2f80.b80: Log file opened: 5.1.22r115126 g_hStartupLog=0000000000000054 g_uNtVerCombined=0xa03ad700
2f80.b80: \SystemRoot\System32\ntdll.dll:
2f80.b80: CreationTime: 2017-03-18T20:57:39.201977500Z
2f80.b80: LastWriteTime: 2017-03-18T20:57:39.201977500Z
2f80.b80: ChangeTime: 2017-06-22T01:48:34.996345000Z
2f80.b80: FileAttributes: 0x20
2f80.b80: Size: 0x1d7450
2f80.b80: NT Headers: 0xe0
2f80.b80: Timestamp: 0xb79b6ddb
2f80.b80: Machine: 0x8664 - amd64
2f80.b80: Timestamp: 0xb79b6ddb
2f80.b80: Image Version: 10.0
2f80.b80: SizeOfImage: 0x1db000 (1945600)
2f80.b80: Resource Dir: 0x170000 LB 0x69398
2f80.b80: [Version info resource found at 0xd8! (ID/Name: 0x1; SubID/SubName: 0x409)]
2f80.b80: [Raw version resource data: 0x1700f0 LB 0x380, codepage 0x0 (reserved 0x0)]
2f80.b80: ProductName: Microsoft® Windows® Operating System
2f80.b80: ProductVersion: 10.0.15063.0
2f80.b80: FileVersion: 10.0.15063.0 (WinBuild.160101.0800)
2f80.b80: FileDescription: NT Layer DLL
2f80.b80: \SystemRoot\System32\kernel32.dll:
2f80.b80: CreationTime: 2017-03-18T20:57:15.887502700Z
2f80.b80: LastWriteTime: 2017-03-18T20:57:15.887502700Z
2f80.b80: ChangeTime: 2017-06-22T01:48:24.230573100Z
2f80.b80: FileAttributes: 0x20
2f80.b80: Size: 0xad068
2f80.b80: NT Headers: 0xf8
2f80.b80: Timestamp: 0x17a3637d
2f80.b80: Machine: 0x8664 - amd64
2f80.b80: Timestamp: 0x17a3637d
2f80.b80: Image Version: 10.0
2f80.b80: SizeOfImage: 0xae000 (712704)
2f80.b80: Resource Dir: 0xac000 LB 0x520
2f80.b80: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)]
2f80.b80: [Raw version resource data: 0xac0b0 LB 0x3a4, codepage 0x0 (reserved 0x0)]
2f80.b80: ProductName: Microsoft® Windows® Operating System
2f80.b80: ProductVersion: 10.0.15063.0
2f80.b80: FileVersion: 10.0.15063.0 (WinBuild.160101.0800)
2f80.b80: FileDescription: Windows NT BASE API Client DLL
2f80.b80: \SystemRoot\System32\KernelBase.dll:
2f80.b80: CreationTime: 2017-03-18T20:57:35.951701900Z
2f80.b80: LastWriteTime: 2017-03-18T20:57:35.951701900Z
2f80.b80: ChangeTime: 2017-06-22T01:48:25.246228300Z
2f80.b80: FileAttributes: 0x20
2f80.b80: Size: 0x249bf0
2f80.b80: NT Headers: 0x100
2f80.b80: Timestamp: 0x461a0ff5
2f80.b80: Machine: 0x8664 - amd64
2f80.b80: Timestamp: 0x461a0ff5
2f80.b80: Image Version: 10.0
2f80.b80: SizeOfImage: 0x249000 (2396160)
2f80.b80: Resource Dir: 0x22a000 LB 0x548
2f80.b80: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)]
2f80.b80: [Raw version resource data: 0x22a0b0 LB 0x3bc, codepage 0x0 (reserved 0x0)]
2f80.b80: ProductName: Microsoft® Windows® Operating System
2f80.b80: ProductVersion: 10.0.15063.0
2f80.b80: FileVersion: 10.0.15063.0 (WinBuild.160101.0800)
2f80.b80: FileDescription: Windows NT BASE API Client DLL
2f80.b80: \SystemRoot\System32\apisetschema.dll:
2f80.b80: CreationTime: 2017-03-18T20:57:35.373527900Z
