1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Random Bluescreens and Freezes

Discussion in 'Windows XP' started by justsomeguy, 2011/09/25.

  1. 2011/09/25
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    HI I fairly recently did a fresh install of Windows XP and for awhile now have been getting random Blue-screens, Reboots, and freezes and I am not able to tell why. I have ran memtests and found two of my Ram sticks were bad which I removed but that didn't help. I tried running both Norton scans and Malwarebytes scans in both safe mode and normal mode but wasn't able to because the computer rebooted awhile into them, so I ran virus scans using Linux live on usb. That worked but came up clean. I have ran Scannow multiple times and came up clean. I did run multiple chkdsk's which came up with mixed results so I stuck the internal hard drive in an external inclosure and had another PC run it on the drive and that came up clean. I haven't ran a repair on Windows yet but I thought maybe I should see if I could get help before I chance running into more problems and see if that's even needed. Any help anyone can give me would really be appreciated. Thank you in advance.
    I did follow the steps on how to run and get a dumpfile and here is what it came up with (this is the most recent of them there are several others so let me know if more are needed) :
    Opened log file 'c:debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini092511-03.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp3_gdr.101209-1647
    Machine Name:
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
    Debug session time: Sun Sep 25 16:01:07.656 2011 (UTC - 7:00)
    System Uptime: 0 days 0:53:18.304
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .............................
    Loading User Symbols
    Loading unloaded module list
    .............................
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000000A, {82cdeb4, 1c, 1, 80502386}

    Probably caused by : ntkrpamp.exe ( nt!KiInsertTimerTable+4e )

    Followup: MachineOwner
    ---------

    3: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 082cdeb4, memory referenced
    Arg2: 0000001c, IRQL
    Arg3: 00000001, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: 80502386, address which referenced memory

    Debugging Details:
    ------------------


    WRITE_ADDRESS: 082cdeb4

    CURRENT_IRQL: 1c

    FAULTING_IP:
    nt!KiInsertTimerTable+4e
    80502386 894204 mov dword ptr [edx+4],eax

    CUSTOMER_CRASH_COUNT: 3

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0xA

    PROCESS_NAME: plugin-containe

    LAST_CONTROL_TRANSFER: from 8050245b to 80502386

    STACK_TEXT:
    b09c9ca0 8050245b fffbba40 ffffffff 725690db nt!KiInsertTimerTable+0x4e
    b09c9cbc 804fb017 fffbba40 ffffffff 00000000 nt!KiInsertTreeTimer+0x7d
    b09c9cec 805c0794 00000001 00000006 01dafe01 nt!KeWaitForSingleObject+0x161
    b09c9d50 8054167c 00000320 00000000 b09c9d1c nt!NtWaitForSingleObject+0x9a
    b09c9d50 7c90e514 00000320 00000000 b09c9d1c nt!KiFastCallEntry+0xfc
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0403fe94 00000000 00000000 00000000 00000000 0x7c90e514


    STACK_COMMAND: kb

    FOLLOWUP_IP:
    nt!KiInsertTimerTable+4e
    80502386 894204 mov dword ptr [edx+4],eax

