월 19,800원
5개월 할부 시다른 수강생들이 자주 물어보는 질문이 궁금하신가요?
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
프로세스가 열고 있는 파일의 의미 + 디스크 용량 초과 에러 구현 방법
이전 질문을 참고해서 dd 명령어로 nginx 디렉토리에 용량이 큰 파일을 만들었는데요 해당 파일을 삭제해도 디스크 용량은 줄어들지 않았습니다 검색해보니 해당 실행 중인 프로세스가 열고 있는 파일을 삭제하면 ls에만 안 보일 뿐 제대로 삭제된 것은 아니어서 lsof 명령어를 사용해야하는 것을 알게 되었습니다 근데 프로세스가 열고 있는 파일, 연결된 파일?이 정확히 무슨 뜻인지 잘 안나와서 질문 드립니다~ 추가로 용량을 너무 키우면 터미널이 오랫동안 멈춰 있어서 결국 에러 상황을 구현 못했는데요 강사님은 어떤 방식으로 구현했는지 궁급합니다 ㅎㅎ
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
wsl2에서 Vagrant 사용법이 궁금합니다~
@DESKTOP-9A9A9UT:~/VWS_vagrant_script$ vagrant up /opt/vagrant/embedded/gems/2.2.6/gems/vagrant-2.2.6/lib/vagrant/util/which.rb:37: warning: Insecure world writable dir /mnt/c in PATH, mode 040777 Vagrant failed to initialize at a very early stage: Vagrant is unable to use the VirtualBox provider from the Windows Subsystem for Linux without access to the Windows environment. Enabling this access must be done with caution and an understanding of the implications. For more information on enabling Windows access and using VirtualBox from the Windows Subsystem for Linux, please refer to the Vagrant documentation: https://www.vagrantup.com/docs/other/wsl.html 안녕하세요 wsl2 ubuntu에서 작업하는데 vagrant 실행 에러가 계속 떠서 문의 드립니다 윈도우랑 ubuntu 둘 다 virtualBox 설치한 후 ubuntu에 vgrant 설치하고 vagrant up 명령어를 입력하니 위와 같은 에러가 뜨더라구요 에러로그에서 알려준 공식사이트 따로 해도 잘 이해 되지 않아서 구글링 후 아래 링크 보면서 다시 vagrant랑 virtualBox 설치 했습니다 https://blog.thenets.org/how-to-run-vagrant-on-wsl-2/ virtualbox_WSL2를 설치해도 같은 에러가 뜨더라구요😢 혹시 wsl2에서 vagrant사용법을 알려주실 수 있나요? 읽어주셔서 감사합니다!
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
vagrant up 실행 시 network 이슈로 cent1이 정상 설치가 안되네요
Vagrant up 수행 시 하기와 같이 에러가 뜹니다.. 테스트 OS는 Mac이고, Virtual Box 버전은 6.1.28 r147628입니다. ======================================= VWS_vagrant_script % vagrant up Bringing machine 'cent1' up with 'virtualbox' provider... Bringing machine 'cent2' up with 'virtualbox' provider... Bringing machine 'cent3' up with 'virtualbox' provider... ==> cent1: Checking if box 'centos/8' version '2011.0' is up to date... ==> cent1: Clearing any previously set network interfaces... The IP address configured for the host-only network is not within the allowed ranges. Please update the address used to be within the allowed ranges and run the command again. Address: 172.18.1.91 Ranges: 192.168.56.0/21 Valid ranges can be modified in the /etc/vbox/networks.conf file. For more information including valid format see: https://www.virtualbox.org/manual/ch06.html#network_hostonly
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
BAK_PATH
안녕하세요, 좋은 강의 감사드립니다. 텔레그램 메시지 전달까지 정상적으로 되고나서, BAK_PATH 확인을 해봤더니 /mnt 디렉터리 하위에 BACKUP 디렉터리가 생성되지 않았더라구요 쉘 스크립트 내 if문에서 backup directory가 있는지 확인해서 있을 경우 출력되는 문구 "backup directory exist. No problem.이 출력되었는데, /mnt하위에 BACKUP디렉터리가 없어서요! 제가 놓친부분이라던가 코드 수정할 부분이 있을까요? 해당 부분위주로 캡쳐하였는데 전체 코드가 필요하다면 말씀해주세요! 감사합니다. >>if문에서 -e "${BAK_PATH}"조건을 만족했기때문에 출력되는 문구 >텔레그램 메시지
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
log_mon.sh의 HOST 변수
안녕하세요 질문드립니다. 먼저 telegram_example.sh의 코드입니다(선생님과 같습니다) 그리고 DIR, HOST변수 선언을 마친 log_mon.sh에서 ./log_mon.sh 실행 시, 아래와 같이 []로 표시되고 hostname을 받아오지 못했는데요 log_mon.sh내 코드 중, telegram_example.sh 쉘 스크립트를 실행하는 라인에서 ${HOST} 대신 ${HOSTNAME}로 변수를 불러오고 HOST 변수 선언 라인을 주석처리 하니, 아래와 같이 정상적으로 hostname [cent1]을 불러왔습니다. 위 사진은 log_mon.sh 내 HOST 변수 선언 라인을 주석처리하고 ${HOSTNAME}로 호출 할 때 ./log_mon.sh 결과입니다 전체 코드와 출력결과 설명이 길었습니다, 제 질문은 log_mon.sh 내 hostname을 받아오는 HOST 변수를 주석처리하고 ${HOSTNAME}이라는 선언하지 않았던 변수를 호출했을 때 정상적으로 cent1을 출력했는데, 이 ${HOSTNAME}는 어딜 보고cent1을 받아온 걸까요?
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
mariabackup 오류 관련
안녕하세요 저와 동일한 오류가 발생하신 분이 있길래 답변주신걸로 해봤는데 해결이 안되네요.. (참고답변 https://www.inflearn.com/questions/179156) 다음과 같은 오류가 뜹니다. 쉘 스트립트에서 해도 동일한 오류가 발생합니다....
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
cent1에서 다른 서버로 접속 시 에러메시지
안녕하세요, 서버구축 강의에서 막힘이 많아 질문이 많네요, 아래 커뮤니티 게시글 중 goodluck님께서 공유해주신대로 cent1에서 ssh cent2 접속 시, 아래와 같은 에러가 뜨는데요, 혹 말씀해주신 공개키 설정을 어떻게 하는지 문의드립니다 혹은 다른 방법이 있으면 답변 부탁드려요
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
vagrant 설치
질문1) ======iMac 환경=== 환경을 바꾸어 아이맥에서도 설치를 따로 진행해보았습니다. homebrew를 이용하여 mac os terminal app에서 vagrant와 git 모두 설치 완료 후, vagrant up 실행 시, cent1에 대해서는 설치 후 poweroff라고 뜨고 나머지는 아래와 같이 에러메시지와 함께 설치되지 않았다고 떠서요 >>추가 vagrant up cent2 vagrant up cent3 으로 각각 명령어 실행 시, 똑같은 에러가 뜨고 vagrant status로 확인 시에 power off( virtualbox) 로 뜨는데 어떻게 해결해야 할까요?? 질문2) =====윈도우 10 centos 6.1.28 버전 git 에서 모두 설치 완료하고, cent1~3 vagrant status 확인 시 모두 정상 동작중이고, 접속도 확인했는데요! 궁금한 점은 vritualbox에서는 cent1~3이 실행중으로 배경에 깔려있습니다. 하지만 기존에 실습을 쭉 진행해왔던 계정에서는 여전히 vagrant 명령을 찾을 수 없다고 뜨는데 이 경우 무엇이 문제일까요? 기초편 실습을 모두 virtualbox에서 계정을 생성하여 실습하였는데, git cmd 창이 아닌 virtualbox 계정에서 cent1~3 서버에 접속 할 수 있도록 셋팅은 어려울까요?
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
2-2. 웹 서버 트러블 슈팅을 위한 쉘 스트립크 강의중
안녕하세요 무사히 서버 설치하고 넘어와서 강의 듣는 중 깃허브에 http://172.18.x.xx/www/index.html로 접속하여 새로고침을 하여 로그기록이 남나 확인 하였는데 뭐가 문제인지 로그가 남지 않습니다.
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
설치에러
다시 설치 했는데 설치가 재대로 안됬는지 cent2에 3306 이랑 cent1에 80 포트가 안보이는데 어떻게 해결해야되죠 ?? 베이그란트 실행할때 init.sh 실행안하는것 같은데;; Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name tcp 0 0 0.0.0.0:111 0.0.0.0:* LISTEN 1/systemd tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 659/sshd tcp6 0 0 :::111 :::* LISTEN 1/systemd tcp6 0 0 :::22 :::* LISTEN 659/sshd udp 0 0 0.0.0.0:111 0.0.0.0:* 1/systemd udp 0 0 127.0.0.1:323 0.0.0.0:* 636/chronyd udp6 0 0 :::111 :::* 1/systemd udp6 0 0 ::1:323 :::* 636/chronyd
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
설치에러
설치에러 게속 떠서 진행이 안되네요 ..;; Bringing machine 'cent1' up with 'virtualbox' provider... Bringing machine 'cent2' up with 'virtualbox' provider... Bringing machine 'cent3' up with 'virtualbox' provider... ==> cent1: Preparing master VM for linked clones... cent1: This is a one time operation. Once the master VM is prepared, cent1: it will be used as a base for linked clones, making the creation cent1: of new VMs take milliseconds on a modern system. ==> cent1: Importing base box 'centos/8'... ==> cent1: Cloning VM... ==> cent1: Matching MAC address for NAT networking... ==> cent1: Checking if box 'centos/8' version '2011.0' is up to date... ==> cent1: Setting the name of the VM: cent1 ==> cent1: Clearing any previously set network interfaces... ==> cent1: Preparing network interfaces based on configuration... cent1: Adapter 1: nat cent1: Adapter 2: hostonly cent1: Adapter 3: hostonly ==> cent1: Forwarding ports... cent1: 22 (guest) => 2222 (host) (adapter 1) ==> cent1: Running 'pre-boot' VM customizations... ==> cent1: Booting VM... ==> cent1: Waiting for machine to boot. This may take a few minutes... cent1: SSH address: 127.0.0.1:2222 cent1: SSH username: vagrant cent1: SSH auth method: private key cent1: cent1: Vagrant insecure key detected. Vagrant will automatically replace cent1: this with a newly generated keypair for better security. cent1: cent1: Inserting generated public key within guest... cent1: Removing insecure key from the guest if it's present... cent1: Key inserted! Disconnecting and reconnecting using new SSH key... ==> cent1: Machine booted and ready! [cent1] No Virtualbox Guest Additions installation found. Last metadata expiration check: 0:00:03 ago on Tue 19 Oct 2021 05:22:10 AM UTC. Package centos-linux-release-8.3-1.2011.el8.noarch is already installed. Dependencies resolved. ================================================================================ Package Arch Version Repository Size ================================================================================ Upgrading: centos-linux-release noarch 8.4-1.2105.el8 baseos 22 k Transaction Summary ================================================================================ Upgrade 1 Package Total download size: 22 k Downloading Packages: centos-linux-release-8.4-1.2105.el8.noarch.rpm 198 kB/s | 22 kB 00:00 -------------------------------------------------------------------------------- Total 22 kB/s | 22 kB 00:00 warning: /var/cache/dnf/baseos-31c79d9833c65cf7/packages/centos-linux-release-8.4-1.2105.el8.noarch.rpm: Header V3 RSA/SHA256 Signature, key ID 8483c65d: NOKEY CentOS Linux 8 - BaseOS 1.6 MB/s | 1.6 kB 00:00 Importing GPG key 0x8483C65D: Userid : "CentOS (CentOS Official Signing Key) <security@centos.org>" Fingerprint: 99DB 70FA E1D7 CE22 7FB6 4882 05B5 55B3 8483 C65D From : /etc/pki/rpm-gpg/RPM-GPG-KEY-centosofficial Key imported successfully Running transaction check Transaction check succeeded. Running transaction test Transaction test succeeded. Running transaction Preparing : 1/1 Running scriptlet: centos-linux-release-8.4-1.2105.el8.noarch 1/1 Upgrading : centos-linux-release-8.4-1.2105.el8.noarch 1/2 Cleanup : centos-linux-release-8.3-1.2011.el8.noarch 2/2 Running scriptlet: centos-linux-release-8.3-1.2011.el8.noarch 2/2 Verifying : centos-linux-release-8.4-1.2105.el8.noarch 1/2 Verifying : centos-linux-release-8.3-1.2011.el8.noarch 2/2 Upgraded: centos-linux-release-8.4-1.2105.el8.noarch Complete! Last metadata expiration check: 0:00:07 ago on Tue 19 Oct 2021 05:22:10 AM UTC. No match for argument: kernel-devel-4.18.0-240.1.1.el8_3.x86_64 Error: Unable to find a match: kernel-devel-4.18.0-240.1.1.el8_3.x86_64 Unmounting Virtualbox Guest Additions ISO from: /mnt umount: /mnt: not mounted. ==> cent1: Checking for guest additions in VM... cent1: No guest additions were detected on the base box for this VM! Guest cent1: additions are required for forwarded ports, shared folders, host only cent1: networking, and more. If SSH fails on this machine, please install cent1: the guest additions and repackage the box to continue. cent1: cent1: This is not an error message; everything may continue to work properly, cent1: in which case you may ignore this message. The following SSH command responded with a non-zero exit status. Vagrant assumes that this means the command failed! umount /mnt
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
설치에러
- 학습 관련 질문을 남겨주세요. 상세히 작성하면 더 좋아요! - 먼저 유사한 질문이 있었는지 검색884.b80: Log file opened: 5.2.42r137960 g_hStartupLog=000000000000022c g_uNtVerCombined=0xa047bb00 884.b80: \SystemRoot\System32\ntdll.dll: 884.b80: CreationTime: 2021-08-08T07:58:56.460910800Z 884.b80: LastWriteTime: 2021-08-08T07:58:56.550669500Z 884.b80: ChangeTime: 2021-08-13T10:30:23.954860700Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0x1e8050 884.b80: NT Headers: 0xd8 884.b80: Timestamp: 0x418df01d 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0x418df01d 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0x1f0000 (2031616) 884.b80: Resource Dir: 0x17f000 LB 0x6f3b8 884.b80: [Version info resource found at 0xd8! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0x17f0f0 LB 0x380, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1679 884.b80: FileVersion: 10.0.18362.1679 (WinBuild.160101.0800) 884.b80: FileDescription: NT Layer DLL 884.b80: \SystemRoot\System32\kernel32.dll: 884.b80: CreationTime: 2021-08-13T10:28:27.561050600Z 884.b80: LastWriteTime: 2021-08-13T10:28:27.603935100Z 884.b80: ChangeTime: 2021-08-13T11:36:14.013362000Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0xb04a0 884.b80: NT Headers: 0xf8 884.b80: Timestamp: 0xbba1b5fe 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0xbba1b5fe 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0xb2000 (729088) 884.b80: Resource Dir: 0xb0000 LB 0x520 884.b80: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0xb00b0 LB 0x3a4, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1714 884.b80: FileVersion: 10.0.18362.1714 (WinBuild.160101.0800) 884.b80: FileDescription: Windows NT BASE API Client DLL 884.b80: \SystemRoot\System32\KernelBase.dll: 884.b80: CreationTime: 2021-08-13T10:28:44.194579400Z 884.b80: LastWriteTime: 2021-08-13T10:28:44.343181600Z 884.b80: ChangeTime: 2021-08-13T11:36:19.717616300Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0x2a62b0 884.b80: NT Headers: 0xf8 884.b80: Timestamp: 0x62b4f97e 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0x62b4f97e 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0x2a6000 (2777088) 884.b80: Resource Dir: 0x280000 LB 0x548 884.b80: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0x2800b0 LB 0x3bc, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1714 884.b80: FileVersion: 10.0.18362.1714 (WinBuild.160101.0800) 884.b80: FileDescription: Windows NT BASE API Client DLL 884.b80: \SystemRoot\System32\apisetschema.dll: 884.b80: CreationTime: 2019-03-19T04:43:54.837151500Z 884.b80: LastWriteTime: 2019-03-19T04:43:54.837151500Z 884.b80: ChangeTime: 2021-08-13T10:30:23.216833300Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0x1d028 884.b80: NT Headers: 0xc8 884.b80: Timestamp: 0xd6ced080 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0xd6ced080 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0x1e000 (122880) 884.b80: Resource Dir: 0x1d000 LB 0x408 884.b80: [Version info resource found at 0x48! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0x1d060 LB 0x3a8, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1 884.b80: FileVersion: 10.0.18362.1 (WinBuild.160101.0800) 884.b80: FileDescription: ApiSet Schema DLL 884.b80: NtOpenDirectoryObject failed on \Driver: 0xc0000022 884.b80: supR3HardenedWinFindAdversaries: 0x0 884.b80: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox' 884.b80: Calling main() 884.b80: SUPR3HardenedMain: pszProgName=VBoxHeadless fFlags=0x0 884.b80: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox' 884.b80: SUPR3HardenedMain: Respawn #1 884.b80: System32: \Device\HarddiskVolume3\Windows\System32 884.b80: WinSxS: \Device\HarddiskVolume3\Windows\WinSxS 884.b80: KnownDllPath: C:\WINDOWS\System32 884.b80: supR3HardenedWinInit: Performing a limited self purification... 884.b80: supHardNtVpScanVirtualMemory: enmKind=SELF_PURIFICATION 884.b80: *0000000000000000-000000000015ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000160000-000000000016ffff 0x0004/0x0004 0x0040000 884.b80: *0000000000170000-0000000000170fff 0x0040/0x0040 0x0020000 !! 884.b80: 0000000000171000-000000000017ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000180000-000000000019afff 0x0002/0x0002 0x0040000 884.b80: 000000000019b000-000000000019ffff 0x0001/0x0000 0x0000000 884.b80: *00000000001a0000-00000000001a3fff 0x0002/0x0002 0x0040000 884.b80: 00000000001a4000-00000000001affff 0x0001/0x0000 0x0000000 884.b80: *00000000001b0000-00000000001b1fff 0x0004/0x0004 0x0020000 884.b80: 00000000001b2000-00000000001bffff 0x0001/0x0000 0x0000000 884.b80: *00000000001c0000-00000000001c0fff 0x0002/0x0002 0x0040000 884.b80: 00000000001c1000-00000000001cffff 0x0001/0x0000 0x0000000 884.b80: *00000000001d0000-00000000001d1fff 0x0040/0x0040 0x0020000 !! 884.b80: 00000000001d2000-00000000001dffff 0x0001/0x0000 0x0000000 884.b80: *00000000001e0000-00000000001e1fff 0x0004/0x0004 0x0020000 884.b80: 00000000001e2000-00000000001effff 0x0001/0x0000 0x0000000 884.b80: *00000000001f0000-00000000001f2fff 0x0004/0x0004 0x0020000 884.b80: 00000000001f3000-00000000001fffff 0x0001/0x0000 0x0000000 884.b80: *0000000000200000-000000000027bfff 0x0000/0x0004 0x0020000 884.b80: 000000000027c000-0000000000284fff 0x0004/0x0004 0x0020000 884.b80: 0000000000285000-00000000003fffff 0x0000/0x0004 0x0020000 884.b80: *0000000000400000-00000000004b8fff 0x0000/0x0004 0x0020000 884.b80: 00000000004b9000-00000000004bbfff 0x0104/0x0004 0x0020000 884.b80: 00000000004bc000-00000000004fffff 0x0004/0x0004 0x0020000 884.b80: *0000000000500000-00000000005c6fff 0x0002/0x0002 0x0040000 884.b80: 00000000005c7000-00000000005cffff 0x0001/0x0000 0x0000000 884.b80: *00000000005d0000-00000000005d1fff 0x0004/0x0004 0x0020000 884.b80: 00000000005d2000-0000000000601fff 0x0000/0x0004 0x0020000 884.b80: 0000000000602000-000000000060ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000610000-0000000000610fff 0x0002/0x0002 0x0040000 884.b80: 0000000000611000-000000000061ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000620000-000000000062efff 0x0004/0x0004 0x0020000 884.b80: 000000000062f000-000000000062ffff 0x0000/0x0004 0x0020000 884.b80: *0000000000630000-0000000000631fff 0x0004/0x0004 0x0020000 884.b80: 0000000000632000-0000000000661fff 0x0000/0x0004 0x0020000 884.b80: 0000000000662000-000000000066ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000670000-0000000000673fff 0x0002/0x0002 0x0040000 884.b80: 0000000000674000-0000000000677fff 0x0000/0x0002 0x0040000 884.b80: 0000000000678000-000000000067ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000680000-000000000068efff 0x0004/0x0004 0x0020000 884.b80: 000000000068f000-000000000068ffff 0x0000/0x0004 0x0020000 884.b80: 0000000000690000-00000000006affff 0x0001/0x0000 0x0000000 884.b80: *00000000006b0000-00000000006f5fff 0x0004/0x0004 0x0020000 884.b80: 00000000006f6000-00000000007affff 0x0000/0x0004 0x0020000 884.b80: *00000000007b0000-00000000008a9fff 0x0000/0x0004 0x0020000 884.b80: 00000000008aa000-00000000008acfff 0x0104/0x0004 0x0020000 884.b80: 00000000008ad000-00000000008affff 0x0004/0x0004 0x0020000 884.b80: *00000000008b0000-00000000009abfff 0x0000/0x0004 0x0020000 884.b80: 00000000009ac000-00000000009aefff 0x0104/0x0004 0x0020000 884.b80: 00000000009af000-00000000009affff 0x0004/0x0004 0x0020000 884.b80: *00000000009b0000-0000000000aaafff 0x0000/0x0004 0x0020000 884.b80: 0000000000aab000-0000000000aadfff 0x0104/0x0004 0x0020000 884.b80: 0000000000aae000-0000000000aaffff 0x0004/0x0004 0x0020000 884.b80: *0000000000ab0000-0000000000af9fff 0x0002/0x0002 0x0040000 884.b80: 0000000000afa000-0000000000caffff 0x0000/0x0002 0x0040000 884.b80: *0000000000cb0000-0000000000e30fff 0x0002/0x0002 0x0040000 884.b80: 0000000000e31000-0000000000e3ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000e40000-000000000111cfff 