I am using version 4.3.26
here is the log it says something about the ntdl.dll but i dont know how to fix it.
I am using windows 8
I already tried re installation but it does not seem to fix the problem
Code: Select all
cf8.1348: Log file opened: 4.3.26r98988 g_hStartupLog=0000000000000010 g_uNtVerCombined=0x6223f000
cf8.1348: \SystemRoot\System32\ntdll.dll:
cf8.1348: CreationTime: 2015-04-15T02:31:39.620538800Z
cf8.1348: LastWriteTime: 2015-03-17T06:52:42.469622000Z
cf8.1348: ChangeTime: 2015-04-15T08:25:57.960092000Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0x1bcfe8
cf8.1348: NT Headers: 0xd8
cf8.1348: Timestamp: 0x5507a832
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x5507a832
cf8.1348: Image Version: 6.2
cf8.1348: SizeOfImage: 0x1bd000 (1822720)
cf8.1348: Resource Dir: 0x15b000 LB 0x60f30
cf8.1348: ProductName: Microsoft® Windows® Operating System
cf8.1348: ProductVersion: 6.2.9200.17313
cf8.1348: FileVersion: 6.2.9200.17313 (win8_gdr.150316-1542)
cf8.1348: FileDescription: NT Layer DLL
cf8.1348: \SystemRoot\System32\kernel32.dll:
cf8.1348: CreationTime: 2015-02-10T01:12:27.841549000Z
cf8.1348: LastWriteTime: 2014-03-01T09:47:38.756000000Z
cf8.1348: ChangeTime: 2015-02-12T03:33:29.202672200Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0x133400
cf8.1348: NT Headers: 0xf8
cf8.1348: Timestamp: 0x53118dd3
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x53118dd3
cf8.1348: Image Version: 6.2
cf8.1348: SizeOfImage: 0x137000 (1273856)
cf8.1348: Resource Dir: 0x12a000 LB 0x518
cf8.1348: ProductName: Microsoft® Windows® Operating System
cf8.1348: ProductVersion: 6.2.9200.16859
cf8.1348: FileVersion: 6.2.9200.16859 (win8_gdr.140228-1809)
cf8.1348: FileDescription: Windows NT BASE API Client DLL
cf8.1348: \SystemRoot\System32\KernelBase.dll:
cf8.1348: CreationTime: 2014-12-09T11:07:17.802313900Z
cf8.1348: LastWriteTime: 2014-03-11T00:38:31.127000000Z
cf8.1348: ChangeTime: 2014-12-09T11:54:46.593816800Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0xefc00
cf8.1348: NT Headers: 0xf0
cf8.1348: Timestamp: 0x531d34d8
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x531d34d8
cf8.1348: Image Version: 6.2
cf8.1348: SizeOfImage: 0xf4000 (999424)
cf8.1348: Resource Dir: 0xef000 LB 0x3390
cf8.1348: ProductName: Microsoft® Windows® Operating System
cf8.1348: ProductVersion: 6.2.9200.16864
cf8.1348: FileVersion: 6.2.9200.16864 (win8_gdr.140309-1509)
cf8.1348: FileDescription: Windows NT BASE API Client DLL
cf8.1348: \SystemRoot\System32\apisetschema.dll:
cf8.1348: CreationTime: 2012-07-26T03:03:15.602092000Z
cf8.1348: LastWriteTime: 2012-07-26T04:55:14.433670100Z
cf8.1348: ChangeTime: 2014-12-08T23:17:36.756675900Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0xb4f0
cf8.1348: NT Headers: 0xc0
cf8.1348: Timestamp: 0x5010b373
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x5010b373
cf8.1348: Image Version: 6.2
cf8.1348: SizeOfImage: 0xd000 (53248)
cf8.1348: Resource Dir: 0xb000 LB 0x3f0
cf8.1348: ProductName: Microsoft® Windows® Operating System
cf8.1348: ProductVersion: 6.2.9200.16384
cf8.1348: FileVersion: 6.2.9200.16384 (win8_rtm.120725-1247)
cf8.1348: FileDescription: ApiSet Schema DLL
cf8.1348: NtOpenDirectoryObject failed on \Driver: 0xc0000022
