFlags=0x0]
- a44.3dc: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
- a44.3dc: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb8a8a0000 'C:\Windows\System32\KERNEL32.DLL'
- a44.3dc: supR3HardenedDllNotificationCallback: load 00007ff67ab30000 LB 0x000ee000 C:\Program Files\Oracle\VirtualBox\VirtualBox.exe [fFlags=0x0]
- a44.3dc: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
- a44.3dc: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe)
- a44.3dc: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffb8ab14f90 pvNtTerminateThread=00007ffb8ab3b3f0
- 2700.3bc4: supR3HardNtChildWaitFor: Found expected request 1 (CloseEvents) after 100 ms.
- a44.3dc: \SystemRoot\System32\ntdll.dll:
- a44.3dc: CreationTime: 2019-06-12T13:24:21.785062700Z
- a44.3dc: LastWriteTime: 2019-05-17T06:06:58.140701600Z
- a44.3dc: ChangeTime: 2019-06-12T19:12:53.659007400Z
- a44.3dc: FileAttributes: 0x20
- a44.3dc: Size: 0x1da660
- a44.3dc: NT Headers: 0xe8
- a44.3dc: Timestamp: 0x7f828745
- a44.3dc: Machine: 0x8664 - amd64
- a44.3dc: Timestamp: 0x7f828745
- a44.3dc: Image Version: 10.0
- a44.3dc: SizeOfImage: 0x1e1000 (1970176)
- a44.3dc: Resource Dir: 0x174000 LB 0x6b3e8
- a44.3dc: ProductName: Microsoft® Windows® Operating System
- a44.3dc: ProductVersion: 10.0.17134.799
- a44.3dc: FileVersion: 10.0.17134.799 (WinBuild.160101.0800)
- a44.3dc: FileDescription: NT Layer DLL
- a44.3dc: \SystemRoot\System32\kernel32.dll:
- a44.3dc: CreationTime: 2019-05-15T17:54:54.877734600Z
- a44.3dc: LastWriteTime: 2019-04-19T10:54:56.743034000Z
- a44.3dc: ChangeTime: 2019-06-12T13:30:57.698020700Z
- a44.3dc: FileAttributes: 0x20
- a44.3dc: Size: 0xafd48
- a44.3dc: NT Headers: 0xe8
- a44.3dc: Timestamp: 0xda2d7146
- a44.3dc: Machine: 0x8664 - amd64
- a44.3dc: Timestamp: 0xda2d7146
- a44.3dc: Image Version: 10.0
- a44.3dc: SizeOfImage: 0xb1000 (724992)
- a44.3dc: Resource Dir: 0xaf000 LB 0x520
- a44.3dc: ProductName: Microsoft® Windows® Operating System
- a44.3dc: ProductVersion: 10.0.17134.753
- a44.3dc: FileVersion: 10.0.17134.753 (WinBuild.160101.0800)
- a44.3dc: FileDescription: Windows NT BASE API Client DLL
- a44.3dc: \SystemRoot\System32\KernelBase.dll:
- a44.3dc: CreationTime: 2019-06-12T13:24:25.038873000Z
- a44.3dc: LastWriteTime: 2019-05-17T06:07:07.278992600Z
- a44.3dc: ChangeTime: 2019-06-12T19:12:53.643313900Z
- a44.3dc: FileAttributes: 0x20
- a44.3dc: Size: 0x273d78
- a44.3dc: NT Headers: 0xf0
- a44.3dc: Timestamp: 0x8a3d2a4
- a44.3dc: Machine: 0x8664 - amd64
- a44.3dc: Timestamp: 0x8a3d2a4
- a44.3dc: Image Version: 10.0
- a44.3dc: SizeOfImage: 0x273000 (2568192)
- a44.3dc: Resource Dir: 0x251000 LB 0x548
- a44.3dc: ProductName: Microsoft® Windows® Operating System
- a44.3dc: ProductVersion: 10.0.17134.799
- a44.3dc: FileVersion: 10.0.17134.799 (WinBuild.160101.0800)
- a44.3dc: FileDescription: Windows NT BASE API Client DLL
- a44.3dc: \SystemRoot\System32\apisetschema.dll:
- a44.3dc: CreationTime: 2018-04-11T23:34:44.042150700Z
- a44.3dc: LastWriteTime: 2018-04-11T23:34:44.042150700Z
- a44.3dc: ChangeTime: 2019-03-20T16:34:26.845506400Z
- a44.3dc: FileAttributes: 0x80
- a44.3dc: Size: 0x1bd98
- a44.3dc: NT Headers: 0xd0
- a44.3dc: Timestamp: 0xd02ff418
- a44.3dc: Machine: 0x8664 - amd64
- a44.3dc: Timestamp: 0xd02ff418
- a44.3dc: Image Version: 10.0
- a44.3dc: SizeOfImage: 0x1c000 (114688)
- a44.3dc: Resource Dir: 0x1b000 LB 0x408
- a44.3dc: ProductName: Microsoft® Windows® Operating System
- a44.3dc: ProductVersion: 10.0.17134.1
- a44.3dc: FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