0x0002/0x0002 0x0040000 884.b80: 000000000111d000-0000000002240fff 0x0000/0x0002 0x0040000 884.b80: 0000000002241000-000000000224ffff 0x0001/0x0000 0x0000000 884.b80: *0000000002250000-0000000002250fff 0x0004/0x0004 0x0020000 884.b80: 0000000002251000-0000000002281fff 0x0000/0x0004 0x0020000 884.b80: 0000000002282000-000000000229ffff 0x0001/0x0000 0x0000000 884.b80: *00000000022a0000-00000000022abfff 0x0004/0x0004 0x0020000 884.b80: 00000000022ac000-00000000022affff 0x0000/0x0004 0x0020000 884.b80: *00000000022b0000-00000000022bdfff 0x0000/0x0004 0x0020000 884.b80: 00000000022be000-00000000024aefff 0x0004/0x0004 0x0020000 884.b80: 00000000024af000-00000000024affff 0x0000/0x0004 0x0020000 884.b80: *00000000024b0000-00000000024b1fff 0x0004/0x0004 0x0020000 884.b80: 00000000024b2000-00000000024e1fff 0x0000/0x0004 0x0020000 884.b80: 00000000024e2000-00000000024effff 0x0001/0x0000 0x0000000 884.b80: *00000000024f0000-000000000250cfff 0x0004/0x0004 0x0020000 884.b80: 000000000250d000-00000000025effff 0x0000/0x0004 0x0020000 884.b80: 00000000025f0000-0000000060ffffff 0x0001/0x0000 0x0000000 884.b80: *0000000061000000-0000000061000fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000061000000 LB 0x1000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 0000000061001000-0000000061080fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000061001000 LB 0x80000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 0000000061081000-00000000610b5fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000061081000 LB 0x35000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610b6000-00000000610b7fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610b6000 LB 0x2000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610b8000-00000000610bffff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610b8000 LB 0x8000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610c0000-00000000610c5fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610c0000 LB 0x6000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610c6000-00000000610ccfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610c6000 LB 0x7000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610cd000-00000000611d4fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610cd000 LB 0x108000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000611d5000-00000000611dafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000611d5000 LB 0x6000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000611db000-000000007ffdffff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe1000-000000007ffe5fff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe6000-000000007ffe6fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe7000-000000017fffffff 0x0001/0x0000 0x0000000 884.b80: *0000000180000000-0000000180000fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180000000 LB 0x1000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180001000-0000000180022fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180001000 LB 0x22000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180023000-0000000180034fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180023000 LB 0x12000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180035000-000000018003bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180035000 LB 0x7000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 000000018003c000-000000018003ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 000000018003c000 LB 0x4000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180040000-00007ff41829ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff4182a0000-00007ff4182a4fff 0x0002/0x0002 0x0040000 884.b80: 00007ff4182a5000-00007ff41839ffff 0x0000/0x0002 0x0040000 884.b80: *00007ff4183a0000-00007ff5183bffff 0x0000/0x0004 0x0020000 884.b80: *00007ff5183c0000-00007ff51a3bffff 0x0000/0x0004 0x0020000 884.b80: 00007ff51a3c0000-00007ff51a3c0fff 0x0004/0x0004 0x0020000 884.b80: 00007ff51a3c1000-00007ff51a3cffff 0x0001/0x0000 0x0000000 884.b80: *00007ff51a3d0000-00007ff51a3d0fff 0x0002/0x0002 0x0040000 884.b80: 00007ff51a3d1000-00007ff51a3dffff 0x0001/0x0000 0x0000000 884.b80: *00007ff51a3e0000-00007ff51a412fff 0x0002/0x0002 0x0040000 884.b80: 00007ff51a413000-00007ff60568ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff605690000-00007ff605690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605691000-00007ff605702fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605703000-00007ff605703fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605704000-00007ff60574afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574b000-00007ff60574dfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574e000-00007ff605750fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605751000-00007ff605753fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605754000-00007ff605754fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605755000-00007ff605756fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605757000-00007ff605757fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605758000-00007ff60579ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff6057a0000-00007ffabbecffff 0x0001/0x0000 0x0000000 884.b80: *00007ffabbed0000-00007ffabbed0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbed0000 LB 0x1000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbed1000-00007ffabbeddfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbed1000 LB 0xd000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbede000-00007ffabbee1fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbede000 LB 0x4000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee2000-00007ffabbee2fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee2000 LB 0x1000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee3000-00007ffabbee4fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee3000 LB 0x2000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee5000-00007ffabbee8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee5000 LB 0x4000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee9000-00007ffabbee9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee9000 LB 0x1000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbeea000-00007ffabbefafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbeea000 LB 0x11000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbefb000-00007ffabbefcfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbefb000 LB 0x2000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbefd000-00007ffad48affff 0x0001/0x0000 0x0000000 884.b80: *00007ffad48b0000-00007ffad48b0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad48b0000 LB 0x1000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad48b1000-00007ffad48fafff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad48b1000 LB 0x4a000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad48fb000-00007ffad4919fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad48fb000 LB 0x1f000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad491a000-00007ffad491bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad491a000 LB 0x2000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad491c000-00007ffad4938fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad491c000 LB 0x1d000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad4939000-00007ffad8c7ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffad8c80000-00007ffad8c80fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c80000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c81000-00007ffad8c81fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c81000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c82000-00007ffad8c82fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c82000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c83000-00007ffad8c83fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c83000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c84000-00007ffad8c86fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c84000 LB 0x3000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c87000-00007ffae437ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffae4380000-00007ffae4380fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4380000 LB 0x1000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4381000-00007ffae4383fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4381000 LB 0x3000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4384000-00007ffae4385fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4384000 LB 0x2000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4386000-00007ffae4386fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4386000 LB 0x1000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4387000-00007ffae4389fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4387000 LB 0x3000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae438a000-00007ffae7c8ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffae7c90000-00007ffae7c90fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7c90000 LB 0x1000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7c91000-00007ffae7d24fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7c91000 LB 0x94000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d25000-00007ffae7d6bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7d25000 LB 0x47000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d6c000-00007ffae7d6dfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7d6c000 LB 0x2000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d6e000-00007ffae7d7efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7d6e000 LB 0x11000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d7f000-00007ffae7ddffff 0x0001/0x0000 0x0000000 884.b80: *00007ffae7de0000-00007ffae7de0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7de0000 LB 0x1000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7de1000-00007ffae7de9fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7de1000 LB 0x9000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7dea000-00007ffae7dedfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7dea000 LB 0x4000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7dee000-00007ffae7deefff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7dee000 LB 0x1000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7def000-00007ffae7df2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7def000 LB 0x4000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7df3000-00007ffaea34ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaea350000-00007ffaea350fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea350000 LB 0x1000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea351000-00007ffaea371fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea351000 LB 0x21000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea372000-00007ffaea379fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea372000 LB 0x8000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea37a000-00007ffaea37bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea37a000 LB 0x2000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea37c000-00007ffaea380fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea37c000 LB 0x5000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea381000-00007ffaea87ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaea880000-00007ffaea880fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea880000 LB 0x1000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea881000-00007ffaea8a9fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea881000 LB 0x29000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8aa000-00007ffaea8b3fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea8aa000 LB 0xa000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8b4000-00007ffaea8b4fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea8b4000 LB 0x1000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8b5000-00007ffaea8b9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea8b5000 LB 0x5000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8ba000-00007ffaeb31ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb320000-00007ffaeb320fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb320000 LB 0x1000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb321000-00007ffaeb328fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb321000 LB 0x8000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb329000-00007ffaeb32bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb329000 LB 0x3000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb32c000-00007ffaeb32cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb32c000 LB 0x1000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb32d000-00007ffaeb32ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb32d000 LB 0x3000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: *00007ffaeb330000-00007ffaeb330fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb330000 LB 0x1000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb331000-00007ffaeb341fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb331000 LB 0x11000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb342000-00007ffaeb34bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb342000 LB 0xa000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb34c000-00007ffaeb34cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb34c000 LB 0x1000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb34d000-00007ffaeb379fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb34d000 LB 0x2d000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb37a000-00007ffaeb37ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb380000-00007ffaeb380fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb380000 LB 0x1000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb381000-00007ffaeb384fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb381000 LB 0x4000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb385000-00007ffaeb38bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb385000 LB 0x7000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb38c000-00007ffaeb38cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb38c000 LB 0x1000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb38d000-00007ffaeb390fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb38d000 LB 0x4000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb391000-00007ffaeb39ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb3a0000-00007ffaeb3a0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3a0000 LB 0x1000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3a1000-00007ffaeb3b0fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3a1000 LB 0x10000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3b1000-00007ffaeb3b7fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3b1000 LB 0x7000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3b8000-00007ffaeb3b8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3b8000 LB 0x1000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3b9000-00007ffaeb3bdfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3b9000 LB 0x5000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3be000-00007ffaeb48ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb490000-00007ffaeb490fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb490000 LB 0x1000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb491000-00007ffaeb4e4fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb491000 LB 0x54000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb4e5000-00007ffaeb521fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb4e5000 LB 0x3d000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb522000-00007ffaeb522fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb522000 LB 0x1000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb523000-00007ffaeb525fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb523000 LB 0x3000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb526000-00007ffaeb52dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb526000 LB 0x8000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb52e000-00007ffaeb52ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb530000-00007ffaeb530fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb530000 LB 0x1000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb531000-00007ffaeb563fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb531000 LB 0x33000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb564000-00007ffaeb571fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb564000 LB 0xe000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb572000-00007ffaeb572fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb572000 LB 0x1000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb573000-00007ffaeb573fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb573000 LB 0x1000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb574000-00007ffaeb579fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb574000 LB 0x6000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb57a000-00007ffaeb57ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb580000-00007ffaeb580fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb581000-00007ffaeb687fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb688000-00007ffaeb7eafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb7eb000-00007ffaeb7eefff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb7ef000-00007ffaeb7effff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb7f0000-00007ffaeb825fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb826000-00007ffaeb82ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb830000-00007ffaeb830fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb830000 