Jump to content
Sign in to follow this  
jesu

D12.3 IDE starts extremely slow

Recommended Posts

Hello. I've created a VM with VirtualBox 7.1.6 and Delphi 12.3. Once the IDE is ready it works acceptably, but the IDE starts extremely slow (it can need several minutes to start using only 1% CPU). I've installed Process Monitor but I'm not sure what to look for and I don't see nothing strange. This is a small part of the log:


 

Quote

 

9:28:13,4223485    svchost.exe    1108    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4227618    bds.exe    5812    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    INVALID DEVICE REQUEST    Control: 0x90390 (Device:0x9 Function:228 Method: 0)
9:28:13,4227784    bds.exe    5812    QueryAttributeInformationVolume    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, 0x3c02e00, MaximumComponentNameLength: 255, FileSystemName: NTFS
9:28:13,4227891    bds.exe    5812    QueryBasicInformationFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    CreationTime: 03/04/2025 8:09:21, LastAccessTime: 22/04/2025 9:28:13, LastWriteTime: 26/02/2025 21:03:46, ChangeTime: 22/04/2025 8:18:52, FileAttributes: A
9:28:13,4227999    bds.exe    5812    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_WRITE_USN_CLOSE_RECORD
9:28:13,4228386    bds.exe    5812    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_QUERY_USN_JOURNAL
9:28:13,4228468    bds.exe    5812    SetEAFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4229856    bds.exe    5812    CreateFileMapping    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    SyncType: SyncTypeOther
9:28:13,4230090    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\Srp\GP\    REPARSE    Desired Access: Read
9:28:13,4230219    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\Srp\GP    SUCCESS    Desired Access: Read
9:28:13,4230354    bds.exe    5812    RegSetInfoKey    HKLM\System\CurrentControlSet\Control\Srp\Gp    SUCCESS    KeySetInformationClass: KeySetHandleTagsInformation, Length: 0
9:28:13,4230417    bds.exe    5812    RegQueryValue    HKLM\System\CurrentControlSet\Control\Srp\Gp\RuleCount    SUCCESS    Type: REG_DWORD, Length: 4, Data: 2
9:28:13,4230516    bds.exe    5812    RegCloseKey    HKLM\System\CurrentControlSet\Control\Srp\Gp    SUCCESS    
9:28:13,4231045    bds.exe    5812    QuerySecurityFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100
9:28:13,4231212    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    REPARSE    Desired Access: Read
9:28:13,4231294    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    Desired Access: Read
9:28:13,4231391    bds.exe    5812    RegQueryValue    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER\DISABLED    NAME NOT FOUND    Length: 48
9:28:13,4231469    bds.exe    5812    RegCloseKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    
9:28:13,4231536    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    REPARSE    Desired Access: Read
9:28:13,4231605    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    Desired Access: Read
9:28:13,4231668    bds.exe    5812    RegQueryValue    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER\ENABLED    SUCCESS    Type: REG_QWORD, Length: 8, Data:
9:28:13,4231737    bds.exe    5812    RegCloseKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    
9:28:13,4231798    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    REPARSE    Desired Access: Read
9:28:13,4231862    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    Desired Access: Read
9:28:13,4231922    bds.exe    5812    RegQueryValue    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER\ENABLED    SUCCESS    Type: REG_QWORD, Length: 8, Data:
9:28:13,4231984    bds.exe    5812    RegCloseKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    
9:28:13,4232042    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    REPARSE    Desired Access: Read
9:28:13,4232105    bds.exe    5812    RegOpenKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    Desired Access: Read
9:28:13,4232167    bds.exe    5812    RegQueryValue    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER\DISABLED    NAME NOT FOUND    Length: 48
9:28:13,4232225    bds.exe    5812    RegCloseKey    HKLM\System\CurrentControlSet\Control\AppID\Configuration\SMARTLOCKER    SUCCESS    
9:28:13,4232655    bds.exe    5812    CreateFile    E:    SUCCESS    Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4233004    bds.exe    5812    FileSystemControl    E:    SUCCESS    Control: FSCTL_QUERY_USN_JOURNAL
9:28:13,4233397    bds.exe    5812    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,4233479    bds.exe    5812    CloseFile    E:    SUCCESS    
9:28:13,4236493    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Non-Directory File, Open For Backup, Open Reparse Point, Open Requiring Oplock, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4236584    bds.exe    5812    Load Image    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Image Base: 0x5fd00000, Image Size: 0x39000
9:28:13,4236890    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    OPLOCK HANDLE CLOSED    Control: FSCTL_REQUEST_OPLOCK
9:28:13,4237062    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: 0x902eb (Device:0x9 Function:186 Method: 3)
9:28:13,4237184    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4239794    bds.exe    5812    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4240243    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True
9:28:13,4240504    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 124, Length: 1
9:28:13,4240772    bds.exe    5812    QueryOpen    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    CreationTime: 03/04/2025 8:09:17, LastAccessTime: 22/04/2025 8:18:52, LastWriteTime: 26/02/2025 21:02:04, ChangeTime: 22/04/2025 8:18:52, AllocationSize: 937.984, EndOfFile: 937.448, FileAttributes: A
9:28:13,4243298    bds.exe    5812    CreateFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4243953    bds.exe    5812    QueryBasicInformationFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    CreationTime: 03/04/2025 8:09:17, LastAccessTime: 22/04/2025 8:18:52, LastWriteTime: 26/02/2025 21:02:04, ChangeTime: 22/04/2025 8:18:52, FileAttributes: A
9:28:13,4244058    bds.exe    5812    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    INVALID DEVICE REQUEST    Control: 0x90390 (Device:0x9 Function:228 Method: 0)
9:28:13,4244157    bds.exe    5812    QueryAttributeInformationVolume    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, 0x3c02e00, MaximumComponentNameLength: 255, FileSystemName: NTFS
9:28:13,4248810    MsMpEng.exe    2836    CreateFileMapping    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    FILE LOCKED WITH ONLY READERS    SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE|PAGE_NOCACHE
9:28:13,4248861    MsMpEng.exe    2836    QueryStandardInformationFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    AllocationSize: 937.984, EndOfFile: 937.448, NumberOfLinks: 1, DeletePending: False, Directory: False
9:28:13,4249362    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 0, Length: 65.536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4250367    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open For Backup, Open No Recall, Disallow Exclusive, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4250790    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,4250875    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:21, LastAccessTime: 22/04/2025 9:28:13, LastWriteTime: 26/02/2025 21:03:46, ChangeTime: 22/04/2025 9:28:13, FileAttributes: A, AllocationSize: 221.184, EndOfFile: 220.136
9:28:13,4250957    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,4250995    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:21, LastAccessTime: 22/04/2025 9:28:13, LastWriteTime: 26/02/2025 21:03:46, ChangeTime: 22/04/2025 9:28:13, FileAttributes: A, AllocationSize: 221.184, EndOfFile: 220.136
9:28:13,4251062    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,4251147    MsMpEng.exe    2836    QueryIdInformation    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4251266    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4251777    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open For Backup, Open No Recall, Disallow Exclusive, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4251981    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,4252025    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:21, LastAccessTime: 22/04/2025 9:28:13, LastWriteTime: 26/02/2025 21:03:46, ChangeTime: 22/04/2025 9:28:13, FileAttributes: A, AllocationSize: 221.184, EndOfFile: 220.136
9:28:13,4252073    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,4252111    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:21, LastAccessTime: 22/04/2025 9:28:13, LastWriteTime: 26/02/2025 21:03:46, ChangeTime: 22/04/2025 9:28:13, FileAttributes: A, AllocationSize: 221.184, EndOfFile: 220.136