- a44.3dc: FileDescription: ApiSet Schema DLL
- a44.3dc: NtOpenDirectoryObject failed on \Driver: 0xc0000022
- a44.3dc: supR3HardenedWinFindAdversaries: 0x0
- a44.3dc: Calling main()
- a44.3dc: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
- a44.3dc: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
- a44.3dc: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe)
- a44.3dc: SUPR3HardenedMain: Respawn #2
- a44.3dc: supR3HardNtEnableThreadCreation:
- a44.3dc: '\Device\HarddiskVolume2\Windows\System32\ntdll.dll' has no imports
- a44.3dc: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ntdll.dll)
- a44.3dc: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: supR3HardenedMonitor_LdrLoadDll: pName=C:\Windows\System32\ntdll.dll (Input=ntdll.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- a44.3dc: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb8aaa0000 'C:\Windows\System32\ntdll.dll'
- a44.3dc: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffb8ab14f90 pvNtTerminateThread=00007ffb8ab3b3f0
- a44.3dc: supR3HardenedWinDoReSpawn(2): New child 24ac.10e4 [kernel32].
- a44.3dc: supR3HardenedWinReSpawn: NtSetInformationThread/ThreadHideFromDebugger failed: 0xc0000022 (harmless)
- a44.3dc: supR3HardNtChildGatherData: PebBaseAddress=00000000010bb000 cbPeb=0x388
- a44.3dc: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffb8aaa0000 uNtDllChildAddr=00007ffb8aaa0000
- a44.3dc: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffb8ab14f90
- a44.3dc: supR3HardenedWinSetupChildInit: Start child.
- a44.3dc: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
- a44.3dc: supR3HardNtChildPurify: Startup delay kludge #1/0: 264 ms, 20 sleeps
- a44.3dc: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
- a44.3dc: *0000000000000000-ffffffffff1cffff 0x0001/0x0000 0x0000000
- a44.3dc: *0000000000e30000-0000000000e0ffff 0x0004/0x0004 0x0020000
- a44.3dc: *0000000000e50000-0000000000e36fff 0x0002/0x0002 0x0040000
- a44.3dc: 0000000000e69000-0000000000e61fff 0x0001/0x0000 0x0000000
- a44.3dc: *0000000000e70000-0000000000d74fff 0x0000/0x0004 0x0020000
- a44.3dc: 0000000000f6b000-0000000000f67fff 0x0104/0x0004 0x0020000
- a44.3dc: 0000000000f6e000-0000000000f6bfff 0x0004/0x0004 0x0020000
- a44.3dc: *0000000000f70000-0000000000f6bfff 0x0002/0x0002 0x0040000
- a44.3dc: 0000000000f74000-0000000000f67fff 0x0001/0x0000 0x0000000
- a44.3dc: *0000000000f80000-0000000000f7efff 0x0004/0x0004 0x0020000
- a44.3dc: 0000000000f81000-0000000000f01fff 0x0001/0x0000 0x0000000
- a44.3dc: *0000000001000000-0000000000f44fff 0x0000/0x0004 0x0020000
- a44.3dc: 00000000010bb000-00000000010b7fff 0x0004/0x0004 0x0020000
- a44.3dc: 00000000010be000-0000000000f7bfff 0x0000/0x0004 0x0020000
- a44.3dc: 0000000001200000-ffffffff8241ffff 0x0001/0x0000 0x0000000
- a44.3dc: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
- a44.3dc: 000000007ffe1000-ffff800b112a1fff 0x0001/0x0000 0x0000000
- a44.3dc: *00007ff5eed20000-00007ff5eecfcfff 0x0002/0x0002 0x0040000
- a44.3dc: 00007ff5eed43000-00007ff562f55fff 0x0001/0x0000 0x0000000
- a44.3dc: *00007ff67ab30000-00007ff67ab30fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67ab31000-00007ff67ab9ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67aba0000-00007ff67aba0fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67aba1000-00007ff67abd9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67abda000-00007ff67abdafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67abdb000-00007ff67abdbfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67abdc000-00007ff67abe0fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67abe1000-00007ff67abe1fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67abe2000-00007ff67abe2fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67abe3000-00007ff67abe6fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67abe7000-00007ff67ac1dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- a44.3dc: 00007ff67ac1e000-00007ff16ad9bfff 0x0001/0x0000 0x0000000