2f80.b80: LastWriteTime: 2017-03-18T20:57:35.373527900Z
2f80.b80: ChangeTime: 2017-06-22T01:48:07.495975500Z
2f80.b80: FileAttributes: 0x20
2f80.b80: Size: 0x1ada0
2f80.b80: NT Headers: 0xc0
2f80.b80: Timestamp: 0x76544b2
2f80.b80: Machine: 0x8664 - amd64
2f80.b80: Timestamp: 0x76544b2
2f80.b80: Image Version: 10.0
2f80.b80: SizeOfImage: 0x1b000 (110592)
2f80.b80: Resource Dir: 0x1a000 LB 0x408
2f80.b80: [Version info resource found at 0x48! (ID/Name: 0x1; SubID/SubName: 0x409)]
2f80.b80: [Raw version resource data: 0x1a060 LB 0x3a8, codepage 0x0 (reserved 0x0)]
2f80.b80: ProductName: Microsoft® Windows® Operating System
2f80.b80: ProductVersion: 10.0.15063.0
2f80.b80: FileVersion: 10.0.15063.0 (WinBuild.160101.0800)
2f80.b80: FileDescription: ApiSet Schema DLL
2f80.b80: NtOpenDirectoryObject failed on \Driver: 0xc0000022
2f80.b80: supR3HardenedWinFindAdversaries: 0x8000
2f80.b80: \SystemRoot\System32\drivers\cyprotectdrv64.sys:
2f80.b80: CreationTime: 2016-06-29T18:51:24.241099400Z
2f80.b80: LastWriteTime: 2017-05-01T19:38:31.469125400Z
2f80.b80: ChangeTime: 2017-06-22T03:43:19.715414900Z
2f80.b80: FileAttributes: 0x20
2f80.b80: Size: 0x2e3e8
2f80.b80: NT Headers: 0xf8
2f80.b80: Timestamp: 0x58d46b5b
2f80.b80: Machine: 0x8664 - amd64
2f80.b80: Timestamp: 0x58d46b5b
2f80.b80: Image Version: 6.1
2f80.b80: SizeOfImage: 0x12f000 (1241088)
2f80.b80: Resource Dir: 0x12d000 LB 0x2f0
2f80.b80: [Version info resource found at 0x48! (ID/Name: 0x1; SubID/SubName: 0x409)]
2f80.b80: [Raw version resource data: 0x12d060 LB 0x28c, codepage 0x0 (reserved 0x0)]
2f80.b80: ProductName: CylancePROTECT
2f80.b80: ProductVersion: 2.0.1430.7
2f80.b80: FileVersion: 2.0.1430.7
2f80.b80: FileDescription: Cylance Protect Driver
2f80.b80: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox'
2f80.b80: Calling main()
2f80.b80: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
2f80.b80: supR3HardenedWinInitAppBin(0x2): '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox'
2f80.b80: SUPR3HardenedMain: Respawn #1
2f80.b80: System32: \Device\HarddiskVolume4\Windows\System32
2f80.b80: WinSxS: \Device\HarddiskVolume4\Windows\WinSxS
2f80.b80: KnownDllPath: C:\WINDOWS\System32
2f80.b80: '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
2f80.b80: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe)
2f80.b80: supR3HardNtEnableThreadCreation:
2f80.b80: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffddb709ad0 pvNtTerminateThread=00007ffddb735e00
2f80.b80: supR3HardenedWinDoReSpawn(1): New child 2d9c.3350 [kernel32].
2f80.b80: supR3HardNtChildGatherData: PebBaseAddress=0000000000aa7000 cbPeb=0x388
2f80.b80: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffddb690000 uNtDllChildAddr=00007ffddb690000
2f80.b80: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffddb709ad0
2f80.b80: supR3HardenedWinSetupChildInit: Start child.