cf8.1348: supR3HardenedWinFindAdversaries: 0x40
cf8.1348: \SystemRoot\System32\drivers\kl1.sys:
cf8.1348: CreationTime: 2013-09-05T10:38:46.000000000Z
cf8.1348: LastWriteTime: 2013-09-05T10:38:46.000000000Z
cf8.1348: ChangeTime: 2015-01-05T03:37:54.797037900Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0x75c460
cf8.1348: NT Headers: 0xe0
cf8.1348: Timestamp: 0x522826d2
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x522826d2
cf8.1348: Image Version: 0.0
cf8.1348: SizeOfImage: 0x75e000 (7725056)
cf8.1348: Resource Dir: 0x75c000 LB 0x448
cf8.1348: ProductName: Kaspersky Anti-Virus
cf8.1348: ProductVersion: 6.0.1.990
cf8.1348: FileVersion: 6.8.0.27
cf8.1348: FileDescription: Kaspersky Unified Driver
cf8.1348: \SystemRoot\System32\drivers\klflt.sys:
cf8.1348: CreationTime: 2015-01-05T03:37:43.461228700Z
cf8.1348: LastWriteTime: 2015-01-05T03:37:43.462230200Z
cf8.1348: ChangeTime: 2015-01-05T03:37:45.649469400Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0x18060
cf8.1348: NT Headers: 0xe8
cf8.1348: Timestamp: 0x52399b87
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x52399b87
cf8.1348: Image Version: 6.2
cf8.1348: SizeOfImage: 0x24000 (147456)
cf8.1348: Resource Dir: 0x22000 LB 0x378
cf8.1348: ProductName: Kaspersky™ Anti-Virus ®
cf8.1348: ProductVersion: 1.2.0.29
cf8.1348: FileVersion: 1.2.0.29
cf8.1348: FileDescription: Filter Core [fre_win8_x64]
cf8.1348: \SystemRoot\System32\drivers\klif.sys:
cf8.1348: CreationTime: 2015-01-05T03:37:43.465234600Z
cf8.1348: LastWriteTime: 2015-01-05T03:37:43.469240900Z
cf8.1348: ChangeTime: 2015-01-05T03:37:45.648468300Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0xa2660
cf8.1348: NT Headers: 0xf8
cf8.1348: Timestamp: 0x527a56b4
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x527a56b4
cf8.1348: Image Version: 6.2
cf8.1348: SizeOfImage: 0xaf000 (716800)
cf8.1348: Resource Dir: 0xad000 LB 0x388
cf8.1348: ProductName: Kaspersky™ Anti-Virus ®
cf8.1348: ProductVersion: 8.12.1.115
cf8.1348: FileVersion: 8.12.1.115
cf8.1348: FileDescription: Klif Mini-Filter [fre_win8_x64]
cf8.1348: \SystemRoot\System32\drivers\klim6.sys:
cf8.1348: CreationTime: 2013-07-11T11:54:12.000000000Z
cf8.1348: LastWriteTime: 2013-07-11T11:54:12.000000000Z
cf8.1348: ChangeTime: 2015-01-05T03:37:53.995833100Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0x7660
cf8.1348: NT Headers: 0xe0
cf8.1348: Timestamp: 0x51de6494
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x51de6494
cf8.1348: Image Version: 6.2
cf8.1348: SizeOfImage: 0xa000 (40960)
cf8.1348: Resource Dir: 0x8000 LB 0x470
cf8.1348: ProductName: Kaspersky Anti-Virus
cf8.1348: ProductVersion: 6.0.1.990
cf8.1348: FileVersion: 8.0.0.71
cf8.1348: FileDescription: Kaspersky Lab Intermediate Network Driver
cf8.1348: \SystemRoot\System32\drivers\kneps.sys:
cf8.1348: CreationTime: 2013-07-01T17:18:10.000000000Z
cf8.1348: LastWriteTime: 2013-07-01T17:18:10.000000000Z
cf8.1348: ChangeTime: 2015-01-05T03:37:55.038377000Z
cf8.1348: FileAttributes: 0x20
cf8.1348: Size: 0x2b660
cf8.1348: NT Headers: 0x110
cf8.1348: Timestamp: 0x51d1814d
cf8.1348: Machine: 0x8664 - amd64
cf8.1348: Timestamp: 0x51d1814d
cf8.1348: Image Version: 6.1
cf8.1348: SizeOfImage: 0x2d000 (184320)