- a44.3dc: *00007ffb8aaa0000-00007ffb8aaa0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8aaa1000-00007ffb8abaffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8abb0000-00007ffb8abf5fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8abf6000-00007ffb8ac00fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8ac01000-00007ffb8ac0efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8ac0f000-00007ffb8ac0ffff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8ac10000-00007ffb8ac12fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8ac13000-00007ffb8ac80fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume2\Windows\System32\ntdll.dll
- a44.3dc: 00007ffb8ac81000-00007ff715911fff 0x0001/0x0000 0x0000000
- a44.3dc: VirtualBox.exe: timestamp 0x57baf3c5 (rc=VINF_SUCCESS)
- a44.3dc: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
- a44.3dc: '\Device\HarddiskVolume2\Windows\System32\ntdll.dll' has no imports
- a44.3dc: supR3HardNtChildPurify: Done after 292 ms and 0 fixes (loop #0).
- 24ac.10e4: Log file opened: 4.3.40r110317 g_hStartupLog=0000000000000004 g_uNtVerCombined=0xa042ee00
- 24ac.10e4: supR3HardenedVmProcessInit: uNtDllAddr=00007ffb8aaa0000 g_uNtVerCombined=0xa042ee00
- a44.3dc: supR3HardenedEarlyCompact: Removed heap 1 (0x00000001400000 LB 0x400000)
- 24ac.10e4: ntdll.dll: timestamp 0x7f828745 (rc=VINF_SUCCESS)
- a44.3dc: supR3HardNtEnableThreadCreation:
- 24ac.10e4: New simple heap: #1 0000000001300000 LB 0x400000 (for 1970176 allocation)
- 24ac.10e4: System32: \Device\HarddiskVolume2\Windows\System32
- 24ac.10e4: WinSxS: \Device\HarddiskVolume2\Windows\WinSxS
- 24ac.10e4: KnownDllPath: C:\Windows\System32
- 24ac.10e4: supR3HardenedVmProcessInit: Opening vboxdrv...
- 24ac.10e4: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk...
- 24ac.10e4: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk...
- 24ac.10e4: Registered Dll notification callback with NTDLL.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\kernel32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\kernel32.dll
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=C:\Windows\System32\KERNEL32.DLL (Input=KERNEL32.DLL, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000004001:<flags> [calling]
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb87600000 LB 0x00273000 C:\Windows\System32\KERNELBASE.dll [fFlags=0x0]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\KernelBase.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\KernelBase.dll
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb8a8a0000 LB 0x000b1000 C:\Windows\System32\KERNEL32.DLL [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb8a8a0000 'C:\Windows\System32\KERNEL32.DLL'
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ff67ab30000 LB 0x000ee000 C:\Program Files\Oracle\VirtualBox\VirtualBox.exe [fFlags=0x0]
- 24ac.10e4: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe
- 24ac.10e4: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffb8ab14f90 pvNtTerminateThread=00007ffb8ab3b3f0
- a44.3dc: supR3HardNtChildWaitFor: Found expected request 1 (CloseEvents) after 79 ms.
