VirtualBox

Ticket #13985: VBoxStartup.log

File VBoxStartup.log, 15.6 KB (added by ericc, 10 years ago)
Line 
13690.382c: Log file opened: 4.3.26r98988 g_hStartupLog=0000000000000094 g_uNtVerCombined=0x611db110
23690.382c: \SystemRoot\System32\ntdll.dll:
33690.382c: CreationTime: 2013-10-10T01:45:28.833188500Z
43690.382c: LastWriteTime: 2013-08-29T02:16:35.515578900Z
53690.382c: ChangeTime: 2013-10-10T02:02:15.337904600Z
63690.382c: FileAttributes: 0x20
73690.382c: Size: 0x1a6dc0
83690.382c: NT Headers: 0xe0
93690.382c: Timestamp: 0x521eaf24
103690.382c: Machine: 0x8664 - amd64
113690.382c: Timestamp: 0x521eaf24
123690.382c: Image Version: 6.1
133690.382c: SizeOfImage: 0x1a9000 (1740800)
143690.382c: Resource Dir: 0x151000 LB 0x560d8
153690.382c: ProductName: Microsoft® Windows® Operating System
163690.382c: ProductVersion: 6.1.7601.18247
173690.382c: FileVersion: 6.1.7601.18247 (win7sp1_gdr.130828-1532)
183690.382c: FileDescription: NT Layer DLL
193690.382c: \SystemRoot\System32\kernel32.dll:
203690.382c: CreationTime: 2014-04-09T01:57:58.995076100Z
213690.382c: LastWriteTime: 2014-03-04T09:44:00.336000000Z
223690.382c: ChangeTime: 2014-04-09T06:13:05.322053700Z
233690.382c: FileAttributes: 0x20
243690.382c: Size: 0x11c000
253690.382c: NT Headers: 0xe8
263690.382c: Timestamp: 0x5315a059
273690.382c: Machine: 0x8664 - amd64
283690.382c: Timestamp: 0x5315a059
293690.382c: Image Version: 6.1
303690.382c: SizeOfImage: 0x11f000 (1175552)
313690.382c: Resource Dir: 0x116000 LB 0x528
323690.382c: ProductName: Microsoft® Windows® Operating System
333690.382c: ProductVersion: 6.1.7601.18409
343690.382c: FileVersion: 6.1.7601.18409 (win7sp1_gdr.140303-2144)
353690.382c: FileDescription: Windows NT BASE API Client DLL
363690.382c: \SystemRoot\System32\KernelBase.dll:
373690.382c: CreationTime: 2014-07-07T01:06:56.989863800Z
383690.382c: LastWriteTime: 2014-03-04T09:44:00.336000000Z
393690.382c: ChangeTime: 2014-07-07T12:17:40.308840000Z
403690.382c: FileAttributes: 0x20
413690.382c: Size: 0x67c00
423690.382c: NT Headers: 0xe8
433690.382c: Timestamp: 0x5315a05a
443690.382c: Machine: 0x8664 - amd64
453690.382c: Timestamp: 0x5315a05a
463690.382c: Image Version: 6.1
473690.382c: SizeOfImage: 0x6c000 (442368)
483690.382c: Resource Dir: 0x6a000 LB 0x530
493690.382c: ProductName: Microsoft® Windows® Operating System
503690.382c: ProductVersion: 6.1.7601.18409
513690.382c: FileVersion: 6.1.7601.18409 (win7sp1_gdr.140303-2144)
523690.382c: FileDescription: Windows NT BASE API Client DLL
533690.382c: \SystemRoot\System32\apisetschema.dll:
543690.382c: CreationTime: 2015-03-11T06:43:13.153750400Z
553690.382c: LastWriteTime: 2015-02-03T03:28:14.008000000Z
563690.382c: ChangeTime: 2015-03-11T10:53:15.616784900Z
573690.382c: FileAttributes: 0x20
583690.382c: Size: 0x1a00
593690.382c: NT Headers: 0xc0
603690.382c: Timestamp: 0x54d04096
613690.382c: Machine: 0x8664 - amd64
623690.382c: Timestamp: 0x54d04096
633690.382c: Image Version: 6.1
643690.382c: SizeOfImage: 0x50000 (327680)
653690.382c: Resource Dir: 0x30000 LB 0x3f8
663690.382c: ProductName: Microsoft® Windows® Operating System
673690.382c: ProductVersion: 6.1.7601.18741
683690.382c: FileVersion: 6.1.7601.18741 (win7sp1_gdr.150202-1526)
693690.382c: FileDescription: ApiSet Schema DLL
703690.382c: supR3HardenedWinFindAdversaries: 0x0
713690.382c: Calling main()
723690.382c: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
733690.382c: SUPR3HardenedMain: Respawn #1
743690.382c: System32: \Device\HarddiskVolume8\Windows\System32
753690.382c: WinSxS: \Device\HarddiskVolume8\Windows\winsxs
763690.382c: KnownDllPath: C:\windows\system32