LB 0x1000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb831000-00007ffaeb83afff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb831000 LB 0xa000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb83b000-00007ffaeb849fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb83b000 LB 0xf000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb84a000-00007ffaeb84afff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb84a000 LB 0x1000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb84b000-00007ffaeb850fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb84b000 LB 0x6000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb851000-00007ffaeb85ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb860000-00007ffaeb860fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb860000 LB 0x1000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb861000-00007ffaeb911fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb861000 LB 0xb1000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb912000-00007ffaeb949fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb912000 LB 0x38000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb94a000-00007ffaeb94cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb94a000 LB 0x3000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb94d000-00007ffaeb959fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb94d000 LB 0xd000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb95a000-00007ffaeb95ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb960000-00007ffaeb960fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb960000 LB 0x1000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb961000-00007ffaeb979fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb961000 LB 0x19000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb97a000-00007ffaeb97ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb97a000 LB 0x6000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb980000-00007ffaeb980fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb980000 LB 0x1000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb981000-00007ffaeb985fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb981000 LB 0x5000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb986000-00007ffaeb98ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb990000-00007ffaeb990fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb990000 LB 0x1000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaeb991000-00007ffaebed1fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb991000 LB 0x541000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaebed2000-00007ffaec08cfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaebed2000 LB 0x1bb000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec08d000-00007ffaec099fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec08d000 LB 0xd000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec09a000-00007ffaec09afff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec09a000 LB 0x1000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec09b000-00007ffaec10afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec09b000 LB 0x70000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec10b000-00007ffaec2cffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec2d0000-00007ffaec2d0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec2d0000 LB 0x1000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec2d1000-00007ffaec337fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec2d1000 LB 0x67000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec338000-00007ffaec34dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec338000 LB 0x16000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec34e000-00007ffaec34efff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec34e000 LB 0x1000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec34f000-00007ffaec353fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec34f000 LB 0x5000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec354000-00007ffaec35ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec360000-00007ffaec360fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec360000 LB 0x1000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec361000-00007ffaec433fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec361000 LB 0xd3000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec434000-00007ffaec4d5fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec434000 LB 0xa2000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4d6000-00007ffaec4d9fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec4d6000 LB 0x4000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4da000-00007ffaec4dafff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec4da000 LB 0x1000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4db000-00007ffaec4f7fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec4db000 LB 0x1d000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4f8000-00007ffaec4fffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec500000-00007ffaec500fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec500000 LB 0x1000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec501000-00007ffaec50bfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec501000 LB 0xb000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec50c000-00007ffaec511fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec50c000 LB 0x6000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec512000-00007ffaec512fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec512000 LB 0x1000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec513000-00007ffaec516fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec513000 LB 0x4000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec517000-00007ffaec6cffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec6d0000-00007ffaec6d0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec6d0000 LB 0x1000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec6d1000-00007ffaec7aefff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec6d1000 LB 0xde000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7af000-00007ffaec7d8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7af000 LB 0x2a000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7d9000-00007ffaec7dafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7d9000 LB 0x2000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7db000-00007ffaec7eefff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7db000 LB 0x14000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7ef000-00007ffaec7effff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec7f0000-00007ffaec7f0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7f0000 LB 0x1000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaec7f1000-00007ffaeca0ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7f1000 LB 0x21f000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaeca10000-00007ffaecad2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeca10000 LB 0xc3000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaecad3000-00007ffaecad8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecad3000 LB 0x6000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaecad9000-00007ffaecb25fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecad9000 LB 0x4d000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaecb26000-00007ffaecb2ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecb30000-00007ffaecb30fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecb30000 LB 0x1000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecb31000-00007ffaecb91fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecb31000 LB 0x61000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecb92000-00007ffaecbb8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecb92000 LB 0x27000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbb9000-00007ffaecbb9fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbb9000 LB 0x1000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbba000-00007ffaecbbafff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbba000 LB 0x1000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbbb000-00007ffaecbbcfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbbb000 LB 0x2000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbbd000-00007ffaecbc6fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbbd000 LB 0xa000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbc7000-00007ffaecbcffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecbd0000-00007ffaecbd0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbd0000 LB 0x1000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaecbd1000-00007ffaecc9afff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbd1000 LB 0xca000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaecc9b000-00007ffaeccf7fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecc9b000 LB 0x5d000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaeccf8000-00007ffaeccf9fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeccf8000 LB 0x2000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaeccfa000-00007ffaecd26fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeccfa000 LB 0x2d000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaecd27000-00007ffaecdcffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecdd0000-00007ffaecddffff 0x0020/0x0040 0x0020000 !! 884.b80: *00007ffaecde0000-00007ffaecde0fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaecde1000-00007ffaece66fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaece67000-00007ffaece86fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaece87000-00007ffaece88fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaece89000-00007ffaecf73fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaecf74000-00007ffaecfeffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecff0000-00007ffaecff0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecff0000 LB 0x1000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaecff1000-00007ffaed065fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecff1000 LB 0x75000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed066000-00007ffaed07efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed066000 LB 0x19000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed07f000-00007ffaed080fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed07f000 LB 0x2000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed081000-00007ffaed083fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed081000 LB 0x3000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed084000-00007ffaed085fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed084000 LB 0x2000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed086000-00007ffaed086fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed086000 LB 0x1000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed087000-00007ffaed08dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed087000 LB 0x7000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed08e000-00007ffaed08ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed090000-00007ffaed090fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed091000-00007ffaed105fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed106000-00007ffaed137fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed138000-00007ffaed138fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed139000-00007ffaed139fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed13a000-00007ffaed141fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed142000-00007ffaed14ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed150000-00007ffaed150fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed150000 LB 0x1000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed151000-00007ffaed151fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed151000 LB 0x1000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed152000-00007ffaed153fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed152000 LB 0x2000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed154000-00007ffaed154fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed154000 LB 0x1000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed155000-00007ffaed157fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed155000 LB 0x3000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed158000-00007ffaed22ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed230000-00007ffaed230fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed230000 LB 0x1000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed231000-00007ffaed78efff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed231000 LB 0x55e000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed78f000-00007ffaed8a8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed78f000 LB 0x11a000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed8a9000-00007ffaed8affff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed8a9000 LB 0x7000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed8b0000-00007ffaed8b1fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed8b0000 LB 0x2000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed8b2000-00007ffaed916fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed8b2000 LB 0x65000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed917000-00007ffaed99ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed9a0000-00007ffaed9a0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed9a0000 LB 0x1000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaed9a1000-00007ffaeda11fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed9a1000 LB 0x71000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda12000-00007ffaeda37fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda12000 LB 0x26000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda38000-00007ffaeda39fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda38000 LB 0x2000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda3a000-00007ffaeda48fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda3a000 LB 0xf000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda49000-00007ffaeda4ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeda50000-00007ffaeda50fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda50000 LB 0x1000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda51000-00007ffaeda5cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda51000 LB 0xc000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda5d000-00007ffaeda6ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda5d000 LB 0x13000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda70000-00007ffaeda70fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda70000 LB 0x1000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda71000-00007ffaeda75fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda71000 LB 0x5000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda76000-00007ffaeda7ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeda80000-00007ffaeda80fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda80000 LB 0x1000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaeda81000-00007ffaedaaafff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda81000 LB 0x2a000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedaab000-00007ffaedacafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedaab000 LB 0x20000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedacb000-00007ffaedacbfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedacb000 LB 0x1000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedacc000-00007ffaedad1fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedacc000 LB 0x6000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedad2000-00007ffaedafffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaedb00000-00007ffaedb00fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb00000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb01000-00007ffaedb5ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb01000 LB 0x5f000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb60000-00007ffaedb94fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb60000 LB 0x35000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb95000-00007ffaedb95fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb95000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb96000-00007ffaedb96fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb96000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb97000-00007ffaedb98fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb97000 LB 0x2000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb99000-00007ffaedb99fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb99000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb9a000-00007ffaedba2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb9a000 LB 0x9000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedba3000-00007ffaedbaffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaedbb0000-00007ffaedbb0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedbb0000 LB 0x1000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedbb1000-00007ffaedc3dfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedbb1000 LB 0x8d000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc3e000-00007ffaedc63fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedc3e000 LB 0x26000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc64000-00007ffaedc66fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedc64000 LB 0x3000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc67000-00007ffaedc74fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedc67000 LB 0xe000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc75000-00007ffaee25ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee260000-00007ffaee260fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee260000 LB 0x1000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee261000-00007ffaee27cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee261000 LB 0x1c000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee27d000-00007ffaee283fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee27d000 LB 0x7000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee284000-00007ffaee284fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee284000 LB 0x1000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee285000-00007ffaee28dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee285000 LB 0x9000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee28e000-00007ffaee47ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee480000-00007ffaee480fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee481000-00007ffaee597fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee598000-00007ffaee5defff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5df000-00007ffaee5dffff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5e0000-00007ffaee5e1fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5e2000-00007ffaee5eafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5eb000-00007ffaee66ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee670000-00007ffffffeffff 0x0001/0x0000 0x0000000 884.b80: kernel32.dll: timestamp 0xbba1b5fe (rc=VINF_SUCCESS) 884.b80: user32.dll: timestamp 0xbcb1fcd3 (rc=VINF_SUCCESS) 884.b80: kernelbase.dll: timestamp 0x62b4f97e (rc=VINF_SUCCESS) 884.b80: VBoxHeadless.exe: timestamp 0x5ebc4e33 (rc=VINF_SUCCESS) 884.b80: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe' has no imports 884.b80: '\Device\HarddiskVolume3\Windows\System32\ntdll.dll' has no imports 884.b80: ntdll.