- 24ac.10e4: \SystemRoot\System32\ntdll.dll:
- 24ac.10e4: CreationTime: 2019-06-12T13:24:21.785062700Z
- 24ac.10e4: LastWriteTime: 2019-05-17T06:06:58.140701600Z
- 24ac.10e4: ChangeTime: 2019-06-12T19:12:53.659007400Z
- 24ac.10e4: FileAttributes: 0x20
- 24ac.10e4: Size: 0x1da660
- 24ac.10e4: NT Headers: 0xe8
- 24ac.10e4: Timestamp: 0x7f828745
- 24ac.10e4: Machine: 0x8664 - amd64
- 24ac.10e4: Timestamp: 0x7f828745
- 24ac.10e4: Image Version: 10.0
- 24ac.10e4: SizeOfImage: 0x1e1000 (1970176)
- 24ac.10e4: Resource Dir: 0x174000 LB 0x6b3e8
- 24ac.10e4: ProductName: Microsoft® Windows® Operating System
- 24ac.10e4: ProductVersion: 10.0.17134.799
- 24ac.10e4: FileVersion: 10.0.17134.799 (WinBuild.160101.0800)
- 24ac.10e4: FileDescription: NT Layer DLL
- 24ac.10e4: \SystemRoot\System32\kernel32.dll:
- 24ac.10e4: CreationTime: 2019-05-15T17:54:54.877734600Z
- 24ac.10e4: LastWriteTime: 2019-04-19T10:54:56.743034000Z
- 24ac.10e4: ChangeTime: 2019-06-12T13:30:57.698020700Z
- 24ac.10e4: FileAttributes: 0x20
- 24ac.10e4: Size: 0xafd48
- 24ac.10e4: NT Headers: 0xe8
- 24ac.10e4: Timestamp: 0xda2d7146
- 24ac.10e4: Machine: 0x8664 - amd64
- 24ac.10e4: Timestamp: 0xda2d7146
- 24ac.10e4: Image Version: 10.0
- 24ac.10e4: SizeOfImage: 0xb1000 (724992)
- 24ac.10e4: Resource Dir: 0xaf000 LB 0x520
- 24ac.10e4: ProductName: Microsoft® Windows® Operating System
- 24ac.10e4: ProductVersion: 10.0.17134.753
- 24ac.10e4: FileVersion: 10.0.17134.753 (WinBuild.160101.0800)
- 24ac.10e4: FileDescription: Windows NT BASE API Client DLL
- 24ac.10e4: \SystemRoot\System32\KernelBase.dll:
- 24ac.10e4: CreationTime: 2019-06-12T13:24:25.038873000Z
- 24ac.10e4: LastWriteTime: 2019-05-17T06:07:07.278992600Z
- 24ac.10e4: ChangeTime: 2019-06-12T19:12:53.643313900Z
- 24ac.10e4: FileAttributes: 0x20
- 24ac.10e4: Size: 0x273d78
- 24ac.10e4: NT Headers: 0xf0
- 24ac.10e4: Timestamp: 0x8a3d2a4
- 24ac.10e4: Machine: 0x8664 - amd64
- 24ac.10e4: Timestamp: 0x8a3d2a4
- 24ac.10e4: Image Version: 10.0
- 24ac.10e4: SizeOfImage: 0x273000 (2568192)
- 24ac.10e4: Resource Dir: 0x251000 LB 0x548
- 24ac.10e4: ProductName: Microsoft® Windows® Operating System
- 24ac.10e4: ProductVersion: 10.0.17134.799
- 24ac.10e4: FileVersion: 10.0.17134.799 (WinBuild.160101.0800)
- 24ac.10e4: FileDescription: Windows NT BASE API Client DLL
- 24ac.10e4: \SystemRoot\System32\apisetschema.dll:
- 24ac.10e4: CreationTime: 2018-04-11T23:34:44.042150700Z
- 24ac.10e4: LastWriteTime: 2018-04-11T23:34:44.042150700Z
- 24ac.10e4: ChangeTime: 2019-03-20T16:34:26.845506400Z
- 24ac.10e4: FileAttributes: 0x80
- 24ac.10e4: Size: 0x1bd98
- 24ac.10e4: NT Headers: 0xd0
- 24ac.10e4: Timestamp: 0xd02ff418
- 24ac.10e4: Machine: 0x8664 - amd64
- 24ac.10e4: Timestamp: 0xd02ff418
- 24ac.10e4: Image Version: 10.0
- 24ac.10e4: SizeOfImage: 0x1c000 (114688)
- 24ac.10e4: Resource Dir: 0x1b000 LB 0x408
- 24ac.10e4: ProductName: Microsoft® Windows® Operating System
- 24ac.10e4: ProductVersion: 10.0.17134.1
- 24ac.10e4: FileVersion: 10.0.17134.1 (WinBuild.160101.0800)
- 24ac.10e4: FileDescription: ApiSet Schema DLL
- 24ac.10e4: NtOpenDirectoryObject failed on \Driver: 0xc0000022
- 24ac.10e4: supR3HardenedWinFindAdversaries: 0x0
- 24ac.10e4: Calling main()
- 24ac.10e4: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
- 24ac.10e4: '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe)
- 24ac.10e4: SUPR3HardenedMain: Final process, opening VBoxDrv...
- 24ac.10e4: supR3HardenedEarlyCompact: Removed heap 1 (0x00000001300000 LB 0x400000)
- 24ac.10e4: supR3HardNtEnableThreadCreation:
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxSupLib.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxSupLib.dll
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxSupLib.DLL (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxSupLib.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb83740000 LB 0x00005000 C:\Program Files\Oracle\VirtualBox\VBoxSupLib.DLL [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxSupLib.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxSupLib.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxSupLib.DLL (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb83740000 'C:\Program Files\Oracle\VirtualBox\VBoxSupLib.DLL'
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxSupLib.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VBoxSupLib.DLL (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb83740000 'C:\Program Files\Oracle\VirtualBox\VBoxSupLib.DLL'
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb83740000 'C:\Program Files\Oracle\VirtualBox\VBoxSupLib.DLL'
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msasn1.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'crypt32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #27 'rpcrt4.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\wintrust.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\wintrust.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'crypt32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'crypt32.dll' -> '\Device\HarddiskVolume2\Windows\System32\crypt32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #34 'msasn1.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\crypt32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\crypt32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msasn1.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msasn1.dll' -> '\Device\HarddiskVolume2\Windows\System32\msasn1.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\msasn1.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msasn1.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\msvcrt.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msvcrt.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msasn1.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msasn1.dll' -> '\Device\HarddiskVolume2\Windows\System32\msasn1.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msasn1.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=C:\Windows\system32\Wintrust.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb88830000 LB 0x0009e000 C:\Windows\System32\msvcrt.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb86e50000 LB 0x00012000 C:\Windows\System32\MSASN1.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msasn1.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb87c60000 LB 0x000f8000 C:\Windows\System32\ucrtbase.dll [fFlags=0x0]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ucrtbase.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ucrtbase.dll