    SYMBOL_STACK_INDEX: 0

    SYMBOL_NAME: nt!KiInsertTimerTable+4e

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: nt

    IMAGE_NAME: ntkrpamp.exe

    DEBUG_FLR_IMAGE_TIMESTAMP: 4d00d46f

    FAILURE_BUCKET_ID: 0xA_nt!KiInsertTimerTable+4e

    BUCKET_ID: 0xA_nt!KiInsertTimerTable+4e

    Followup: MachineOwner
    ---------

    eax=87c83680 ebx=87c7e7e8 ecx=8055cc28 edx=082cdeb0 esi=87c83668 edi=8055cc28
    eip=80502386 esp=b09c9c98 ebp=b09c9ca0 iopl=0 nv up ei pl zr na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
    nt!KiInsertTimerTable+0x4e:
    80502386 894204 mov dword ptr [edx+4],eax ds:0023:082cdeb4=????????
    ChildEBP RetAddr Args to Child
    b09c9ca0 8050245b fffbba40 ffffffff 725690db nt!KiInsertTimerTable+0x4e (FPO: [Non-Fpo])
    b09c9cbc 804fb017 fffbba40 ffffffff 00000000 nt!KiInsertTreeTimer+0x7d (FPO: [Non-Fpo])
    b09c9cec 805c0794 00000001 00000006 01dafe01 nt!KeWaitForSingleObject+0x161 (FPO: [Non-Fpo])
    b09c9d50 8054167c 00000320 00000000 b09c9d1c nt!NtWaitForSingleObject+0x9a (FPO: [Non-Fpo])
    b09c9d50 7c90e514 00000320 00000000 b09c9d1c nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ b09c9d64)
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0403fe94 00000000 00000000 00000000 00000000 0x7c90e514
    start end module name
    804d7000 806e5000 nt ntkrpamp.exe Thu Dec 09 05:06:55 2010 (4D00D46F)
    806e5000 80705d00 hal halmacpi.dll Sun Apr 13 11:31:27 2008 (4802517F)
    ae109000 ae133180 kmixer kmixer.sys Sun Apr 13 11:45:07 2008 (480254B3)
    b045f000 b0472600 NAVENG NAVENG.SYS Fri Jul 29 05:10:02 2011 (4E32A31A)
    b0473000 b05f2300 NAVEX15 NAVEX15.SYS Fri Jul 29 05:07:28 2011 (4E32A280)
    b06e3000 b0769000 SRTSP SRTSP.SYS Tue Mar 29 19:43:18 2011 (4D9298C6)
    b0785000 b0787280 psi_mf psi_mf.sys Wed Sep 01 00:53:16 2010 (4C7E066C)
    b0791000 b07d1e00 HTTP HTTP.sys Tue Oct 20 09:20:15 2009 (4ADDE33F)
    b0aca000 b0aed180 Fastfat Fastfat.SYS Sun Apr 13 12:14:28 2008 (48025B94)
    b1016000 b106d600 srv srv.sys Thu Feb 17 05:18:01 2011 (4D5D2009)
    b115e000 b118a180 mrxdav mrxdav.sys Sun Apr 13 11:32:42 2008 (480251CA)
    b172f000 b1743480 wdmaud wdmaud.sys Sun Apr 13 12:17:18 2008 (48025C3E)
    b189c000 b18aad80 sysaudio sysaudio.sys Sun Apr 13 12:15:55 2008 (48025BEB)
    b194c000 b196d000 SbieDrv SbieDrv.sys Fri Jun 17 06:29:37 2011 (4DFB56C1)
    b1a65000 b1a68900 ndisuio ndisuio.sys Sun Apr 13 11:55:57 2008 (4802573D)
    b271a000 b2733b80 dump_nvata dump_nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b2734000 b286a080 LV302V32 LV302V32.SYS Wed May 09 21:09:48 2007 (46429B0C)
    b290b000 b297c000 wdf01000 wdf01000.sys Mon Jul 13 16:11:36 2009 (4A5BBF28)
    b297c000 b29a1000 SaiK0CCB SaiK0CCB.sys Wed Apr 21 09:34:42 2010 (4BCF2922)
    b29a1000 b2a6c000 BHDrvx86 BHDrvx86.sys Tue Sep 06 15:48:54 2011 (4E66A356)
    b2a6c000 b2a8a000 EraserUtilRebootDrv EraserUtilRebootDrv.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2a8a000 b2ae8000 eeCtrl eeCtrl.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2ae8000 b2b57680 mrxsmb mrxsmb.sys Fri Jul 15 06:29:28 2011 (4E2040B8)
    b2b80000 b2baae80 rdbss rdbss.sys Sun Apr 13 12:28:38 2008 (48025EE6)
    b2bab000 b2bcf000 Ironx86 Ironx86.SYS Fri Nov 12 15:05:54 2010 (4CDDC852)
    b2bcf000 b2bf0d00 afd afd.sys Wed Feb 16 05:22:47 2011 (4D5BCFA7)
    b2bf1000 b2c18c00 netbt netbt.sys Sun Apr 13 12:20:59 2008 (48025D1B)
    b2c19000 b2c74000 IDSxpx86 IDSxpx86.sys Wed Jul 20 06:18:06 2011 (4E26D58E)
    b2c74000 b2c9a000 SYMEVENT SYMEVENT.SYS Thu Mar 24 16:02:08 2011 (4D8BCD70)
    b2c9a000 b2cbf500 ipnat ipnat.sys Sun Apr 13 11:57:10 2008 (48025786)
    b2cc0000 b2d18a00 SYMTDI SYMTDI.SYS Thu Mar 17 20:04:50 2011 (4D82CBD2)
    b2d21000 b2d23880 hidusb hidusb.sys Sun Apr 13 11:45:27 2008 (480254C7)
    b2d41000 b2d99480 tcpip tcpip.sys Fri Jun 20 04:51:09 2008 (485B99AD)
    b2d9a000 b2dac600 ipsec ipsec.sys Sun Apr 13 12:19:42 2008 (48025CCE)
    b2e20000 b2e41780 adidts adidts.sys Tue Jul 14 01:21:04 2009 (4A5C3FF0)
    b2e42000 b2e58f00 AEAudio AEAudio.sys Mon Aug 07 06:57:27 2006 (44D746C7)
    b2e59000 b2e7ca80 portcls portcls.sys Sun Apr 13 12:19:40 2008 (48025CCC)
    b2e7d000 b2ec9000 ADIHdAud ADIHdAud.sys Tue Jan 16 06:09:04 2007 (45ACDC80)
    b30dd000 b30df900 Dxapi Dxapi.sys Fri Aug 17 13:53:19 2001 (3B7D843F)
    b30fd000 b30ff280 rasacd rasacd.sys Fri Aug 17 13:55:39 2001 (3B7D84CB)
    b5eef000 b5f4cf00 update update.sys Sun Apr 13 11:39:46 2008 (48025372)
    b5f4d000 b5f7ce80 rdpdr rdpdr.sys Sun Apr 13 11:32:50 2008 (480251D2)
    b5f7d000 b5f8de00 psched psched.sys Sun Apr 13 11:56:36 2008 (48025764)
    b5f8e000 b5fa4580 ndiswan ndiswan.sys Sun Apr 13 12:20:41 2008 (48025D09)
    b672d000 b6740f00 VIDEOPRT VIDEOPRT.SYS Sun Apr 13 11:44:39 2008 (48025497)
    b6741000 b7337280 nv4_mini nv4_mini.sys Wed Aug 03 02:02:29 2011 (4E390EA5)
    b7338000 b738b000 NVSNPU NVSNPU.SYS Mon Aug 07 16:38:41 2006 (44D7CF01)
    b738b000 b7498c00 NVNRM NVNRM.SYS Mon Aug 07 16:39:02 2006 (44D7CF16)
    b7499000 b74c1000 HDAudBus HDAudBus.sys Thu May 26 08:46:29 2005 (4295EF55)
    b74c1000 b74e3700 ks ks.sys Sun Apr 13 12:16:34 2008 (48025C12)
    b74e4000 b7507200 USBPORT USBPORT.SYS Sun Apr 13 11:45:34 2008 (480254CE)
    b7524000 b7526f80 mouhid mouhid.sys Fri Aug 17 13:47:57 2001 (3B7D82FD)
    b792e000 b793c880 usbhub usbhub.sys Sun Apr 13 11:45:36 2008 (480254D0)
    b793e000 b794ae00 NVENETFD NVENETFD.sys Mon Aug 07 16:39:21 2006 (44D7CF29)
    b795e000 b7968000 NDProxy NDProxy.SYS Tue Nov 02 08:17:02 2010 (4CD02B6E)
    b796e000 b797d000 azvusb azvusb.sys Thu Aug 13 04:28:55 2009 (4A83F8F7)
    b797e000 b7987f00 termdd termdd.sys Sun Apr 13 11:38:36 2008 (4802532C)
    b798e000 b7997000 SaiBus SaiBus.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b799e000 b79a6900 msgpc msgpc.sys Sun Apr 13 11:56:32 2008 (48025760)
    b79ae000 b79b9d00 raspptp raspptp.sys Sun Apr 13 12:19:47 2008 (48025CD3)
    b79be000 b79c8200 raspppoe raspppoe.sys Sun Apr 13 11:57:31 2008 (4802579B)
    b7bfa000 b7bfc900 ndistapi ndistapi.sys Fri Jul 08 07:02:00 2011 (4E170DD8)
    b7bfe000 b7c00200 wacomvhid wacomvhid.sys Mon Sep 21 16:29:18 2009 (4AB80C4E)
    b7c80000 b7c99c00 Mup Mup.sys Thu Apr 21 06:37:43 2011 (4DB03327)
    b7c9a000 b7cc6980 NDIS NDIS.sys Sun Apr 13 12:20:35 2008 (48025D03)
    b7cc7000 b7d53600 Ntfs Ntfs.sys Sun Apr 13 12:15:49 2008 (48025BE5)
    b7d54000 b7d66f00 WudfPf WudfPf.sys Thu Sep 28 18:55:43 2006 (451C7D1F)
    b7d67000 b7d7db00 KSecDD KSecDD.sys Wed Jun 24 04:18:40 2009 (4A420B90)
    b7d7e000 b7e39000 SYMEFA SYMEFA.SYS Sun Mar 13 20:20:09 2011 (4D7D8969)
    b7e39000 b7e4af00 sr sr.sys Sun Apr 13 11:36:50 2008 (480252C2)
    b7e4b000 b7ea2000 SYMDS SYMDS.SYS Tue Dec 07 16:16:20 2010 (4CFECE54)
    b7ea2000 b7ec1b00 fltmgr fltmgr.sys Sun Apr 13 11:32:58 2008 (480251DA)
    b7ec2000 b7ed9880 SCSIPORT SCSIPORT.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b7eda000 b7ef1000 SI3132 SI3132.sys Wed Oct 03 11:41:04 2007 (4703E240)
    b7ef1000 b7f0ab80 nvata nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b7f0b000 b7f22900 atapi atapi.sys Sun Apr 13 11:40:29 2008 (4802539D)
    b7f23000 b7f48700 dmio dmio.sys Sun Apr 13 11:44:45 2008 (4802549D)
    b7f49000 b7f67880 ftdisk ftdisk.sys Fri Aug 17 13:52:41 2001 (3B7D8419)
    b7f68000 b7f78a80 pci pci.sys Sun Apr 13 11:36:43 2008 (480252BB)
    b7f79000 b7fa6d80 ACPI ACPI.sys Sun Apr 13 11:36:33 2008 (480252B1)
    b80a8000 b80b1180 isapnp isapnp.sys Sun Apr 13 11:36:40 2008 (480252B8)
    b80b8000 b80c7100 ohci1394 ohci1394.sys Sun Apr 13 11:46:18 2008 (480254FA)
    b80c8000 b80d5080 1394BUS 1394BUS.SYS Sun Apr 13 11:46:18 2008 (480254FA)
    b80d8000 b80e2580 MountMgr MountMgr.sys Sun Apr 13 11:39:45 2008 (48025371)
    b80e8000 b80f4c80 VolSnap VolSnap.sys Sun Apr 13 11:41:00 2008 (480253BC)
    b80f8000 b8100e00 disk disk.sys Sun Apr 13 11:40:46 2008 (480253AE)
    b8108000 b8114180 CLASSPNP CLASSPNP.SYS Sun Apr 13 12:16:21 2008 (48025C05)
    b8118000 b8121300 PxHelp20 PxHelp20.sys Tue Jun 23 16:16:17 2009 (4A416241)
    b8168000 b8177180 nic1394 nic1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b8198000 b81a4880 rasl2tp rasl2tp.sys Sun Apr 13 12:19:43 2008 (48025CCF)
    b81c8000 b81d6b00 drmk drmk.sys Sun Apr 13 11:45:12 2008 (480254B8)
    b81f8000 b8200700 wanarp wanarp.sys Sun Apr 13 11:57:20 2008 (48025790)
    b8208000 b8216d80 arp1394 arp1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b8218000 b8220780 netbios netbios.sys Sun Apr 13 11:56:01 2008 (48025741)
    b8228000 b8232980 SRTSPX SRTSPX.SYS Tue Mar 29 19:43:23 2011 (4D9298CB)
    b8238000 b8244e20 SCDEmu SCDEmu.SYS Mon Jul 07 00:40:49 2008 (4871C881)
    b8248000 b8252e00 Fips Fips.SYS Sun Apr 13 11:33:27 2008 (480251F7)
    b8278000 b8286000 WDFLDR WDFLDR.SYS Mon Jul 13 16:11:25 2009 (4A5BBF1D)
    b8288000 b8290880 LVUSBSta LVUSBSta.sys Wed May 09 21:00:54 2007 (464298F6)
    b8298000 b82a0e00 intelppm intelppm.sys Sun Apr 13 11:31:31 2008 (48025183)
    b82a8000 b82b2480 imapi imapi.sys Sun Apr 13 11:40:57 2008 (480253B9)
    b82b8000 b82c7600 cdrom cdrom.sys Sun Apr 13 11:40:45 2008 (480253AD)
    b82c8000 b82d6100 redbook redbook.sys Sun Apr 13 11:40:27 2008 (4802539B)
    b82d8000 b82e1000 nvnetbus nvnetbus.sys Mon Aug 07 16:39:23 2006 (44D7CF2B)
    b82e8000 b82f1000 HIDCLASS HIDCLASS.SYS Sun Apr 13 11:45:25 2008 (480254C5)
    b82f8000 b8306a80 usbaudio usbaudio.sys Sun Apr 13 11:45:11 2008 (480254B7)
    b8308000 b8311000 wacmoumonitor wacmoumonitor.sys Fri Oct 29 09:29:38 2010 (4CCAF672)
    b8318000 b8327900 Cdfs Cdfs.SYS Sun Apr 13 12:14:21 2008 (48025B8D)
    b8328000 b832e180 PCIIDEX PCIIDEX.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b8330000 b8334d00 PartMgr PartMgr.sys Sun Apr 13 11:40:48 2008 (480253B0)
    b8338000 b8340000 SiRemFil SiRemFil.sys Wed Jun 20 13:06:09 2007 (467988B1)
    b8358000 b835f000 SaiU0CCB SaiU0CCB.sys Wed Apr 21 09:34:40 2010 (4BCF2920)
    b8378000 b837fd80 usbccgp usbccgp.sys Sun Apr 13 11:45:38 2008 (480254D2)
    b8380000 b8388000 LHidFilt LHidFilt.Sys Sat Apr 30 04:50:48 2011 (4DBBF798)
    b8388000 b838f780 LMouFilt LMouFilt.Sys Sat Apr 30 04:50:53 2011 (4DBBF79D)
    b8390000 b8394500 watchdog watchdog.sys Sun Apr 13 11:44:59 2008 (480254AB)
    b8398000 b8399000 fdc fdc.sys unavailable (00000000)
    b83a0000 b83a4300 usbohci usbohci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b83a8000 b83af600 usbehci usbehci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b83b0000 b83b6180 HIDPARSE HIDPARSE.SYS Sun Apr 13 11:45:22 2008 (480254C2)
    b83b8000 b83bca80 TDI TDI.SYS Sun Apr 13 12:00:04 2008 (48025834)
    b83c0000 b83c4580 ptilink ptilink.sys Fri Aug 17 13:49:53 2001 (3B7D8371)
    b83c8000 b83cc080 raspti raspti.sys Fri Aug 17 13:55:32 2001 (3B7D84C4)
    b83d0000 b83d6000 kbdclass kbdclass.sys Sun Apr 13 11:39:46 2008 (48025372)
    b83d8000 b83dda00 mouclass mouclass.sys Sun Apr 13 11:39:47 2008 (48025373)
    b83e0000 b83e8000 wacommousefilter wacommousefilter.sys Fri Feb 16 10:12:29 2007 (45D5F40D)
    b83e8000 b83ed000 flpydisk flpydisk.sys Sun Apr 13 11:40:24 2008 (48025398)
    b83f8000 b83fd200 vga vga.sys Sun Apr 13 11:44:40 2008 (48025498)
    b8400000 b8404a80 Msfs Msfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b8408000 b840f880 Npfs Npfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b84b8000 b84bb000 BOOTVID BOOTVID.dll Fri Aug 17 13:49:09 2001 (3B7D8345)
    b84bc000 b84bf100 SiWinAcc SiWinAcc.sys Thu Jun 14 17:02:27 2007 (4671D713)
    b8570000 b8573c80 mssmbios mssmbios.sys Sun Apr 13 11:36:45 2008 (480252BD)
    b8584000 b8587700 SaiMini SaiMini.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b8588000 b858b900 kbdhid kbdhid.sys Sun Apr 13 11:39:47 2008 (48025373)
    b85a8000 b85a9b80 kdcom kdcom.dll Fri Aug 17 13:49:10 2001 (3B7D8346)
    b85aa000 b85ab100 WMILIB WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b85ac000 b85ad700 dmload dmload.sys Fri Aug 17 13:58:15 2001 (3B7D8567)
    b8616000 b8617420 ASACPI ASACPI.sys Thu Aug 12 19:52:52 2004 (411C2D04)
    b862a000 b862b100 swenum swenum.sys Sun Apr 13 11:39:52 2008 (48025378)
    b862e000 b862f280 USBD USBD.SYS Fri Aug 17 14:02:58 2001 (3B7D8682)
    b8632000 b8633f00 Fs_Rec Fs_Rec.SYS Fri Aug 17 13:49:37 2001 (3B7D8361)
    b8634000 b8635080 Beep Beep.SYS Fri Aug 17 13:47:33 2001 (3B7D82E5)
    b8636000 b8637080 mnmdd mnmdd.SYS Fri Aug 17 13:57:28 2001 (3B7D8538)
    b8638000 b8639080 RDPCDD RDPCDD.sys Fri Aug 17 13:46:56 2001 (3B7D82C0)
    b8640000 b8641440 AsIO AsIO.sys Wed Dec 21 00:55:21 2005 (43A91879)
    b8646000 b8647c00 lv302af lv302af.sys Wed May 09 21:01:36 2007 (46429920)
    b8654000 b8655100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b8670000 b8670d00 pciide pciide.sys Fri Aug 17 13:51:49 2001 (3B7D83E5)
    b86ac000 b86acb80 Null Null.SYS Fri Aug 17 13:47:39 2001 (3B7D82EB)
    b876d000 b876de80 LBeepKE LBeepKE.sys Sat Apr 30 04:52:33 2011 (4DBBF801)
    b8793000 b8793c00 audstub audstub.sys Fri Aug 17 13:59:40 2001 (3B7D85BC)
    b879b000 b879bd00 dxgthk dxgthk.sys Fri Aug 17 13:53:12 2001 (3B7D8438)
    bd000000 bd011600 dxg dxg.sys Sun Apr 13 11:38:27 2008 (48025323)
    bd012000 bd416080 nv4_disp nv4_disp.dll Wed Aug 03 01:56:54 2011 (4E390D56)
    bd417000 bd45de80 ATMFD ATMFD.DLL Tue Feb 15 04:56:39 2011 (4D5A7807)
    bf800000 bf9c5d80 win32k win32k.sys Thu Jun 02 07:01:55 2011 (4DE797D3)

    Unloaded modules:
    b8488000 b8490000 mbamswissarm
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00008000
    af373000 af37b000 mbamswissarm
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00008000
    b8468000 b8470000 mbamswissarm
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00008000
    ae109000 ae134000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    ae838000 ae863000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    ae838000 ae863000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b0434000 b045f000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b16e1000 b170c000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b85f8000 b85fa000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8723000 b8724000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00001000
    b187c000 b1889000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b170c000 b172f000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00023000
    b188c000 b189a000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000E000
    b11d7000 b11e7000 Serial.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00010000
    b1122000 b1136000 Parport.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00014000
    b81e8000 b81f5000 i8042prt.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b83f0000 b83f5000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00005000
    b7c12000 b7c15000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00003000
    b81b8000 b81c1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8628000 b862a000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8188000 b8191000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8624000 b8626000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8178000 b8181000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8620000 b8622000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8318000 b8321000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b861c000 b861e000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8308000 b8311000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8618000 b861a000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82f8000 b8301000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    Closing open log file c:debuglog.txt
     
  2. 2011/09/26
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    I'd start by updating all your drivers and software (specifically Adobe’s Flash Player, Quicktime or Silverlight).

