1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

[DUMP DATA] system crash and restarts,system has recovered from a serious error

Discussion in 'Windows XP' started by ElMundo, 2007/03/12.

  1. 2007/03/12
    ElMundo

    ElMundo Inactive Thread Starter

    Joined:
    2007/03/12
    Messages:
    1
    Likes Received:
    0
    I run a Windows XP Professional SP2 from some years now. I had this issue (system random restarts and after reboot i get the message: "system has recovered from a serious error ") some long time ago, but happened very rarely. But since 3-4 days ago things got worse and this problem happens every day. I unchecked the "Automatically restart" option from Startup and Recovery menu and after that I received blue screens. I run NOD32 2.5 antivirus and ZoneAlarm Pro 4.0 firewall. Both are up to date. I also have AdAware SE Personal build 1.05 and Spybot-Search and Distroy 1.4
    Here is the DUMP collected with DebugWiz tool:

    BLUE SCREEN DUMP

    Opened log file 'c:\debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.6.0007.5
    Copyright (c) Microsoft Corporation. All rights reserved.

    Loading Dump File [C:\WINDOWS\Minidump\Mini031207-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 2) MP (2 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp2_gdr.050301-1519
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x805624a0
    Debug session time: Mon Mar 12 11:57:47.687 2007 (GMT+2)
    System Uptime: 0 days 4:11:23.395
    Loading Kernel Symbols
    ..........................................................................................................................
    Loading User Symbols
    Loading unloaded module list
    ............
    *** ERROR: Module load completed but symbols could not be loaded for bcmwl5.sys
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 100000D1, {e87195e2, 2, 0, e87195e2}

    Probably caused by : hardware

    Followup: MachineOwner
    ---------
    *** Possible invalid call from f7720f2c ( bcmwl5+0x15f2c )
    *** Expected target f77195e2 ( bcmwl5+0xe5e2 )

    0: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If kernel debugger is available get stack backtrace.
    Arguments:
    Arg1: e87195e2, memory referenced
    Arg2: 00000002, IRQL
    Arg3: 00000000, value 0 = read operation, 1 = write operation
    Arg4: e87195e2, address which referenced memory

    Debugging Details:
    ------------------


    READ_ADDRESS: e87195e2

    CURRENT_IRQL: 2

    FAULTING_IP:
    +ffffffffe87195e2
    e87195e2 ?? ???

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0xD1

    PROCESS_NAME: winamp.exe

    LAST_CONTROL_TRANSFER: from f7720f31 to e87195e2

    FAILED_INSTRUCTION_ADDRESS:
    +ffffffffe87195e2
    e87195e2 ?? ???

    POSSIBLE_INVALID_CONTROL_TRANSFER: from f7720f2c to f77195e2

    STACK_TEXT:
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f8956db8 f7720f31 8ba4f303 f77167ac 81cb3018 0xe87195e2
    f8956de4 f7716e72 00000000 00000064 00000001 bcmwl5+0x15f31
    f8956dfc f774cd04 81eb5900 00000001 00000001 bcmwl5+0xbe72
    f8956e28 f774d2e3 00000001 81fcc9e8 81fc0388 bcmwl5+0x41d04
    f8956e4c f77199aa c4120403 820fd130 81fc0390 bcmwl5+0x422e3
    f8956e84 804e2b4e 81fc03b8 81fc0390 e36946f8 bcmwl5+0xe9aa
    f8956fa0 804e207d 1e678107 ffdff9c0 ffdff000 nt!KiTimerListExpire+0x14b
    f8956fcc 804dcd22 80561300 00000000 000ebad9 nt!KiTimerExpiration+0xb1
    f8956ff4 804dc88d f1ea4d44 00000000 00000000 nt!KiRetireDpcList+0x61
    f8956ff8 f1ea4d44 00000000 00000000 00000000 nt!KiDispatchInterrupt+0x2b
    804dc88d 00000000 00000009 0081850f bb830000 0xf1ea4d44