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb878d0000 LB 0x001e2000 C:\Windows\System32\CRYPT32.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\crypt32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb88640000 LB 0x00124000 C:\Windows\System32\RPCRT4.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb88be0000 LB 0x0005b000 C:\Windows\System32\sechost.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'rpcrt4.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\sechost.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\sechost.dll
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb8a990000 LB 0x000a1000 C:\Windows\System32\advapi32.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'sechost.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #27 'rpcrt4.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\advapi32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\advapi32.dll
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb87eb0000 LB 0x00057000 C:\Windows\System32\Wintrust.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\wintrust.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-synch-l1-2-0 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb87600000 'api-ms-win-core-synch-l1-2-0'
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-fibers-l1-1-1 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb87600000 'api-ms-win-core-fibers-l1-1-1'
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-fibers-l1-1-1 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb87600000 'api-ms-win-core-fibers-l1-1-1'
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-synch-l1-2-0 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb87600000 'api-ms-win-core-synch-l1-2-0'
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=api-ms-win-core-localization-l1-2-1 (rcNtResolve=0x0) *pfFlags=0x0 pwszSearchPath=0000000000000801:<flags> [calling]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb87600000 'api-ms-win-core-localization-l1-2-1'
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffb87eb0000 'C:\Windows\system32\Wintrust.dll'
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> -626 (\Device\HarddiskVolume2\Windows\System32\bcrypt.dll)
- 24ac.10e4: Error (rc=0):
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: rc=Unknown Status -626 (0xfffffd8e) fImage=1 fProtect=0x0 fAccess=0x0 \Device\HarddiskVolume2\Windows\System32\bcrypt.dll: Grown load config (192 to 256 bytes) includes non-zero bytes: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 90 a9 01 80 01 00 00 00
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\bcrypt.dll
- 24ac.10e4: Error (rc=0):
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: rejecting 'C:\Windows\system32\bcrypt.dll' (C:\Windows\system32\bcrypt.dll): rcNt=0xc0000190
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0xc0000190 'C:\Windows\system32\bcrypt.dll'
- 24ac.10e4: Warning! Failed to load bcrypt.dll
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\cryptsp.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\cryptsp.dll
- 24ac.10e4: supR3HardenedDllNotificationCallback: load 00007ffb867e0000 LB 0x00017000 C:\Windows\SYSTEM32\CRYPTSP.dll [fFlags=0x0]
- 24ac.10e4: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\cryptsp.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #18 'bcrypt.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\rsaenh.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\rsaenh.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'bcrypt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'bcrypt.dll' -> '\Device\HarddiskVolume2\Windows\System32\bcrypt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (Unknown Status -626 (0xfffffd8e)) on \Device\HarddiskVolume2\Windows\System32\bcrypt.dll [lacks WinVerifyTrust]
- 24ac.10e4: Error (rc=0):
- 24ac.10e4: supR3HardenedScreenImage/Imports: cached rc=Unknown Status -626 (0xfffffd8e) fImage=1 fProtect=0x0 fAccess=0x0 cHits=1 \Device\HarddiskVolume2\Windows\System32\bcrypt.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'sechost.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'sechost.dll' -> '\Device\HarddiskVolume2\Windows\System32\sechost.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\sechost.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=C:\Windows\system32\rsaenh.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000001:<flags> [calling]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rsaenh.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status -626 (0xfffffd8e)) on \Device\HarddiskVolume2\Windows\System32\bcrypt.dll [lacks WinVerifyTrust]
- 24ac.10e4: Error (rc=0):
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cached rc=Unknown Status -626 (0xfffffd8e) fImage=1 fProtect=0x10 fAccess=0xf cHits=2 \Device\HarddiskVolume2\Windows\System32\bcrypt.dll
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0xc0000190 'C:\Windows\system32\rsaenh.dll'
- 24ac.10e4: supR3HardNtViCallWinVerifyTrust: WinVerifyTrust failed with 0x8 (<NULL>) on '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe'
- 24ac.10e4: Error -22919 in VirtualBox! (enmWhat=1)
- 24ac.10e4: WinVerifyTrust failed on stub executable: WinVerifyTrust failed with hrc=Unknown Status 0x8 on '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.exe'