2f80.b80: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 16 ms.
2f80.b80: supR3HardNtChildPurify: Startup delay kludge #1/0: 514 ms, 33 sleeps
2f80.b80: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
2f80.b80: *0000000000000000-000000000081ffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000820000-000000000083ffff 0x0004/0x0004 0x0020000
2f80.b80: *0000000000840000-0000000000857fff 0x0002/0x0002 0x0040000
2f80.b80: 0000000000858000-000000000085ffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000860000-000000000095afff 0x0000/0x0004 0x0020000
2f80.b80: 000000000095b000-000000000095dfff 0x0104/0x0004 0x0020000
2f80.b80: 000000000095e000-000000000095ffff 0x0004/0x0004 0x0020000
2f80.b80: *0000000000960000-0000000000963fff 0x0002/0x0002 0x0040000
2f80.b80: 0000000000964000-000000000096ffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000970000-0000000000970fff 0x0004/0x0004 0x0020000
2f80.b80: 0000000000971000-000000000097ffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000980000-0000000000980fff 0x0020/0x0020 0x0020000 !!
2f80.b80: supHardNtVpFreeOrReplacePrivateExecMemory: Freeing exec mem at 0000000000980000 (LB 0x1000, 0000000000980000 LB 0x1000)
2f80.b80: supHardNtVpFreeOrReplacePrivateExecMemory: Free attempt #1 succeeded: 0x0 [0000000000980000/0000000000980000 LB 0/0x1000]
2f80.b80: supHardNtVpFreeOrReplacePrivateExecMemory: QVM after free 0: [0000000000000000]/0000000000980000 LB 0x80000 s=0x10000 ap=0x0 rp=0x00000000000001
2f80.b80: 0000000000981000-00000000009fffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000a00000-0000000000aa6fff 0x0000/0x0004 0x0020000
2f80.b80: 0000000000aa7000-0000000000aa9fff 0x0004/0x0004 0x0020000
2f80.b80: 0000000000aaa000-0000000000bfffff 0x0000/0x0004 0x0020000
2f80.b80: 0000000000c00000-000000007ffdffff 0x0001/0x0000 0x0000000
2f80.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000
2f80.b80: *000000007ffe1000-000000007ffeffff 0x0000/0x0002 0x0020000
2f80.b80: 000000007fff0000-00007ff68a10ffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ff68a110000-00007ff68a132fff 0x0002/0x0002 0x0040000
2f80.b80: 00007ff68a133000-00007ff68ac4ffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ff68ac50000-00007ff68ac50fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ac51000-00007ff68acc0fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68acc1000-00007ff68acc1fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68acc2000-00007ff68ad06fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad07000-00007ff68ad07fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad08000-00007ff68ad08fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad09000-00007ff68ad0dfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad0e000-00007ff68ad0efff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad0f000-00007ff68ad0ffff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad10000-00007ff68ad13fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad14000-00007ff68ad5bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad5c000-00007ffddb68ffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ffddb690000-00007ffddb690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb691000-00007ffddb79ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7a0000-00007ffddb7e4fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7e5000-00007ffddb7ecfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7ed000-00007ffddb7fafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7fb000-00007ffddb7fbfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7fc000-00007ffddb7fefff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7ff000-00007ffddb86afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb86b000-00007ffffffdffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ffffffe0000-00007ffffffeffff 0x0001/0x0002 0x0020000
2f80.b80: VirtualBox.exe: timestamp 0x5903619d (rc=VINF_SUCCESS)
2f80.b80: '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
2f80.b80: '\Device\HarddiskVolume4\Windows\System32\ntdll.dll' has no imports
2f80.b80: supR3HardNtChildPurify: cFixes=1 g_fSupAdversaries=0x8000
2f80.b80: supR3HardNtChildPurify: Startup delay kludge #1/1: 515 ms, 34 sleeps