    STACK_COMMAND: kb

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: hardware

    IMAGE_NAME: hardware

    DEBUG_FLR_IMAGE_TIMESTAMP: 0

    BUCKET_ID: CPU_CALL_ERROR

    Followup: MachineOwner
    ---------
    *** Possible invalid call from f7720f2c ( bcmwl5+0x15f2c )
    *** Expected target f77195e2 ( bcmwl5+0xe5e2 )

    eax=f7720f18 ebx=00000000 ecx=00000812 edx=00000000 esi=81eb5900 edi=00000001
    eip=e87195e2 esp=f8956dbc ebp=f8956de4 iopl=0 nv up ei pl zr na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00210246
    e87195e2 ?? ???
    ChildEBP RetAddr Args to Child
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f8956db8 f7720f31 8ba4f303 f77167ac 81cb3018 0xe87195e2
    f8956de4 f7716e72 00000000 00000064 00000001 bcmwl5+0x15f31
    f8956dfc f774cd04 81eb5900 00000001 00000001 bcmwl5+0xbe72
    f8956e28 f774d2e3 00000001 81fcc9e8 81fc0388 bcmwl5+0x41d04
    f8956e4c f77199aa c4120403 820fd130 81fc0390 bcmwl5+0x422e3
    f8956e84 804e2b4e 81fc03b8 81fc0390 e36946f8 bcmwl5+0xe9aa
    f8956fa0 804e207d 1e678107 ffdff9c0 ffdff000 nt!KiTimerListExpire+0x14b (FPO: [Non-Fpo])
    f8956fcc 804dcd22 80561300 00000000 000ebad9 nt!KiTimerExpiration+0xb1 (FPO: [Non-Fpo])
    f8956ff4 804dc88d f1ea4d44 00000000 00000000 nt!KiRetireDpcList+0x61 (FPO: [0,1,0])
    f8956ff8 f1ea4d44 00000000 00000000 00000000 nt!KiDispatchInterrupt+0x2b (FPO: [Uses EBP] [0,0,1])
    804dc88d 00000000 00000009 0081850f bb830000 0xf1ea4d44
    start end module name
    804d7000 806fd000 nt ntkrnlmp.exe Wed Mar 02 02:57:27 2005 (42250F77)
    806fd000 8071dd00 hal halmacpi.dll Wed Aug 04 08:59:09 2004 (41107B2D)
    bf000000 bf011580 dxg dxg.sys Wed Aug 04 09:00:51 2004 (41107B93)
    bf012000 bf425980 nv4_disp nv4_disp.dll Wed Mar 24 20:38:36 2004 (4061D5AC)
    bf800000 bf9c1180 win32k win32k.sys Thu Oct 06 03:05:44 2005 (43446A58)
    f1549000 f1573180 kmixer kmixer.sys Wed Jun 14 11:47:45 2006 (448FCD31)
    f2eb7000 f2ebaa60 ASNDIS5 ASNDIS5.SYS Mon Sep 09 14:54:05 2002 (3D7C8BDD)
    f415b000 f41ac480 srv srv.sys Mon Aug 14 13:34:39 2006 (44E051BF)
    f44ab000 f44bf400 wdmaud wdmaud.sys Wed Jun 14 12:00:44 2006 (448FD03C)
    f44c0000 f4539e20 amon amon.sys Wed Jul 19 15:36:36 2006 (44BE2754)
    f4562000 f458e400 mrxdav mrxdav.sys Wed Aug 04 09:00:49 2004 (41107B91)
    f4f0f000 f4f1dd80 sysaudio sysaudio.sys Wed Aug 04 09:15:54 2004 (41107F1A)
    f4f47000 f4f74100 vsdatant vsdatant.sys Fri Aug 22 02:28:34 2003 (3F4555A2)
    f5015000 f5018760 mdc8021x mdc8021x.sys Fri Nov 21 17:54:18 2003 (3FBE352A)
    f61ee000 f6205480 dump_atapi dump_atapi.sys Wed Aug 04 08:59:41 2004 (41107B4D)
    f6206000 f6229000 Fastfat Fastfat.SYS Wed Aug 04 09:14:15 2004 (41107EB7)