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'opengl32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'vboxrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'msvcp100.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'msvcr100.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'qtcorevbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'qtguivbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'qtnetworkvbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'qtopenglvbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #9 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #10 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #11 'advapi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #12 'shell32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #13 'ole32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #14 'oleaut32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #15 'winmm.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmm.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmm.dll' -> '\Device\HarddiskVolume2\Windows\System32\winmm.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'winmmbase.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'msvcrt.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\winmm.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\winmm.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcp_win.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'combase.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #23 'rpcrt4.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\oleaut32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\oleaut32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #23 'rpcrt4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #48 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #49 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #50 'combase.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ole32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ole32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shell32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'shell32.dll' -> '\Device\HarddiskVolume2\Windows\System32\shell32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #74 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #76 'gdi32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\shell32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\shell32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\gdi32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\gdi32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'win32u.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #34 'gdi32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\user32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\user32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtopenglvbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtopenglvbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtopenglvbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'opengl32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'qtguivbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'qtcorevbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'msvcr100.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtOpenGLVBox4.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtOpenGLVBox4.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtnetworkvbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtnetworkvbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtnetworkvbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'ws2_32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'qtcorevbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'msvcr100.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtNetworkVBox4.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtNetworkVBox4.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtguivbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtguivbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtguivbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'comdlg32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'oleaut32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'imm32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'winmm.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'winspool.drv'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'ole32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #7 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #8 'advapi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #9 'shell32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #10 'qtcorevbox4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #11 'msvcp100.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #12 'msvcr100.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtGuiVBox4.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtGuiVBox4.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtcorevbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtcorevbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtcorevbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'ole32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'advapi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'ws2_32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'msvcp100.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'msvcr100.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtCoreVBox4.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtCoreVBox4.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcr100.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'vboxrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'vboxrt.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\vboxrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcr100.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msvcp100.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'ws2_32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'rpcrt4.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'opengl32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'opengl32.dll' -> '\Device\HarddiskVolume2\Windows\System32\opengl32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'advapi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #5 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #6 'glu32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\opengl32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\opengl32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'glu32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'glu32.dll' -> '\Device\HarddiskVolume2\Windows\System32\glu32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'opengl32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\glu32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\glu32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ws2_32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'ws2_32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ws2_32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #26 'rpcrt4.