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaee48001c / 0x000001c: 00 != 44 884.b80: 00007ffaee48001d / 0x000001d: 00 != 65 884.b80: 00007ffaee48001e / 0x000001e: 00 != 74 884.b80: 00007ffaee48001f / 0x000001f: 00 != 6f 884.b80: 00007ffaee480020 / 0x0000020: 00 != 75 884.b80: 00007ffaee480021 / 0x0000021: 00 != 72 884.b80: 00007ffaee480022 / 0x0000022: 00 != 73 884.b80: 00007ffaee480023 / 0x0000023: 00 != 21 884.b80: Restored 0x400 bytes of original file content at 00007ffaee480000 884.b80: ntdll.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaee480ff0 / 0x0000ff0: 00 != 7a 884.b80: 00007ffaee480ff1 / 0x0000ff1: 00 != 9c 884.b80: 00007ffaee480ff2 / 0x0000ff2: 00 != 77 884.b80: 00007ffaee480ff3 / 0x0000ff3: 00 != b2 884.b80: 00007ffaee480ff4 / 0x0000ff4: 00 != b9 884.b80: 00007ffaee480ff5 / 0x0000ff5: 00 != 32 884.b80: 00007ffaee480ff6 / 0x0000ff6: 00 != d2 884.b80: 00007ffaee480ff7 / 0x0000ff7: 00 != af 884.b80: 00007ffaee480ff8 / 0x0000ff8: 00 != 24 884.b80: 00007ffaee480ff9 / 0x0000ff9: 00 != 68 884.b80: 00007ffaee480ffa / 0x0000ffa: 00 != 39 884.b80: 00007ffaee480ffb / 0x0000ffb: 00 != 47 884.b80: Restored 0xc00 bytes of original file content at 00007ffaee480400 884.b80: ntdll.dll: Differences in section #1 (.text) between file and memory: 884.b80: 00007ffaee520520 / 0x00a0520: 4c != e9 884.b80: 00007ffaee520521 / 0x00a0521: 8b != 83 884.b80: 00007ffaee520522 / 0x00a0522: d1 != 00 884.b80: 00007ffaee520523 / 0x00a0523: b8 != 8b 884.b80: 00007ffaee520524 / 0x00a0524: b5 != fe 884.b80: 00007ffaee520525 / 0x00a0525: 01 != cc 884.b80: 00007ffaee520526 / 0x00a0526: 00 != cc 884.b80: 00007ffaee520527 / 0x00a0527: 00 != cc 884.b80: Restored 0xa92 bytes of original file content at 00007ffaee52004e 884.b80: kernel32.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaed09001c / 0x000001c: 00 != 44 884.b80: 00007ffaed09001d / 0x000001d: 00 != 65 884.b80: 00007ffaed09001e / 0x000001e: 00 != 74 884.b80: 00007ffaed09001f / 0x000001f: 00 != 6f 884.b80: 00007ffaed090020 / 0x0000020: 00 != 75 884.b80: 00007ffaed090021 / 0x0000021: 00 != 72 884.b80: 00007ffaed090022 / 0x0000022: 00 != 73 884.b80: 00007ffaed090023 / 0x0000023: 00 != 21 884.b80: Restored 0x400 bytes of original file content at 00007ffaed090000 884.b80: kernel32.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaed090ff0 / 0x0000ff0: 00 != 7a 884.b80: 00007ffaed090ff1 / 0x0000ff1: 00 != 9c 884.b80: 00007ffaed090ff2 / 0x0000ff2: 00 != 77 884.b80: 00007ffaed090ff3 / 0x0000ff3: 00 != b2 884.b80: 00007ffaed090ff4 / 0x0000ff4: 00 != b9 884.b80: 00007ffaed090ff5 / 0x0000ff5: 00 != 32 884.b80: 00007ffaed090ff6 / 0x0000ff6: 00 != d3 884.b80: 00007ffaed090ff7 / 0x0000ff7: 00 != af 884.b80: 00007ffaed090ff8 / 0x0000ff8: 00 != 24 884.b80: 00007ffaed090ff9 / 0x0000ff9: 00 != 68 884.b80: 00007ffaed090ffa / 0x0000ffa: 00 != 39 884.b80: 00007ffaed090ffb / 0x0000ffb: 00 != 47 884.b80: Restored 0xc00 bytes of original file content at 00007ffaed090400 884.b80: kernel32.dll: Differences in section #1 (.text) between file and memory: 884.b80: 00007ffaed0aa1f0 / 0x001a1f0: 48 != e9 884.b80: 00007ffaed0aa1f1 / 0x001a1f1: ff != 43 884.b80: 00007ffaed0aa1f2 / 0x001a1f2: 25 != 63 884.b80: 00007ffaed0aa1f3 / 0x001a1f3: 01 != d2 884.b80: 00007ffaed0aa1f4 / 0x001a1f4: e4 != ff 884.b80: 00007ffaed0aa1f5 / 0x001a1f5: 05 != cc 884.b80: 00007ffaed0aa1f6 / 0x001a1f6: 00 != cc 884.b80: Restored 0x2000 bytes of original file content at 00007ffaed0a9000 884.b80: kernel32.dll: Differences in section #1 (.text) between file and memory: 884.b80: 00007ffaed0aee30 / 0x001ee30: 48 != e9 884.b80: 00007ffaed0aee31 / 0x001ee31: ff != 3b 884.b80: 00007ffaed0aee32 / 0x001ee32: 25 != 17 884.b80: 00007ffaed0aee33 / 0x001ee33: 21 != d2 884.b80: 00007ffaed0aee34 / 0x001ee34: 97 != ff 884.b80: 00007ffaed0aee35 / 0x001ee35: 05 != cc 884.b80: 00007ffaed0aee36 / 0x001ee36: 00 != cc 884.b80: Restored 0x2000 bytes of original file content at 00007ffaed0ad000 884.b80: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'win32u.dll'. 884.b80: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #34 'gdi32.dll'. 884.b80: supHardNtVpGetImport: Failed to find symbol 0xffffffff / 'NtUserRegisterClassExWOW' in 'win32u.dll': Unknown Status -610 (0xfffffd9e) 884.b80: Error (rc=-5629): 884.b80: RTLdrGetBits failed on image user32.dll: Unknown Status -610 (0xfffffd9e) 884.b80: supR3HardenedWinInit: SUPHARDNTVPKIND_SELF_PURIFICATION_LIMITED -> Unknown Status -5629 (0xffffea03), cFixes=7 884.b80: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe' has no imports 884.b80: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe) 884.b80: supR3HardNtEnableThreadCreationEx: 884.b80: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffaee4f2040 pvNtTerminateThread=00007ffaee51d8f0 884.b80: supR3HardenedWinDoReSpawn(1): New child 35008.1e304 [kernel32]. 884.b80: supR3HardNtChildGatherData: PebBaseAddress=0000000000656000 cbPeb=0x388 884.b80: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffaee480000 uNtDllChildAddr=00007ffaee480000 884.b80: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffaee4f2040 884.b80: supR3HardenedWinSetupChildInit: Start child. 884.b80: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 1 ms. 884.b80: supR3HardNtChildPurify: Startup delay kludge #1/0: 261 ms, 29 sleeps 884.b80: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION 884.b80: *0000000000000000-00000000004dffff 0x0001/0x0000 0x0000000 884.b80: *00000000004e0000-00000000004fffff 0x0004/0x0004 0x0020000 884.b80: *0000000000500000-000000000051afff 0x0002/0x0002 0x0040000 884.b80: 000000000051b000-000000000051ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000520000-0000000000523fff 0x0002/0x0002 0x0040000 884.b80: 0000000000524000-000000000052ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000530000-0000000000531fff 0x0004/0x0004 0x0020000 884.b80: 0000000000532000-000000000054ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000550000-0000000000551fff 0x0040/0x0040 0x0020000 !! 884.b80: supHardNtVpFreeOrReplacePrivateExecMemory: Freeing exec mem at 0000000000550000 (LB 0x2000, 0000000000550000 LB 0x2000) 884.b80: 000000000250f430 0000: 40 57 48 83 ec 60 48 8d-44 24 40 66 c7 00 10 00 @WH..`H.D$@f.... 000000000250f440 0010: 66 c7 40 02 12 00 48 bb-60 00 55 00 00 00 00 00 f.@...H.`.U..... 000000000250f450 0020: 48 89 58 08 48 bb 72 00-55 00 00 00 00 00 48 89 H.X.H.r.U.....H. 000000000250f460 0030: 0b 4c 8d 4c 24 50 4c 8d-44 24 40 33 d2 33 c9 48 .L.L$PL.D$@3.3.H 000000000250f470 0040: c7 44 24 50 00 00 00 00-48 bb 00 16 4a ee fa 7f .D$P....H...J... 000000000250f480 0050: 00 00 e9 23 00 00 00 90-90 90 90 90 90 90 90 90 ...#............ 000000000250f490 0060: 66 00 5f 00 69 00 6d 00-2e 00 64 00 6c 00 6c 00 f._.i.m...d.l.l. 000000000250f4a0 0070: 00 00 00 00 00 00 00 00-00 00 ff d3 48 bb 72 00 ............H.r. 000000000250f4b0 0080: 55 00 00 00 00 00 48 8b-0b 48 83 c4 60 5f 48 b8 U.....H..H..`_H. 000000000250f4c0 0090: 00 d7 4e ee fa 7f 00 00-ff e0 90 00 00 00 00 00 ..N............. 000000000250f4d0 00a0: 00 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00 ................ **************** **** <ditto x 4> 000000000250f520 00f0: 00 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00 ................ 884.b80: supHardNtVpFreeOrReplacePrivateExecMemory: Free attempt #1 succeeded: 0x0 [0000000000550000/0000000000550000 LB 0/0x2000] 884.b80: supHardNtVpFreeOrReplacePrivateExecMemory: QVM after free 0: [0000000000000000]/0000000000550000 LB 0xb0000 s=0x10000 ap=0x0 rp=0x3136432d00000001 884.b80: 0000000000552000-00000000005fffff 0x0001/0x0000 0x0000000 884.b80: *0000000000600000-0000000000655fff 0x0000/0x0004 0x0020000 884.b80: 0000000000656000-0000000000658fff 0x0004/0x0004 0x0020000 884.b80: 0000000000659000-00000000007fffff 0x0000/0x0004 0x0020000 884.b80: *0000000000800000-00000000008fafff 0x0000/0x0004 0x0020000 884.b80: 00000000008fb000-00000000008fdfff 0x0104/0x0004 0x0020000 884.b80: 00000000008fe000-00000000008fffff 0x0004/0x0004 0x0020000 884.b80: 0000000000900000-000000007ffdffff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe1000-000000007ffe5fff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe6000-000000007ffe6fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe7000-00007ff5644bffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644c0000-00007ff5644c0fff 0x0002/0x0002 0x0040000 884.b80: 00007ff5644c1000-00007ff5644cffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644d0000-00007ff564502fff 0x0002/0x0002 0x0040000 884.b80: 00007ff564503000-00007ff60568ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff605690000-00007ff605690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605691000-00007ff605702fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605703000-00007ff605703fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605704000-00007ff60574afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574b000-00007ff60574bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574c000-00007ff60574cfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574d000-00007ff605751fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605752000-00007ff605752fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605753000-00007ff605753fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605754000-00007ff605757fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605758000-00007ff60579ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff6057a0000-00007ffaee47ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee480000-00007ffaee480fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee481000-00007ffaee597fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee598000-00007ffaee5defff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5df000-00007ffaee5eafff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5eb000-00007ffaee5f9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fa000-00007ffaee5fafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fb000-00007ffaee5fdfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fe000-00007ffaee66ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee670000-00007ffffffeffff 0x0001/0x0000 0x0000000 884.b80: supR3HardNtChildPurify: cFixes=1 g_fSupAdversaries=0x80000000 884.b80: supR3HardNtChildPurify: Startup delay kludge #1/1: 520 ms, 58 sleeps 884.b80: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION 884.b80: *0000000000000000-00000000004dffff 0x0001/0x0000 0x0000000 884.b80: *00000000004e0000-00000000004fffff 0x0004/0x0004 0x0020000 884.b80: *0000000000500000-000000000051afff 0x0002/0x0002 0x0040000 884.b80: 000000000051b000-000000000051ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000520000-0000000000523fff 0x0002/0x0002 0x0040000 884.b80: 0000000000524000-000000000052ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000530000-0000000000531fff 0x0004/0x0004 0x0020000 884.b80: 0000000000532000-00000000005fffff 0x0001/0x0000 0x0000000 884.b80: *0000000000600000-0000000000655fff 0x0000/0x0004 0x0020000 884.b80: 0000000000656000-0000000000658fff 0x0004/0x0004 0x0020000 884.b80: 0000000000659000-00000000007fffff 0x0000/0x0004 0x0020000 884.b80: *0000000000800000-00000000008fafff 0x0000/0x0004 0x0020000 884.b80: 00000000008fb000-00000000008fdfff 0x0104/0x0004 0x0020000 884.b80: 00000000008fe000-00000000008fffff 0x0004/0x0004 0x0020000 884.b80: 0000000000900000-000000007ffdffff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe1000-000000007ffe5fff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe6000-000000007ffe6fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe7000-00007ff5644bffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644c0000-00007ff5644c0fff 0x0002/0x0002 0x0040000 884.b80: 00007ff5644c1000-00007ff5644cffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644d0000-00007ff564502fff 0x0002/0x0002 0x0040000 884.b80: 00007ff564503000-00007ff60568ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff605690000-00007ff605690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605691000-00007ff605702fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605703000-00007ff605703fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605704000-00007ff60574afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574b000-00007ff605757fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605758000-00007ff60579ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff6057a0000-00007ffaee47ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee480000-00007ffaee480fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee481000-00007ffaee597fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee598000-00007ffaee5defff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5df000-00007ffaee5e2fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5e3000-00007ffaee5eafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5eb000-00007ffaee5f9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fa000-00007ffaee5fafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fb000-00007ffaee5fdfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fe000-00007ffaee66ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee670000-00007ffffffeffff 0x0001/0x0000 0x0000000 884.b80: supR3HardNtChildPurify: Done after 803 ms and 1 fixes (loop #1). 35008.1e304: Log file opened: 5.2.42r137960 g_hStartupLog=0000000000000008 g_uNtVerCombined=0xa047bb00 35008.1e304: supR3HardenedVmProcessInit: uNtDllAddr=00007ffaee480000 g_uNtVerCombined=0xa047bb00 35008.1e304: ntdll.dll: timestamp 0x418df01d (rc=VINF_SUCCESS) 35008.1e304: New simple heap: #1 0000000000a00000 LB 0x400000 (for 2031616 allocation) 884.b80: supR3HardNtEnableThreadCreationEx: 35008.1e304: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox' 35008.1e304: System32: \Device\HarddiskVolume3\Windows\System32 35008.1e304: WinSxS: \Device\HarddiskVolume3\Windows\WinSxS 35008.1e304: KnownDllPath: C:\WINDOWS\System32 35008.1e304: supR3HardenedVmProcessInit: Opening vboxdrv stub... 35008.1e304: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk... 35008.1e304: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk... 35008.1e304: Registered Dll notification callback with NTDLL. 35008.1e304: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Windows\System32\kernel32.dll) 35008.1e304: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Windows\System32\kernel32.dll 35008.1e304: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\KERNEL32.DLL (Input=KERNEL32.DLL, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000004001:<flags> [calling] 35008.1e304: supR3HardenedDllNotificationCallback: load 00007ffaeb580000 LB 0x002a6000 C:\WINDOWS\System32\KERNELBASE.dll [fFlags=0x0] 35008.1e304: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Windows\System32\KernelBase.dll) 35008.1e304: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 35008.1e304: supR3HardenedDllNotificationCallback: load 00007ffaed090000 LB 0x000b2000 C:\WINDOWS\System32\KERNEL32.DLL [fFlags=0x0] 35008.1e304: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\kernel32.dll [lacks WinVerifyTrust] 35008.1e304: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffaed090000 'C:\WINDOWS\System32\KERNEL32.DLL' 35008.1e304: supR3HardenedDllNotificationCallback: load 00007ff605690000 LB 0x00110000 C:\Program Files\Oracle\VirtualBox\VBoxHeadless.exe [fFlags=0x0] 35008.1e304: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe' has no imports 35008.1e304: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe) 35008.1e304: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0xc0000005 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 202 ms, CloseEvents); 해보세요. 다시 설치해도 이에러가 뜨는데;; - 서로 예의를 지키며 존중하는 문화를 만들어가요. - 잠깐! 인프런 서비스 운영 관련 문의는 1:1 문의하기를 이용해주세요.