    f6251000 f62bfa00 mrxsmb mrxsmb.sys Fri May 05 12:41:42 2006 (445B1DD6)
    f62c0000 f62eaa00 rdbss rdbss.sys Fri May 05 12:47:55 2006 (445B1F4B)
    f62eb000 f630cd00 afd afd.sys Wed Aug 04 09:14:13 2004 (41107EB5)
    f630d000 f632df00 ipnat ipnat.sys Thu Sep 30 01:28:36 2004 (415B3714)
    f632e000 f6355c00 netbt netbt.sys Wed Aug 04 09:14:36 2004 (41107ECC)
    f6356000 f63add80 tcpip tcpip.sys Thu Apr 20 14:51:47 2006 (444775D3)
    f63ae000 f63c0400 ipsec ipsec.sys Wed Aug 04 09:14:27 2004 (41107EC3)
    f63dd000 f63df900 Dxapi Dxapi.sys Fri Aug 17 23:53:19 2001 (3B7D843F)
    f7531000 f7564200 update update.sys Wed Aug 04 08:58:32 2004 (41107B08)
    f7565000 f7595100 rdpdr rdpdr.sys Wed Aug 04 09:01:10 2004 (41107BA6)
    f7596000 f75a6e00 psched psched.sys Wed Aug 04 09:04:16 2004 (41107C60)
    f75a7000 f75bd680 ndiswan ndiswan.sys Wed Aug 04 09:14:30 2004 (41107EC6)
    f75f4000 f760b800 SCSIPORT SCSIPORT.SYS Wed Aug 04 08:59:39 2004 (41107B4B)
    f760c000 f7656000 dtscsi dtscsi.sys Sat Dec 10 16:33:44 2005 (439AE748)
    f7656000 f7679980 portcls portcls.sys Wed Aug 04 09:15:47 2004 (41107F13)
    f767a000 f770afc0 smwdm smwdm.sys Thu Sep 25 22:21:44 2003 (3F734048)
    f770b000 f779eb00 bcmwl5 bcmwl5.sys Fri Oct 13 02:12:19 2006 (452ECBD3)
    f779f000 f77b2900 parport parport.sys Wed Aug 04 08:59:04 2004 (41107B28)
    f77b3000 f77d5680 ks ks.sys Wed Aug 04 09:15:20 2004 (41107EF8)
    f77d6000 f77f8e80 USBPORT USBPORT.SYS Wed Aug 04 09:08:34 2004 (41107D62)
    f77f9000 f780c780 VIDEOPRT VIDEOPRT.SYS Wed Aug 04 09:07:04 2004 (41107D08)
    f780d000 f79dbce0 nv4_mini nv4_mini.sys Wed Mar 24 20:45:31 2004 (4061D74B)
    f79dc000 f79e6380 imapi imapi.sys Wed Aug 04 09:00:12 2004 (41107B6C)
    f79fc000 f7a04d00 intelppm intelppm.sys Wed Aug 04 08:59:19 2004 (41107B37)
    f813e000 f8140580 ndistapi ndistapi.sys Fri Aug 17 23:55:29 2001 (3B7D84C1)
    f8142000 f8144d00 vbtenum vbtenum.sys Tue Sep 21 13:18:01 2004 (414FFFD9)
    f8146000 f8149c80 serenum serenum.sys Wed Aug 04 08:59:06 2004 (41107B2A)
    f8204000 f82076a0 ckldrv ckldrv.sys Thu Feb 03 22:53:11 2000 (3899EAB7)
    f820c000 f820ef00 ws2ifsl ws2ifsl.sys Fri Aug 17 23:55:58 2001 (3B7D84DE)
    f8210000 f8212680 pfc pfc.sys Wed Jun 18 04:39:42 2003 (3EEFC2DE)
    f8224000 f8226280 rasacd rasacd.sys Fri Aug 17 23:55:39 2001 (3B7D84CB)
    f824c000 f824f280 ndisuio ndisuio.sys Wed Aug 04 09:03:10 2004 (41107C1E)
    f8274000 f828e580 Mup Mup.sys Wed Aug 04 09:15:20 2004 (41107EF8)
    f828f000 f82bba80 NDIS NDIS.sys Wed Aug 04 09:14:27 2004 (41107EC3)
    f82bc000 f8348480 Ntfs Ntfs.sys Wed Aug 04 09:15:06 2004 (41107EEA)
