VM startup terminates unexpectedly on Win10
Posted: 25. May 2020, 19:52
Virtualbox 6.1.8 r137981
Windows 10 Build 18363
When starting a 64bit Ubuntu VM (named Ethereum) via the Virtualbox UI, I am getting hard to decipher hardening errors.
HyperV is disabled and all "guards" are disabled or uninstalled
Full log attached. Any help is appreciated. Thank you.
The virtual machine 'Ethereum' has terminated unexpectedly during startup with exit code 1 (0x1). More details may be available in 'C:\Users\joapp\VirtualBox VMs\Ethereum\Logs\VBoxHardening.log'.
Result Code:
E_FAIL (0x80004005)
Component:
MachineWrap
Interface:
IMachine {85632c68-b5bb-4316-a900-5eb28d3413df}
The details are attached in the log. Extract:
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
9c8.256c: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #12 'winmm.dll'.
9c8.256c: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume3\Windows\System32\midimap.dll)
9c8.256c: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Windows\System32\midimap.dll
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmm.dll'...
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmm.dll' -> '\Device\HarddiskVolume3\Windows\System32\winmm.dll' [rcNtRedir=0xc0150008]
9c8.256c: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\winmm.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume3\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
9c8.256c: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedDllNotificationCallback: load 00007ffe0f9f0000 LB 0x0000a000 C:\WINDOWS\System32\midimap.dll [fFlags=0x0]
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.2e28: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
9c8.2e28: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\MMDevApi.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000002009:<flags> [calling]
9c8.2e28: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe1f6c0000 'C:\WINDOWS\System32\MMDevApi.dll'
4384.994: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0x1 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 5719 ms, the end);
Windows 10 Build 18363
When starting a 64bit Ubuntu VM (named Ethereum) via the Virtualbox UI, I am getting hard to decipher hardening errors.
HyperV is disabled and all "guards" are disabled or uninstalled
Full log attached. Any help is appreciated. Thank you.
The virtual machine 'Ethereum' has terminated unexpectedly during startup with exit code 1 (0x1). More details may be available in 'C:\Users\joapp\VirtualBox VMs\Ethereum\Logs\VBoxHardening.log'.
Result Code:
E_FAIL (0x80004005)
Component:
MachineWrap
Interface:
IMachine {85632c68-b5bb-4316-a900-5eb28d3413df}
The details are attached in the log. Extract:
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\msacm32.drv (Input=msacm32.drv, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\msacm32.drv [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe13140000 'C:\WINDOWS\System32\msacm32.drv'
9c8.256c: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #0 'msvcrt.dll'.
9c8.256c: supR3HardenedWinVerifyCacheScheduleImports: Import todo: #12 'winmm.dll'.
9c8.256c: supHardenedWinVerifyImageByHandle: -> 22900 (\Device\HarddiskVolume3\Windows\System32\midimap.dll)
9c8.256c: supR3HardenedWinVerifyCacheInsert: \Device\HarddiskVolume3\Windows\System32\midimap.dll
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'winmm.dll'...
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: 'winmm.dll' -> '\Device\HarddiskVolume3\Windows\System32\winmm.dll' [rcNtRedir=0xc0150008]
9c8.256c: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\winmm.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: Processing 'msvcrt.dll'...
9c8.256c: supR3HardenedWinVerifyCacheProcessImportTodos: 'msvcrt.dll' -> '\Device\HarddiskVolume3\Windows\System32\msvcrt.dll' [rcNtRedir=0xc0150008]
9c8.256c: supR3HardenedScreenImage/Imports: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\msvcrt.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedScreenImage/NtCreateSection: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedDllNotificationCallback: load 00007ffe0f9f0000 LB 0x0000a000 C:\WINDOWS\System32\midimap.dll [fFlags=0x0]
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.256c: supR3HardenedScreenImage/LdrLoadDll: cache hit (Unknown Status 22900 (0x5974)) on \Device\HarddiskVolume3\Windows\System32\midimap.dll [lacks WinVerifyTrust]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\midimap.dll (Input=midimap.dll, rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000001001:<flags> [calling]
9c8.256c: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe0f9f0000 'C:\WINDOWS\System32\midimap.dll'
9c8.2e28: supR3HardenedScreenImage/LdrLoadDll: cache hit (VINF_SUCCESS) on \Device\HarddiskVolume3\Windows\System32\MMDevAPI.dll [lacks WinVerifyTrust]
9c8.2e28: supR3HardenedMonitor_LdrLoadDll: pName=C:\WINDOWS\System32\MMDevApi.dll (rcNtResolve=0xc0150008) *pfFlags=0x0 pwszSearchPath=0000000000002009:<flags> [calling]
9c8.2e28: supR3HardenedMonitor_LdrLoadDll: returns rcNt=0x0 hMod=00007ffe1f6c0000 'C:\WINDOWS\System32\MMDevApi.dll'
4384.994: supR3HardNtChildWaitFor[1]: Quitting: ExitCode=0x1 (rcNtWait=0x0, rcNt1=0x0, rcNt2=0x103, rcNt3=0x103, 5719 ms, the end);