    Firefox has added so called "out-of-process" plugins to their web browser. These specific Firefox plugins run in their own process (managed by plugin-container.exe) whenever they are needed to run elements on a web page.
     
    Arie,
    #2

  3. to hide this advert.

  4. 2011/09/26
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Thank you Arie for your response. I did seem to have a corrupted iTunes/QuickTime problem that came up a while after the crashes started so I didn't think they were really connected, but now that you mention QuickTime I went ahead and uninstalled and reinstalled them both. I reinstalled Flash too because "Secunia" my update notifying software said it needed one even though Flash itself said it was up to date. As far as updating drivers, I couldn't seem to find any that need updating, but this has always been a question for me. What way, is the best way, to check all your drivers. Is there one place to do that or do you have to just take count of all the hardware you have and go through their software to find updates?
    I wanted to show you an older DumpRep that still says Driver but seemed to be a little different then the others and get your take on it. Speaking of that I was wondering is a whole dump report helpful or just the middle part? To be more specific, as in this first post the area between "Bugcheck Analysis" and "Followup: MachineOwner ". I only ask because If sending in multiple DumpReps, I thought not to fill everything up with all of the information, if it isn't needed. Any way let me know. Thanks again.
    Here it is:
    Opened log file 'c:debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini091711-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp3_gdr.101209-1647
    Machine Name:
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
    Debug session time: Sat Sep 17 21:38:21.640 2011 (UTC - 7:00)
    System Uptime: 0 days 11:42:50.287
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .................................
    Loading User Symbols
    Loading unloaded module list
    ....................................
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000007E, {c0000005, 805cfac5, b851fc30, b851f92c}

    Probably caused by : ntkrpamp.exe ( nt!PsReturnSharedPoolQuota+23 )

    Followup: MachineOwner
    ---------

    3: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
    This is a very common bugcheck. Usually the exception address pinpoints
    the driver/function that caused the problem. Always note this address
    as well as the link date of the driver/image that contains this address.
    Some common problems are exception code 0x80000003. This means a hard
    coded breakpoint or assertion was hit, but this system was booted
    /NODEBUG. This is not supposed to happen as developers should never have
    hardcoded breakpoints in retail code, but ...
    If this happens, make sure a debugger gets connected, and the
    system is booted /DEBUG. This will let us see why this breakpoint is
    happening.
    Arguments:
    Arg1: c0000005, The exception code that was not handled
    Arg2: 805cfac5, The address that the exception occurred at
    Arg3: b851fc30, Exception Record Address
    Arg4: b851f92c, Context Record Address

    Debugging Details:
    ------------------


    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    FAULTING_IP:
    nt!PsReturnSharedPoolQuota+23
    805cfac5 8b3e mov edi,dword ptr [esi]

    EXCEPTION_RECORD: b851fc30 -- (.exr 0xffffffffb851fc30)
    .exr 0xffffffffb851fc30
    ExceptionAddress: 805cfac5 (nt!PsReturnSharedPoolQuota+0x00000023)
    ExceptionCode: c0000005 (Access violation)
    ExceptionFlags: 00000000
    NumberParameters: 2
    Parameter[0]: 00000000
    Parameter[1]: 091a8840
    Attempt to read from address 091a8840

    CONTEXT: b851f92c -- (.cxr 0xffffffffb851f92c)
    .cxr 0xffffffffb851f92c
    eax=091a8830 ebx=00000000 ecx=00000800 edx=8a7b9ba0 esi=091a8840 edi=091a8830
    eip=805cfac5 esp=b851fcf8 ebp=b851fd0c iopl=0 nv up ei pl nz na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010206
    nt!PsReturnSharedPoolQuota+0x23:
    805cfac5 8b3e mov edi,dword ptr [esi] ds:0023:091a8840=????????
    .cxr
    Resetting default scope

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    PROCESS_NAME: System

    ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    EXCEPTION_PARAMETER1: 00000000

    EXCEPTION_PARAMETER2: 091a8840

    READ_ADDRESS: 091a8840

    FOLLOWUP_IP:
    nt!PsReturnSharedPoolQuota+23
    805cfac5 8b3e mov edi,dword ptr [esi]

    BUGCHECK_STR: 0x7E

    LAST_CONTROL_TRANSFER: from 805c103f to 805cfac5

    STACK_TEXT:
    b851fd0c 805c103f 091a8830 00000800 00000288 nt!PsReturnSharedPoolQuota+0x23
    b851fd3c 805bb4b2 00000000 87f67b30 87f67b48 nt!ObpFreeObject+0x129
    b851fd54 805266fa 87f67b48 00000000 806e7a3c nt!ObpRemoveObjectRoutine+0xe8
    b851fd6c 8052b3c2 8a7b68b8 805638f0 80564898 nt!ObfDereferenceObject+0x4c
    b851fd78 80564898 805387cb 00000000 00000000 nt!PspReaper+0x5c
    b851fdac 805cffa8 00000000 00000000 00000000 nt!ExWorkerQueue+0x78
    b851fddc 8054615e 805386dc 00000002 00000000 nt!PspSystemThreadStartup+0x34
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16