    f8349000 f835f780 KSecDD KSecDD.sys Wed Aug 04 08:59:45 2004 (41107B51)
    f8360000 f8371f00 sr sr.sys Wed Aug 04 09:06:22 2004 (41107CDE)
    f8372000 f8373000 fltMgr fltMgr.sys unavailable (00000000)
    f8392000 f83a9480 atapi atapi.sys Wed Aug 04 08:59:41 2004 (41107B4D)
    f83aa000 f83cf700 dmio dmio.sys Wed Aug 04 09:07:13 2004 (41107D11)
    f83d0000 f83ee880 ftdisk ftdisk.sys Fri Aug 17 23:52:41 2001 (3B7D8419)
    f83ef000 f83ffa80 pci pci.sys Wed Aug 04 09:07:45 2004 (41107D31)
    f8400000 f842dd80 ACPI ACPI.sys Wed Aug 04 09:07:35 2004 (41107D27)
    f842e000 f8445800 SPTD2525 SPTD2525.SYS Wed Aug 04 08:59:39 2004 (41107B4B)
    f8446000 f8516000 sptd sptd.sys Sat Dec 03 15:59:59 2005 (4391A4DF)
    f8537000 f853fc00 isapnp isapnp.sys Fri Aug 17 23:58:01 2001 (3B7D8559)
    f8547000 f8551500 MountMgr MountMgr.sys Wed Aug 04 08:58:29 2004 (41107B05)
    f8557000 f8563c80 VolSnap VolSnap.sys Wed Aug 04 09:00:14 2004 (41107B6E)
    f8567000 f856fe00 disk disk.sys Wed Aug 04 08:59:53 2004 (41107B59)
    f8577000 f8583200 CLASSPNP CLASSPNP.SYS Wed Aug 04 09:14:26 2004 (41107EC2)
    f8587000 f858fb40 PxHelp20 PxHelp20.sys Tue Jun 06 23:08:29 2006 (4485E0BD)
    f85f7000 f8606900 Cdfs Cdfs.SYS Wed Aug 04 09:14:09 2004 (41107EB1)
    f8637000 f8643180 cdrom cdrom.sys Wed Aug 04 08:59:52 2004 (41107B58)
    f8647000 f8655080 redbook redbook.sys Wed Aug 04 08:59:34 2004 (41107B46)
    f8657000 f8666d80 serial serial.sys Wed Aug 04 09:15:51 2004 (41107F17)
    f8667000 f8673e00 i8042prt i8042prt.sys Wed Aug 04 09:14:36 2004 (41107ECC)
    f8677000 f8685b80 drmk drmk.sys Wed Aug 04 09:07:54 2004 (41107D3A)
    f8687000 f8690560 VcommMgr VcommMgr.sys Fri Nov 05 05:39:07 2004 (418AF5DB)
    f8697000 f86a3880 rasl2tp rasl2tp.sys Wed Aug 04 09:14:21 2004 (41107EBD)
    f86a7000 f86b1200 raspppoe raspppoe.sys Wed Aug 04 09:05:06 2004 (41107C92)
    f86b7000 f86c2d00 raspptp raspptp.sys Wed Aug 04 09:14:26 2004 (41107EC2)
    f86c7000 f86cf900 msgpc msgpc.sys Wed Aug 04 09:04:11 2004 (41107C5B)
    f86f7000 f8700f00 termdd termdd.sys Wed Aug 04 08:58:52 2004 (41107B1C)
    f8707000 f8710480 NDProxy NDProxy.SYS Fri Aug 17 23:55:30 2001 (3B7D84C2)
    f8717000 f8725100 usbhub usbhub.sys Wed Aug 04 09:08:40 2004 (41107D68)
    f8787000 f878f700 wanarp wanarp.sys Wed Aug 04 09:04:57 2004 (41107C89)
    f8797000 f879f700 netbios netbios.sys Wed Aug 04 09:03:19 2004 (41107C27)
    f87a7000 f87af880 Fips Fips.SYS Sat Aug 18 04:31:49 2001 (3B7DC585)
    f87b7000 f87bd200 PCIIDEX PCIIDEX.SYS Wed Aug 04 08:59:40 2004 (41107B4C)
    f87bf000 f87c3900 PartMgr PartMgr.sys Sat Aug 18 04:32:23 2001 (3B7DC5A7)
    f87c7000 f87cdde0 BTHidMgr BTHidMgr.sys Tue Oct 19 08:40:54 2004 (4174A8E6)