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\ws2_32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\ws2_32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ws2_32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'ws2_32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ws2_32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ws2_32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtcorevbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtcorevbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtcorevbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtCoreVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shell32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'shell32.dll' -> '\Device\HarddiskVolume2\Windows\System32\shell32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\shell32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ole32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'ole32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ole32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ole32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winspool.drv'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'winspool.drv' -> '\Device\HarddiskVolume2\Windows\System32\winspool.drv' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #24 'propsys.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #29 'iphlpapi.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #38 'bcrypt.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\winspool.drv)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\winspool.drv
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmm.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmm.dll' -> '\Device\HarddiskVolume2\Windows\System32\winmm.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmm.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'imm32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'imm32.dll' -> '\Device\HarddiskVolume2\Windows\System32\imm32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #25 'win32u.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\imm32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\imm32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'comdlg32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'comdlg32.dll' -> '\Device\HarddiskVolume2\Windows\System32\comdlg32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #35 'user32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #36 'shlwapi.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #37 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #38 'comctl32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #39 'shell32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume2\Windows\System32\comdlg32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\comdlg32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtcorevbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtcorevbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtcorevbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtCoreVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'ws2_32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'ws2_32.dll' -> '\Device\HarddiskVolume2\Windows\System32\ws2_32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\ws2_32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcr100.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcr100.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtcorevbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtcorevbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtcorevbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtCoreVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'qtguivbox4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'qtguivbox4.dll' -> '\Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\qtguivbox4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtGuiVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'opengl32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'opengl32.dll' -> '\Device\HarddiskVolume2\Windows\System32\opengl32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\opengl32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: '\Device\HarddiskVolume2\Windows\System32\win32u.dll' has no imports
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\win32u.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\win32u.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #3 'rpcrt4.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #45 'bcryptprimitives.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\combase.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\combase.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'combase.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'combase.dll' -> '\Device\HarddiskVolume2\Windows\System32\combase.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\combase.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcp_win.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcp_win.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\msvcp_win.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\msvcp_win.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmmbase.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmmbase.dll' -> '\Device\HarddiskVolume2\Windows\System32\winmmbase.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\winmmbase.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\winmmbase.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'bcryptprimitives.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'bcryptprimitives.dll' -> '\Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> -626 (\Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll)
- 24ac.10e4: Error (rc=0):
- 24ac.10e4: supR3HardenedScreenImage/Imports: rc=Unknown Status -626 (0xfffffd8e) fImage=1 fProtect=0x0 fAccess=0x0 \Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll: Grown load config (192 to 256 bytes) includes non-zero bytes: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 8e 06 80 01 00 00 00