9:28:13,4252161    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,4252219    MsMpEng.exe    2836    QueryIdInformation    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4252285    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4252592    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open For Backup, Open No Recall, Disallow Exclusive, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4252889    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,4252939    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:21, LastAccessTime: 22/04/2025 9:28:13, LastWriteTime: 26/02/2025 21:03:46, ChangeTime: 22/04/2025 9:28:13, FileAttributes: A, AllocationSize: 221.184, EndOfFile: 220.136
9:28:13,4252990    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,4253031    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:21, LastAccessTime: 22/04/2025 9:28:13, LastWriteTime: 26/02/2025 21:03:46, ChangeTime: 22/04/2025 9:28:13, FileAttributes: A, AllocationSize: 221.184, EndOfFile: 220.136
9:28:13,4253082    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,4253134    MsMpEng.exe    2836    QueryIdInformation    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4253200    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4253513    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open For Backup, Open No Recall, Disallow Exclusive, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4253644    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,4253694    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4254065    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open For Backup, Open No Recall, Disallow Exclusive, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4254185    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,4254231    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4254963    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Complete If Oplocked, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,4255104    MsMpEng.exe    2836    QueryIdInformation    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4255407    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True
9:28:13,4255522    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 124, Length: 1
9:28:13,4255594    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\dclbindcompfmx290.bpl    SUCCESS    
9:28:13,4261425    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 872.448, Length: 65.000, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4297425    MsMpEng.exe    2836    ReadFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-96E076166D7C3E8DD6B697DE1DF0B47589343799.bin.7E    SUCCESS    Offset: 35.885.056, Length: 24.576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4308729    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 684.032, Length: 65.536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4317365    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 757.760, Length: 65.536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4336065    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 749.568, Length: 8.192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4345287    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 618.496, Length: 65.536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4355193    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 823.296, Length: 49.152, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4505114    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True
9:28:13,4505303    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 124, Length: 1
9:28:13,4532230    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True
9:28:13,4532364    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 124, Length: 1
9:28:13,4532905    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 65.536, Length: 65.536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4546099    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 131.072, Length: 98.304, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4554608    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 229.376, Length: 196.608, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4566743    MsMpEng.exe    2836    ReadFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Offset: 425.984, Length: 192.512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal
9:28:13,4677478    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True
9:28:13,4677621    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 124, Length: 1
9:28:13,4677802    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True
9:28:13,4677932    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 124, Length: 1
9:28:13,4678003    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True
9:28:13,4678052    MsMpEng.exe    2836    LockFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True
9:28:13,4678418    MsMpEng.exe    2836    WriteFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-wal    SUCCESS    Offset: 2.537.952, Length: 24
9:28:13,4678599    MsMpEng.exe    2836    WriteFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-wal    SUCCESS    Offset: 2.537.976, Length: 4.096
9:28:13,4678779    MsMpEng.exe    2836    WriteFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-wal    SUCCESS    Offset: 2.542.072, Length: 24
9:28:13,4678828    MsMpEng.exe    2836    WriteFile    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-wal    SUCCESS    Offset: 2.542.096, Length: 4.096
9:28:13,4678902    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 120, Length: 1
9:28:13,4678944    MsMpEng.exe    2836    UnlockFileSingle    C:\ProgramData\Microsoft\Windows Defender\Scans\mpenginedb.db-shm    SUCCESS    Offset: 124, Length: 1
9:28:13,4714466    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4714614    MsMpEng.exe    2836    RegOpenKey    HKLM\SOFTWARE\Microsoft\Windows Defender    SUCCESS    Desired Access: Read/Write
9:28:13,4715036    MsMpEng.exe    2836    RegQueryValue    HKLM\SOFTWARE\Microsoft\Windows Defender\ReportingGUID    NAME NOT FOUND    Length: 144
9:28:13,4717932    MsMpEng.exe    2836    RegCloseKey    HKLM\SOFTWARE\Microsoft\Windows Defender    SUCCESS    
9:28:13,4718041    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4718427    MsMpEng.exe    2836    RegOpenKey    HKLM\SOFTWARE\Microsoft\Windows Defender    SUCCESS    Desired Access: Read/Write
9:28:13,4718763    MsMpEng.exe    2836    RegCloseKey    HKLM\SOFTWARE\Microsoft\Windows Defender    SUCCESS    
9:28:13,4718951    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4719013    MsMpEng.exe    2836    RegOpenKey    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Server\ServerLevels    NAME NOT FOUND    Desired Access: Query Value
9:28:13,4719215    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4719266    MsMpEng.exe    2836    RegOpenKey    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate    SUCCESS    Desired Access: Query Value
9:28:13,4719396    MsMpEng.exe    2836    RegQueryValue    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\SusClientId    SUCCESS    Type: REG_SZ, Length: 74, Data: 157a656e-6a2a-44af-830d-deff70d50b5e
9:28:13,4719500    MsMpEng.exe    2836    RegCloseKey    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate    SUCCESS    
9:28:13,4723409    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4723509    MsMpEng.exe    2836    RegOpenKey    HKLM\System\Setup    SUCCESS    Desired Access: Query Value
9:28:13,4723644    MsMpEng.exe    2836    RegQueryValue    HKLM\SYSTEM\Setup\Upgrade    NAME NOT FOUND    Length: 16
9:28:13,4724544    MsMpEng.exe    2836    RegCloseKey    HKLM\SYSTEM\Setup    SUCCESS    
9:28:13,4724670    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4724732    MsMpEng.exe    2836    RegOpenKey    HKLM\SOFTWARE\Microsoft\Windows Defender\Scan    SUCCESS    Desired Access: Read/Write
9:28:13,4724953    MsMpEng.exe    2836    RegQueryValue    HKLM\SOFTWARE\Microsoft\Windows Defender\Scan\LastOfflineScan    NAME NOT FOUND    Length: 20
9:28:13,4725034    MsMpEng.exe    2836    RegCloseKey    HKLM\SOFTWARE\Microsoft\Windows Defender\Scan    SUCCESS    
9:28:13,4725111    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4725163    MsMpEng.exe    2836    RegOpenKey    HKLM\SOFTWARE\Microsoft\Windows Defender\Scan    SUCCESS    Desired Access: Read/Write
9:28:13,4725282    MsMpEng.exe    2836    RegQueryValue    HKLM\SOFTWARE\Microsoft\Windows Defender\Scan\LastOfflineScanPreserved    NAME NOT FOUND    Length: 20
9:28:13,4725345    MsMpEng.exe    2836    RegCloseKey    HKLM\SOFTWARE\Microsoft\Windows Defender\Scan    SUCCESS    
9:28:13,4725422    MsMpEng.exe    2836    RegQueryKey    HKLM    SUCCESS    Query: HandleTags, HandleTags: 0x0
9:28:13,4725474    MsMpEng.exe    2836    RegOpenKey    HKLM\SOFTWARE\Microsoft\Windows Defender\Reporting    SUCCESS    Desired Access: Read/Write