    f87ff000 f8803280 usbohci usbohci.sys Wed Aug 04 09:08:34 2004 (41107D62)
    f8807000 f880d800 usbehci usbehci.sys Wed Aug 04 09:08:34 2004 (41107D62)
    f880f000 f8815340 MxlW2k MxlW2k.SYS Fri Mar 29 00:13:15 2002 (3CA3957B)
    f8817000 f8818000 fdc fdc.sys unavailable (00000000)
    f881f000 f8824a00 mouclass mouclass.sys Wed Aug 04 08:58:32 2004 (41107B08)
    f8827000 f882d000 kbdclass kbdclass.sys Wed Aug 04 08:58:32 2004 (41107B08)
    f882f000 f8833e80 blueletaudio blueletaudio.sys Tue Oct 19 06:39:23 2004 (41748C6B)
    f8837000 f883b880 TDI TDI.SYS Wed Aug 04 09:07:47 2004 (41107D33)
    f883f000 f8843580 ptilink ptilink.sys Fri Aug 17 23:49:53 2001 (3B7D8371)
    f8847000 f884b080 raspti raspti.sys Fri Aug 17 23:55:32 2001 (3B7D84C4)
    f8867000 f886c000 flpydisk flpydisk.sys Wed Aug 04 08:59:24 2004 (41107B3C)
    f8877000 f887d180 HIDPARSE HIDPARSE.SYS Wed Aug 04 09:08:15 2004 (41107D4F)
    f887f000 f8884200 vga vga.sys Wed Aug 04 09:07:06 2004 (41107D0A)
    f8887000 f888ba80 Msfs Msfs.SYS Wed Aug 04 09:00:37 2004 (41107B85)
    f888f000 f8896880 Npfs Npfs.SYS Wed Aug 04 09:00:38 2004 (41107B86)
    f88df000 f88e3500 watchdog watchdog.sys Wed Aug 04 09:07:32 2004 (41107D24)
    f8947000 f894a000 BOOTVID BOOTVID.dll Fri Aug 17 23:49:09 2001 (3B7D8345)
    f894b000 f894e320 atisgkaf atisgkaf.sys Wed Apr 23 21:49:49 2003 (3EA6E04D)
    f8a0b000 f8a0ec80 mssmbios mssmbios.sys Wed Aug 04 09:07:47 2004 (41107D33)
    f8a37000 f8a38b80 kdcom kdcom.dll Fri Aug 17 23:49:10 2001 (3B7D8346)
    f8a39000 f8a3a100 WMILIB WMILIB.SYS Sat Aug 18 00:07:23 2001 (3B7D878B)
    f8a3b000 f8a3c000 dmload dmload.sys unavailable (00000000)
    f8a85000 f8a86120 aeaudio aeaudio.sys Mon Apr 01 17:39:14 2002 (3CA87112)
    f8a87000 f8a88100 swenum swenum.sys Wed Aug 04 08:58:41 2004 (41107B11)
    f8a91000 f8a92280 USBD USBD.SYS Sat Aug 18 00:02:58 2001 (3B7D8682)
    f8a9f000 f8aa0000 ParVdm ParVdm.SYS unavailable (00000000)
    f8ab7000 f8ab8000 Fs_Rec Fs_Rec.SYS unavailable (00000000)
    f8ab9000 f8aba080 Beep Beep.SYS Fri Aug 17 23:47:33 2001 (3B7D82E5)
    f8abd000 f8abe080 mnmdd mnmdd.SYS Fri Aug 17 23:57:28 2001 (3B7D8538)
    f8abf000 f8ac0080 RDPCDD RDPCDD.sys Fri Aug 17 23:46:56 2001 (3B7D82C0)
    f8af3000 f8af4100 dump_WMILIB dump_WMILIB.SYS Sat Aug 18 00:07:23 2001 (3B7D878B)
    f8aff000 f8affd00 pciide pciide.sys Fri Aug 17 23:51:49 2001 (3B7D83E5)
    f8b4e000 f8b4ec00 audstub audstub.sys Fri Aug 17 23:59:40 2001 (3B7D85BC)
    f8b6a000 f8b6aa80 PQNTDrv PQNTDrv.SYS Tue Sep 17 02:14:30 2002 (3D8665D6)
    f8c03000 f8c04000 Null Null.SYS unavailable (00000000)
    f8c24000 f8c24d00 dxgthk dxgthk.sys Fri Aug 17 23:53:12 2001 (3B7D8438)