    SYMBOL_STACK_INDEX: 0

    SYMBOL_NAME: nt!PsReturnSharedPoolQuota+23

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: nt

    IMAGE_NAME: ntkrpamp.exe

    DEBUG_FLR_IMAGE_TIMESTAMP: 4d00d46f

    STACK_COMMAND: .cxr 0xffffffffb851f92c ; kb

    FAILURE_BUCKET_ID: 0x7E_nt!PsReturnSharedPoolQuota+23

    BUCKET_ID: 0x7E_nt!PsReturnSharedPoolQuota+23

    Followup: MachineOwner
    ---------

    eax=091a8830 ebx=00000000 ecx=00000800 edx=8a7b9ba0 esi=091a8840 edi=091a8830
    eip=805cfac5 esp=b851fcf8 ebp=b851fd0c iopl=0 nv up ei pl nz na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010206
    nt!PsReturnSharedPoolQuota+0x23:
    805cfac5 8b3e mov edi,dword ptr [esi] ds:0023:091a8840=????????
    ChildEBP RetAddr Args to Child
    b851fd0c 805c103f 091a8830 00000800 00000288 nt!PsReturnSharedPoolQuota+0x23 (FPO: [Non-Fpo])
    b851fd3c 805bb4b2 00000000 87f67b30 87f67b48 nt!ObpFreeObject+0x129 (FPO: [Non-Fpo])
    b851fd54 805266fa 87f67b48 00000000 806e7a3c nt!ObpRemoveObjectRoutine+0xe8 (FPO: [Non-Fpo])
    b851fd6c 8052b3c2 8a7b68b8 805638f0 80564898 nt!ObfDereferenceObject+0x4c (FPO: [0,0,0])
    b851fd78 80564898 805387cb 00000000 00000000 nt!PspReaper+0x5c (FPO: [1,0,0])
    b851fdac 805cffa8 00000000 00000000 00000000 nt!ExWorkerQueue+0x78
    b851fddc 8054615e 805386dc 00000002 00000000 nt!PspSystemThreadStartup+0x34 (FPO: [Non-Fpo])
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16
    start end module name
    804d7000 806e5000 nt ntkrpamp.exe Thu Dec 09 05:06:55 2010 (4D00D46F)
    806e5000 80705d00 hal halmacpi.dll Sun Apr 13 11:31:27 2008 (4802517F)
    ae042000 ae06c180 kmixer kmixer.sys Sun Apr 13 11:45:07 2008 (480254B3)
    ae06d000 ae080600 NAVENG NAVENG.SYS Fri Jul 29 05:10:02 2011 (4E32A31A)
    ae081000 ae200300 NAVEX15 NAVEX15.SYS Fri Jul 29 05:07:28 2011 (4E32A280)
    b1b34000 b1bba000 SRTSP SRTSP.SYS Tue Mar 29 19:43:18 2011 (4D9298C6)
    b1bbe000 b1bc0280 psi_mf psi_mf.sys Wed Sep 01 00:53:16 2010 (4C7E066C)
    b1c0a000 b1c4ae00 HTTP HTTP.sys Tue Oct 20 09:20:15 2009 (4ADDE33F)
    b1ecb000 b1eee180 Fastfat Fastfat.SYS Sun Apr 13 12:14:28 2008 (48025B94)
    b25cf000 b2626600 srv srv.sys Thu Feb 17 05:18:01 2011 (4D5D2009)
    b2717000 b2743180 mrxdav mrxdav.sys Sun Apr 13 11:32:42 2008 (480251CA)
    b2f16000 b2f2a480 wdmaud wdmaud.sys Sun Apr 13 12:17:18 2008 (48025C3E)
    b3093000 b30a1d80 sysaudio sysaudio.sys Sun Apr 13 12:15:55 2008 (48025BEB)
    b3183000 b31a4000 SbieDrv SbieDrv.sys Fri Jun 17 06:29:37 2011 (4DFB56C1)
    b325c000 b325f900 ndisuio ndisuio.sys Sun Apr 13 11:55:57 2008 (4802573D)
    b3f79000 b3f92b80 dump_nvata dump_nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b3f93000 b40c9080 LV302V32 LV302V32.SYS Wed May 09 21:09:48 2007 (46429B0C)
    b40ca000 b413b000 wdf01000 wdf01000.sys Mon Jul 13 16:11:36 2009 (4A5BBF28)
    b41db000 b4200000 SaiK0CCB SaiK0CCB.sys Wed Apr 21 09:34:42 2010 (4BCF2922)
    b4228000 b42f3000 BHDrvx86 BHDrvx86.sys Tue Sep 06 15:48:54 2011 (4E66A356)
    b42f3000 b4311000 EraserUtilRebootDrv EraserUtilRebootDrv.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b4311000 b436f000 eeCtrl eeCtrl.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b436f000 b43de680 mrxsmb mrxsmb.sys Fri Jul 15 06:29:28 2011 (4E2040B8)
    b43f3000 b43f5880 hidusb hidusb.sys Sun Apr 13 11:45:27 2008 (480254C7)
    b4407000 b4431e80 rdbss rdbss.sys Sun Apr 13 12:28:38 2008 (48025EE6)
    b4432000 b4456000 Ironx86 Ironx86.SYS Fri Nov 12 15:05:54 2010 (4CDDC852)
    b4456000 b4477d00 afd afd.sys Wed Feb 16 05:22:47 2011 (4D5BCFA7)
    b4478000 b449fc00 netbt netbt.sys Sun Apr 13 12:20:59 2008 (48025D1B)
    b44a0000 b44fb000 IDSxpx86 IDSxpx86.sys Wed Jul 20 06:18:06 2011 (4E26D58E)
    b44fb000 b4521000 SYMEVENT SYMEVENT.SYS Thu Mar 24 16:02:08 2011 (4D8BCD70)
    b4521000 b4546500 ipnat ipnat.sys Sun Apr 13 11:57:10 2008 (48025786)
    b4547000 b459fa00 SYMTDI SYMTDI.SYS Thu Mar 17 20:04:50 2011 (4D82CBD2)
    b45a0000 b45f8480 tcpip tcpip.sys Fri Jun 20 04:51:09 2008 (485B99AD)
    b45f9000 b460b600 ipsec ipsec.sys Sun Apr 13 12:19:42 2008 (48025CCE)
    b460c000 b4624500 InCDfs InCDfs.SYS Fri Jul 08 08:17:52 2005 (42CE9920)
    b46c0000 b46e1780 adidts adidts.sys Tue Jul 14 01:21:04 2009 (4A5C3FF0)
    b46e2000 b46f8f00 AEAudio AEAudio.sys Mon Aug 07 06:57:27 2006 (44D746C7)
    b46f9000 b471ca80 portcls portcls.sys Sun Apr 13 12:19:40 2008 (48025CCC)
    b471d000 b4769000 ADIHdAud ADIHdAud.sys Tue Jan 16 06:09:04 2007 (45ACDC80)
    b47b9000 b47bb900 Dxapi Dxapi.sys Fri Aug 17 13:53:19 2001 (3B7D843F)
    b486a000 b4878a80 usbaudio usbaudio.sys Sun Apr 13 11:45:11 2008 (480254B7)
    b487a000 b4882880 LVUSBSta LVUSBSta.sys Wed May 09 21:00:54 2007 (464298F6)
    b488a000 b4893000 wacmoumonitor wacmoumonitor.sys Fri Oct 29 09:29:38 2010 (4CCAF672)
    b489a000 b48a8000 WDFLDR WDFLDR.SYS Mon Jul 13 16:11:25 2009 (4A5BBF1D)
    b48aa000 b48b9900 Cdfs Cdfs.SYS Sun Apr 13 12:14:21 2008 (48025B8D)
    b499d000 b499f280 rasacd rasacd.sys Fri Aug 17 13:55:39 2001 (3B7D84CB)
    b6aa1000 b6afef00 update update.sys Sun Apr 13 11:39:46 2008 (48025372)
    b6aff000 b6b2ee80 rdpdr rdpdr.sys Sun Apr 13 11:32:50 2008 (480251D2)
    b6b2f000 b6b31200 InCDrec InCDrec.SYS Fri Jul 08 08:17:56 2005 (42CE9924)
    b6b57000 b6b67e00 psched psched.sys Sun Apr 13 11:56:36 2008 (48025764)
    b6b68000 b6b7e580 ndiswan ndiswan.sys Sun Apr 13 12:20:41 2008 (48025D09)
    b6b7f000 b6b92f00 VIDEOPRT VIDEOPRT.SYS Sun Apr 13 11:44:39 2008 (48025497)
    b6b93000 b7789280 nv4_mini nv4_mini.sys Wed Aug 03 02:02:29 2011 (4E390EA5)
    b778a000 b77dd000 NVSNPU NVSNPU.SYS Mon Aug 07 16:38:41 2006 (44D7CF01)
    b77dd000 b78eac00 NVNRM NVNRM.SYS Mon Aug 07 16:39:02 2006 (44D7CF16)
    b78eb000 b7913000 HDAudBus HDAudBus.sys Thu May 26 08:46:29 2005 (4295EF55)
    b7913000 b7935700 ks ks.sys Sun Apr 13 12:16:34 2008 (48025C12)
    b7936000 b7959200 USBPORT USBPORT.SYS Sun Apr 13 11:45:34 2008 (480254CE)
    b795a000 b7964000 NDProxy NDProxy.SYS Tue Nov 02 08:17:02 2010 (4CD02B6E)
    b797a000 b7989000 azvusb azvusb.sys Thu Aug 13 04:28:55 2009 (4A83F8F7)
    b798a000 b7993f00 termdd termdd.sys Sun Apr 13 11:38:36 2008 (4802532C)
    b799a000 b79a3000 SaiBus SaiBus.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b79aa000 b79b2900 msgpc msgpc.sys Sun Apr 13 11:56:32 2008 (48025760)
    b79ba000 b79c5d00 raspptp raspptp.sys Sun Apr 13 12:19:47 2008 (48025CD3)
    b79ca000 b79d4200 raspppoe raspppoe.sys Sun Apr 13 11:57:31 2008 (4802579B)
    b79da000 b79e6880 rasl2tp rasl2tp.sys Sun Apr 13 12:19:43 2008 (48025CCF)
    b7c06000 b7c08900 ndistapi ndistapi.sys Fri Jul 08 07:02:00 2011 (4E170DD8)
    b7c0a000 b7c0c200 wacomvhid wacomvhid.sys Mon Sep 21 16:29:18 2009 (4AB80C4E)
    b7c80000 b7c99c00 Mup Mup.sys Thu Apr 21 06:37:43 2011 (4DB03327)
    b7c9a000 b7cc6980 NDIS NDIS.sys Sun Apr 13 12:20:35 2008 (48025D03)
    b7cc7000 b7d53600 Ntfs Ntfs.sys Sun Apr 13 12:15:49 2008 (48025BE5)
    b7d54000 b7d66f00 WudfPf WudfPf.sys Thu Sep 28 18:55:43 2006 (451C7D1F)
    b7d67000 b7d7db00 KSecDD KSecDD.sys Wed Jun 24 04:18:40 2009 (4A420B90)
    b7d7e000 b7e39000 SYMEFA SYMEFA.SYS Sun Mar 13 20:20:09 2011 (4D7D8969)
    b7e39000 b7e4af00 sr sr.sys Sun Apr 13 11:36:50 2008 (480252C2)
    b7e4b000 b7ea2000 SYMDS SYMDS.SYS Tue Dec 07 16:16:20 2010 (4CFECE54)
    b7ea2000 b7ec1b00 fltmgr fltmgr.sys Sun Apr 13 11:32:58 2008 (480251DA)
    b7ec2000 b7ed9880 SCSIPORT SCSIPORT.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b7eda000 b7ef1000 SI3132 SI3132.sys Wed Oct 03 11:41:04 2007 (4703E240)
    b7ef1000 b7f0ab80 nvata nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b7f0b000 b7f22900 atapi atapi.sys Sun Apr 13 11:40:29 2008 (4802539D)
    b7f23000 b7f48700 dmio dmio.sys Sun Apr 13 11:44:45 2008 (4802549D)
    b7f49000 b7f67880 ftdisk ftdisk.sys Fri Aug 17 13:52:41 2001 (3B7D8419)
    b7f68000 b7f78a80 pci pci.sys Sun Apr 13 11:36:43 2008 (480252BB)
    b7f79000 b7fa6d80 ACPI ACPI.sys Sun Apr 13 11:36:33 2008 (480252B1)
    b80a8000 b80b1180 isapnp isapnp.sys Sun Apr 13 11:36:40 2008 (480252B8)
    b80b8000 b80c7100 ohci1394 ohci1394.sys Sun Apr 13 11:46:18 2008 (480254FA)
    b80c8000 b80d5080 1394BUS 1394BUS.SYS Sun Apr 13 11:46:18 2008 (480254FA)
    b80d8000 b80e2580 MountMgr MountMgr.sys Sun Apr 13 11:39:45 2008 (48025371)
    b80e8000 b80f4c80 VolSnap VolSnap.sys Sun Apr 13 11:41:00 2008 (480253BC)
    b80f8000 b8100e00 disk disk.sys Sun Apr 13 11:40:46 2008 (480253AE)
    b8108000 b8114180 CLASSPNP CLASSPNP.SYS Sun Apr 13 12:16:21 2008 (48025C05)
    b8118000 b8121300 PxHelp20 PxHelp20.sys Tue Jun 23 16:16:17 2009 (4A416241)
    b8168000 b8177180 nic1394 nic1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b8178000 b8182e00 Fips Fips.SYS Sun Apr 13 11:33:27 2008 (480251F7)
    b81a8000 b81b4e00 NVENETFD NVENETFD.sys Mon Aug 07 16:39:21 2006 (44D7CF29)
    b81b8000 b81c6880 usbhub usbhub.sys Sun Apr 13 11:45:36 2008 (480254D0)
    b81e8000 b81f6b00 drmk drmk.sys Sun Apr 13 11:45:12 2008 (480254B8)
    b8278000 b8280700 wanarp wanarp.sys Sun Apr 13 11:57:20 2008 (48025790)
    b8288000 b8296d80 arp1394 arp1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b8298000 b82a0780 netbios netbios.sys Sun Apr 13 11:56:01 2008 (48025741)
    b82a8000 b82b0e00 intelppm intelppm.sys Sun Apr 13 11:31:31 2008 (48025183)
    b82b8000 b82c2480 imapi imapi.sys Sun Apr 13 11:40:57 2008 (480253B9)
    b82c8000 b82d7600 cdrom cdrom.sys Sun Apr 13 11:40:45 2008 (480253AD)
    b82d8000 b82e6100 redbook redbook.sys Sun Apr 13 11:40:27 2008 (4802539B)
    b82e8000 b82f1000 nvnetbus nvnetbus.sys Mon Aug 07 16:39:23 2006 (44D7CF2B)
    b82f8000 b8301000 HIDCLASS HIDCLASS.SYS Sun Apr 13 11:45:25 2008 (480254C5)
    b8308000 b8312980 SRTSPX SRTSPX.SYS Tue Mar 29 19:43:23 2011 (4D9298CB)
    b8318000 b8324e20 SCDEmu SCDEmu.SYS Mon Jul 07 00:40:49 2008 (4871C881)
    b8328000 b832e180 PCIIDEX PCIIDEX.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b8330000 b8334d00 PartMgr PartMgr.sys Sun Apr 13 11:40:48 2008 (480253B0)
    b8338000 b8340000 SiRemFil SiRemFil.sys Wed Jun 20 13:06:09 2007 (467988B1)
    b83c0000 b83c1000 fdc fdc.sys unavailable (00000000)
    b83c8000 b83cc300 usbohci usbohci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b83d0000 b83d7600 usbehci usbehci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b83d8000 b83df000 incdrm incdrm.SYS Fri Jul 08 08:17:30 2005 (42CE990A)
    b83e0000 b83e7400 InCDPass InCDPass.sys Fri Jul 08 08:17:34 2005 (42CE990E)
    b83e8000 b83ee180 HIDPARSE HIDPARSE.SYS Sun Apr 13 11:45:22 2008 (480254C2)
    b83f0000 b83f4a80 TDI TDI.SYS Sun Apr 13 12:00:04 2008 (48025834)
    b83f8000 b83fc580 ptilink ptilink.sys Fri Aug 17 13:49:53 2001 (3B7D8371)
    b8400000 b8404080 raspti raspti.sys Fri Aug 17 13:55:32 2001 (3B7D84C4)
    b8408000 b840e000 kbdclass kbdclass.sys Sun Apr 13 11:39:46 2008 (48025372)
    b8410000 b8415a00 mouclass mouclass.sys Sun Apr 13 11:39:47 2008 (48025373)
    b8418000 b8420000 wacommousefilter wacommousefilter.sys Fri Feb 16 10:12:29 2007 (45D5F40D)
    b8420000 b8425000 flpydisk flpydisk.sys Sun Apr 13 11:40:24 2008 (48025398)
    b8470000 b8477000 SaiU0CCB SaiU0CCB.sys Wed Apr 21 09:34:40 2010 (4BCF2920)
    b8478000 b847fd80 usbccgp usbccgp.sys Sun Apr 13 11:45:38 2008 (480254D2)
    b8480000 b8485200 vga vga.sys Sun Apr 13 11:44:40 2008 (48025498)
    b8488000 b848ca80 Msfs Msfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b8490000 b8497880 Npfs Npfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b84a0000 b84a8000 LHidFilt LHidFilt.Sys Sat Apr 30 04:50:48 2011 (4DBBF798)
    b84a8000 b84af780 LMouFilt LMouFilt.Sys Sat Apr 30 04:50:53 2011 (4DBBF79D)
    b84b0000 b84b4500 watchdog watchdog.sys Sun Apr 13 11:44:59 2008 (480254AB)
    b84b8000 b84bb000 BOOTVID BOOTVID.dll Fri Aug 17 13:49:09 2001 (3B7D8345)
    b84bc000 b84bf100 SiWinAcc SiWinAcc.sys Thu Jun 14 17:02:27 2007 (4671D713)
    b856c000 b856fc80 mssmbios mssmbios.sys Sun Apr 13 11:36:45 2008 (480252BD)
    b857c000 b857ef80 mouhid mouhid.sys Fri Aug 17 13:47:57 2001 (3B7D82FD)
    b85a0000 b85a3700 SaiMini SaiMini.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b85a4000 b85a7900 kbdhid kbdhid.sys Sun Apr 13 11:39:47 2008 (48025373)
    b85a8000 b85a9b80 kdcom kdcom.dll Fri Aug 17 13:49:10 2001 (3B7D8346)
    b85aa000 b85ab100 WMILIB WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b85ac000 b85ad700 dmload dmload.sys Fri Aug 17 13:58:15 2001 (3B7D8567)
    b85b2000 b85b3440 AsIO AsIO.sys Wed Dec 21 00:55:21 2005 (43A91879)
    b85dc000 b85ddc00 lv302af lv302af.sys Wed May 09 21:01:36 2007 (46429920)
    b8600000 b8601420 ASACPI ASACPI.sys Thu Aug 12 19:52:52 2004 (411C2D04)
    b8614000 b8615100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b8616000 b8617100 swenum swenum.sys Sun Apr 13 11:39:52 2008 (48025378)
    b861a000 b861b280 USBD USBD.SYS Fri Aug 17 14:02:58 2001 (3B7D8682)
    b8668000 b8669f00 Fs_Rec Fs_Rec.SYS Fri Aug 17 13:49:37 2001 (3B7D8361)
    b866a000 b866b080 Beep Beep.SYS Fri Aug 17 13:47:33 2001 (3B7D82E5)
    b866c000 b866d080 mnmdd mnmdd.SYS Fri Aug 17 13:57:28 2001 (3B7D8538)
    b866e000 b866f080 RDPCDD RDPCDD.sys Fri Aug 17 13:46:56 2001 (3B7D82C0)
    b8670000 b8670d00 pciide pciide.sys Fri Aug 17 13:51:49 2001 (3B7D83E5)
    b86e9000 b86e9b80 Null Null.SYS Fri Aug 17 13:47:39 2001 (3B7D82EB)
    b87a4000 b87a4d00 dxgthk dxgthk.sys Fri Aug 17 13:53:12 2001 (3B7D8438)
    b87c5000 b87c5e80 LBeepKE LBeepKE.sys Sat Apr 30 04:52:33 2011 (4DBBF801)
    b87f8000 b87f8c00 audstub audstub.sys Fri Aug 17 13:59:40 2001 (3B7D85BC)
    bd000000 bd011600 dxg dxg.sys Sun Apr 13 11:38:27 2008 (48025323)
    bd012000 bd416080 nv4_disp nv4_disp.dll Wed Aug 03 01:56:54 2011 (4E390D56)
    bd417000 bd45de80 ATMFD ATMFD.DLL Tue Feb 15 04:56:39 2011 (4D5A7807)
    bf800000 bf9c5d80 win32k win32k.sys Thu Jun 02 07:01:55 2011 (4DE797D3)