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
스크립트 파일 제공
강의에 나오는 스크립트는 별도 파일로 제공해 주시나요?
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
서버구축시 오류
다음과 같은 오류가 뜹니다. 어떻게 해결 할 수 있을까요?
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
서버 구축시 에러...
Stderr: VBoxManage.exe: error: The virtual machine 'cent1' has terminated unexpectedly during startup with exit code -1073741819 (0xc0000005). More details may be available in 'C:\Users\lee\VirtualBox VMs\cent1\Logs\VBoxHardening.log' VBoxManage.exe: error: Details: code E_FAIL (0x80004005), component MachineWrap, interface IMachine 이오류 뜨고 설치가 안되는데요?? ;; =========== log ===== 884.b80: Log file opened: 5.2.42r137960 g_hStartupLog=000000000000022c g_uNtVerCombined=0xa047bb00 884.b80: \SystemRoot\System32\ntdll.dll: 884.b80: CreationTime: 2021-08-08T07:58:56.460910800Z 884.b80: LastWriteTime: 2021-08-08T07:58:56.550669500Z 884.b80: ChangeTime: 2021-08-13T10:30:23.954860700Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0x1e8050 884.b80: NT Headers: 0xd8 884.b80: Timestamp: 0x418df01d 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0x418df01d 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0x1f0000 (2031616) 884.b80: Resource Dir: 0x17f000 LB 0x6f3b8 884.b80: [Version info resource found at 0xd8! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0x17f0f0 LB 0x380, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1679 884.b80: FileVersion: 10.0.18362.1679 (WinBuild.160101.0800) 884.b80: FileDescription: NT Layer DLL 884.b80: \SystemRoot\System32\kernel32.dll: 884.b80: CreationTime: 2021-08-13T10:28:27.561050600Z 884.b80: LastWriteTime: 2021-08-13T10:28:27.603935100Z 884.b80: ChangeTime: 2021-08-13T11:36:14.013362000Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0xb04a0 884.b80: NT Headers: 0xf8 884.b80: Timestamp: 0xbba1b5fe 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0xbba1b5fe 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0xb2000 (729088) 884.b80: Resource Dir: 0xb0000 LB 0x520 884.b80: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0xb00b0 LB 0x3a4, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1714 884.b80: FileVersion: 10.0.18362.1714 (WinBuild.160101.0800) 884.b80: FileDescription: Windows NT BASE API Client DLL 884.b80: \SystemRoot\System32\KernelBase.dll: 884.b80: CreationTime: 2021-08-13T10:28:44.194579400Z 884.b80: LastWriteTime: 2021-08-13T10:28:44.343181600Z 884.b80: ChangeTime: 2021-08-13T11:36:19.717616300Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0x2a62b0 884.b80: NT Headers: 0xf8 884.b80: Timestamp: 0x62b4f97e 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0x62b4f97e 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0x2a6000 (2777088) 884.b80: Resource Dir: 0x280000 LB 0x548 884.b80: [Version info resource found at 0x90! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0x2800b0 LB 0x3bc, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1714 884.b80: FileVersion: 10.0.18362.1714 (WinBuild.160101.0800) 884.b80: FileDescription: Windows NT BASE API Client DLL 884.b80: \SystemRoot\System32\apisetschema.dll: 884.b80: CreationTime: 2019-03-19T04:43:54.837151500Z 884.b80: LastWriteTime: 2019-03-19T04:43:54.837151500Z 884.b80: ChangeTime: 2021-08-13T10:30:23.216833300Z 884.b80: FileAttributes: 0x20 884.b80: Size: 0x1d028 884.b80: NT Headers: 0xc8 884.b80: Timestamp: 0xd6ced080 884.b80: Machine: 0x8664 - amd64 884.b80: Timestamp: 0xd6ced080 884.b80: Image Version: 10.0 884.b80: SizeOfImage: 0x1e000 (122880) 884.b80: Resource Dir: 0x1d000 LB 0x408 884.b80: [Version info resource found at 0x48! (ID/Name: 0x1; SubID/SubName: 0x409)] 884.b80: [Raw version resource data: 0x1d060 LB 0x3a8, codepage 0x0 (reserved 0x0)] 884.b80: ProductName: Microsoft® Windows® Operating System 884.b80: ProductVersion: 10.0.18362.1 884.b80: FileVersion: 10.0.18362.1 (WinBuild.160101.0800) 884.b80: FileDescription: ApiSet Schema DLL 884.b80: NtOpenDirectoryObject failed on \Driver: 0xc0000022 884.b80: supR3HardenedWinFindAdversaries: 0x0 884.b80: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox' 884.b80: Calling main() 884.b80: SUPR3HardenedMain: pszProgName=VBoxHeadless fFlags=0x0 884.b80: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox' 884.b80: SUPR3HardenedMain: Respawn #1 884.b80: System32: \Device\HarddiskVolume3\Windows\System32 884.b80: WinSxS: \Device\HarddiskVolume3\Windows\WinSxS 884.b80: KnownDllPath: C:\WINDOWS\System32 884.b80: supR3HardenedWinInit: Performing a limited self purification... 884.b80: supHardNtVpScanVirtualMemory: enmKind=SELF_PURIFICATION 884.b80: *0000000000000000-000000000015ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000160000-000000000016ffff 0x0004/0x0004 0x0040000 884.b80: *0000000000170000-0000000000170fff 0x0040/0x0040 0x0020000 !! 884.b80: 0000000000171000-000000000017ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000180000-000000000019afff 0x0002/0x0002 0x0040000 884.b80: 000000000019b000-000000000019ffff 0x0001/0x0000 0x0000000 884.b80: *00000000001a0000-00000000001a3fff 0x0002/0x0002 0x0040000 884.b80: 00000000001a4000-00000000001affff 0x0001/0x0000 0x0000000 884.b80: *00000000001b0000-00000000001b1fff 0x0004/0x0004 0x0020000 884.b80: 00000000001b2000-00000000001bffff 0x0001/0x0000 0x0000000 884.b80: *00000000001c0000-00000000001c0fff 0x0002/0x0002 0x0040000 884.b80: 00000000001c1000-00000000001cffff 0x0001/0x0000 0x0000000 884.b80: *00000000001d0000-00000000001d1fff 0x0040/0x0040 0x0020000 !! 884.b80: 00000000001d2000-00000000001dffff 0x0001/0x0000 0x0000000 884.b80: *00000000001e0000-00000000001e1fff 0x0004/0x0004 0x0020000 884.b80: 00000000001e2000-00000000001effff 0x0001/0x0000 0x0000000 884.b80: *00000000001f0000-00000000001f2fff 0x0004/0x0004 0x0020000 884.b80: 00000000001f3000-00000000001fffff 0x0001/0x0000 0x0000000 884.b80: *0000000000200000-000000000027bfff 0x0000/0x0004 0x0020000 884.b80: 000000000027c000-0000000000284fff 0x0004/0x0004 0x0020000 884.b80: 0000000000285000-00000000003fffff 0x0000/0x0004 0x0020000 884.b80: *0000000000400000-00000000004b8fff 0x0000/0x0004 0x0020000 884.b80: 00000000004b9000-00000000004bbfff 0x0104/0x0004 0x0020000 884.b80: 00000000004bc000-00000000004fffff 0x0004/0x0004 0x0020000 884.b80: *0000000000500000-00000000005c6fff 0x0002/0x0002 0x0040000 884.b80: 00000000005c7000-00000000005cffff 0x0001/0x0000 0x0000000 884.b80: *00000000005d0000-00000000005d1fff 0x0004/0x0004 0x0020000 884.b80: 00000000005d2000-0000000000601fff 0x0000/0x0004 0x0020000 884.b80: 0000000000602000-000000000060ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000610000-0000000000610fff 0x0002/0x0002 0x0040000 884.b80: 0000000000611000-000000000061ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000620000-000000000062efff 0x0004/0x0004 0x0020000 884.b80: 000000000062f000-000000000062ffff 0x0000/0x0004 0x0020000 884.b80: *0000000000630000-0000000000631fff 0x0004/0x0004 0x0020000 884.b80: 0000000000632000-0000000000661fff 0x0000/0x0004 0x0020000 884.b80: 0000000000662000-000000000066ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000670000-0000000000673fff 0x0002/0x0002 0x0040000 884.b80: 0000000000674000-0000000000677fff 0x0000/0x0002 0x0040000 884.b80: 0000000000678000-000000000067ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000680000-000000000068efff 0x0004/0x0004 0x0020000 884.b80: 000000000068f000-000000000068ffff 0x0000/0x0004 0x0020000 884.b80: 0000000000690000-00000000006affff 0x0001/0x0000 0x0000000 884.b80: *00000000006b0000-00000000006f5fff 0x0004/0x0004 0x0020000 884.b80: 00000000006f6000-00000000007affff 0x0000/0x0004 0x0020000 884.b80: *00000000007b0000-00000000008a9fff 0x0000/0x0004 0x0020000 884.b80: 00000000008aa000-00000000008acfff 0x0104/0x0004 0x0020000 884.b80: 00000000008ad000-00000000008affff 0x0004/0x0004 0x0020000 884.b80: *00000000008b0000-00000000009abfff 0x0000/0x0004 0x0020000 884.b80: 00000000009ac000-00000000009aefff 0x0104/0x0004 0x0020000 884.b80: 00000000009af000-00000000009affff 0x0004/0x0004 0x0020000 884.b80: *00000000009b0000-0000000000aaafff 0x0000/0x0004 0x0020000 884.b80: 0000000000aab000-0000000000aadfff 0x0104/0x0004 0x0020000 884.b80: 0000000000aae000-0000000000aaffff 0x0004/0x0004 0x0020000 884.b80: *0000000000ab0000-0000000000af9fff 0x0002/0x0002 0x0040000 884.b80: 0000000000afa000-0000000000caffff 0x0000/0x0002 0x0040000 884.b80: *0000000000cb0000-0000000000e30fff 0x0002/0x0002 0x0040000 884.b80: 0000000000e31000-0000000000e3ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000e40000-000000000111cfff 0x0002/0x0002 0x0040000 884.b80: 000000000111d000-0000000002240fff 0x0000/0x0002 0x0040000 884.b80: 0000000002241000-000000000224ffff 0x0001/0x0000 0x0000000 884.b80: *0000000002250000-0000000002250fff 0x0004/0x0004 0x0020000 884.b80: 0000000002251000-0000000002281fff 0x0000/0x0004 0x0020000 884.b80: 0000000002282000-000000000229ffff 0x0001/0x0000 0x0000000 884.b80: *00000000022a0000-00000000022abfff 0x0004/0x0004 0x0020000 884.b80: 00000000022ac000-00000000022affff 0x0000/0x0004 0x0020000 884.b80: *00000000022b0000-00000000022bdfff 0x0000/0x0004 0x0020000 884.b80: 00000000022be000-00000000024aefff 0x0004/0x0004 0x0020000 884.b80: 00000000024af000-00000000024affff 0x0000/0x0004 0x0020000 884.b80: *00000000024b0000-00000000024b1fff 0x0004/0x0004 0x0020000 884.b80: 00000000024b2000-00000000024e1fff 0x0000/0x0004 0x0020000 884.b80: 00000000024e2000-00000000024effff 0x0001/0x0000 0x0000000 884.b80: *00000000024f0000-000000000250cfff 0x0004/0x0004 0x0020000 884.b80: 000000000250d000-00000000025effff 0x0000/0x0004 0x0020000 884.b80: 00000000025f0000-0000000060ffffff 0x0001/0x0000 0x0000000 884.b80: *0000000061000000-0000000061000fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000061000000 LB 0x1000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 0000000061001000-0000000061080fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000061001000 LB 0x80000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 0000000061081000-00000000610b5fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000061081000 LB 0x35000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610b6000-00000000610b7fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610b6000 LB 0x2000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610b8000-00000000610bffff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610b8000 LB 0x8000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610c0000-00000000610c5fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610c0000 LB 0x6000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610c6000-00000000610ccfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610c6000 LB 0x7000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000610cd000-00000000611d4fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000610cd000 LB 0x108000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000611d5000-00000000611dafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_sps.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00000000611d5000 LB 0x6000 (base 0000000061000000) - 'f_sps.dll' 884.b80: 00000000611db000-000000007ffdffff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe1000-000000007ffe5fff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe6000-000000007ffe6fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe7000-000000017fffffff 0x0001/0x0000 0x0000000 884.b80: *0000000180000000-0000000180000fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180000000 LB 0x1000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180001000-0000000180022fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180001000 LB 0x22000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180023000-0000000180034fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180023000 LB 0x12000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180035000-000000018003bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 0000000180035000 LB 0x7000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 000000018003c000-000000018003ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Fasoo DRM\f_nxa.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 000000018003c000 LB 0x4000 (base 0000000180000000) - 'f_nxa.dll' 884.b80: 0000000180040000-00007ff41829ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff4182a0000-00007ff4182a4fff 0x0002/0x0002 0x0040000 884.b80: 00007ff4182a5000-00007ff41839ffff 0x0000/0x0002 0x0040000 884.b80: *00007ff4183a0000-00007ff5183bffff 0x0000/0x0004 0x0020000 884.b80: *00007ff5183c0000-00007ff51a3bffff 0x0000/0x0004 0x0020000 884.b80: 00007ff51a3c0000-00007ff51a3c0fff 0x0004/0x0004 0x0020000 884.b80: 00007ff51a3c1000-00007ff51a3cffff 0x0001/0x0000 0x0000000 884.b80: *00007ff51a3d0000-00007ff51a3d0fff 0x0002/0x0002 0x0040000 884.b80: 00007ff51a3d1000-00007ff51a3dffff 0x0001/0x0000 0x0000000 884.b80: *00007ff51a3e0000-00007ff51a412fff 0x0002/0x0002 0x0040000 884.b80: 00007ff51a413000-00007ff60568ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff605690000-00007ff605690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605691000-00007ff605702fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605703000-00007ff605703fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605704000-00007ff60574afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574b000-00007ff60574dfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574e000-00007ff605750fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605751000-00007ff605753fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605754000-00007ff605754fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605755000-00007ff605756fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605757000-00007ff605757fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605758000-00007ff60579ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff6057a0000-00007ffabbecffff 0x0001/0x0000 0x0000000 884.b80: *00007ffabbed0000-00007ffabbed0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbed0000 LB 0x1000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbed1000-00007ffabbeddfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbed1000 LB 0xd000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbede000-00007ffabbee1fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbede000 LB 0x4000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee2000-00007ffabbee2fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee2000 LB 0x1000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee3000-00007ffabbee4fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee3000 LB 0x2000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee5000-00007ffabbee8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee5000 LB 0x4000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbee9000-00007ffabbee9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbee9000 LB 0x1000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbeea000-00007ffabbefafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbeea000 LB 0x11000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbefb000-00007ffabbefcfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\f_im.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffabbefb000 LB 0x2000 (base 00007ffabbed0000) - 'f_im.dll' 884.b80: 00007ffabbefd000-00007ffad48affff 0x0001/0x0000 0x0000000 884.b80: *00007ffad48b0000-00007ffad48b0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad48b0000 LB 0x1000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad48b1000-00007ffad48fafff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad48b1000 LB 0x4a000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad48fb000-00007ffad4919fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad48fb000 LB 0x1f000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad491a000-00007ffad491bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad491a000 LB 0x2000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad491c000-00007ffad4938fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\winspool.drv 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad491c000 LB 0x1d000 (base 00007ffad48b0000) - 'winspool.drv' 884.b80: 00007ffad4939000-00007ffad8c7ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffad8c80000-00007ffad8c80fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c80000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c81000-00007ffad8c81fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c81000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c82000-00007ffad8c82fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c82000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c83000-00007ffad8c83fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c83000 LB 0x1000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c84000-00007ffad8c86fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msimg32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffad8c84000 LB 0x3000 (base 00007ffad8c80000) - 'msimg32.dll' 884.b80: 00007ffad8c87000-00007ffae437ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffae4380000-00007ffae4380fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4380000 LB 0x1000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4381000-00007ffae4383fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4381000 LB 0x3000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4384000-00007ffae4385fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4384000 LB 0x2000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4386000-00007ffae4386fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4386000 LB 0x1000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae4387000-00007ffae4389fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\version.