773690.382c: '\Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
783690.382c: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe)
793690.382c: supR3HardNtEnableThreadCreation:
803690.382c: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00000000771cc340 pvNtTerminateThread=00000000771f17e0
813690.382c: supR3HardenedWinDoReSpawn(1): New child 27f8.28a8 [kernel32].
823690.382c: supR3HardNtChildGatherData: PebBaseAddress=000007fffffd5000 cbPeb=0x380
833690.382c: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00000000771a0000 uNtDllChildAddr=00000000771a0000
843690.382c: supR3HardenedWinSetupChildInit: uLdrInitThunk=00000000771cc340
853690.382c: supR3HardenedWinSetupChildInit: Start child.
863690.382c: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
873690.382c: supR3HardNtChildPurify: Startup delay kludge #1/0: 264 ms, 33 sleeps
883690.382c: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
893690.382c: *0000000000000000-fffffffffffeffff 0x0001/0x0000 0x0000000
903690.382c: *0000000000010000-fffffffffffeffff 0x0004/0x0004 0x0020000
913690.382c: *0000000000030000-000000000002bfff 0x0002/0x0002 0x0040000
923690.382c: 0000000000034000-0000000000027fff 0x0001/0x0000 0x0000000
933690.382c: *0000000000040000-000000000003efff 0x0004/0x0004 0x0020000
943690.382c: 0000000000041000-0000000000031fff 0x0001/0x0000 0x0000000
953690.382c: *0000000000050000-000000000004efff 0x0040/0x0040 0x0020000 !!
963690.382c: supHardNtVpScanVirtualMemory: Freeing exec mem at 0000000000050000 (0000000000050000 LB 0x1000)
973690.382c: 0000000000051000-ffffffffffeb1fff 0x0001/0x0000 0x0000000
983690.382c: *00000000001f0000-00000000000f3fff 0x0000/0x0004 0x0020000
993690.382c: 00000000002ec000-00000000002e8fff 0x0104/0x0004 0x0020000
1003690.382c: 00000000002ef000-00000000002edfff 0x0004/0x0004 0x0020000
1013690.382c: 00000000002f0000-ffffffff8943ffff 0x0001/0x0000 0x0000000
1023690.382c: *00000000771a0000-000000007719efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1033690.382c: 00000000771a1000-000000007709efff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1043690.382c: 00000000772a3000-0000000077273fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1053690.382c: 00000000772d2000-00000000772c9fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1063690.382c: 00000000772da000-00000000772d8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1073690.382c: 00000000772db000-00000000772d7fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1083690.382c: 00000000772de000-0000000077272fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1093690.382c: 0000000077349000-000000006f6b1fff 0x0001/0x0000 0x0000000
1103690.382c: *000000007efe0000-000000007dfdffff 0x0000/0x0002 0x0020000
1113690.382c: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
1123690.382c: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
1133690.382c: 000000007fff0000-ffffffffc033ffff 0x0001/0x0000 0x0000000
1143690.382c: *000000013fca0000-000000013fc9efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1153690.382c: 000000013fca1000-000000013fc1cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1163690.382c: 000000013fd25000-000000013fd23fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1173690.382c: 000000013fd26000-000000013fce8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1183690.382c: 000000013fd63000-000000013fd61fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1193690.382c: 000000013fd64000-000000013fd62fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1203690.382c: 000000013fd65000-000000013fd62fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1213690.382c: 000000013fd67000-000000013fd65fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1223690.382c: 000000013fd68000-000000013fd66fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1233690.382c: 000000013fd69000-000000013fd64fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1243690.382c: 000000013fd6d000-000000013fd33fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1253690.382c: 000000013fda6000-fffff8038068bfff 0x0001/0x0000 0x0000000