    Unloaded modules:
    b171c000 b1730000 NAVENG.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00014000
    b1730000 b18b0000 NAVEX15.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00180000
    ae443000 ae46e000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b33dc000 b33e4000 mbamswissarm
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00008000
    ae50a000 ae535000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    ae63d000 ae668000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    ae705000 ae730000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b0608000 b0633000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b0afb000 b0b26000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b0cc6000 b0cf1000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b0ef1000 b0f1c000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b16f1000 b171c000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b18d8000 b18ec000 NAVENG.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00014000
    b18ec000 b1a6c000 NAVEX15.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00180000
    b2ec8000 b2ef3000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b8608000 b860a000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b872a000 b872b000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00001000
    b2ef3000 b2f16000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00023000
    b3063000 b3070000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b3073000 b3081000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000E000
    b2856000 b2866000 Serial.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00010000
    b2703000 b2717000 Parport.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00014000
    b8268000 b8275000 i8042prt.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b8478000 b847d000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00005000
    b47ad000 b47b0000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00003000
    b81d8000 b81e1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8614000 b8616000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b79ea000 b79f3000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b860e000 b8610000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8188000 b8191000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b860a000 b860c000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8178000 b8181000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8606000 b8608000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8318000 b8321000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8602000 b8604000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8308000 b8311000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    Closing open log file c:debuglog.txt
    I guess this isn't really a quick reply, sorry.
     
  5. 2011/09/27
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    OK, I only got as far as checking one driver:

    In my SP3 system this driver has a date of Apr 14 2008, so a good chance you are infected.

    Read this post, then post the requested log(s) in the Malware and Virus Removal forum.
     
    Arie,
    #4
  6. 2011/09/28
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Hi Arie, Thank you again for your response. I haven't really had any crashes since fixing or reinstalling those drivers, maybe that was it. I thought to mention because the "post" talks about it. I do have Norton 360 running. Its all up to date and it has a firewall. I do pretty regular scans with Malwarebytes too and I also have a hardware firewall running as well. For an extra check from time to time I also boot into Linux live off usb and run a scan like that too. To be thorough though I did as the "post" stated and ran "Gmer" and "aswMBR ", neither gave me any warnings of rootkits. Unfortunately after "Gmer" ran for 4 hours or so I noticed a window popped up stating something like there were problems saving log files. Might be do to hardware problems, or internet connection. Choose another location to save log files. I left it sitting for awhile to come back to later and when I did, I guess the computer had frozen, so I didn't get the log. I guess I could run it again tomorrow. I was wondering though, the "post" mentions warnings popping up and I didn't get any. Does that mean I'm looking pretty clean? I believe "aswMBR" came up and said clean no rootkits found. Let me know your thoughts.
    the log was:

    aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
    Run date: 2011-09-27 21:50:58
    -----------------------------
    21:50:58.125 OS Version: Windows 5.1.2600 Service Pack 3
    21:50:58.125 Number of processors: 4 586 0xF07
    21:50:58.125 ComputerName: DMASTER UserName: Mine
    21:50:58.546 Initialize success
    21:51:40.531 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000080
    21:51:40.531 Disk 0 Vendor: WDC_WD3200YS-01PGB0 21.00M21 Size: 305245MB BusType: 3
    21:51:40.531 Disk 1 \Device\Harddisk1\DR1 -> \Device\00000081
    21:51:40.546 Disk 1 Vendor: ST3500418AS CC46 Size: 476940MB BusType: 3
    21:51:42.546 Disk 0 MBR read successfully
    21:51:42.546 Disk 0 MBR scan
    21:51:42.546 Disk 0 Windows XP default MBR code
    21:51:42.546 Disk 0 scanning sectors +625121280
    21:51:42.578 Disk 0 scanning C:\WINDOWS\system32\drivers
    21:51:49.593 Service scanning
    21:51:50.468 Modules scanning
    21:51:56.218 Disk 0 trace - called modules:
    21:51:56.234 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll nvata.sys
    21:51:56.234 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a6d0ab8]
    21:51:56.234 3 CLASSPNP.SYS[b8108fd7] -> nt!IofCallDriver -> \Device\00000082[0x8a697f18]
    21:51:56.234 5 ACPI.sys[b7f7f620] -> nt!IofCallDriver -> \Device\00000080[0x8a6a4030]
    21:51:56.250 Scan finished successfully
    21:52:07.656 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Mine\Desktop\MBR.dat "
    21:52:07.656 The log file has been saved successfully to "C:\Documents and Settings\Mine\Desktop\aswMBR.txt "
     
  7. 2011/09/28
    Admin.

    Admin. Administrator Administrator Staff

    Joined:
    2001/12/30
    Messages:
    6,687
    Likes Received:
    107
  8. 2011/10/05
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Hey Arie. Just to let you know whats going on. The virus scans all came out clean. The problem seemed to stem from a bad Dimm for the ram on the motherboard. Broni over in the Malware and Virus Removal forum noticed the "IRQL_NOT_LESS_OR_EQUAL" in the Dumpreps and said that that was usually a sign of a bad ram stick, so I went ahead and tested them again and sure enough the sticks seemed to be ok but the third Dimm seemed to be the culprit. Its been a day and a half with no crashes. Yee he he! I'm keeping my fingers crossed, but thank you again for all you help.
     
  9. 2011/10/05
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    With all due respect, IRQL_NOT_LESS_OR_EQUAL is about as specific as the error "Internet Explorer could not open the page ".

    Error Message: IRQL_NOT_LESS_OR_EQUAL

    Glad it has worked out so far.

    Please mark your thread as 'Resolved'.

     
    Arie,
    #8
  10. 2011/10/06
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Hey Arie. If its OK, could I keep this open until all the kinks are worked out for sure? The constant crashing has ceased so I guess it was a lucky accident about the "IRQL_NOT_LESS_OR_EQUAL ". I did have a weird thing happen today, later in the evening. I ran a Malwarebytes scan while I was doing something and after I closed Malwarebytes all of a sudden my machine shut it self down like I had told it to. I guess it could of been an update or something but I really don't know what caused it. When it restarted, because of it striking me as odd that that happened, I went into safe mode and ran Malwarebytes again and walked away while it was running. When I came back I had a bluescreen that I don't think I had seen before about NTFS_FILE_SYSTEM and I think it said to uninstall any newly installed antivirus software and check system drivers and also run a chkdsk/f.
    As far as right now I uninstalled Malwarebytes and then reinstalled. I also ran a chkdsk/f but unfortunately while I had walked away from my computer for a minute it finished and the computer restarted, so I didn't get to see the outcome. I will run it again tomorrow or today when I wake up. I did, when I rebooted for the Malwarebytes uninstall and reinstall and the chkdsk, when windows had fully loaded I start getting a windows error box opening over and over and over saying Windows has just recovered from a serious error.... and gave me the same shtick about removing any new hardware or software, run virus scan and check drivers. I'm wondering if with all the constant crashing that I was having that some files got corrupted or are missing, making things not run properly. Anyway I thought to give you the dump report for better clarification. Oh just curious broni had me run "Bluescreen view" which scanned all dump files at once, how does this compare to debugwiz for the end result? Here is the dump report:
    Opened log file 'c:debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini100511-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp3_gdr.101209-1647
    Machine Name:
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x805634c0
    Debug session time: Wed Oct 5 18:50:38.046 2011 (UTC - 7:00)
    System Uptime: 0 days 1:18:51.937
    Loading Kernel Symbols
    ...............................................................
    ........................
    Loading User Symbols
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 24, {1902fe, b77983cc, b77980c8, b87942e7}

    *** ERROR: Module load completed but symbols could not be loaded for SiWinAcc.sys
    Probably caused by : Ntfs.sys ( Ntfs!NtfsWriteLog+33c )

    Followup: MachineOwner
    ---------

    1: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    NTFS_FILE_SYSTEM (24)
    If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
    parameters are the exception record and context record. Do a .cxr
    on the 3rd parameter and then kb to obtain a more informative stack
    trace.
    Arguments:
    Arg1: 001902fe
    Arg2: b77983cc
    Arg3: b77980c8
    Arg4: b87942e7

    Debugging Details:
    ------------------


    EXCEPTION_RECORD: b77983cc -- (.exr 0xffffffffb77983cc)
    .exr 0xffffffffb77983cc
    ExceptionAddress: b87942e7 (Ntfs!NtfsWriteLog+0x0000033c)
    ExceptionCode: c0000005 (Access violation)
    ExceptionFlags: 00000000
    NumberParameters: 2
    Parameter[0]: 00000000
    Parameter[1]: 0a9414c2
    Attempt to read from address 0a9414c2

    CONTEXT: b77980c8 -- (.cxr 0xffffffffb77980c8)
    .cxr 0xffffffffb77980c8
    eax=0a9414c0 ebx=8ae40460 ecx=00000000 edx=00000000 esi=8ae9f008 edi=b77984a0
    eip=b87942e7 esp=b7798494 ebp=b77985e0 iopl=0 nv up ei pl zr na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
    Ntfs!NtfsWriteLog+0x33c:
    b87942e7 0fb74802 movzx ecx,word ptr [eax+2] ds:0023:0a9414c2=????
    .cxr
    Resetting default scope

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    PROCESS_NAME: mbam.exe

    ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    EXCEPTION_PARAMETER1: 00000000

    EXCEPTION_PARAMETER2: 0a9414c2

    READ_ADDRESS: 0a9414c2

    FOLLOWUP_IP:
    Ntfs!NtfsWriteLog+33c
    b87942e7 0fb74802 movzx ecx,word ptr [eax+2]

    FAULTING_IP:
    Ntfs!NtfsWriteLog+33c
    b87942e7 0fb74802 movzx ecx,word ptr [eax+2]

    BUGCHECK_STR: 0x24

    LAST_CONTROL_TRANSFER: from b879e3f9 to b87942e7

    STACK_TEXT:
    b77985e0 b879e3f9 b7798a54 8ae9f008 89b8d6d8 Ntfs!NtfsWriteLog+0x33c
    b779875c b879e225 b7798a54 eb4d99e8 00000018 Ntfs!NtfsChangeAttributeValue+0x372
    b779882c b879ea1e b7798a54 eb4d99e8 00000000 Ntfs!NtfsUpdateStandardInformation+0x141
    b7798a38 b8798d4d b7798a54 8a339730 8ae41288 Ntfs!NtfsCommonCleanup+0x20a7
    b7798bb0 804e13eb 8ae40380 8a339730 8a339730 Ntfs!NtfsFsdCleanup+0xcf
    b7798bc0 f786b09e 8a339730 8ae71190 8ae41478 nt!IopfCallDriver+0x31
    b7798bec 804e13eb 8ae41288 8a339730 8ae4b310 fltmgr!FltpDispatch+0x152
    b7798bfc f7859bbf 8ae41a00 8ae415f8 b7798c48 nt!IopfCallDriver+0x31
    b7798c0c 804e13eb 8ae413c0 8a339730 8a339730 sr!SrCleanup+0xb3
    b7798c1c f786b09e 8a339740 8ae71190 88093470 nt!IopfCallDriver+0x31
    b7798c48 804e13eb 8ae41a00 8a339730 8ae7a490 fltmgr!FltpDispatch+0x152
    b7798c58 f789b4ba b7798ca0 804e13eb 8ae57d28 nt!IopfCallDriver+0x31
    WARNING: Stack unwind information not available. Following frames may be wrong.
    b7798c60 804e13eb 8ae57d28 8a339730 8a339730 SiWinAcc+0x4ba
    b7798c70 805741e9 88093458 00000000 8af52e70 nt!IopfCallDriver+0x31
    b7798ca0 8056f831 8a93f378 8ae57d28 00120089 nt!IopCloseFile+0x26b
    b7798cd4 8056f984 8a93f378 00000001 8af52e70 nt!ObpDecrementHandleCount+0xd8
    b7798cfc 8056f8aa e26de728 88093470 0000016c nt!ObpCloseHandleTableEntry+0x14d
    b7798d44 8056f8f4 0000016c 00000001 00000000 nt!ObpCloseHandle+0x87
    b7798d58 804dd99f 0000016c 0012f088 7c90e514 nt!NtClose+0x1d
    b7798d58 7c90e514 0000016c 0012f088 7c90e514 nt!KiFastCallEntry+0xfc
    0012f088 00000000 00000000 00000000 00000000 0x7c90e514