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae4387000 LB 0x3000 (base 00007ffae4380000) - 'version.dll' 884.b80: 00007ffae438a000-00007ffae7c8ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffae7c90000-00007ffae7c90fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7c90000 LB 0x1000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7c91000-00007ffae7d24fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7c91000 LB 0x94000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d25000-00007ffae7d6bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7d25000 LB 0x47000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d6c000-00007ffae7d6dfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7d6c000 LB 0x2000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d6e000-00007ffae7d7efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\propsys.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7d6e000 LB 0x11000 (base 00007ffae7c90000) - 'propsys.dll' 884.b80: 00007ffae7d7f000-00007ffae7ddffff 0x0001/0x0000 0x0000000 884.b80: *00007ffae7de0000-00007ffae7de0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7de0000 LB 0x1000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7de1000-00007ffae7de9fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7de1000 LB 0x9000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7dea000-00007ffae7dedfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7dea000 LB 0x4000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7dee000-00007ffae7deefff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7dee000 LB 0x1000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7def000-00007ffae7df2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\wtsapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffae7def000 LB 0x4000 (base 00007ffae7de0000) - 'wtsapi32.dll' 884.b80: 00007ffae7df3000-00007ffaea34ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaea350000-00007ffaea350fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea350000 LB 0x1000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea351000-00007ffaea371fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea351000 LB 0x21000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea372000-00007ffaea379fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea372000 LB 0x8000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea37a000-00007ffaea37bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea37a000 LB 0x2000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea37c000-00007ffaea380fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntmarta.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea37c000 LB 0x5000 (base 00007ffaea350000) - 'ntmarta.dll' 884.b80: 00007ffaea381000-00007ffaea87ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaea880000-00007ffaea880fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea880000 LB 0x1000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea881000-00007ffaea8a9fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea881000 LB 0x29000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8aa000-00007ffaea8b3fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea8aa000 LB 0xa000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8b4000-00007ffaea8b4fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea8b4000 LB 0x1000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8b5000-00007ffaea8b9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\IPHLPAPI.DLL 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaea8b5000 LB 0x5000 (base 00007ffaea880000) - 'IPHLPAPI.DLL' 884.b80: 00007ffaea8ba000-00007ffaeb31ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb320000-00007ffaeb320fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb320000 LB 0x1000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb321000-00007ffaeb328fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb321000 LB 0x8000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb329000-00007ffaeb32bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb329000 LB 0x3000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb32c000-00007ffaeb32cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb32c000 LB 0x1000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: 00007ffaeb32d000-00007ffaeb32ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\umpdc.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb32d000 LB 0x3000 (base 00007ffaeb320000) - 'umpdc.dll' 884.b80: *00007ffaeb330000-00007ffaeb330fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb330000 LB 0x1000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb331000-00007ffaeb341fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb331000 LB 0x11000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb342000-00007ffaeb34bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb342000 LB 0xa000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb34c000-00007ffaeb34cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb34c000 LB 0x1000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb34d000-00007ffaeb379fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\powrprof.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb34d000 LB 0x2d000 (base 00007ffaeb330000) - 'powrprof.dll' 884.b80: 00007ffaeb37a000-00007ffaeb37ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb380000-00007ffaeb380fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb380000 LB 0x1000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb381000-00007ffaeb384fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb381000 LB 0x4000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb385000-00007ffaeb38bfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb385000 LB 0x7000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb38c000-00007ffaeb38cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb38c000 LB 0x1000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb38d000-00007ffaeb390fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel.appcore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb38d000 LB 0x4000 (base 00007ffaeb380000) - 'kernel.appcore.dll' 884.b80: 00007ffaeb391000-00007ffaeb39ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb3a0000-00007ffaeb3a0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3a0000 LB 0x1000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3a1000-00007ffaeb3b0fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3a1000 LB 0x10000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3b1000-00007ffaeb3b7fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3b1000 LB 0x7000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3b8000-00007ffaeb3b8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3b8000 LB 0x1000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3b9000-00007ffaeb3bdfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\profapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb3b9000 LB 0x5000 (base 00007ffaeb3a0000) - 'profapi.dll' 884.b80: 00007ffaeb3be000-00007ffaeb48ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb490000-00007ffaeb490fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb490000 LB 0x1000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb491000-00007ffaeb4e4fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb491000 LB 0x54000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb4e5000-00007ffaeb521fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb4e5000 LB 0x3d000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb522000-00007ffaeb522fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb522000 LB 0x1000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb523000-00007ffaeb525fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb523000 LB 0x3000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb526000-00007ffaeb52dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcp_win.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb526000 LB 0x8000 (base 00007ffaeb490000) - 'msvcp_win.dll' 884.b80: 00007ffaeb52e000-00007ffaeb52ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb530000-00007ffaeb530fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb530000 LB 0x1000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb531000-00007ffaeb563fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb531000 LB 0x33000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb564000-00007ffaeb571fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb564000 LB 0xe000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb572000-00007ffaeb572fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb572000 LB 0x1000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb573000-00007ffaeb573fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb573000 LB 0x1000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb574000-00007ffaeb579fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cfgmgr32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb574000 LB 0x6000 (base 00007ffaeb530000) - 'cfgmgr32.dll' 884.b80: 00007ffaeb57a000-00007ffaeb57ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb580000-00007ffaeb580fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb581000-00007ffaeb687fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb688000-00007ffaeb7eafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb7eb000-00007ffaeb7eefff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb7ef000-00007ffaeb7effff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb7f0000-00007ffaeb825fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 884.b80: 00007ffaeb826000-00007ffaeb82ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb830000-00007ffaeb830fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb830000 LB 0x1000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb831000-00007ffaeb83afff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb831000 LB 0xa000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb83b000-00007ffaeb849fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb83b000 LB 0xf000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb84a000-00007ffaeb84afff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb84a000 LB 0x1000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb84b000-00007ffaeb850fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\win32u.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb84b000 LB 0x6000 (base 00007ffaeb830000) - 'win32u.dll' 884.b80: 00007ffaeb851000-00007ffaeb85ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb860000-00007ffaeb860fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb860000 LB 0x1000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb861000-00007ffaeb911fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb861000 LB 0xb1000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb912000-00007ffaeb949fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb912000 LB 0x38000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb94a000-00007ffaeb94cfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb94a000 LB 0x3000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb94d000-00007ffaeb959fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ucrtbase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb94d000 LB 0xd000 (base 00007ffaeb860000) - 'ucrtbase.dll' 884.b80: 00007ffaeb95a000-00007ffaeb95ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb960000-00007ffaeb960fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb960000 LB 0x1000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb961000-00007ffaeb979fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb961000 LB 0x19000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb97a000-00007ffaeb97ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb97a000 LB 0x6000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb980000-00007ffaeb980fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb980000 LB 0x1000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb981000-00007ffaeb985fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcrypt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb981000 LB 0x5000 (base 00007ffaeb960000) - 'bcrypt.dll' 884.b80: 00007ffaeb986000-00007ffaeb98ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeb990000-00007ffaeb990fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb990000 LB 0x1000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaeb991000-00007ffaebed1fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeb991000 LB 0x541000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaebed2000-00007ffaec08cfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaebed2000 LB 0x1bb000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec08d000-00007ffaec099fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec08d000 LB 0xd000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec09a000-00007ffaec09afff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec09a000 LB 0x1000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec09b000-00007ffaec10afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\windows.storage.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec09b000 LB 0x70000 (base 00007ffaeb990000) - 'windows.storage.dll' 884.b80: 00007ffaec10b000-00007ffaec2cffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec2d0000-00007ffaec2d0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec2d0000 LB 0x1000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec2d1000-00007ffaec337fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec2d1000 LB 0x67000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec338000-00007ffaec34dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec338000 LB 0x16000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec34e000-00007ffaec34efff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec34e000 LB 0x1000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec34f000-00007ffaec353fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\bcryptprimitives.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec34f000 LB 0x5000 (base 00007ffaec2d0000) - 'bcryptprimitives.dll' 884.b80: 00007ffaec354000-00007ffaec35ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec360000-00007ffaec360fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec360000 LB 0x1000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec361000-00007ffaec433fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec361000 LB 0xd3000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec434000-00007ffaec4d5fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec434000 LB 0xa2000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4d6000-00007ffaec4d9fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec4d6000 LB 0x4000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4da000-00007ffaec4dafff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec4da000 LB 0x1000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4db000-00007ffaec4f7fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32full.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec4db000 LB 0x1d000 (base 00007ffaec360000) - 'gdi32full.dll' 884.b80: 00007ffaec4f8000-00007ffaec4fffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec500000-00007ffaec500fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec500000 LB 0x1000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec501000-00007ffaec50bfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec501000 LB 0xb000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec50c000-00007ffaec511fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec50c000 LB 0x6000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec512000-00007ffaec512fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec512000 LB 0x1000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec513000-00007ffaec516fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\cryptsp.