    Unloaded modules:
    f8afd000 f8aff000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f2c60000 f2c8b000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8a55000 f8a57000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f4435000 f4460000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8bfa000 f8bfb000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f4ebf000 f4ecc000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f4ecf000 f4edd000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f4488000 f44ab000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8aa1000 f8aa3000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8228000 f822c000 kbdhid.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f886f000 f8874000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f822c000 f822f000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    Closing open log file c:\debuglog.txt

    -------------------------------
    -------------------------------
    CRASH DUMP

    Opened log file 'c:\debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.6.0007.5
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp]
    User Mini Dump File: Only registers, stack and portions of memory are available

    Comment: 'Dr. Watson generated MiniDump'
    Windows XP Version 2600 (Service Pack 2) MP (2 procs) Free x86 compatible
    Product: WinNt, suite: SingleUserTS
    Debug session time: Sun Nov 14 16:05:19.000 2004 (GMT+2)
    System Uptime: not available
    Process Uptime: 0 days 1:03:19.000
    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    ...............................................
    This dump file has an exception of interest stored in it.
    The stored exception information can be accessed via .ecxr.
    (ab4.f5c): Access violation - code c0000005 (first/second chance not available)
    eax=0155420c ebx=0154d468 ecx=00000000 edx=0155af90 esi=0155420c edi=00000001
    eip=004af49c esp=01bafe10 ebp=01bafe74 iopl=0 nv up ei pl zr na pe nc
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
    Unable to load image C:\Program Files\BearSharePro\BearSharePro.exe, Win32 error 2
    *** WARNING: Unable to verify timestamp for BearSharePro.exe
    *** ERROR: Module load completed but symbols could not be loaded for BearSharePro.exe
    BearSharePro+0xaf49c:
    004af49c 8b4918 mov ecx,dword ptr [ecx+18h] ds:0023:00000018=????????
    0:005> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Exception Analysis *
    * *
    *******************************************************************************

    *** WARNING: Unable to verify checksum for XAHook.dll
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for XAHook.dll -

    FAULTING_IP:
    BearSharePro+af49c
    004af49c 8b4918 mov ecx,dword ptr [ecx+18h]

    EXCEPTION_RECORD: ffffffff -- (.exr ffffffffffffffff)
    .exr ffffffffffffffff
    ExceptionAddress: 004af49c (BearSharePro+0x000af49c)
    ExceptionCode: c0000005 (Access violation)
    ExceptionFlags: 00000000
    NumberParameters: 2
    Parameter[0]: 00000000
    Parameter[1]: 00000018
    Attempt to read from address 00000018

    PROCESS_NAME: BearSharePro.exe

    ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    READ_ADDRESS: 00000018

    BUGCHECK_STR: ACCESS_VIOLATION

    DEFAULT_BUCKET_ID: HEAP_CORRUPTION

    LAST_CONTROL_TRANSFER: from 7c91056f to 004af49c

    STACK_TEXT:
    WARNING: Stack unwind information not available. Following frames may be wrong.
    01bafe74 7c91056f ffffffff 7c91056d 71ab1384 BearSharePro+0xaf49c
    7c90ee18 565308ec 8bfc5557 458b0c5d 0440f708 ntdll!RtlFreeHeap+0x649
    7c90ee28 00000000 00ab850f 45890000 10458bf8 0x565308ec


    STACK_COMMAND: ~5s; .ecxr ; kb

    ADDITIONAL_DEBUG_TEXT: Enable Pageheap/AutoVerifer

    FAULTING_THREAD: 00000f5c

    FOLLOWUP_IP:
    BearSharePro+af49c
    004af49c 8b4918 mov ecx,dword ptr [ecx+18h]