cf8.1348: Resource Dir: 0x2b000 LB 0x370
cf8.1348: ProductName: Kaspersky™ Anti-Virus ®
cf8.1348: ProductVersion: 5.2.1.1
cf8.1348: FileVersion: 5.2.1.1 built by: WinDDK
cf8.1348: FileDescription: KNEPS Power
cf8.1348: Calling main()
cf8.1348: SUPR3HardenedMain: pszProgName=VirtualBox fFlags=0x2
cf8.1348: SUPR3HardenedMain: Respawn #1
cf8.1348: System32: \Device\HarddiskVolume3\Windows\System32
cf8.1348: WinSxS: \Device\HarddiskVolume3\Windows\WinSxS
cf8.1348: KnownDllPath: C:\WINDOWS\system32
cf8.1348: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
cf8.1348: supHardenedWinVerifyImageByHandle: -> 0 (\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe)
cf8.1348: supR3HardNtEnableThreadCreation:
cf8.1348: supR3HardNtDisableThreadCreation: pvLdrInitThunk=000007fc81330058 pvNtTerminateThread=000007fc81303090
cf8.1348: supR3HardenedWinDoReSpawn(1): New child dbc.fd8 [kernel32].
cf8.1348: supR3HardNtChildGatherData: PebBaseAddress=000007f72a265000 cbPeb=0x388
cf8.1348: supR3HardNtPuChFindNtdll: uNtDllParentAddr=000007fc81300000 uNtDllChildAddr=000007fc81300000
cf8.1348: supR3HardenedWinSetupChildInit: uLdrInitThunk=000007fc81330058
cf8.1348: supR3HardenedWinSetupChildInit: Start child.
cf8.1348: supR3HardNtChildWaitFor: Found expected request 0 (PurifyChildAndCloseHandles) after 0 ms.
cf8.1348: supR3HardNtChildPurify: Startup delay kludge #1/0: 516 ms, 33 sleeps
cf8.1348: supHardNtVpScanVirtualMemory: enmKind=CHILD_PURIFICATION
cf8.1348: *0000000000000000-ffffffffff6bffff 0x0001/0x0000 0x0000000
cf8.1348: *0000000000940000-000000000091ffff 0x0004/0x0004 0x0020000
cf8.1348: *0000000000960000-0000000000956fff 0x0002/0x0002 0x0040000
cf8.1348: 0000000000969000-0000000000961fff 0x0001/0x0000 0x0000000
cf8.1348: *0000000000970000-0000000000873fff 0x0000/0x0004 0x0020000
cf8.1348: 0000000000a6c000-0000000000a68fff 0x0104/0x0004 0x0020000
cf8.1348: 0000000000a6f000-0000000000a6dfff 0x0004/0x0004 0x0020000
cf8.1348: *0000000000a70000-0000000000a6bfff 0x0002/0x0002 0x0040000
cf8.1348: 0000000000a74000-0000000000a67fff 0x0001/0x0000 0x0000000
cf8.1348: *0000000000a80000-0000000000a7dfff 0x0004/0x0004 0x0020000
cf8.1348: 0000000000a82000-ffffffff81523fff 0x0001/0x0000 0x0000000
cf8.1348: *000000007ffe0000-000000007ffdefff 0x0002/0x0002 0x0020000
cf8.1348: 000000007ffe1000-000000007ffd1fff 0x0000/0x0002 0x0020000
cf8.1348: 000000007fff0000-fffff809d5d9ffff 0x0001/0x0000 0x0000000
cf8.1348: *000007f72a240000-000007f72a21cfff 0x0002/0x0002 0x0040000
cf8.1348: 000007f72a263000-000007f72a260fff 0x0001/0x0000 0x0000000
cf8.1348: *000007f72a265000-000007f72a263fff 0x0004/0x0004 0x0020000
cf8.1348: 000007f72a266000-000007f72a25dfff 0x0001/0x0000 0x0000000
cf8.1348: *000007f72a26e000-000007f72a26bfff 0x0004/0x0004 0x0020000
cf8.1348: 000007f72a270000-000007f72a16ffff 0x0001/0x0000 0x0000000