2f80.b80: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
2f80.b80: *0000000000000000-000000000081ffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000820000-000000000083ffff 0x0004/0x0004 0x0020000
2f80.b80: *0000000000840000-0000000000857fff 0x0002/0x0002 0x0040000
2f80.b80: 0000000000858000-000000000085ffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000860000-000000000095afff 0x0000/0x0004 0x0020000
2f80.b80: 000000000095b000-000000000095dfff 0x0104/0x0004 0x0020000
2f80.b80: 000000000095e000-000000000095ffff 0x0004/0x0004 0x0020000
2f80.b80: *0000000000960000-0000000000963fff 0x0002/0x0002 0x0040000
2f80.b80: 0000000000964000-000000000096ffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000970000-0000000000970fff 0x0004/0x0004 0x0020000
2f80.b80: 0000000000971000-00000000009fffff 0x0001/0x0000 0x0000000
2f80.b80: *0000000000a00000-0000000000aa6fff 0x0000/0x0004 0x0020000
2f80.b80: 0000000000aa7000-0000000000aa9fff 0x0004/0x0004 0x0020000
2f80.b80: 0000000000aaa000-0000000000bfffff 0x0000/0x0004 0x0020000
2f80.b80: 0000000000c00000-000000007ffdffff 0x0001/0x0000 0x0000000
2f80.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000
2f80.b80: *000000007ffe1000-000000007ffeffff 0x0000/0x0002 0x0020000
2f80.b80: 000000007fff0000-00007ff68a10ffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ff68a110000-00007ff68a132fff 0x0002/0x0002 0x0040000
2f80.b80: 00007ff68a133000-00007ff68ac4ffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ff68ac50000-00007ff68ac50fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ac51000-00007ff68acc0fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68acc1000-00007ff68acc1fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68acc2000-00007ff68ad06fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad07000-00007ff68ad13fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad14000-00007ff68ad5bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Program Files\Oracle\VirtualBox\VirtualBox.exe
2f80.b80: 00007ff68ad5c000-00007ffddb68ffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ffddb690000-00007ffddb690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb691000-00007ffddb79ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7a0000-00007ffddb7e4fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7e5000-00007ffddb7e8fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7e9000-00007ffddb7ecfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7ed000-00007ffddb7fafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7fb000-00007ffddb7fbfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7fc000-00007ffddb7fefff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb7ff000-00007ffddb86afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume4\Windows\System32\ntdll.dll
2f80.b80: 00007ffddb86b000-00007ffffffdffff 0x0001/0x0000 0x0000000
2f80.b80: *00007ffffffe0000-00007ffffffeffff 0x0001/0x0002 0x0020000
2f80.b80: supR3HardNtChildPurify: Done after 1060 ms and 1 fixes (loop #1).
2d9c.3350: Log file opened: 5.1.22r115126 g_hStartupLog=0000000000000004 g_uNtVerCombined=0xa03ad700
2d9c.3350: supR3HardenedVmProcessInit: uNtDllAddr=00007ffddb690000 g_uNtVerCombined=0xa03ad700
2f80.b80: supR3HardNtEnableThreadCreation:
2d9c.3350: ntdll.dll: timestamp 0xb79b6ddb (rc=VINF_SUCCESS)
2d9c.3350: New simple heap: #1 0000000000d00000 LB 0x400000 (for 1945600 allocation)
2d9c.3350: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume4\Program Files\Oracle\VirtualBox'
2d9c.3350: System32: \Device\HarddiskVolume4\Windows\System32
2d9c.3350: WinSxS: \Device\HarddiskVolume4\Windows\WinSxS
2d9c.3350: KnownDllPath: C:\WINDOWS\System32
2d9c.3350: supR3HardenedVmProcessInit: Opening vboxdrv stub...
2f80.b80: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0xc0000005 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 31 ms, CloseEvents);
Hello Friends -
can you please let me know what are the next steps to resolve this issue and get move on? I have just upgraded to Windows 10 and VirtualBox 5.1.22.x stopped working all sudden. it was working fine with Windows 7 however before upgrading to Windows 10.
Would greatly appreciate your quick response and help in this?
Regards
Surya