1263690.382c: *000007feff4c0000-000007feff4befff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\apisetschema.dll
1273690.382c: 000007feff4c1000-000007fdfe9e1fff 0x0001/0x0000 0x0000000
1283690.382c: *000007fffffa0000-000007fffff6cfff 0x0002/0x0002 0x0040000
1293690.382c: 000007fffffd3000-000007fffffd0fff 0x0001/0x0000 0x0000000
1303690.382c: *000007fffffd5000-000007fffffd3fff 0x0004/0x0004 0x0020000
1313690.382c: 000007fffffd6000-000007fffffcdfff 0x0001/0x0000 0x0000000
1323690.382c: *000007fffffde000-000007fffffdbfff 0x0004/0x0004 0x0020000
1333690.382c: *000007fffffe0000-000007fffffcffff 0x0001/0x0002 0x0020000
1343690.382c: apisetschema.dll: timestamp 0x54d04096 (rc=VINF_SUCCESS)
1353690.382c: VirtualBox.exe: timestamp 0x550706a7 (rc=VINF_SUCCESS)
1363690.382c: '\Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
1373690.382c: '\Device\HarddiskVolume8\Windows\System32\apisetschema.dll' has no imports
1383690.382c: '\Device\HarddiskVolume8\Windows\System32\ntdll.dll' has no imports
1393690.382c: supR3HardNtChildPurify: cFixes=1 g_fSupAdversaries=0x80000000 cPatchCount=0
1403690.382c: supR3HardNtChildPurify: Startup delay kludge #1/1: 520 ms, 65 sleeps
1413690.382c: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
1423690.382c: *0000000000000000-fffffffffffeffff 0x0001/0x0000 0x0000000
1433690.382c: *0000000000010000-fffffffffffeffff 0x0004/0x0004 0x0020000
1443690.382c: *0000000000030000-000000000002bfff 0x0002/0x0002 0x0040000
1453690.382c: 0000000000034000-0000000000027fff 0x0001/0x0000 0x0000000
1463690.382c: *0000000000040000-000000000003efff 0x0004/0x0004 0x0020000
1473690.382c: 0000000000041000-ffffffffffe91fff 0x0001/0x0000 0x0000000
1483690.382c: *00000000001f0000-00000000000f3fff 0x0000/0x0004 0x0020000
1493690.382c: 00000000002ec000-00000000002e8fff 0x0104/0x0004 0x0020000
1503690.382c: 00000000002ef000-00000000002edfff 0x0004/0x0004 0x0020000
1513690.382c: 00000000002f0000-ffffffff8943ffff 0x0001/0x0000 0x0000000
1523690.382c: *00000000771a0000-000000007719efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1533690.382c: 00000000771a1000-000000007709efff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1543690.382c: 00000000772a3000-0000000077273fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1553690.382c: 00000000772d2000-00000000772c9fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1563690.382c: 00000000772da000-00000000772d8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1573690.382c: 00000000772db000-00000000772d9fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1583690.382c: 00000000772dc000-00000000772d9fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1593690.382c: 00000000772de000-0000000077272fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\ntdll.dll
1603690.382c: 0000000077349000-000000006f6b1fff 0x0001/0x0000 0x0000000
1613690.382c: *000000007efe0000-000000007dfdffff 0x0000/0x0002 0x0020000
1623690.382c: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
1633690.382c: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
1643690.382c: 000000007fff0000-ffffffffc033ffff 0x0001/0x0000 0x0000000