cf8.1348: *000007f72a370000-000007f72a36efff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a371000-000007f72a2ecfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a3f5000-000007f72a3f3fff 0x0080/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a3f6000-000007f72a3b8fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a433000-000007f72a431fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a434000-000007f72a432fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a435000-000007f72a432fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a437000-000007f72a435fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a438000-000007f72a436fff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a439000-000007f72a434fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a43d000-000007f72a403fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe
cf8.1348: 000007f72a476000-000007f1d35ebfff 0x0001/0x0000 0x0000000
cf8.1348: *000007fc81300000-000007fc812fefff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc81301000-000007fc811cbfff 0x0020/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc81436000-000007fc8142ffff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc8143c000-000007fc8143afff 0x0004/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc8143d000-000007fc81437fff 0x0008/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc81442000-000007fc8142cfff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc81457000-000007fc81455fff 0x0010/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc81458000-000007fc813f2fff 0x0002/0x0080 0x1000000 \Device\HarddiskVolume3\Windows\System32\ntdll.dll
cf8.1348: 000007fc814bd000-000007f902999fff 0x0001/0x0000 0x0000000
cf8.1348: *000007fffffe0000-000007fffffcffff 0x0001/0x0002 0x0020000
cf8.1348: VirtualBox.exe: timestamp 0x550706a7 (rc=VINF_SUCCESS)
cf8.1348: '\Device\HarddiskVolume3\Program Files\Oracle\VirtualBox\VirtualBox.exe' has no imports
cf8.1348: '\Device\HarddiskVolume3\Windows\System32\ntdll.dll' has no imports
cf8.1348: supR3HardNtChildPurify: Done after 532 ms and 0 fixes (loop #0).
dbc.fd8: Log file opened: 4.3.26r98988 g_hStartupLog=0000000000000004 g_uNtVerCombined=0x6223f000
dbc.fd8: supR3HardenedVmProcessInit: uNtDllAddr=000007fc81300000
cf8.1348: supR3HardNtEnableThreadCreation:
dbc.fd8: ntdll.dll: timestamp 0x5507a832 (rc=VINF_SUCCESS)
dbc.fd8: New simple heap: #1 0000000000b90000 LB 0x400000 (for 1822720 allocation)
dbc.fd8: System32: \Device\HarddiskVolume3\Windows\System32
dbc.fd8: WinSxS: \Device\HarddiskVolume3\Windows\WinSxS
dbc.fd8: KnownDllPath: C:\WINDOWS\system32
dbc.fd8: supR3HardenedVmProcessInit: Opening vboxdrv stub...
dbc.fd8: supR3HardenedWinReadErrorInfoDevice: 'ntdll.dll: 7981 differences between 0x300c and 0x4fff in #1 (.text), first: 4c != 1f'
dbc.fd8: Error -5600 in supR3HardenedWinReSpawn! (enmWhat=3)
dbc.fd8: NtCreateFile(\Device\VBoxDrvStub) failed: Unknown Status -5600 (0xffffea20) (rcNt=0xe986ea20)
VBoxDrvStub error: ntdll.dll: 7981 differences between 0x300c and 0x4fff in #1 (.text), first: 4c != 1f
cf8.1348: supR3HardenedWinCheckChild: enmRequest=2 rc=-5600 enmWhat=3 supR3HardenedWinReSpawn: NtCreateFile(\Device\VBoxDrvStub) failed: Unknown Status -5600 (0xffffea20) (rcNt=0xe986ea20)
VBoxDrvStub error: ntdll.dll: 7981 differences between 0x300c and 0x4fff in #1 (.text), first: 4c != 1f
cf8.1348: Error -5600 in supR3HardenedWinReSpawn! (enmWhat=3)
cf8.1348: NtCreateFile(\Device\VBoxDrvStub) failed: Unknown Status -5600 (0xffffea20) (rcNt=0xe986ea20)
VBoxDrvStub error: ntdll.dll: 7981 differences between 0x300c and 0x4fff in #1 (.text), first: 4c != 1f