...
9:28:13,5719160    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    
9:28:13,5719472    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open For Backup, Open No Recall, Disallow Exclusive, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,5719607    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,5719653    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:17, LastAccessTime: 22/04/2025 8:18:52, LastWriteTime: 26/02/2025 21:02:04, ChangeTime: 22/04/2025 8:18:52, FileAttributes: A, AllocationSize: 937.984, EndOfFile: 937.448
9:28:13,5719703    MsMpEng.exe    2836    QueryInformationVolume    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    BUFFER OVERFLOW    VolumeCreationTime: 01/04/2025 11:24:02, VolumeSerialNumber: 8230-F041, SupportsObjects: True, VolumeLabel: Proȼ
9:28:13,5719750    MsMpEng.exe    2836    QueryAllInformationFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    BUFFER OVERFLOW    CreationTime: 03/04/2025 8:09:17, LastAccessTime: 22/04/2025 8:18:52, LastWriteTime: 26/02/2025 21:02:04, ChangeTime: 22/04/2025 8:18:52, FileAttributes: A, AllocationSize: 937.984, EndOfFile: 937.448
9:28:13,5719801    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,5719854    MsMpEng.exe    2836    QueryIdInformation    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    
9:28:13,5724177    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    
9:28:13,5724762    MsMpEng.exe    2836    CreateFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open For Backup, Open No Recall, Disallow Exclusive, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
9:28:13,5724967    MsMpEng.exe    2836    FileSystemControl    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    Control: FSCTL_READ_FILE_USN_DATA
9:28:13,5725040    MsMpEng.exe    2836    CloseFile    E:\Embarcadero\Studio\23.0\bin\bindcompfmx290.bpl    SUCCESS    