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\bcryptprimitives.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shell32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'shell32.dll' -> '\Device\HarddiskVolume2\Windows\System32\shell32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\shell32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'comctl32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'comctl32.dll' -> '\Device\HarddiskVolume2\Windows\System32\comctl32.dll' [rcNtRedir=0x0]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'advapi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'user32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\comctl32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\comctl32.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'shlwapi.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'shlwapi.dll' -> '\Device\HarddiskVolume2\Windows\System32\shlwapi.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #44 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #45 'user32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\shlwapi.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\shlwapi.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'win32u.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'win32u.dll' -> '\Device\HarddiskVolume2\Windows\System32\win32u.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\win32u.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'bcrypt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'bcrypt.dll' -> '\Device\HarddiskVolume2\Windows\System32\bcrypt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (Unknown Status -626 (0xfffffd8e)) on \Device\HarddiskVolume2\Windows\System32\bcrypt.dll [lacks WinVerifyTrust]
- 24ac.10e4: Error (rc=0):
- 24ac.10e4: supR3HardenedScreenImage/Imports: cached rc=Unknown Status -626 (0xfffffd8e) fImage=1 fProtect=0x0 fAccess=0x0 cHits=3 \Device\HarddiskVolume2\Windows\System32\bcrypt.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'iphlpapi.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'iphlpapi.dll' -> '\Device\HarddiskVolume2\Windows\System32\iphlpapi.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\IPHLPAPI.DLL)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\IPHLPAPI.DLL
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'propsys.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'propsys.dll' -> '\Device\HarddiskVolume2\Windows\System32\propsys.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #15 'oleaut32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #31 'rpcrt4.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\System32\propsys.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\System32\propsys.dll
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'opengl32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'opengl32.dll' -> '\Device\HarddiskVolume2\Windows\System32\opengl32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\opengl32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'rpcrt4.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'rpcrt4.dll' -> '\Device\HarddiskVolume2\Windows\System32\rpcrt4.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\rpcrt4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'oleaut32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'oleaut32.dll' -> '\Device\HarddiskVolume2\Windows\System32\oleaut32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\oleaut32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume2\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'user32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'user32.dll' -> '\Device\HarddiskVolume2\Windows\System32\user32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\user32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'gdi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'gdi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\gdi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\gdi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'advapi32.dll'...
- 24ac.10e4: supR3HardenedWinVerifyCacheProcessImportTodos: 'advapi32.dll' -> '\Device\HarddiskVolume2\Windows\System32\advapi32.dll' [rcNtRedir=0xc0150008]
- 24ac.10e4: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\advapi32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: pName=C:\Program Files\Oracle\VirtualBox\VirtualBox.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000000a01:<flags> [calling]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VirtualBox.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\opengl32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\VBoxRT.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcp100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\msvcr100.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtCoreVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtGuiVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtNetworkVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Program Files\Oracle\VirtualBox\QtOpenGLVBox4.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmm.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\glu32.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #1 'advapi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #2 'gdi32.dll'.
- 24ac.10e4: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #4 'user32.dll'.
- 24ac.10e4: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume2\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.17134.829_none_f94fe9573097fa34\comctl32.dll)
- 24ac.10e4: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume2\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.17134.829_none_f94fe9573097fa34\comctl32.dll
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume2\Windows\System32\winspool.drv [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\winmmbase.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\propsys.dll [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume2\Windows\System32\IPHLPAPI.DLL [lacks WinVerifyTrust]
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status -626 (0xfffffd8e)) on \Device\HarddiskVolume2\Windows\System32\bcrypt.dll [lacks WinVerifyTrust]
- 24ac.10e4: Error (rc=0):
- 24ac.10e4: supR3HardenedScreenImage/NtCreateSection: cached rc=Unknown Status -626 (0xfffffd8e) fImage=1 fProtect=0x10 fAccess=0xf cHits=4 \Device\HarddiskVolume2\Windows\System32\bcrypt.dll
- 24ac.10e4: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0xc0000190 'C:\Program Files\Oracle\VirtualBox\VirtualBox.dll'
- a44.3dc: supR3HardNtChildWaitFor[2]: Quitting: ExitCode=0x1 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 1433 ms, the end);
- 2700.3bc4: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0x1 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 1827 ms, the end);
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement