1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

XP Fatal Error

Discussion in 'Windows XP' started by KAL, 2007/07/21.

  1. 2007/07/21
    KAL

    KAL Inactive Thread Starter

    Joined:
    2005/09/09
    Messages:
    188
    Likes Received:
    0
    I get a quick look at the blue screen before it shuts down. I restart and I get a notice saying "recovered from a fatal error" . It has done this twice in the past week, so I thought I would check with you guys to see if you could take a look at my HJT report. Other than that I will have to wait until it does it again and manually write down the error. Or if you can tell me where to copy the log I will post it also. Thanks, Karen

    Logfile of HijackThis v1.99.1
    Scan saved at 14:15:33 PM, on 7/21/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\APCreinstall2\mainserv.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\ewido anti-spyware 4.0 TRIAL 10-1-06\guard.exe
    C:\PROGRA~1\Iomega\System32\AppServices.exe
    C:\WINDOWS\system32\drivers\KodakCCS.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Dantz\Retrospect\retrorun.exe
    C:\Program Files\UPHClean\FromMicrosoft 04-15-06\uphclean.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\System32\fxredir.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\WINDOWS\LTMSG.exe
    C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
    C:\PROGRA~1\Maxtor\OneTouch\Utils\OneTouch.exe
    C:\WINDOWS\MXOALDR.EXE
    C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
    C:\Program Files\Zone Labs\ZoneAlarm 5 0 9-13-05\zlclient.exe
    C:\Program Files\Logitech\iTouch\iTouch.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Wireless\Client Manager\CMags.EXE
    C:\Program Files\SpywareGuard\sgmain.exe
    C:\Program Files\Network\Wireless 802.11 USB Adapter\WlanMonitor.exe
    C:\WINDOWS\System32\svchost.exe
    C:\APCreinstall2\apcsystray.exe
    C:\Program Files\Logitech\MouseWare\system\em_exec.exe
    C:\Program Files\SpywareGuard\sgbhp.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Hijack This 9-5-05\hijackthis 9-9-05\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = ;AsureID;<local>
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
    O2 - BHO: SpywareGuardDLBLOCK.CBrowserHelper - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
    O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
    O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [fxredir] C:\WINDOWS\System32\fxredir.exe
    O4 - HKLM\..\Run: [AVG7_CC] "C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" /STARTUP
    O4 - HKLM\..\Run: [LTMSG] LTMSG.exe 7
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe "
    O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
    O4 - HKLM\..\Run: [MaxtorOneTouch] C:\PROGRA~1\Maxtor\OneTouch\Utils\OneTouch.exe
    O4 - HKLM\..\Run: [MXO Auto Loader] C:\WINDOWS\MXOALDR.EXE
    O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe "
    O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm 5 0 9-13-05\zlclient.exe "
    O4 - HKLM\..\Run: [zBrowser Launcher] "C:\Program Files\Logitech\iTouch\iTouch.exe "
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
    O4 - Startup: WLAN Monitor Utility.lnk = ?
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: APC UPS Status.lnk = ?
    O4 - Global Startup: Wireless Client Manager.lnk = ?
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
    O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Pentium 4\Application Data\Mozilla\Firefox\Profiles\default.x6d\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html
    O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Pentium 4\Application Data\Mozilla\Firefox\Profiles\default.x6d\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html
    O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
    O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
    O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra button: TREND MICRO HouseCall - {2B5EA4F8-620A-4A8B-B003-4C8C5EBEA826} - http://uk.trendmicro-europe.com/enterprise/products/housecall_pre.php (file missing)
    O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O9 - Extra button: eBay - Homepage - {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} - C:\Program Files\IrfanView3-97installed11-09-05\Ebay\Ebay.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O15 - Trusted Zone: www.householdaccount.com
    O16 - DPF: ppctlcab - http://www.pestscan.com/scanner/ppctlcab.cab
    O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://www.rawflow.com/cimradio/Rawflow.cab
    O16 - DPF: {0335A685-ED24-4F7B-A08E-3BD15D84E668} - http://dl.filekicker.com/send/file/128985-NZIL/PhPSetup.cab
    O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {1842B0EE-B597-11D4-8997-00104BD12D94} (iCC Class) - http://www.pcpitstop.com/internet/pcpConnCheck.cab
    O16 - DPF: {2253F320-AB68-4A07-917D-4F12D8884A06} (ChainCast VMR Client Proxy) - http://www.streamaudio.com/download/ccpm_0237.cab
    O16 - DPF: {2359626E-7524-4F87-B04E-22CD38A0C88C} (ICSScannerLight Class) - http://download.zonelabs.com/bin/free/cm/ICSCM.cab
    O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/US/install.cab
    O16 - DPF: {2FC9A21E-2069-4E47-8235-36318989DB13} (PPSDKActiveXScanner.MainScreen) - http://www.pestscan.com/scanner/axscanner.cab
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
    O16 - DPF: {38578BF0-0ABB-11D3-9330-0080C6F796A1} (Create & Print ActiveX Plug-in) - http://www.imgag.com/cp/install/AxCtp.cab
    O16 - DPF: {4620BC29-8B8E-4F4E-9D92-1DB6633D6793} (SurferNETWORK Plugin) - http://rd1.surfernetwork.com/surferplugin.ocx
    O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
    O16 - DPF: {4E330863-6A11-11D0-BFD8-006097237877} (InstallFromTheWeb ActiveX Control) - http://tw.msi.com.tw/autobios/client/iftwclix.cab
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1147473738187
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
    O16 - DPF: {7ED7005B-4AF6-4CFF-9AE0-F243C4B8260F} (HouseCallButton.setup) - http://de.trendmicro-europe.com/file_downloads/common/housecall/HouseCallButton.CAB
    O16 - DPF: {8A0019EB-51FA-4AE5-A40B-C0496BBFC739} (Verizon Wireless Media Upload) - http://www.vzwpix.com/activex/VerizonWirelessUploadControl.cab
    O16 - DPF: {9732FB42-C321-11D1-836F-00A0C993F125} (mhLabel Class) - http://www.pcpitstop.com/mhLbl.cab
    O16 - DPF: {99B6E512-3893-4155-9964-8EB8E06099CB} (WebSpyWareKiller Class) - http://download.zonelabs.com/bin/promotions/spywaredetector/WebSWK.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://tamal.tv/nsvplayx_vp3_mp3.cab
    O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) - http://www.live365.com/players/play365.cab
    O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
    O16 - DPF: {E7DBFB6C-113A-47CF-B278-F5C6AF4DE1BD} - http://download.abacast.com/download/files/abasetup.cab
    O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab
    O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.companion.yahoo.com/dl/toolbar/yiebio5_1_6_0.cab
    O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} - http://www2.incredimail.com/contents/setup/downloader/imloader.cab
    O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{BCDDDF29-7A3E-4E12-B61C-847289E3572C}: NameServer = 68.168.240.5,68.168.240.2
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
    O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
    O23 - Service: APC UPS Service - American Power Conversion Corporation - C:\APCreinstall2\mainserv.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0 TRIAL 10-1-06\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe
    O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
    O23 - Service: MpService - Canon Inc - C:\Program Files\Canon\MultiPASS4\MPSERVIC.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - C:\Program Files\Dantz\Retrospect\retrorun.exe
    O23 - Service: Retrospect Helper - Dantz Development Corporation - C:\PROGRA~1\Dantz\RETROS~1\rthlpsvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

    COULD YOU ALSO TELL ME WHAT IS SAFE TO ELIMINATE SO I CAN CLEAN THIS MESS UP SOME. I DON'T LIKE THE YAHOO TOOLBAR AND ALSO THE MESSENGER BUT I DO USE YAHOO MESSENGER ON OCCASION. ANYTHING ELSE THAT IS NOT VITALLY ESSENTIAL I AM WILLING TO DELETE. THANKS AGAIN.
     
    KAL,
    #1
  2. 2007/07/21
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Karen

    There is a misconception that every error/BSOD is caused by a virus/malware/trojan, etc :)

    Please set up your computer not to automatically restart on System Error - right Click My Computer icon > Properties > Advanced > Startup & Recovery > Settings and under System Failure uncheck 'Automatically Restart' and select from the drop down box below 'Kernel memory dump'.

    Then go to ....

    http://www.windowsbbs.com/showthread.php?t=33471

    and debug the next BSOD you get and post the log here.
     

  3. to hide this advert.

  4. 2007/07/21
    KAL

    KAL Inactive Thread Starter

    Joined:
    2005/09/09
    Messages:
    188
    Likes Received:
    0
    By BSOD, are you talking about the next blue screen?

    I downloaded and installed the debugging tools and the "debugwiz.zip" file. Do you want me to run those now and post the logs?
     
    KAL,
    #3
  5. 2007/07/21
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Kal

    BSOD - common abbreviation for Blue Screen of Death :)

    Post the logs by all means - in this thread.
     
  6. 2007/07/21
    KAL

    KAL Inactive Thread Starter

    Joined:
    2005/09/09
    Messages:
    188
    Likes Received:
    0
    OK I need some help here. I am totally lost and don't know what or how to do what I need. Is this something I can do or should I take it to someone who knows more than me. I am not afraid to tackle it, if you are a patient man "OH GREAT ONE!! "

    -----------
    I found the minidump files but cannot get them to print to notepad. Windows says it does not recognize the .dmp extension.

    ----------------
    here is a copy of the "debuglog - Notepad:


    Opened log file 'c:\debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.7.0005.1
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\memory.dmp]
    Could not open dump file [memory.dmp], Win32 error 0n2
    "The system cannot find the file specified. "
     
    Last edited: 2007/07/21
    KAL,
    #5
  7. 2007/07/21
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Ok - a little bit of flattery works wonders - but you know I would help without it - that's why we are here :)
    No, they wont, they have to be analysed by MS Debugging Tools to produce a text based analysis.

    This is what you should do ....

    Run debugwiz.exe

    In the dialogue which opens hit the browse button and navigate to the .dmp file you want to analyse - the default location is C:\xxxxx.dmp, usually of the form Mini072107.dmp and select it.

    Then hit the Generate Log Button.

    If there is no dump file available - and this may be the case if the computer BSOD's on shutdown when Windows has closed then the error message from the blue screen is vital - Error Code and reference to any file.
     
  8. 2007/07/21
    KAL

    KAL Inactive Thread Starter

    Joined:
    2005/09/09
    Messages:
    188
    Likes Received:
    0
    Thanks Pete! Excuse Me. . . "OH GREAT ONE ". . . Here is the debuglog I think you are looking for. (This is the most current minidump file I located)
    ---------------------------------------------------------------

    Opened log file 'c:\debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.7.0005.1
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini072107-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS Personal
    Built by: 2600.xpsp_sp2_gdr.070227-2254
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055a620
    Debug session time: Sat Jul 21 11:12:11.632 2007 (GMT-4)
    System Uptime: 0 days 1:41:20.222
    Loading Kernel Symbols
    ......................................................................................................................................................
    Loading User Symbols
    Loading unloaded module list
    ......................
    ERROR: FindPlugIns 8007007b
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 10000050, {97ba56b3, 0, 83152280, 0}


    Could not read faulting driver name
    Probably caused by : USBSTOR.SYS ( USBSTOR!USBSTOR_FdoRemoveDevice+ac )

    Followup: MachineOwner
    ---------

    kd> !analyze -v;r;kv;lmtn;.logclose;q
    ERROR: FindPlugIns 8007007b
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced. This cannot be protected by try-except,
    it must be protected by a Probe. Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: 97ba56b3, memory referenced.
    Arg2: 00000000, value 0 = read operation, 1 = write operation.
    Arg3: 83152280, If non-zero, the instruction address which referenced the bad memory
    address.
    Arg4: 00000000, (reserved)

    Debugging Details:
    ------------------


    Could not read faulting driver name

    OVERLAPPED_MODULE: Address regions for 'kmixer' and 'vnetusbr.sys' overlap

    READ_ADDRESS: 97ba56b3

    FAULTING_IP:
    +ffffffff83152280
    83152280 0200 add al,byte ptr [eax]

    MM_INTERNAL_CODE: 0

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0x50

    PROCESS_NAME: System

    LAST_CONTROL_TRANSFER: from f8760661 to 83152280

    STACK_TEXT:
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f8b04bb0 f8760661 8297e5a0 829d6d50 82903008 0x83152280
    f8b04bd0 f8759952 8297e658 82903008 00000002 usbhub!USBH_PdoPnP+0x5b
    f8b04bf4 f87571d8 0197e658 82903008 f8b04c28 usbhub!USBH_PdoDispatch+0x5a
    f8b04c04 804e37f7 8297e5a0 82903008 83182c80 usbhub!USBH_HubDispatch+0x48
    f8b04c14 f8a27db4 83182bc8 83182c80 82903008 nt!IopfCallDriver+0x31
    f8b04c28 f8a29980 83182bc8 82903008 82903108 USBSTOR!USBSTOR_FdoRemoveDevice+0xac
    f8b04c40 804e37f7 83182bc8 82903008 f8b04ccc USBSTOR!USBSTOR_Pnp+0x4e
    f8b04c50 805dc5ff 8297e5a0 8297e5a0 00000002 nt!IopfCallDriver+0x31
    f8b04c7c 8061a94e 83182bc8 f8b04ca8 00000000 nt!IopSynchronousCall+0xb7
    f8b04cd0 805314d1 8297e5a0 00000002 00000000 nt!IopRemoveDevice+0x93
    f8b04cf8 8061bac3 e5044358 00000018 e1b3b530 nt!IopRemoveLockedDeviceNode+0x160
    f8b04d10 8061bb2f 830b4d70 00000002 e1b3b530 nt!IopDeleteLockedDeviceNode+0x34
    f8b04d44 8061bbda 8297e5a0 02b3b530 00000002 nt!IopDeleteLockedDeviceNodes+0x3f
    f8b04d74 804e426b 832b7d68 00000000 833c6640 nt!IopDelayedRemoveWorker+0x4b
    f8b04dac 8057d0f1 832b7d68 00000000 00000000 nt!ExpWorkerThread+0x100
    f8b04ddc 804f827a 804e4196 00000001 00000000 nt!PspSystemThreadStartup+0x34
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16


    STACK_COMMAND: kb

    FOLLOWUP_IP:
    USBSTOR!USBSTOR_FdoRemoveDevice+ac
    f8a27db4 ff760c push dword ptr [esi+0Ch]

    SYMBOL_STACK_INDEX: 5

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: USBSTOR

    IMAGE_NAME: USBSTOR.SYS

    DEBUG_FLR_IMAGE_TIMESTAMP: 41107d6c

    SYMBOL_NAME: USBSTOR!USBSTOR_FdoRemoveDevice+ac

    FAILURE_BUCKET_ID: 0x50_USBSTOR!USBSTOR_FdoRemoveDevice+ac

    BUCKET_ID: 0x50_USBSTOR!USBSTOR_FdoRemoveDevice+ac

    Followup: MachineOwner
    ---------

    eax=97ba56b3 ebx=00000000 ecx=00000004 edx=829030e4 esi=8297e658 edi=829d6d50
    eip=83152280 esp=f8b04b80 ebp=f8b04bb0 iopl=0 nv up ei ng nz na po nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00210282
    83152280 0200 add al,byte ptr [eax] ds:0023:97ba56b3=??
    ChildEBP RetAddr Args to Child
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f8b04bb0 f8760661 8297e5a0 829d6d50 82903008 0x83152280
    f8b04bd0 f8759952 8297e658 82903008 00000002 usbhub!USBH_PdoPnP+0x5b (FPO: [Non-Fpo])
    f8b04bf4 f87571d8 0197e658 82903008 f8b04c28 usbhub!USBH_PdoDispatch+0x5a (FPO: [Non-Fpo])
    f8b04c04 804e37f7 8297e5a0 82903008 83182c80 usbhub!USBH_HubDispatch+0x48 (FPO: [Non-Fpo])
    f8b04c14 f8a27db4 83182bc8 83182c80 82903008 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    f8b04c28 f8a29980 83182bc8 82903008 82903108 USBSTOR!USBSTOR_FdoRemoveDevice+0xac (FPO: [Non-Fpo])
    f8b04c40 804e37f7 83182bc8 82903008 f8b04ccc USBSTOR!USBSTOR_Pnp+0x4e (FPO: [Non-Fpo])
    f8b04c50 805dc5ff 8297e5a0 8297e5a0 00000002 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    f8b04c7c 8061a94e 83182bc8 f8b04ca8 00000000 nt!IopSynchronousCall+0xb7 (FPO: [Non-Fpo])
    f8b04cd0 805314d1 8297e5a0 00000002 00000000 nt!IopRemoveDevice+0x93 (FPO: [Non-Fpo])
    f8b04cf8 8061bac3 e5044358 00000018 e1b3b530 nt!IopRemoveLockedDeviceNode+0x160 (FPO: [Non-Fpo])
    f8b04d10 8061bb2f 830b4d70 00000002 e1b3b530 nt!IopDeleteLockedDeviceNode+0x34 (FPO: [Non-Fpo])
    f8b04d44 8061bbda 8297e5a0 02b3b530 00000002 nt!IopDeleteLockedDeviceNodes+0x3f (FPO: [Non-Fpo])
    f8b04d74 804e426b 832b7d68 00000000 833c6640 nt!IopDelayedRemoveWorker+0x4b (FPO: [Non-Fpo])
    f8b04dac 8057d0f1 832b7d68 00000000 00000000 nt!ExpWorkerThread+0x100 (FPO: [Non-Fpo])
    f8b04ddc 804f827a 804e4196 00000001 00000000 nt!PspSystemThreadStartup+0x34 (FPO: [Non-Fpo])
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16
    start end module name
    804d7000 806eb500 nt ntoskrnl.exe Wed Feb 28 04:10:41 2007 (45E54711)
    806ec000 806ffd80 hal halacpi.dll Wed Aug 04 01:59:04 2004 (41107B28)
    bf800000 bf9c2180 win32k win32k.sys Thu Mar 08 08:47:34 2007 (45F013F6)
    bf9c3000 bf9d4580 dxg dxg.sys Wed Aug 04 02:00:51 2004 (41107B93)
    bf9d5000 bfde1c00 nv4_disp nv4_disp.dll Mon Oct 06 20:03:41 2003 (3F8202DD)
    f2983000 f2998480 vnetusbr vnetusbr.sys Tue Aug 06 09:38:38 2002 (3D4FD15E)
    f2999000 f29c3180 kmixer kmixer.sys Wed Jun 14 04:47:45 2006 (448FCD31)
    f35d4000 f3614280 HTTP HTTP.sys Thu Mar 16 20:33:09 2006 (441A03C5)
    f3ac0000 f3ad4400 wdmaud wdmaud.sys Wed Jun 14 05:00:44 2006 (448FD03C)
    f3afd000 f3b0bd80 sysaudio sysaudio.sys Wed Aug 04 02:15:54 2004 (41107F1A)
    f3ea1000 f3ea3300 uphcleanhlp uphcleanhlp.sys Wed Apr 27 14:58:56 2005 (426FE0F0)
    f4075000 f40c6480 srv srv.sys Mon Aug 14 06:34:39 2006 (44E051BF)
    f423b000 f423e380 n5lpt n5lpt.sys Fri Jun 24 12:10:18 2005 (42BC306A)
    f4243000 f4245800 Stld Stld.SYS Fri May 25 05:42:41 2001 (3B0E2911)
    f4257000 f4283400 mrxdav mrxdav.sys Wed Aug 04 02:00:49 2004 (41107B91)
    f4290000 f42934a0 AspiXNT AspiXNT.SYS Wed Feb 21 16:51:02 2001 (3A943846)
    f4294000 f4297e40 Aspi32 Aspi32.SYS Fri Sep 10 19:46:10 1999 (37D99842)
    f433c000 f434a000 DgiVecp DgiVecp.sys Tue Mar 06 03:20:06 2001 (3AA49DB6)
    f4cf6000 f4cf9280 ndisuio ndisuio.sys Wed Aug 04 02:03:10 2004 (41107C1E)
    f5e1d000 f5e34480 dump_atapi dump_atapi.sys Wed Aug 04 01:59:41 2004 (41107B4D)
    f603f000 f6062000 Fastfat Fastfat.SYS Wed Aug 04 02:14:15 2004 (41107EB7)
    f60dd000 f61a56c0 avg7core avg7core.sys Fri Jun 15 05:13:22 2007 (46725832)
    f61a6000 f61c6f00 ipnat ipnat.sys Wed Sep 29 18:28:36 2004 (415B3714)
    f61c7000 f6235a00 mrxsmb mrxsmb.sys Fri May 05 05:41:42 2006 (445B1DD6)
    f624a000 f624c900 Dxapi Dxapi.sys Fri Aug 17 16:53:19 2001 (3B7D843F)
    f625e000 f6288a00 rdbss rdbss.sys Fri May 05 05:47:55 2006 (445B1F4B)
    f6289000 f62aad00 afd afd.sys Wed Aug 04 02:14:13 2004 (41107EB5)
    f62ab000 f6309ce0 vsdatant vsdatant.sys Fri Mar 09 01:29:37 2007 (45F0FED1)
    f630a000 f6341180 tcpip6 tcpip6.sys Wed Aug 16 05:37:30 2006 (44E2E75A)
    f6342000 f6369c00 netbt netbt.sys Wed Aug 04 02:14:36 2004 (41107ECC)
    f636a000 f63c1d80 tcpip tcpip.sys Thu Apr 20 07:51:47 2006 (444775D3)
    f63c2000 f63d4400 ipsec ipsec.sys Wed Aug 04 02:14:27 2004 (41107EC3)
    f63f5000 f641a1c0 EXPORTIT EXPORTIT.SYS Wed Jul 07 08:55:09 2004 (40EBF2AD)
    f646b000 f647a900 Cdfs Cdfs.SYS Wed Aug 04 02:14:09 2004 (41107EB1)
    f648b000 f649a700 nwlnknb nwlnknb.sys Fri Aug 17 16:54:16 2001 (3B7D8478)
    f766b000 f76c3e80 update update.sys Mon Apr 23 06:32:54 2007 (462C8B56)
    f76c4000 f76d4e00 psched psched.sys Wed Aug 04 02:04:16 2004 (41107C60)
    f76d5000 f76eb680 ndiswan ndiswan.sys Wed Aug 04 02:14:30 2004 (41107EC6)
    f76ec000 f770f980 portcls portcls.sys Wed Aug 04 02:15:47 2004 (41107F13)
    f7710000 f773b000 vinyl97 vinyl97.sys Tue Feb 01 03:39:02 2005 (41FF4026)
    f773b000 f775d680 ks ks.sys Wed Aug 04 02:15:20 2004 (41107EF8)
    f775e000 f7771900 parport parport.sys Wed Aug 04 01:59:04 2004 (41107B28)
    f7772000 f780cae0 ltmdmnt ltmdmnt.sys Fri Dec 12 18:03:08 2003 (3FDA492C)
    f780d000 f782fe80 USBPORT USBPORT.SYS Wed Aug 04 02:08:34 2004 (41107D62)
    f7830000 f7843780 VIDEOPRT VIDEOPRT.SYS Wed Aug 04 02:07:04 2004 (41107D08)
    f7844000 f79a9be0 nv4_mini nv4_mini.sys Mon Oct 06 19:56:53 2003 (3F820145)
    f79b6000 f79b9c80 mssmbios mssmbios.sys Wed Aug 04 02:07:47 2004 (41107D33)
    f79c6000 f79c8580 ndistapi ndistapi.sys Fri Aug 17 16:55:29 2001 (3B7D84C1)
    f7b8a000 f7b92d80 HIDCLASS HIDCLASS.SYS Wed Aug 04 02:08:18 2004 (41107D52)
    f7baa000 f7bb2700 wanarp wanarp.sys Wed Aug 04 02:04:57 2004 (41107C89)
    f7bba000 f7bc2880 Fips Fips.SYS Fri Aug 17 21:31:49 2001 (3B7DC585)
    f7bca000 f7bd3900 LMIRfsDriver LMIRfsDriver.sys Tue Mar 27 05:24:44 2007 (4608E2DC)
    f7bea000 f7bf2700 netbios netbios.sys Wed Aug 04 02:03:19 2004 (41107C27)
    f7bfa000 f7c03000 DcCam DcCam.sys Thu May 20 08:15:59 2004 (40ACA17F)
    f8400000 f8402980 gameenum gameenum.sys Wed Aug 04 02:08:20 2004 (41107D54)
    f8404000 f8407c80 serenum serenum.sys Wed Aug 04 01:59:06 2004 (41107B2A)
    f840c000 f840f080 tunmp tunmp.sys Wed Aug 04 02:03:15 2004 (41107C23)
    f8418000 f841ba00 kbdhid kbdhid.sys Wed Aug 04 01:58:33 2004 (41107B09)
    f8424000 f8426580 hidusb hidusb.sys Fri Aug 17 17:02:16 2001 (3B7D8658)
    f8448000 f8462580 Mup Mup.sys Wed Aug 04 02:15:20 2004 (41107EF8)
    f8463000 f8477000 srescan srescan.sys Mon Jan 15 17:16:30 2007 (45ABFD3E)
    f8477000 f8503400 Ntfs Ntfs.sys Fri Feb 09 06:10:31 2007 (45CC56A7)
    f8504000 f8514280 Udfs Udfs.sys Wed Aug 04 02:00:27 2004 (41107B7B)
    f8515000 f8585980 dnbudf dnbudf.sys Tue Feb 10 16:23:03 2004 (40294BB7)
    f8586000 f859c780 KSecDD KSecDD.sys Wed Aug 04 01:59:45 2004 (41107B51)
    f859d000 f85aef00 sr sr.sys Wed Aug 04 02:06:22 2004 (41107CDE)
    f85af000 f85ce780 fltmgr fltmgr.sys Mon Aug 21 05:14:57 2006 (44E97991)
    f85cf000 f85e6480 atapi atapi.sys Wed Aug 04 01:59:41 2004 (41107B4D)
    f85e7000 f8605880 ftdisk ftdisk.sys Fri Aug 17 16:52:41 2001 (3B7D8419)
    f8606000 f8632a80 NDIS NDIS.SYS Wed Aug 04 02:14:27 2004 (41107EC3)
    f8633000 f8655000 SSIDRV SSIDRV.SYS Thu Aug 03 21:33:15 2006 (44D2A3DB)
    f8655000 f8665a80 pci pci.sys Wed Aug 04 02:07:45 2004 (41107D31)
    f8666000 f8693d80 ACPI ACPI.sys Wed Aug 04 02:07:35 2004 (41107D27)
    f86b5000 f86bdc00 isapnp isapnp.sys Fri Aug 17 16:58:01 2001 (3B7D8559)
    f86c5000 f86ce000 SSHRMD SSHRMD.SYS Thu Aug 03 21:33:22 2006 (44D2A3E2)
    f86d5000 f86df500 MountMgr MountMgr.sys Wed Aug 04 01:58:29 2004 (41107B05)
    f86e5000 f86f1c80 VolSnap VolSnap.sys Wed Aug 04 02:00:14 2004 (41107B6E)
    f86f5000 f86fde00 disk disk.sys Wed Aug 04 01:59:53 2004 (41107B59)
    f8705000 f8711200 CLASSPNP CLASSPNP.SYS Wed Aug 04 02:14:26 2004 (41107EC2)
    f8715000 f871f080 sisagp sisagp.sys Wed Aug 04 02:07:42 2004 (41107D2E)
    f8725000 f872f580 agp440 agp440.sys Wed Aug 04 02:07:40 2004 (41107D2C)
    f8755000 f8763100 usbhub usbhub.sys Wed Aug 04 02:08:40 2004 (41107D68)
    f8775000 f877d2e0 lhidusb lhidusb.sys Wed Dec 17 14:38:50 2003 (3FE0B0CA)
    f87c5000 f87ce700 dcfs2k dcfs2k.sys Wed Jun 02 13:18:57 2004 (40BE0C01)
    f8815000 f881dd00 intelppm intelppm.sys Wed Aug 04 01:59:19 2004 (41107B37)
    f8825000 f882f800 dxe1015b dxe1015b.sys Thu Jul 28 23:28:20 2005 (42E9A254)
    f8835000 f8841e00 i8042prt i8042prt.sys Wed Aug 04 02:14:36 2004 (41107ECC)
    f8845000 f8850880 L8042Pr2 L8042Pr2.sys Wed Dec 17 14:38:10 2003 (3FE0B0A2)
    f8855000 f8864760 LMouFlt2 LMouFlt2.sys Wed Dec 17 14:38:27 2003 (3FE0B0B3)
    f8865000 f8874d80 serial serial.sys Wed Aug 04 02:15:51 2004 (41107F17)
    f8875000 f887f380 imapi imapi.sys Wed Aug 04 02:00:12 2004 (41107B6C)
    f8885000 f8891180 cdrom cdrom.sys Wed Aug 04 01:59:52 2004 (41107B58)
    f8895000 f88a3080 redbook redbook.sys Wed Aug 04 01:59:34 2004 (41107B46)
    f88a5000 f88b3b80 drmk drmk.sys Wed Aug 04 02:07:54 2004 (41107D3A)
    f88b5000 f88c1880 rasl2tp rasl2tp.sys Wed Aug 04 02:14:21 2004 (41107EBD)
    f88c5000 f88cf200 raspppoe raspppoe.sys Wed Aug 04 02:05:06 2004 (41107C92)
    f88d5000 f88e0d00 raspptp raspptp.sys Wed Aug 04 02:14:26 2004 (41107EC2)
    f88e5000 f88ed900 msgpc msgpc.sys Wed Aug 04 02:04:11 2004 (41107C5B)
    f88f5000 f88fef00 termdd termdd.sys Wed Aug 04 01:58:52 2004 (41107B1C)
    f8905000 f890e480 NDProxy NDProxy.SYS Fri Aug 17 16:55:30 2001 (3B7D84C2)
    f8935000 f893d000 SSFS0509 SSFS0509.SYS Thu Aug 03 21:33:18 2006 (44D2A3DE)
    f893d000 f8941880 TDI TDI.SYS Wed Aug 04 02:07:47 2004 (41107D33)
    f8945000 f894b200 PCIIDEX PCIIDEX.SYS Wed Aug 04 01:59:40 2004 (41107B4C)
    f894d000 f8951900 PartMgr PartMgr.sys Fri Aug 17 21:32:23 2001 (3B7DC5A7)
    f8955000 f8959e20 PxHelp20 PxHelp20.sys Mon Apr 25 15:48:02 2005 (426D4972)
    f895d000 f8964760 iomdisk iomdisk.sys Tue Sep 23 18:40:09 2003 (3F70CBC9)
    f8975000 f8976000 fdc fdc.sys unavailable (00000000)
    f8985000 f8989580 ptilink ptilink.sys Fri Aug 17 16:49:53 2001 (3B7D8371)
    f898d000 f8991080 raspti raspti.sys Fri Aug 17 16:55:32 2001 (3B7D84C4)
    f8995000 f899b000 kbdclass kbdclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
    f89ad000 f89b2000 flpydisk flpydisk.sys Wed Aug 04 01:59:24 2004 (41107B3C)
    f89bd000 f89c3180 HIDPARSE HIDPARSE.SYS Wed Aug 04 02:08:15 2004 (41107D4F)
    f89c5000 f89ca200 vga vga.sys Wed Aug 04 02:07:06 2004 (41107D0A)
    f89cd000 f89d1a80 Msfs Msfs.SYS Wed Aug 04 02:00:37 2004 (41107B85)
    f89d5000 f89dc880 Npfs Npfs.SYS Wed Aug 04 02:00:38 2004 (41107B86)
    f89dd000 f89e4180 ip6fw ip6fw.sys Wed Aug 04 02:00:04 2004 (41107B64)
    f89ed000 f89f3c80 avg7rsxp avg7rsxp.sys Tue Jan 30 10:08:42 2007 (45BF5F7A)
    f89f5000 f89fcb80 usbccgp usbccgp.sys Wed Aug 04 02:08:45 2004 (41107D6D)
    f89fd000 f8a03ce0 cis1284 cis1284.sys Fri Apr 13 02:54:51 2001 (3AD6A2BB)
    f8a15000 f8a1b500 usbprint usbprint.sys Wed Aug 04 02:01:23 2004 (41107BB3)
    f8a25000 f8a2b780 USBSTOR USBSTOR.SYS Wed Aug 04 02:08:44 2004 (41107D6C)
    f8a7d000 f8a81500 watchdog watchdog.sys Wed Aug 04 02:07:32 2004 (41107D24)
    f8aa5000 f8aaa000 usbuhci usbuhci.sys Wed Aug 04 02:08:34 2004 (41107D62)
    f8aad000 f8ab3800 usbehci usbehci.sys Wed Aug 04 02:08:34 2004 (41107D62)
    f8ab5000 f8abc580 Modem Modem.SYS Wed Aug 04 02:08:04 2004 (41107D44)
    f8abd000 f8ac2a00 mouclass mouclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
    f8ac5000 f8ac8000 BOOTVID BOOTVID.dll Fri Aug 17 16:49:09 2001 (3B7D8345)
    f8ac9000 f8acb480 compbatt compbatt.sys Fri Aug 17 16:57:58 2001 (3B7D8556)
    f8acd000 f8ad0700 BATTC BATTC.SYS Fri Aug 17 16:57:52 2001 (3B7D8550)
    f8b81000 f8b83280 rasacd rasacd.sys Fri Aug 17 16:55:39 2001 (3B7D84CB)
    f8bb5000 f8bb6b80 kdcom kdcom.dll Fri Aug 17 16:49:10 2001 (3B7D8346)
    f8bb7000 f8bb8100 WMILIB WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
    f8bb9000 f8bba580 intelide intelide.sys Wed Aug 04 01:59:40 2004 (41107B4C)
    f8bf5000 f8bf6100 swenum swenum.sys Wed Aug 04 01:58:41 2004 (41107B11)
    f8c05000 f8c06280 USBD USBD.SYS Fri Aug 17 17:02:58 2001 (3B7D8682)
    f8c07000 f8c08f00 Fs_Rec Fs_Rec.SYS Fri Aug 17 16:49:37 2001 (3B7D8361)
    f8c09000 f8c0a080 Beep Beep.SYS Fri Aug 17 16:47:33 2001 (3B7D82E5)
    f8c0b000 f8c0c080 mnmdd mnmdd.SYS Fri Aug 17 16:57:28 2001 (3B7D8538)
    f8c0d000 f8c0e080 RDPCDD RDPCDD.sys Fri Aug 17 16:46:56 2001 (3B7D82C0)
    f8c0f000 f8c10080 avg7rsw avg7rsw.sys Tue Jul 26 08:10:51 2005 (42E6284B)
    f8c11000 f8c12a80 ParVdm ParVdm.SYS Fri Aug 17 16:49:49 2001 (3B7D836D)
    f8c15000 f8c16360 avgtdi avgtdi.sys Thu Aug 25 05:59:58 2005 (430D969E)
    f8c1b000 f8c1c780 RaInfo RaInfo.sys Mon Apr 09 19:37:22 2007 (461ACE32)
    f8c4d000 f8c4e100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
    f8c7d000 f8c7dd00 pciide pciide.sys Fri Aug 17 16:51:49 2001 (3B7D83E5)
    f8d4c000 f8d4cd00 dxgthk dxgthk.sys Fri Aug 17 16:53:12 2001 (3B7D8438)
    f8dc1000 f8dc1b80 Null Null.SYS Fri Aug 17 16:47:39 2001 (3B7D82EB)
    f8dc2000 f8dc2f80 avgclean avgclean.sys Mon Aug 21 18:55:15 2006 (44EA39D3)
    f8de9000 f8de9c80 LMImirr LMImirr.sys Tue Apr 10 18:32:11 2007 (461C106B)
    f8dea000 f8deac00 audstub audstub.sys Fri Aug 17 16:59:40 2001 (3B7D85BC)
    f8df6000 f8df6f80 guard guard.sys Fri Jun 16 10:38:53 2006 (4492C27D)

    Unloaded modules:
    f29ae000 f29c4000 vnetusbr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f29ae000 f29c4000 vnetusbr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8a85000 f8a8c000 USBSTOR.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f29ae000 f29c4000 vnetusbr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8a0d000 f8a14000 USBSTOR.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f29ae000 f29c4000 vnetusbr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f5e65000 f5e6c000 USBSTOR.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f29ae000 f29c4000 vnetusbr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8a1d000 f8a24000 USBSTOR.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f5f3f000 f5f55000 vnetusbr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f3a72000 f3a9d000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8d1e000 f8d1f000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f4147000 f4154000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f4127000 f4135000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f3a9d000 f3ac0000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8c47000 f8c49000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f4c64000 f4c7a000 nwlnkipx.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7bca000 f7bd3000 processr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7bda000 f7be4000 amdk7.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8b7d000 f8b81000 kbdhid.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f89b5000 f89ba000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f8b79000 f8b7c000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    Closing open log file c:\debuglog.txt
     
    KAL,
    #7
  9. 2007/07/22
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Hi Karen

    I will now shatter your illusions and confess that I am not expert at analysing debuglogs - few people are and it needs specialist training. There is one guy who visits the Board from time to time who has this expertise, but has not been seen recently and who has not responded to a PM asking for help in another thread. However, I can make observations and suggestions ....

    Question - have you recently added any hardware/software to the computer?
    Your dump log identifies this driver as the possible cause - was there a removeable USB drive (pen drive, USB hard drive or other USB storage device (camera)) plugged in at the time? Do you always remove USB mass storage devices such as the above through Safely Remove Hardware?

    A Stop 50 error PAGE_FAULT_IN_NONPAGED_AREA (50) can be caused by
    First step is to check your memory using Windows Memory Diagnostic Tool or memtest

    From your first post I would uninstall Yahoo Toolbar - it has been known to cause problems in the past.

    Look in Event Viewer - right click My Computer > Manage > Event Viewer - Application and System. Are there any events flagged as errors timed when the computer crashed? There may not be ifWindows was on the point of shutting down. Doulle click on any message to expand and on the icon below the up/down arrows to copy to clipboard and paste here.
     
  10. 2007/07/22
    peterdiva

    peterdiva Inactive

    Joined:
    2007/06/04
    Messages:
    43
    Likes Received:
    0
    See if there's an update available for vnetusbr.sys. From what I can find out it's an 802.11b Compliant USB Wireless Network Adapter Driver by ATMEL.

    OVERLAPPED_MODULE: Address regions for 'kmixer' and 'vnetusbr.sys' overlap

    f2983000 f2998480 vnetusbr vnetusbr.sys Tue Aug 06 09:38:38 2002 (3D4FD15E) <--- It's old.
     
  11. 2007/07/22
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    peterdiva

    Thanks for the assist :) We really struggle here with a lack of expertise in analysing these logs.
     
  12. 2007/07/22
    KAL

    KAL Inactive Thread Starter

    Joined:
    2005/09/09
    Messages:
    188
    Likes Received:
    0
    Hi Pete, I think you are right on with the usb thing. It seems that my usb ports on the backside of my tower were not working correctly so I went to the front of the unit and plugged in an external usb hub so I could use my wireless keyboard and various other devices.

    Now, occasionally, I am hearing the windows sound when you disconnect a device ( "the kerplunk" type sound), only I am not connecting or disconnecting anything. It just voluntarily does it.

    I was away for 3 months and during that time, my pc was totally shut down along with the dsl modem and the compex wireless internet gateway. When I returned and started things up, that is when I started having strange things happen. Even my dsl line was not working correctly and I called the phone company. So I don't know if that had added to the already strange happenings.

    And yes, I have been using a usb storage device for pics that I had taken, and have removed it but I still think there is another usb device causing problems.

    I will also look for updates from compex for the wireless adapter.

    But just that little thing (the usb) could cause the BSOD?
     
    KAL,
    #11
  13. 2007/07/22
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    In the light of what you have said re. the USB ports you should reinstall them ....

    Device Manager > Universal Serial Bus Controllers

    Right click on each > Uninstall

    Reboot and let Windows reinstall them
    That is what the dump data suggests as a possible.
     
  14. 2007/07/22
    KAL

    KAL Inactive Thread Starter

    Joined:
    2005/09/09
    Messages:
    188
    Likes Received:
    0
    OK, I think I found the problem when I went to look at the Device driver. There was a yellow exclamation point at the usb receiver for my logitech keyboard. I reinstalled the driver and everything appears to be in working order for the time being.

    I will keep a watchful eye on things and will be back in touch if the BSOD comes back to haunt me.

    Thanks again to everyone. You guys are the greatest.!!! :D :D

    Pete, Do you think I should still reinstall the USB ports in light of the discovery mentioned above?
     
    KAL,
    #13
  15. 2007/07/23
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    No need - leave them alone :)

    Glad to hear you managed to find the culprit - good piece of detective work :)
     
  16. 2007/07/23
    KAL

    KAL Inactive Thread Starter

    Joined:
    2005/09/09
    Messages:
    188
    Likes Received:
    0
    No praises just yet (blush).

    My pc shut down unexpectedly again so
    I went to the device manager and uninstalled the usb devices anyway and I disconnected the external hubs I had attached, restarted and checked the device manager again.

    What I found was: Device Manager/Human Interface Devices/Yellow exclamation attached to USB Receiver. I can only assume this is related somehow to my mouse. I at one time installed a wireless mouse with my cordless keyboard. (Under the human devices is listed a separate heading for cordless usb keyboard. It is ok.) It never worked right and I just took out the batteries. I am currently using a wired mouse.

    I just uninstalled the USB receiver after looking at the properties again and noticing that the manufacturer was Logitec--so I am 99% sure that this was the wireless mouse that the pc was looking for. I'll let it this way for now and then if everything is working correctly, I will add the usb hubs again and keep a watchfull eye for the BSOD.
     
    Last edited: 2007/07/23
    KAL,
    #15

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.