    SYMBOL_STACK_INDEX: 0

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: BearSharePro

    IMAGE_NAME: BearSharePro.exe

    DEBUG_FLR_IMAGE_TIMESTAMP: 3d2aff0a

    SYMBOL_NAME: BearSharePro+af49c

    FAILURE_BUCKET_ID: ACCESS_VIOLATION_BearSharePro+af49c

    BUCKET_ID: ACCESS_VIOLATION_BearSharePro+af49c

    Followup: MachineOwner
    ---------

    eax=0155420c ebx=0154d468 ecx=00000000 edx=0155af90 esi=0155420c edi=00000001
    eip=004af49c esp=01bafe10 ebp=01bafe74 iopl=0 nv up ei pl zr na pe nc
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
    BearSharePro+0xaf49c:
    004af49c 8b4918 mov ecx,dword ptr [ecx+18h] ds:0023:00000018=????????
    ChildEBP RetAddr Args to Child
    WARNING: Stack unwind information not available. Following frames may be wrong.
    01bafe74 7c91056f ffffffff 7c91056d 71ab1384 BearSharePro+0xaf49c
    7c90ee18 565308ec 8bfc5557 458b0c5d 0440f708 ntdll!RtlFreeHeap+0x649 (FPO: [Non-Fpo])
    7c90ee28 00000000 00ab850f 45890000 10458bf8 0x565308ec
    start end module name
    00400000 005d2000 BearSharePro BearSharePro.exe Tue Jul 09 18:19:38 2002 (3D2AFF0A)
    00a10000 00a5e000 CKI32h CKI32h.DLL Sat Sep 29 05:52:33 2001 (3BB53771)
    01000000 0100e000 XAHook XAHook.dll Tue Jan 28 23:17:23 2003 (3E36F363)
    01050000 010d2000 BearSharePro_1050000 BearSharePro.dll Tue Jul 09 18:18:35 2002 (3D2AFECB)
    01350000 01361000 JavaHook JavaHook.dll Mon Oct 27 08:35:33 2003 (3F9CBCB5)
    02230000 0223e000 nvwddi nvwddi.dll Wed Mar 24 21:25:22 2004 (4061E0A2)
    0ffd0000 0fff8000 rsaenh rsaenh.dll Wed Jul 07 05:17:12 2004 (40EB5D28)
    10000000 1014d000 nview nview.dll Wed Mar 24 21:25:09 2004 (4061E095)
    20000000 202c5000 xpsp2res xpsp2res.dll Wed Aug 04 10:56:41 2004 (411096B9)
    5ad70000 5ada8000 uxtheme uxtheme.dll Wed Aug 04 10:56:43 2004 (411096BB)
    5b860000 5b8b4000 netapi32 netapi32.dll Wed Aug 04 10:56:28 2004 (411096AC)
    5edd0000 5ede7000 olepro32 olepro32.dll Wed Aug 04 10:57:43 2004 (411096F7)
    60300000 60307000 idle idle.dll Sat Aug 07 01:09:58 2004 (411401B6)
    662b0000 66308000 hnetcfg hnetcfg.dll Wed Aug 04 10:56:16 2004 (411096A0)
    6bd00000 6bd0d000 Syncor11 Syncor11.dll Thu Nov 07 02:00:36 2002 (3DC9AD24)
    71a50000 71a8f000 mswsock mswsock.dll Wed Aug 04 10:59:20 2004 (41109758)
    71a90000 71a98000 wshtcpip wshtcpip.dll Wed Aug 04 10:57:49 2004 (411096FD)
    71aa0000 71aa8000 ws2help ws2help.dll Wed Aug 04 10:57:39 2004 (411096F3)
    71ab0000 71ac7000 ws2_32 ws2_32.dll Wed Aug 04 10:57:38 2004 (411096F2)
    71bf0000 71c03000 samlib samlib.dll Wed Aug 04 10:56:29 2004 (411096AD)
    73000000 73026000 winspool winspool.drv Wed Aug 04 10:56:38 2004 (411096B6)
    74d30000 74d50000 oledlg oledlg.dll Sat Aug 18 08:33:18 2001 (3B7DFE1E)
    763b0000 763f9000 comdlg32 comdlg32.dll Wed Aug 04 10:56:32 2004 (411096B0)
    769c0000 76a73000 userenv userenv.dll Wed Aug 04 10:56:41 2004 (411096B9)
    76b40000 76b6d000 winmm winmm.dll Wed Aug 04 10:57:10 2004 (411096D6)
    76bf0000 76bfb000 psapi psapi.dll Wed Aug 04 10:56:58 2004 (411096CA)
    76f20000 76f47000 dnsapi dnsapi.dll Wed Aug 04 10:56:45 2004 (411096BD)
    76f60000 76f8c000 wldap32 wldap32.dll Wed Aug 04 10:56:43 2004 (411096BB)
    76fb0000 76fb8000 winrnr winrnr.dll Wed Aug 04 10:56:35 2004 (411096B3)
    76fc0000 76fc6000 rasadhlp rasadhlp.dll Wed Aug 04 10:56:24 2004 (411096A8)
    77120000 771ac000 oleaut32 oleaut32.dll Wed Aug 04 10:57:39 2004 (411096F3)
    773d0000 774d2000 comctl32 comctl32.dll Wed Aug 04 10:55:56 2004 (4110968C)
    774e0000 7761c000 ole32 ole32.dll Wed Aug 04 10:57:38 2004 (411096F2)
    77690000 776b1000 ntmarta ntmarta.dll Wed Aug 04 10:57:02 2004 (411096CE)
    77b40000 77b62000 apphelp apphelp.dll Wed Aug 04 10:56:36 2004 (411096B4)
    77c00000 77c08000 version version.dll Wed Aug 04 10:56:39 2004 (411096B7)
    77c10000 77c68000 msvcrt msvcrt.dll Wed Aug 04 10:59:14 2004 (41109752)
    77d40000 77dd0000 user32 user32.dll Wed Aug 04 10:56:40 2004 (411096B8)
    77dd0000 77e6b000 advapi32 advapi32.dll Wed Aug 04 10:56:23 2004 (411096A7)
    77e70000 77f01000 rpcrt4 rpcrt4.dll Wed Aug 04 10:56:30 2004 (411096AE)
    77f10000 77f56000 gdi32 gdi32.dll Wed Aug 04 10:56:07 2004 (41109697)
    77f60000 77fd6000 shlwapi shlwapi.dll Wed Aug 04 10:56:44 2004 (411096BC)
    77fe0000 77ff1000 secur32 secur32.dll Wed Aug 04 10:56:49 2004 (411096C1)
    7c340000 7c396000 msvcr71 msvcr71.dll Fri Feb 21 14:42:20 2003 (3E561EAC)
    7c800000 7c8f4000 kernel32 kernel32.dll Wed Aug 04 10:56:36 2004 (411096B4)
    7c900000 7c9b0000 ntdll ntdll.dll Wed Aug 04 10:56:36 2004 (411096B4)
    7c9c0000 7d1d4000 shell32 shell32.dll Wed Aug 04 10:56:39 2004 (411096B7)
    Closing open log file c:\debuglog.txt