    SYMBOL_STACK_INDEX: 0

    SYMBOL_NAME: Ntfs!NtfsWriteLog+33c

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: Ntfs

    IMAGE_NAME: Ntfs.sys

    DEBUG_FLR_IMAGE_TIMESTAMP: 48025be5

    STACK_COMMAND: .cxr 0xffffffffb77980c8 ; kb

    FAILURE_BUCKET_ID: 0x24_Ntfs!NtfsWriteLog+33c

    BUCKET_ID: 0x24_Ntfs!NtfsWriteLog+33c

    Followup: MachineOwner
    ---------

    eax=f771f13c ebx=b77983cc ecx=00000000 edx=00000000 esi=b7798a54 edi=c0000005
    eip=805376ba esp=b7797ea4 ebp=b7797ebc iopl=0 nv up ei ng nz na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00000286
    nt!KeBugCheckEx+0x1b:
    805376ba 5d pop ebp
    ChildEBP RetAddr Args to Child
    b7797ebc b8780fef 00000024 001902fe b77983cc nt!KeBugCheckEx+0x1b (FPO: [Non-Fpo])
    b7797eec b87c7588 b7798a54 b7797f18 804e2f59 Ntfs!NtfsExceptionFilter+0x1cc (FPO: [Non-Fpo])
    b7797ef8 804e2f59 b7797f20 00000000 b7797f20 Ntfs!NtfsFsdCleanup+0xed (FPO: [Non-Fpo])
    b7797f20 804dc0e0 b77983cc b7798ba0 b77980c8 nt!_except_handler3+0x61 (FPO: [Uses EBP] [3,0,7])
    b7797f44 804dc0b2 b77983cc b7798ba0 b77980c8 nt!ExecuteHandler2+0x26
    b7797ff4 8050a613 b77983cc b77980c8 0a9414c2 nt!ExecuteHandler+0x24
    b77983b0 804de403 b77983cc 00000000 b7798420 nt!KiDispatchException+0x13e (FPO: [Non-Fpo])
    b7798418 804de3b4 b77985e0 b87942e7 badb0d00 nt!CommonDispatchException+0x4d (FPO: [0,20,0])
    b7798444 804ef9ff b77985b4 00000000 00000023 nt!Kei386EoiHelper+0x18a
    b77985e0 b879e3f9 b7798a54 8ae9f008 89b8d6d8 nt!CcGetBcbListHeadLargeOffset+0x125 (FPO: [Non-Fpo])
    b779875c b879e225 b7798a54 eb4d99e8 00000018 Ntfs!NtfsChangeAttributeValue+0x372 (FPO: [Non-Fpo])
    b779882c b879ea1e b7798a54 eb4d99e8 00000000 Ntfs!NtfsUpdateStandardInformation+0x141 (FPO: [Non-Fpo])
    b7798a38 b8798d4d b7798a54 8a339730 8ae41288 Ntfs!NtfsCommonCleanup+0x20a7 (FPO: [Non-Fpo])
    b7798bb0 804e13eb 8ae40380 8a339730 8a339730 Ntfs!NtfsFsdCleanup+0xcf (FPO: [Non-Fpo])
    b7798bc0 f786b09e 8a339730 8ae71190 8ae41478 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    b7798bec 804e13eb 8ae41288 8a339730 8ae4b310 fltmgr!FltpDispatch+0x152 (FPO: [Non-Fpo])
    b7798bfc f7859bbf 8ae41a00 8ae415f8 b7798c48 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    b7798c0c 804e13eb 8ae413c0 8a339730 8a339730 sr!SrCleanup+0xb3 (FPO: [Non-Fpo])
    b7798c1c f786b09e 8a339740 8ae71190 88093470 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    b7798c48 804e13eb 8ae41a00 8a339730 8ae7a490 fltmgr!FltpDispatch+0x152 (FPO: [Non-Fpo])
    b7798c58 f789b4ba b7798ca0 804e13eb 8ae57d28 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    WARNING: Stack unwind information not available. Following frames may be wrong.
    b7798c60 804e13eb 8ae57d28 8a339730 8a339730 SiWinAcc+0x4ba
    b7798c70 805741e9 88093458 00000000 8af52e70 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    b7798ca0 8056f831 8a93f378 8ae57d28 00120089 nt!IopCloseFile+0x26b (FPO: [Non-Fpo])
    b7798cd4 8056f984 8a93f378 00000001 8af52e70 nt!ObpDecrementHandleCount+0xd8 (FPO: [Non-Fpo])
    b7798cfc 8056f8aa e26de728 88093470 0000016c nt!ObpCloseHandleTableEntry+0x14d (FPO: [Non-Fpo])
    b7798d44 8056f8f4 0000016c 00000001 00000000 nt!ObpCloseHandle+0x87 (FPO: [Non-Fpo])
    b7798d58 804dd99f 0000016c 0012f088 7c90e514 nt!NtClose+0x1d (FPO: [Non-Fpo])
    b7798d58 7c90e514 0000016c 0012f088 7c90e514 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ b7798d64)
    0012f088 00000000 00000000 00000000 00000000 0x7c90e514
    start end module name
    804d7000 80700000 nt ntkrnlmp.exe Thu Dec 09 05:42:14 2010 (4D00DCB6)
    80700000 80720d00 hal halmacpi.dll Sun Apr 13 11:31:27 2008 (4802517F)
    b7765000 b7788180 Fastfat Fastfat.SYS Sun Apr 13 12:14:28 2008 (48025B94)
    b8349000 b8362b80 dump_nvata dump_nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b8363000 b83d4000 wdf01000 wdf01000.sys Mon Jul 13 16:11:36 2009 (4A5BBF28)
    b841c000 b842ff00 VIDEOPRT VIDEOPRT.SYS Sun Apr 13 11:44:39 2008 (48025497)
    b8481000 b8483900 Dxapi Dxapi.sys Fri Aug 17 13:53:19 2001 (3B7D843F)
    b849d000 b84faf00 update update.sys Sun Apr 13 11:39:46 2008 (48025372)
    b84fb000 b8502780 LMouFilt LMouFilt.Sys Sat Apr 30 04:50:53 2011 (4DBBF79D)
    b8503000 b850b000 LHidFilt LHidFilt.Sys Sat Apr 30 04:50:48 2011 (4DBBF798)
    b8513000 b851ad80 usbccgp usbccgp.sys Sun Apr 13 11:45:38 2008 (480254D2)
    b8533000 b853a880 Npfs Npfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b8543000 b8547a80 Msfs Msfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b854b000 b857ae80 rdpdr rdpdr.sys Sun Apr 13 11:32:50 2008 (480251D2)
    b857b000 b85a3000 HDAudBus HDAudBus.sys Thu May 26 08:46:29 2005 (4295EF55)
    b85a3000 b85c5700 ks ks.sys Sun Apr 13 12:16:34 2008 (48025C12)
    b8666000 b8689200 USBPORT USBPORT.SYS Sun Apr 13 11:45:34 2008 (480254CE)
    b8694000 b8696880 hidusb hidusb.sys Sun Apr 13 11:45:27 2008 (480254C7)
    b86d8000 b86daf80 mouhid mouhid.sys Fri Aug 17 13:47:57 2001 (3B7D82FD)
    b86e4000 b86e7c80 mssmbios mssmbios.sys Sun Apr 13 11:36:45 2008 (480252BD)
    b86fc000 b86fe200 wacomvhid wacomvhid.sys Mon Sep 21 16:29:18 2009 (4AB80C4E)
    b872c000 b8745c00 Mup Mup.sys Thu Apr 21 06:37:43 2011 (4DB03327)
    b8746000 b8772980 NDIS NDIS.sys Sun Apr 13 12:20:35 2008 (48025D03)
    b8773000 b87ff600 Ntfs Ntfs.sys Sun Apr 13 12:15:49 2008 (48025BE5)
    bd000000 bd011600 dxg dxg.sys Sun Apr 13 11:38:27 2008 (48025323)
    bd012000 bd058e80 ATMFD ATMFD.DLL Tue Feb 15 04:56:39 2011 (4D5A7807)
    bf800000 bf9c5d80 win32k win32k.sys Thu Jun 02 07:01:55 2011 (4DE797D3)
    bff50000 bff52480 framebuf framebuf.dll Sun Apr 13 17:09:59 2008 (4802A0D7)
    f7451000 f7468880 SCSIPORT SCSIPORT.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    f7469000 f7480000 SI3132 SI3132.sys Wed Oct 03 11:41:04 2007 (4703E240)
    f7480000 f7499b80 nvata nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    f749a000 f74b1900 atapi atapi.sys Sun Apr 13 11:40:29 2008 (4802539D)
    f74b2000 f74d7700 dmio dmio.sys Sun Apr 13 11:44:45 2008 (4802549D)
    f74d8000 f74f6880 ftdisk ftdisk.sys Fri Aug 17 13:52:41 2001 (3B7D8419)
    f74f7000 f7507a80 pci pci.sys Sun Apr 13 11:36:43 2008 (480252BB)
    f7508000 f7535d80 ACPI ACPI.sys Sun Apr 13 11:36:33 2008 (480252B1)
    f7536000 f7544000 WDFLDR WDFLDR.SYS Mon Jul 13 16:11:25 2009 (4A5BBF1D)
    f7546000 f7555900 Cdfs Cdfs.SYS Sun Apr 13 12:14:21 2008 (48025B8D)
    f7556000 f755f000 wacmoumonitor wacmoumonitor.sys Fri Oct 29 09:29:38 2010 (4CCAF672)
    f7576000 f7584880 usbhub usbhub.sys Sun Apr 13 11:45:36 2008 (480254D0)
    f7596000 f75a5000 azvusb azvusb.sys Thu Aug 13 04:28:55 2009 (4A83F8F7)
    f75a6000 f75aff00 termdd termdd.sys Sun Apr 13 11:38:36 2008 (4802532C)
    f75b6000 f75bf000 HIDCLASS HIDCLASS.SYS Sun Apr 13 11:45:25 2008 (480254C5)
    f75c6000 f75d4100 redbook redbook.sys Sun Apr 13 11:40:27 2008 (4802539B)
    f75f7000 f7604300 akpbwi akpbwi.sys Wed Sep 02 14:37:57 2009 (4A9EE5B5)
    f7607000 f7610180 isapnp isapnp.sys Sun Apr 13 11:36:40 2008 (480252B8)
    f7637000 f7641580 MountMgr MountMgr.sys Sun Apr 13 11:39:45 2008 (48025371)
    f7647000 f7653c80 VolSnap VolSnap.sys Sun Apr 13 11:41:00 2008 (480253BC)
    f7657000 f765fe00 disk disk.sys Sun Apr 13 11:40:46 2008 (480253AE)
    f7667000 f7673180 CLASSPNP CLASSPNP.SYS Sun Apr 13 12:16:21 2008 (48025C05)
    f7677000 f7680300 PxHelp20 PxHelp20.sys Tue Jun 23 16:16:17 2009 (4A416241)
    f76e7000 f76f1480 imapi imapi.sys Sun Apr 13 11:40:57 2008 (480253B9)
    f76f7000 f7706600 cdrom cdrom.sys Sun Apr 13 11:40:45 2008 (480253AD)
    f7707000 f770d180 PCIIDEX PCIIDEX.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    f770f000 f7713d00 PartMgr PartMgr.sys Sun Apr 13 11:40:48 2008 (480253B0)
    f7717000 f771f000 SiRemFil SiRemFil.sys Wed Jun 20 13:06:09 2007 (467988B1)
    f7737000 f773c000 flpydisk flpydisk.sys Sun Apr 13 11:40:24 2008 (48025398)
    f7757000 f775f000 wacommousefilter wacommousefilter.sys Fri Feb 16 10:12:29 2007 (45D5F40D)
    f775f000 f7765180 HIDPARSE HIDPARSE.SYS Sun Apr 13 11:45:22 2008 (480254C2)
    f777f000 f7784200 vga vga.sys Sun Apr 13 11:44:40 2008 (48025498)
    f778f000 f7793500 watchdog watchdog.sys Sun Apr 13 11:44:59 2008 (480254AB)
    f7797000 f7798000 fdc fdc.sys unavailable (00000000)
    f779f000 f77a5000 kbdclass kbdclass.sys Sun Apr 13 11:39:46 2008 (48025372)
    f77a7000 f77ab300 usbohci usbohci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    f77af000 f77b4a00 mouclass mouclass.sys Sun Apr 13 11:39:47 2008 (48025373)
    f77c7000 f77ce600 usbehci usbehci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    f77ff000 f7804280 GEARAspiWDM GEARAspiWDM.sys Mon May 18 05:16:53 2009 (4A1151B5)
    f782b000 f783df00 WudfPf WudfPf.sys Thu Sep 28 18:55:43 2006 (451C7D1F)
    f783e000 f7854b00 KSecDD KSecDD.sys Wed Jun 24 04:18:40 2009 (4A420B90)
    f7855000 f7866f00 sr sr.sys Sun Apr 13 11:36:50 2008 (480252C2)
    f7867000 f7886b00 fltmgr fltmgr.sys Sun Apr 13 11:32:58 2008 (480251DA)
    f7897000 f789a000 BOOTVID BOOTVID.dll Fri Aug 17 13:49:09 2001 (3B7D8345)
    f789b000 f789e100 SiWinAcc SiWinAcc.sys Thu Jun 14 17:02:27 2007 (4671D713)
    f7937000 f793a900 kbdhid kbdhid.sys Sun Apr 13 11:39:47 2008 (48025373)
    f7987000 f7988b80 kdcom kdcom.dll Fri Aug 17 13:49:10 2001 (3B7D8346)
    f7989000 f798a100 WMILIB WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    f798b000 f798c700 dmload dmload.sys Fri Aug 17 13:58:15 2001 (3B7D8567)
    f7991000 f7992420 ASACPI ASACPI.sys Thu Aug 12 19:52:52 2004 (411C2D04)
    f7997000 f7998100 swenum swenum.sys Sun Apr 13 11:39:52 2008 (48025378)
    f799d000 f799e280 USBD USBD.SYS Fri Aug 17 14:02:58 2001 (3B7D8682)
    f79a3000 f79a4f00 Fs_Rec Fs_Rec.SYS Fri Aug 17 13:49:37 2001 (3B7D8361)
    f79a7000 f79a8080 Beep Beep.SYS Fri Aug 17 13:47:33 2001 (3B7D82E5)
    f79bf000 f79c0100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    f7a4f000 f7a4fd00 pciide pciide.sys Fri Aug 17 13:51:49 2001 (3B7D83E5)
    f7a81000 f7a81b80 Null Null.SYS Fri Aug 17 13:47:39 2001 (3B7D82EB)
    f7a95000 f7a95d00 dxgthk dxgthk.sys Fri Aug 17 13:53:12 2001 (3B7D8438)
    f7acd000 f7b88000 SYMEFA SYMEFA.SYS Sun Mar 13 20:20:09 2011 (4D7D8969)
    f7b88000 f7bdf000 SYMDS SYMDS.SYS Tue Dec 07 16:16:20 2010 (4CFECE54)
    Closing open log file c:debuglog.txt
     
  11. 2011/10/06
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
  12. 2011/10/06
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Hey Arie I ran a chkdsk alone, without the /f and it said it found problems with the file system (I posted what it said exactly below. I then did as you said and got the, maybe newer, Western Digital Hard drive diagnostics tool and ran it both on quick and extensive and they both passed. It's still giving me the same mixed readings that I got from the first scans I ran that I had mentioned in the first post so at this point don't really know what that's all about, but I'm still not really getting the crashing I was before. Are there any other things that you would do to check if the system is in good working order?

    chkdsk alone:
    Microsoft Windows XP [Version 5.1.2600]

    (C) Copyright 1985-2001 Microsoft Corp.

    C:\Documents and Settings\Mine>chkdsk
    The type of the file system is NTFS.

    WARNING! F parameter not specified.
    Running CHKDSK in read-only mode.

    CHKDSK is verifying files (stage 1 of 3)...
    File verification completed.
    CHKDSK is verifying indexes (stage 2 of 3)...
    Index verification completed.
    CHKDSK is verifying security descriptors (stage 3 of 3)...
    Security descriptor verification completed.
    CHKDSK is verifying Usn Journal...
    Usn Journal verification completed.
    Correcting errors in the Volume Bitmap.
    Windows found problems with the file system.
    Run CHKDSK with the /F (fix) option to correct these.

    312560608 KB total disk space.
    101051680 KB in 355280 files.
    138260 KB in 26455 indexes.
    0 KB in bad sectors.
    519348 KB in use by the system.
    65536 KB occupied by the log file.
    210851320 KB available on disk.

    4096 bytes in each allocation unit.
    78140152 total allocation units on disk.
    52712830 allocation units available on disk.