 


 

 

How can I know where is the problem?

Thanks.

 

Share this post


Link to post

msmpeng is Windows defender. Try to temporarily disable it and see whether the performance improves.

Edited by dummzeuch
  • Like 1

Share this post


Link to post

MsMpEng.exe is Windows Defender scanner and smart locker, and it will repeat the above or similar report for each file or library that bds.exe will load, in that report it is only for one bindcompfmx290.bpl trying to load.

 

So yes disable Defender.

Share this post


Link to post

What I pasted is a very minimal part of the log. So you don´t think those buffer overflows are a Delphi problem? 

Ok, I disabled everything in Defender and, after reinitiating the vm, this time it started fast. What should I do? Run always without Defender?

 

Share this post


Link to post

You might consider adding scanning exemptions. Folders, that should not be scanned, because of high performance penalties. But you should keep an eye on those folders by other means.

Share this post


Link to post
27 minutes ago, jesu said:

What should I do? Run always without Defender?

Is this VM a developing machine or daily driver for browsing internet and download everything you being offered by an advertisement ?

 

1) developing machine, then you don't need security scanning for everything all the time, right ?

2) daily driver and testing everything you can download, then leave the defender and install like ten more anti viruses, and make sure to uninstall Delphi for your own security and integrity of your code and generated binaries.

 

It is simple, my developing machine is not allowed to see Internet or access anything outside my home network, i don't download anything suspicious from unknown providers on that machine, heck, i even don't allow Windows to update or to contact Microsoft, so i don't need an virus scanner at all.

 

Anyway, it is up to you keep Windows Defender running or just remove most of this useless scanning each time, in worst case scenario let it scan once, and then disable behavior control and live protection or what ever called, by each AV, also make sure to disable sending samples to laboratories to any AV home, also don't even allow any AV to scan your traffic, this compromise you and your data the most,... i am sure i forgot to mention tens of thing to not do, so the most critical advise of them all think of everything they offer in the settings and use logic, and remember if a malicious code is on your device then it only be detected if it is in the AV database, in other words already known !, so all of this crap of detecting illegal behavior in real time is useless crap, if it is know then cold scan will detect it, if it is unknown then it will run unless real time monitoring is kicking it hence will ask you about everything running on your device, the only good thing from a good scanner if that question happen once only.

Share this post


Link to post

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
Sign in to follow this  

×