    Thank you.
     
  2. 2007/03/12
    mailman Lifetime Subscription

    mailman Geek Member

    Joined:
    2004/01/17
    Messages:
    1,901
    Likes Received:
    11
    Hi, ElMundo. Welcome to Windows BBS! :)

    Your 2nd dump data log:
    is quite old. If you post one or two more recent BSOD dump data logs (from the C:\WINDOWS\Minidump\ folder), perhaps someone can help you determine the culprit more easily.

    If the recent BSOD dump data logs identify different offending "IMAGE_NAME" sources, BSOD analysis experts seem to often suspect hardware. (In fact, your 1st dump data log also points to hardware as a likely cause.) One suggestion that is often given in "hardware" cases is to stress-test the RAM.

    In case you decide to test your RAM for errors, all of the following RAM testers have been recommended in this forum. However, opinions differ about which RAM tester is "best ".
     
    Last edited: 2007/03/12

  3. to hide this advert.

  4. 2007/03/13
    cpc2004

    cpc2004 Inactive

    Joined:
    2005/07/08
    Messages:
    366
    Likes Received:
    0
    Faulty Motherboard

    Your windows is crashed with hardware error. One of the minidump is crashed with CPU_CALL_ERROR and this is the symptom of faulty motherboard. Replace the motherboard may fix the blue screen problem.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.