1653690.382c: *000000013fca0000-000000013fc9efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1663690.382c: 000000013fca1000-000000013fc1cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1673690.382c: 000000013fd25000-000000013fd23fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1683690.382c: 000000013fd26000-000000013fce8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1693690.382c: 000000013fd63000-000000013fd58fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1703690.382c: 000000013fd6d000-000000013fd33fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Program Files\Oracle\VirtualBox\VirtualBox.exe
1713690.382c: 000000013fda6000-fffff8038068bfff 0x0001/0x0000 0x0000000
1723690.382c: *000007feff4c0000-000007feff4befff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume8\Windows\System32\apisetschema.dll
1733690.382c: 000007feff4c1000-000007fdfe9e1fff 0x0001/0x0000 0x0000000
1743690.382c: *000007fffffa0000-000007fffff6cfff 0x0002/0x0002 0x0040000
1753690.382c: 000007fffffd3000-000007fffffd0fff 0x0001/0x0000 0x0000000
1763690.382c: *000007fffffd5000-000007fffffd3fff 0x0004/0x0004 0x0020000
1773690.382c: 000007fffffd6000-000007fffffcdfff 0x0001/0x0000 0x0000000
1783690.382c: *000007fffffde000-000007fffffdbfff 0x0004/0x0004 0x0020000
1793690.382c: *000007fffffe0000-000007fffffcffff 0x0001/0x0002 0x0020000
1803690.382c: supR3HardNtChildPurify: Done after 807 ms and 1 fixes (loop #1).
1813690.382c: supR3HardNtEnableThreadCreation:
18227f8.28a8: Log file opened: 4.3.26r98988 g_hStartupLog=0000000000000004 g_uNtVerCombined=0x611db110
18327f8.28a8: supR3HardenedVmProcessInit: uNtDllAddr=00000000771a0000
18427f8.28a8: ntdll.dll: timestamp 0x521eaf24 (rc=VINF_SUCCESS)
18527f8.28a8: New simple heap: #1 00000000002f0000 LB 0x400000 (for 1740800 allocation)
18627f8.28a8: System32: \Device\HarddiskVolume8\Windows\System32
18727f8.28a8: WinSxS: \Device\HarddiskVolume8\Windows\winsxs
18827f8.28a8: KnownDllPath: C:\windows\system32
18927f8.28a8: supR3HardenedVmProcessInit: Opening vboxdrv stub...
19027f8.28a8: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk...
19127f8.28a8: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk...
19227f8.28a8: Registered Dll notification callback with NTDLL.
19327f8.28a8: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume8\Windows\System32\kernel32.dll)
19427f8.28a8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume8\Windows\System32\kernel32.dll
19527f8.28a8: supR3HardenedMonitor_LdrLoadDll: pName=C:\windows\system32\kernel32.dll (Input=kernel32.dll, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000000000:<flags> [calling]
19627f8.28a8: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume8\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
19727f8.28a8: supR3HardenedDllNotificationCallback: load 0000000076f80000 LB 0x0011f000 C:\windows\system32\kernel32.dll [fFlags=0x0]
19827f8.28a8: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume8\Windows\System32\kernel32.dll [lacks WinVerifyTrust]
19927f8.28a8: supR3HardenedDllNotificationCallback: load 000007fefd2a0000 LB 0x0006c000 C:\windows\system32\KERNELBASE.dll [fFlags=0x0]
20027f8.28a8: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume8\Windows\System32\KernelBase.dll)
20127f8.28a8: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume8\Windows\System32\KernelBase.dll
20227f8.28a8: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=0000000076f80000 'C:\windows\system32\kernel32.dll'
2033690.382c: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0xc0000005 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 1487 ms, CloseEvents);

© 2024 Oracle Support Privacy / Do Not Sell My Info Terms of Use Trademark Policy Automated Access Etiquette