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec513000 LB 0x4000 (base 00007ffaec500000) - 'cryptsp.dll' 884.b80: 00007ffaec517000-00007ffaec6cffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec6d0000-00007ffaec6d0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec6d0000 LB 0x1000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec6d1000-00007ffaec7aefff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec6d1000 LB 0xde000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7af000-00007ffaec7d8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7af000 LB 0x2a000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7d9000-00007ffaec7dafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7d9000 LB 0x2000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7db000-00007ffaec7eefff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\rpcrt4.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7db000 LB 0x14000 (base 00007ffaec6d0000) - 'rpcrt4.dll' 884.b80: 00007ffaec7ef000-00007ffaec7effff 0x0001/0x0000 0x0000000 884.b80: *00007ffaec7f0000-00007ffaec7f0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7f0000 LB 0x1000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaec7f1000-00007ffaeca0ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaec7f1000 LB 0x21f000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaeca10000-00007ffaecad2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeca10000 LB 0xc3000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaecad3000-00007ffaecad8fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecad3000 LB 0x6000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaecad9000-00007ffaecb25fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\combase.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecad9000 LB 0x4d000 (base 00007ffaec7f0000) - 'combase.dll' 884.b80: 00007ffaecb26000-00007ffaecb2ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecb30000-00007ffaecb30fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecb30000 LB 0x1000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecb31000-00007ffaecb91fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecb31000 LB 0x61000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecb92000-00007ffaecbb8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecb92000 LB 0x27000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbb9000-00007ffaecbb9fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbb9000 LB 0x1000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbba000-00007ffaecbbafff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbba000 LB 0x1000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbbb000-00007ffaecbbcfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbbb000 LB 0x2000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbbd000-00007ffaecbc6fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\sechost.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbbd000 LB 0xa000 (base 00007ffaecb30000) - 'sechost.dll' 884.b80: 00007ffaecbc7000-00007ffaecbcffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecbd0000-00007ffaecbd0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbd0000 LB 0x1000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaecbd1000-00007ffaecc9afff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecbd1000 LB 0xca000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaecc9b000-00007ffaeccf7fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecc9b000 LB 0x5d000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaeccf8000-00007ffaeccf9fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeccf8000 LB 0x2000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaeccfa000-00007ffaecd26fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ole32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeccfa000 LB 0x2d000 (base 00007ffaecbd0000) - 'ole32.dll' 884.b80: 00007ffaecd27000-00007ffaecdcffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecdd0000-00007ffaecddffff 0x0020/0x0040 0x0020000 !! 884.b80: *00007ffaecde0000-00007ffaecde0fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaecde1000-00007ffaece66fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaece67000-00007ffaece86fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaece87000-00007ffaece88fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaece89000-00007ffaecf73fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\user32.dll 884.b80: 00007ffaecf74000-00007ffaecfeffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaecff0000-00007ffaecff0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecff0000 LB 0x1000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaecff1000-00007ffaed065fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaecff1000 LB 0x75000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed066000-00007ffaed07efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed066000 LB 0x19000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed07f000-00007ffaed080fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed07f000 LB 0x2000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed081000-00007ffaed083fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed081000 LB 0x3000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed084000-00007ffaed085fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed084000 LB 0x2000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed086000-00007ffaed086fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed086000 LB 0x1000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed087000-00007ffaed08dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\msvcrt.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed087000 LB 0x7000 (base 00007ffaecff0000) - 'msvcrt.dll' 884.b80: 00007ffaed08e000-00007ffaed08ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed090000-00007ffaed090fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed091000-00007ffaed105fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed106000-00007ffaed137fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed138000-00007ffaed138fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed139000-00007ffaed139fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed13a000-00007ffaed141fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\kernel32.dll 884.b80: 00007ffaed142000-00007ffaed14ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed150000-00007ffaed150fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed150000 LB 0x1000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed151000-00007ffaed151fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed151000 LB 0x1000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed152000-00007ffaed153fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed152000 LB 0x2000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed154000-00007ffaed154fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed154000 LB 0x1000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed155000-00007ffaed157fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\psapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed155000 LB 0x3000 (base 00007ffaed150000) - 'psapi.dll' 884.b80: 00007ffaed158000-00007ffaed22ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed230000-00007ffaed230fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed230000 LB 0x1000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed231000-00007ffaed78efff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed231000 LB 0x55e000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed78f000-00007ffaed8a8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed78f000 LB 0x11a000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed8a9000-00007ffaed8affff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed8a9000 LB 0x7000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed8b0000-00007ffaed8b1fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed8b0000 LB 0x2000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed8b2000-00007ffaed916fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shell32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed8b2000 LB 0x65000 (base 00007ffaed230000) - 'shell32.dll' 884.b80: 00007ffaed917000-00007ffaed99ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaed9a0000-00007ffaed9a0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed9a0000 LB 0x1000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaed9a1000-00007ffaeda11fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaed9a1000 LB 0x71000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda12000-00007ffaeda37fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda12000 LB 0x26000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda38000-00007ffaeda39fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda38000 LB 0x2000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda3a000-00007ffaeda48fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\SHCore.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda3a000 LB 0xf000 (base 00007ffaed9a0000) - 'SHCore.dll' 884.b80: 00007ffaeda49000-00007ffaeda4ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeda50000-00007ffaeda50fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda50000 LB 0x1000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda51000-00007ffaeda5cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda51000 LB 0xc000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda5d000-00007ffaeda6ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda5d000 LB 0x13000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda70000-00007ffaeda70fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda70000 LB 0x1000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda71000-00007ffaeda75fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\gdi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda71000 LB 0x5000 (base 00007ffaeda50000) - 'gdi32.dll' 884.b80: 00007ffaeda76000-00007ffaeda7ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaeda80000-00007ffaeda80fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda80000 LB 0x1000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaeda81000-00007ffaedaaafff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaeda81000 LB 0x2a000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedaab000-00007ffaedacafff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedaab000 LB 0x20000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedacb000-00007ffaedacbfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedacb000 LB 0x1000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedacc000-00007ffaedad1fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\shlwapi.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedacc000 LB 0x6000 (base 00007ffaeda80000) - 'shlwapi.dll' 884.b80: 00007ffaedad2000-00007ffaedafffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaedb00000-00007ffaedb00fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb00000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb01000-00007ffaedb5ffff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb01000 LB 0x5f000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb60000-00007ffaedb94fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb60000 LB 0x35000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb95000-00007ffaedb95fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb95000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb96000-00007ffaedb96fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb96000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb97000-00007ffaedb98fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb97000 LB 0x2000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb99000-00007ffaedb99fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb99000 LB 0x1000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedb9a000-00007ffaedba2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\advapi32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedb9a000 LB 0x9000 (base 00007ffaedb00000) - 'advapi32.dll' 884.b80: 00007ffaedba3000-00007ffaedbaffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaedbb0000-00007ffaedbb0fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedbb0000 LB 0x1000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedbb1000-00007ffaedc3dfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedbb1000 LB 0x8d000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc3e000-00007ffaedc63fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedc3e000 LB 0x26000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc64000-00007ffaedc66fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedc64000 LB 0x3000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc67000-00007ffaedc74fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\oleaut32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaedc67000 LB 0xe000 (base 00007ffaedbb0000) - 'oleaut32.dll' 884.b80: 00007ffaedc75000-00007ffaee25ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee260000-00007ffaee260fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee260000 LB 0x1000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee261000-00007ffaee27cfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee261000 LB 0x1c000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee27d000-00007ffaee283fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee27d000 LB 0x7000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee284000-00007ffaee284fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee284000 LB 0x1000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee285000-00007ffaee28dfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\imm32.dll 884.b80: supHardNtVpScanVirtualMemory: Ignoring unknown mem at 00007ffaee285000 LB 0x9000 (base 00007ffaee260000) - 'imm32.dll' 884.b80: 00007ffaee28e000-00007ffaee47ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee480000-00007ffaee480fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee481000-00007ffaee597fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee598000-00007ffaee5defff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5df000-00007ffaee5dffff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5e0000-00007ffaee5e1fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5e2000-00007ffaee5eafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5eb000-00007ffaee66ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee670000-00007ffffffeffff 0x0001/0x0000 0x0000000 884.b80: kernel32.dll: timestamp 0xbba1b5fe (rc=VINF_SUCCESS) 884.b80: user32.dll: timestamp 0xbcb1fcd3 (rc=VINF_SUCCESS) 884.b80: kernelbase.dll: timestamp 0x62b4f97e (rc=VINF_SUCCESS) 884.b80: VBoxHeadless.exe: timestamp 0x5ebc4e33 (rc=VINF_SUCCESS) 884.b80: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe' has no imports 884.b80: '\Device\HarddiskVolume3\Windows\System32\ntdll.dll' has no imports 884.b80: ntdll.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaee48001c / 0x000001c: 00 != 44 884.b80: 00007ffaee48001d / 0x000001d: 00 != 65 884.b80: 00007ffaee48001e / 0x000001e: 00 != 74 884.b80: 00007ffaee48001f / 0x000001f: 00 != 6f 884.b80: 00007ffaee480020 / 0x0000020: 00 != 75 884.b80: 00007ffaee480021 / 0x0000021: 00 != 72 884.b80: 00007ffaee480022 / 0x0000022: 00 != 73 884.b80: 00007ffaee480023 / 0x0000023: 00 != 21 884.b80: Restored 0x400 bytes of original file content at 00007ffaee480000 884.b80: ntdll.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaee480ff0 / 0x0000ff0: 00 != 7a 884.b80: 00007ffaee480ff1 / 0x0000ff1: 00 != 9c 884.b80: 00007ffaee480ff2 / 0x0000ff2: 00 != 77 884.b80: 00007ffaee480ff3 / 0x0000ff3: 00 != b2 884.b80: 00007ffaee480ff4 / 0x0000ff4: 00 != b9 884.b80: 00007ffaee480ff5 / 0x0000ff5: 00 != 32 884.b80: 00007ffaee480ff6 / 0x0000ff6: 00 != d2 884.b80: 00007ffaee480ff7 / 0x0000ff7: 00 != af 884.b80: 00007ffaee480ff8 / 0x0000ff8: 00 != 24 884.b80: 00007ffaee480ff9 / 0x0000ff9: 00 != 68 884.b80: 00007ffaee480ffa / 0x0000ffa: 00 != 39 884.b80: 00007ffaee480ffb / 0x0000ffb: 00 != 47 884.b80: Restored 0xc00 bytes of original file content at 00007ffaee480400 884.b80: ntdll.dll: Differences in section #1 (.text) between file and memory: 884.b80: 00007ffaee520520 / 0x00a0520: 4c != e9 884.b80: 00007ffaee520521 / 0x00a0521: 8b != 83 884.b80: 00007ffaee520522 / 0x00a0522: d1 != 00 884.b80: 00007ffaee520523 / 0x00a0523: b8 != 8b 884.b80: 00007ffaee520524 / 0x00a0524: b5 != fe 884.b80: 00007ffaee520525 / 0x00a0525: 01 != cc 884.b80: 00007ffaee520526 / 0x00a0526: 00 != cc 884.b80: 00007ffaee520527 / 0x00a0527: 00 != cc 884.b80: Restored 0xa92 bytes of original file content at 00007ffaee52004e 884.b80: kernel32.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaed09001c / 0x000001c: 00 != 44 884.b80: 00007ffaed09001d / 0x000001d: 00 != 65 884.b80: 00007ffaed09001e / 0x000001e: 00 != 74 884.b80: 00007ffaed09001f / 0x000001f: 00 != 6f 884.b80: 00007ffaed090020 / 0x0000020: 00 != 75 884.b80: 00007ffaed090021 / 0x0000021: 00 != 72 884.b80: 00007ffaed090022 / 0x0000022: 00 != 73 884.b80: 00007ffaed090023 / 0x0000023: 00 != 21 884.b80: Restored 0x400 bytes of original file content at 00007ffaed090000 884.b80: kernel32.dll: Differences in section #0 (headers) between file and memory: 884.b80: 00007ffaed090ff0 / 0x0000ff0: 00 != 7a 884.b80: 00007ffaed090ff1 / 0x0000ff1: 00 != 9c 884.b80: 00007ffaed090ff2 / 0x0000ff2: 00 != 77 884.b80: 00007ffaed090ff3 / 0x0000ff3: 00 != b2 884.b80: 00007ffaed090ff4 / 0x0000ff4: 00 != b9 884.b80: 00007ffaed090ff5 / 0x0000ff5: 00 != 32 884.b80: 00007ffaed090ff6 / 0x0000ff6: 00 != d3 884.b80: 00007ffaed090ff7 / 0x0000ff7: 00 != af 884.b80: 00007ffaed090ff8 / 0x0000ff8: 00 != 24 884.b80: 00007ffaed090ff9 / 0x0000ff9: 00 != 68 884.b80: 00007ffaed090ffa / 0x0000ffa: 00 != 39 884.b80: 00007ffaed090ffb / 0x0000ffb: 00 != 47 884.b80: Restored 0xc00 bytes of original file content at 00007ffaed090400 884.b80: kernel32.dll: Differences in section #1 (.text) between file and memory: 884.b80: 00007ffaed0aa1f0 / 0x001a1f0: 48 != e9 884.b80: 00007ffaed0aa1f1 / 0x001a1f1: ff != 43 884.b80: 00007ffaed0aa1f2 / 0x001a1f2: 25 != 63 884.b80: 00007ffaed0aa1f3 / 0x001a1f3: 01 != d2 884.b80: 00007ffaed0aa1f4 / 0x001a1f4: e4 != ff 884.b80: 00007ffaed0aa1f5 / 0x001a1f5: 05 != cc 884.b80: 00007ffaed0aa1f6 / 0x001a1f6: 00 != cc 884.b80: Restored 0x2000 bytes of original file content at 00007ffaed0a9000 884.b80: kernel32.dll: Differences in section #1 (.text) between file and memory: 884.b80: 00007ffaed0aee30 / 0x001ee30: 48 != e9 884.b80: 00007ffaed0aee31 / 0x001ee31: ff != 3b 884.b80: 00007ffaed0aee32 / 0x001ee32: 25 != 17 884.b80: 00007ffaed0aee33 / 0x001ee33: 21 != d2 884.b80: 00007ffaed0aee34 / 0x001ee34: 97 != ff 884.b80: 00007ffaed0aee35 / 0x001ee35: 05 != cc 884.b80: 00007ffaed0aee36 / 0x001ee36: 00 != cc 884.b80: Restored 0x2000 bytes of original file content at 00007ffaed0ad000 884.b80: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'win32u.dll'. 884.b80: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #34 'gdi32.dll'. 884.b80: supHardNtVpGetImport: Failed to find symbol 0xffffffff / 'NtUserRegisterClassExWOW' in 'win32u.dll': Unknown Status -610 (0xfffffd9e) 884.b80: Error (rc=-5629): 884.b80: RTLdrGetBits failed on image user32.dll: Unknown Status -610 (0xfffffd9e) 884.b80: supR3HardenedWinInit: SUPHARDNTVPKIND_SELF_PURIFICATION_LIMITED -> Unknown Status -5629 (0xffffea03), cFixes=7 884.b80: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe' has no imports 884.b80: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe) 884.b80: supR3HardNtEnableThreadCreationEx: 884.b80: supR3HardNtDisableThreadCreation: pvLdrInitThunk=00007ffaee4f2040 pvNtTerminateThread=00007ffaee51d8f0 884.b80: supR3HardenedWinDoReSpawn(1): New child 35008.1e304 [kernel32]. 884.b80: supR3HardNtChildGatherData: PebBaseAddress=0000000000656000 cbPeb=0x388 884.b80: supR3HardNtPuChFindNtdll: uNtDllParentAddr=00007ffaee480000 uNtDllChildAddr=00007ffaee480000 884.b80: supR3HardenedWinSetupChildInit: uLdrInitThunk=00007ffaee4f2040 884.b80: supR3HardenedWinSetupChildInit: Start child. 884.b80: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 1 ms. 884.b80: supR3HardNtChildPurify: Startup delay kludge #1/0: 261 ms, 29 sleeps 884.b80: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION 884.b80: *0000000000000000-00000000004dffff 0x0001/0x0000 0x0000000 884.b80: *00000000004e0000-00000000004fffff 0x0004/0x0004 0x0020000 884.b80: *0000000000500000-000000000051afff 0x0002/0x0002 0x0040000 884.b80: 000000000051b000-000000000051ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000520000-0000000000523fff 0x0002/0x0002 0x0040000 884.b80: 0000000000524000-000000000052ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000530000-0000000000531fff 0x0004/0x0004 0x0020000 884.b80: 0000000000532000-000000000054ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000550000-0000000000551fff 0x0040/0x0040 0x0020000 !! 884.b80: supHardNtVpFreeOrReplacePrivateExecMemory: Freeing exec mem at 0000000000550000 (LB 0x2000, 0000000000550000 LB 0x2000) 884.b80: 000000000250f430 0000: 40 57 48 83 ec 60 48 8d-44 24 40 66 c7 00 10 00 @WH..`H.D$@f.... 000000000250f440 0010: 66 c7 40 02 12 00 48 bb-60 00 55 00 00 00 00 00 f.@...H.`.U..... 000000000250f450 0020: 48 89 58 08 48 bb 72 00-55 00 00 00 00 00 48 89 H.X.H.r.U.....H. 000000000250f460 0030: 0b 4c 8d 4c 24 50 4c 8d-44 24 40 33 d2 33 c9 48 .L.L$PL.D$@3.3.H 000000000250f470 0040: c7 44 24 50 00 00 00 00-48 bb 00 16 4a ee fa 7f .D$P....H...J... 000000000250f480 0050: 00 00 e9 23 00 00 00 90-90 90 90 90 90 90 90 90 ...#............ 000000000250f490 0060: 66 00 5f 00 69 00 6d 00-2e 00 64 00 6c 00 6c 00 f._.i.m...d.l.l. 000000000250f4a0 0070: 00 00 00 00 00 00 00 00-00 00 ff d3 48 bb 72 00 ............H.r. 000000000250f4b0 0080: 55 00 00 00 00 00 48 8b-0b 48 83 c4 60 5f 48 b8 U.....H..H..`_H. 000000000250f4c0 0090: 00 d7 4e ee fa 7f 00 00-ff e0 90 00 00 00 00 00 ..N............. 000000000250f4d0 00a0: 00 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00 ................ **************** **** <ditto x 4> 000000000250f520 00f0: 00 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00 ................ 884.b80: supHardNtVpFreeOrReplacePrivateExecMemory: Free attempt #1 succeeded: 0x0 [0000000000550000/0000000000550000 LB 0/0x2000] 884.b80: supHardNtVpFreeOrReplacePrivateExecMemory: QVM after free 0: [0000000000000000]/0000000000550000 LB 0xb0000 s=0x10000 ap=0x0 rp=0x3136432d00000001 884.b80: 0000000000552000-00000000005fffff 0x0001/0x0000 0x0000000 884.b80: *0000000000600000-0000000000655fff 0x0000/0x0004 0x0020000 884.b80: 0000000000656000-0000000000658fff 0x0004/0x0004 0x0020000 884.b80: 0000000000659000-00000000007fffff 0x0000/0x0004 0x0020000 884.b80: *0000000000800000-00000000008fafff 0x0000/0x0004 0x0020000 884.b80: 00000000008fb000-00000000008fdfff 0x0104/0x0004 0x0020000 884.b80: 00000000008fe000-00000000008fffff 0x0004/0x0004 0x0020000 884.b80: 0000000000900000-000000007ffdffff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe1000-000000007ffe5fff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe6000-000000007ffe6fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe7000-00007ff5644bffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644c0000-00007ff5644c0fff 0x0002/0x0002 0x0040000 884.b80: 00007ff5644c1000-00007ff5644cffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644d0000-00007ff564502fff 0x0002/0x0002 0x0040000 884.b80: 00007ff564503000-00007ff60568ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff605690000-00007ff605690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605691000-00007ff605702fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605703000-00007ff605703fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605704000-00007ff60574afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574b000-00007ff60574bfff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574c000-00007ff60574cfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574d000-00007ff605751fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605752000-00007ff605752fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605753000-00007ff605753fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605754000-00007ff605757fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605758000-00007ff60579ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff6057a0000-00007ffaee47ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee480000-00007ffaee480fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee481000-00007ffaee597fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee598000-00007ffaee5defff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5df000-00007ffaee5eafff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5eb000-00007ffaee5f9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fa000-00007ffaee5fafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fb000-00007ffaee5fdfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fe000-00007ffaee66ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee670000-00007ffffffeffff 0x0001/0x0000 0x0000000 884.b80: supR3HardNtChildPurify: cFixes=1 g_fSupAdversaries=0x80000000 884.b80: supR3HardNtChildPurify: Startup delay kludge #1/1: 520 ms, 58 sleeps 884.b80: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION 884.b80: *0000000000000000-00000000004dffff 0x0001/0x0000 0x0000000 884.b80: *00000000004e0000-00000000004fffff 0x0004/0x0004 0x0020000 884.b80: *0000000000500000-000000000051afff 0x0002/0x0002 0x0040000 884.b80: 000000000051b000-000000000051ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000520000-0000000000523fff 0x0002/0x0002 0x0040000 884.b80: 0000000000524000-000000000052ffff 0x0001/0x0000 0x0000000 884.b80: *0000000000530000-0000000000531fff 0x0004/0x0004 0x0020000 884.b80: 0000000000532000-00000000005fffff 0x0001/0x0000 0x0000000 884.b80: *0000000000600000-0000000000655fff 0x0000/0x0004 0x0020000 884.b80: 0000000000656000-0000000000658fff 0x0004/0x0004 0x0020000 884.b80: 0000000000659000-00000000007fffff 0x0000/0x0004 0x0020000 884.b80: *0000000000800000-00000000008fafff 0x0000/0x0004 0x0020000 884.b80: 00000000008fb000-00000000008fdfff 0x0104/0x0004 0x0020000 884.b80: 00000000008fe000-00000000008fffff 0x0004/0x0004 0x0020000 884.b80: 0000000000900000-000000007ffdffff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe0000-000000007ffe0fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe1000-000000007ffe5fff 0x0001/0x0000 0x0000000 884.b80: *000000007ffe6000-000000007ffe6fff 0x0002/0x0002 0x0020000 884.b80: 000000007ffe7000-00007ff5644bffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644c0000-00007ff5644c0fff 0x0002/0x0002 0x0040000 884.b80: 00007ff5644c1000-00007ff5644cffff 0x0001/0x0000 0x0000000 884.b80: *00007ff5644d0000-00007ff564502fff 0x0002/0x0002 0x0040000 884.b80: 00007ff564503000-00007ff60568ffff 0x0001/0x0000 0x0000000 884.b80: *00007ff605690000-00007ff605690fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605691000-00007ff605702fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605703000-00007ff605703fff 0x0040/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605704000-00007ff60574afff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff60574b000-00007ff605757fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff605758000-00007ff60579ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: 00007ff6057a0000-00007ffaee47ffff 0x0001/0x0000 0x0000000 884.b80: *00007ffaee480000-00007ffaee480fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee481000-00007ffaee597fff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee598000-00007ffaee5defff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5df000-00007ffaee5e2fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5e3000-00007ffaee5eafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5eb000-00007ffaee5f9fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fa000-00007ffaee5fafff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fb000-00007ffaee5fdfff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee5fe000-00007ffaee66ffff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll 884.b80: 00007ffaee670000-00007ffffffeffff 0x0001/0x0000 0x0000000 884.b80: supR3HardNtChildPurify: Done after 803 ms and 1 fixes (loop #1). 35008.1e304: Log file opened: 5.2.42r137960 g_hStartupLog=0000000000000008 g_uNtVerCombined=0xa047bb00 35008.1e304: supR3HardenedVmProcessInit: uNtDllAddr=00007ffaee480000 g_uNtVerCombined=0xa047bb00 35008.1e304: ntdll.dll: timestamp 0x418df01d (rc=VINF_SUCCESS) 35008.1e304: New simple heap: #1 0000000000a00000 LB 0x400000 (for 2031616 allocation) 884.b80: supR3HardNtEnableThreadCreationEx: 35008.1e304: supR3HardenedWinInitAppBin(0x0): '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox' 35008.1e304: System32: \Device\HarddiskVolume3\Windows\System32 35008.1e304: WinSxS: \Device\HarddiskVolume3\Windows\WinSxS 35008.1e304: KnownDllPath: C:\WINDOWS\System32 35008.1e304: supR3HardenedVmProcessInit: Opening vboxdrv stub... 35008.1e304: supR3HardenedVmProcessInit: Restoring LdrInitializeThunk... 35008.1e304: supR3HardenedVmProcessInit: Returning to LdrInitializeThunk... 35008.1e304: Registered Dll notification callback with NTDLL. 35008.1e304: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Windows\System32\kernel32.dll) 35008.1e304: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Windows\System32\kernel32.dll 35008.1e304: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\KERNEL32.DLL (Input=KERNEL32.DLL, rcNtResolve=0xc0150008) *pfFlags=0xffffffff pwszSearchPath=0000000000004001:<flags> [calling] 35008.1e304: supR3HardenedDllNotificationCallback: load 00007ffaeb580000 LB 0x002a6000 C:\WINDOWS\System32\KERNELBASE.dll [fFlags=0x0] 35008.1e304: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Windows\System32\KernelBase.dll) 35008.1e304: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Windows\System32\KernelBase.dll 35008.1e304: supR3HardenedDllNotificationCallback: load 00007ffaed090000 LB 0x000b2000 C:\WINDOWS\System32\KERNEL32.DLL [fFlags=0x0] 35008.1e304: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\kernel32.dll [lacks WinVerifyTrust] 35008.1e304: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffaed090000 'C:\WINDOWS\System32\KERNEL32.DLL' 35008.1e304: supR3HardenedDllNotificationCallback: load 00007ff605690000 LB 0x00110000 C:\Program Files\Oracle\VirtualBox\VBoxHeadless.exe [fFlags=0x0] 35008.1e304: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe' has no imports 35008.1e304: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe) 35008.1e304: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VBoxHeadless.exe 884.b80: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0xc0000005 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 202 ms, CloseEvents);
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
서버구축시 문제ㅠㅠ
이런 오류가 떠서 구글링을 해봤더니 vagrant vbguest 0.21 버전을 깔면 해결이 된다하여 깔았는데.. 또다시 이런 오류가 뜨네욥 ㅠㅠ 해결방법이 있을까요??
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
크론텝
크론텝을 만들었는데, 실행은 어떻게 하고정각과 30분마다 기준을 줬는데 저렇게 작성만 하고 :wq로 저장만 하면 crontab이 등록이 되서 저절로 작동하는건가요?? crontab은 aws instance에서도 자동으로 설치가 되어 있는 건가요??
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
질문
ID="텔레그램 아이디" API_TOKEN="123124124:sdfgdsfsdfdsfdsyoTt2OH5Ec" URL="https://api.telegram.org/bot${API_TOKEN}/sendMessage" # 날짜 DATE="$(date "+%Y-%m-%d %H:%M")" # 보낼 메시지 작성 TEXT="${DATE} [$1] $2" # 메시지 보내기 curl -s -d "chat_id=${ID}&text=${TEXT}" ${URL} > /dev/null ID와 API를 가렸습니다. 이 외에 잘못된 부분이 있을 까요??? 아무리 실행을 해도 메시지가 안날라갑니다. 어디서 오류가 났는지 아무리 봐도 차이가 없어보여서요.
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
강의 복습
쉽고 재밌게 구성돼 있고 잘 가르쳐 주셔서 유익하게 잘 배웠습니다. 마지막으로 공부했던 내용을 복습하려고 하는데 배운 내용을 토대로 출처를 밝히고 블로그에 정리해도 될까요?
- 미해결시스템엔지니어가 알려주는 리눅스 실전편 Bash Shell Script
각 vagrant up후 각 서버간 ssh 접속이 안되는 상황이었습니다
18:32초 에서 cent1 접속후 ssh cent2 하는 화면이 나오는데 ssh 접속이 안되어 각 서버간 ssh 열쇠교환을 따로 해주었습니다. 분명 강사님께서 구성해 놓으신 vagrant스크립트와 conf파일에 각 서버간 ssh 접속이 가능한 정보가 다 있는 것 같아 더 나은 방법이있는지 확인차 질문글 남겨놓습니다. 혹시나 같은 이유로 막힌분이 있으시다면 참고되셨으면합니다 <해결방법> 1. root유저의 디렉토리에 공개키가 생성되어 있지 않아 keygen을 한번 더해서 공개키를 생성했습니다. 2. 비밀키의 권한 600 을 설정햇습니다. 3. cent1,2,3 간 공개키 교환을 따로해 ssh 접속이 가능하도록 설정했습니다 <주요에러메시지> 아이피주소는 베이그런트파일에서 할당한 설정값이기에 생략하지 않겠습니다. [root@cent1 vagrant]# ssh cent2 The authenticity of host '172.18.1.92 (172.18.1.92)' can't be established. WARNING: UNPROTECTED PRIVATE KEY FILE! Permissions 0644 for '/root/.ssh/id_rsa' are too open. It is required that your private key files are NOT accessible by others. This private key will be ignored. Load key "/root/.ssh/id_rsa": bad permissions root@172.18.1.92: Permission denied (publickey,gssapi-keyex,gssapi-with-mic).