    C:\Documents and Settings\Mine>
     
  13. 2011/10/06
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Hey Arie I did have one crash today. Here is a dumprep for it:
    Opened log file 'c:debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini100611-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp3_gdr.101209-1647
    Machine Name:
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
    Debug session time: Thu Oct 6 17:54:26.140 2011 (UTC - 7:00)
    System Uptime: 0 days 1:18:06.179
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ............................
    Loading User Symbols
    Loading unloaded module list
    ..........................
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000000A, {0, 2, 1, 80522718}

    Probably caused by : win32k.sys ( win32k!vSrcCopyS32D32Identity+5b )

    Followup: MachineOwner
    ---------

    0: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 00000000, memory referenced
    Arg2: 00000002, IRQL
    Arg3: 00000001, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: 80522718, address which referenced memory

    Debugging Details:
    ------------------


    WRITE_ADDRESS: 00000000

    CURRENT_IRQL: 2

    FAULTING_IP:
    nt!MiRemovePageByColor+66
    80522718 ff08 dec dword ptr [eax]

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0xA

    PROCESS_NAME: firefox.exe

    TRAP_FRAME: b0bcb508 -- (.trap 0xffffffffb0bcb508)
    .trap 0xffffffffb0bcb508
    ErrCode = 00000002
    eax=2abe6bb4 ebx=1fab4f68 ecx=00000027 edx=00000000 esi=2abe6b18 edi=1fab5000
    eip=8053a923 esp=b0bcb57c ebp=b0bcb584 iopl=0 nv up ei pl nz na po nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202
    nt!memmove+0x33:
    8053a923 f3a5 rep movs dword ptr es:[edi],dword ptr [esi]
    .trap
    Resetting default scope

    LAST_CONTROL_TRANSFER: from 80522ab0 to 80522718

    STACK_TEXT:
    b0bcb480 80522ab0 00000000 c00fd5a8 0000003e nt!MiRemovePageByColor+0x66
    b0bcb49c 805208a5 1fab5000 2abe6b18 b0bcb584 nt!MiRemoveZeroPage+0x8a
    b0bcb4f0 805445f0 00000001 1fab5000 00000000 nt!MmAccessFault+0xeb3
    b0bcb4f0 8053a923 00000001 1fab5000 00000000 nt!KiTrap0E+0xd0
    b0bcb584 bf899260 1fab4f68 2abe6a80 00000134 nt!memmove+0x33
    b0bcb5a8 bf898da7 000000be b0bcb80c e8be7560 win32k!vSrcCopyS32D32Identity+0x5b
    b0bcb7bc bf809d01 e8be7570 00000000 00000000 win32k!EngCopyBits+0x555
    b0bcb850 8054167c e8be7560 e48ce138 e8339568 win32k!NtGdiBitBlt+0x51c
    b0bcb850 7c90e514 e8be7560 e48ce138 e8339568 nt!KiFastCallEntry+0xfc
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0012a6f4 00000000 00000000 00000000 00000000 0x7c90e514


    STACK_COMMAND: kb

    FOLLOWUP_IP:
    win32k!vSrcCopyS32D32Identity+5b
    bf899260 83c40c add esp,0Ch

    SYMBOL_STACK_INDEX: 5

    SYMBOL_NAME: win32k!vSrcCopyS32D32Identity+5b

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: win32k

    IMAGE_NAME: win32k.sys

    DEBUG_FLR_IMAGE_TIMESTAMP: 4de797d3

    FAILURE_BUCKET_ID: 0xA_win32k!vSrcCopyS32D32Identity+5b

    BUCKET_ID: 0xA_win32k!vSrcCopyS32D32Identity+5b

    Followup: MachineOwner
    ---------

    eax=00000000 ebx=0000003e ecx=00063901 edx=0000003e esi=824e3c1c edi=00000000
    eip=80522718 esp=b0bcb464 ebp=b0bcb480 iopl=0 nv up ei pl nz na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010206
    nt!MiRemovePageByColor+0x66:
    80522718 ff08 dec dword ptr [eax] ds:0023:00000000=????????
    ChildEBP RetAddr Args to Child
    b0bcb480 80522ab0 00000000 c00fd5a8 0000003e nt!MiRemovePageByColor+0x66 (FPO: [Non-Fpo])
    b0bcb49c 805208a5 1fab5000 2abe6b18 b0bcb584 nt!MiRemoveZeroPage+0x8a (FPO: [Non-Fpo])
    b0bcb4f0 805445f0 00000001 1fab5000 00000000 nt!MmAccessFault+0xeb3 (FPO: [Non-Fpo])
    b0bcb4f0 8053a923 00000001 1fab5000 00000000 nt!KiTrap0E+0xd0 (FPO: [0,0] TrapFrame @ b0bcb508)
    b0bcb584 bf899260 1fab4f68 2abe6a80 00000134 nt!memmove+0x33
    b0bcb5a8 bf898da7 000000be b0bcb80c e8be7560 win32k!vSrcCopyS32D32Identity+0x5b (FPO: [Non-Fpo])
    b0bcb7bc bf809d01 e8be7570 00000000 00000000 win32k!EngCopyBits+0x555 (FPO: [Non-Fpo])
    b0bcb850 8054167c e8be7560 e48ce138 e8339568 win32k!NtGdiBitBlt+0x51c (FPO: [Non-Fpo])
    b0bcb850 7c90e514 e8be7560 e48ce138 e8339568 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ b0bcb884)
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0012a6f4 00000000 00000000 00000000 00000000 0x7c90e514
    start end module name
    804d7000 806e5000 nt ntkrpamp.exe Thu Dec 09 05:06:55 2010 (4D00D46F)
    806e5000 80705d00 hal halmacpi.dll Sun Apr 13 11:31:27 2008 (4802517F)
    b0574000 b0587600 NAVENG NAVENG.SYS Fri Jul 29 05:10:02 2011 (4E32A31A)
    b0588000 b0707300 NAVEX15 NAVEX15.SYS Fri Jul 29 05:07:28 2011 (4E32A280)
    b0708000 b078e000 SRTSP SRTSP.SYS Tue Mar 29 19:43:18 2011 (4D9298C6)
    b08b2000 b08b4280 psi_mf psi_mf.sys Wed Sep 01 00:53:16 2010 (4C7E066C)
    b08ce000 b090ee00 HTTP HTTP.sys Tue Oct 20 09:20:15 2009 (4ADDE33F)
    b0dd4000 b0df7180 Fastfat Fastfat.SYS Sun Apr 13 12:14:28 2008 (48025B94)
    b12a8000 b12ff600 srv srv.sys Thu Feb 17 05:18:01 2011 (4D5D2009)
    b13f0000 b141c180 mrxdav mrxdav.sys Sun Apr 13 11:32:42 2008 (480251CA)
    b14c5000 b14ce000 cpuz135_x32 cpuz135_x32.sys Tue Nov 09 05:32:57 2010 (4CD94D89)
    b1a87000 b1a9b480 wdmaud wdmaud.sys Sun Apr 13 12:17:18 2008 (48025C3E)
    b1ccc000 b1ced000 SbieDrv SbieDrv.sys Fri Jun 17 06:29:37 2011 (4DFB56C1)
    b1d11000 b1d14900 ndisuio ndisuio.sys Sun Apr 13 11:55:57 2008 (4802573D)
    b29fa000 b2a13b80 dump_nvata dump_nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b2a14000 b2a85000 wdf01000 wdf01000.sys Mon Jul 13 16:11:36 2009 (4A5BBF28)
    b2a85000 b2b50000 BHDrvx86 BHDrvx86.sys Wed Sep 21 20:56:15 2011 (4E7AB1DF)
    b2bd0000 b2bded80 sysaudio sysaudio.sys Sun Apr 13 12:15:55 2008 (48025BEB)
    b2bf0000 b2d26080 LV302V32 LV302V32.SYS Wed May 09 21:09:48 2007 (46429B0C)
    b2d27000 b2d45000 EraserUtilRebootDrv EraserUtilRebootDrv.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2d45000 b2da3000 eeCtrl eeCtrl.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2da3000 b2e12680 mrxsmb mrxsmb.sys Fri Jul 15 06:29:28 2011 (4E2040B8)
    b2e33000 b2e35900 Dxapi Dxapi.sys Fri Aug 17 13:53:19 2001 (3B7D843F)
    b2e3b000 b2e65e80 rdbss rdbss.sys Sun Apr 13 12:28:38 2008 (48025EE6)
    b2e66000 b2e8a000 Ironx86 Ironx86.SYS Fri Nov 12 15:05:54 2010 (4CDDC852)
    b2e8a000 b2eabd00 afd afd.sys Wed Feb 16 05:22:47 2011 (4D5BCFA7)
    b2eac000 b2ed3c00 netbt netbt.sys Sun Apr 13 12:20:59 2008 (48025D1B)
    b2ed4000 b2f2f000 IDSxpx86 IDSxpx86.sys Wed Jul 20 06:18:06 2011 (4E26D58E)
    b2f2f000 b2f55000 SYMEVENT SYMEVENT.SYS Thu Mar 24 16:02:08 2011 (4D8BCD70)
    b2f55000 b2f7a500 ipnat ipnat.sys Sun Apr 13 11:57:10 2008 (48025786)
    b2f7b000 b2fd3a00 SYMTDI SYMTDI.SYS Thu Mar 17 20:04:50 2011 (4D82CBD2)
    b2ffc000 b3054480 tcpip tcpip.sys Fri Jun 20 04:51:09 2008 (485B99AD)
    b3055000 b3067600 ipsec ipsec.sys Sun Apr 13 12:19:42 2008 (48025CCE)
    b30db000 b30fc780 adidts adidts.sys Tue Jul 14 01:21:04 2009 (4A5C3FF0)
    b30fd000 b3113f00 AEAudio AEAudio.sys Mon Aug 07 06:57:27 2006 (44D746C7)
    b3114000 b3137a80 portcls portcls.sys Sun Apr 13 12:19:40 2008 (48025CCC)
    b3138000 b3184000 ADIHdAud ADIHdAud.sys Tue Jan 16 06:09:04 2007 (45ACDC80)
    b32a5000 b32b4900 Cdfs Cdfs.SYS Sun Apr 13 12:14:21 2008 (48025B8D)
    b32b5000 b32c3000 WDFLDR WDFLDR.SYS Mon Jul 13 16:11:25 2009 (4A5BBF1D)
    b405a000 b405c880 hidusb hidusb.sys Sun Apr 13 11:45:27 2008 (480254C7)
    b40a2000 b40a4280 rasacd rasacd.sys Fri Aug 17 13:55:39 2001 (3B7D84CB)
    b65c0000 b661df00 update update.sys Sun Apr 13 11:39:46 2008 (48025372)
    b6646000 b6675e80 rdpdr rdpdr.sys Sun Apr 13 11:32:50 2008 (480251D2)
    b6676000 b6686e00 psched psched.sys Sun Apr 13 11:56:36 2008 (48025764)
    b6687000 b669d580 ndiswan ndiswan.sys Sun Apr 13 12:20:41 2008 (48025D09)
    b6a10000 b6a23f00 VIDEOPRT VIDEOPRT.SYS Sun Apr 13 11:44:39 2008 (48025497)
    b6a24000 b761a280 nv4_mini nv4_mini.sys Wed Aug 03 02:02:29 2011 (4E390EA5)
    b761b000 b766e000 NVSNPU NVSNPU.SYS Mon Aug 07 16:38:41 2006 (44D7CF01)
    b766e000 b777bc00 NVNRM NVNRM.SYS Mon Aug 07 16:39:02 2006 (44D7CF16)
    b777c000 b77a4000 HDAudBus HDAudBus.sys Thu May 26 08:46:29 2005 (4295EF55)
    b77a4000 b77c6700 ks ks.sys Sun Apr 13 12:16:34 2008 (48025C12)
    b77c7000 b77ea200 USBPORT USBPORT.SYS Sun Apr 13 11:45:34 2008 (480254CE)
    b77eb000 b77f3780 netbios netbios.sys Sun Apr 13 11:56:01 2008 (48025741)
    b77fb000 b7809d80 arp1394 arp1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b780b000 b7813700 wanarp wanarp.sys Sun Apr 13 11:57:20 2008 (48025790)
    b784b000 b7859b00 drmk drmk.sys Sun Apr 13 11:45:12 2008 (480254B8)
    b787b000 b7889880 usbhub usbhub.sys Sun Apr 13 11:45:36 2008 (480254D0)
    b7c3c000 b7c3f900 kbdhid kbdhid.sys Sun Apr 13 11:39:47 2008 (48025373)
    b7c40000 b7c43700 SaiMini SaiMini.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b7c80000 b7c99c00 Mup Mup.sys Thu Apr 21 06:37:43 2011 (4DB03327)
    b7c9a000 b7cc6980 NDIS NDIS.sys Sun Apr 13 12:20:35 2008 (48025D03)
    b7cc7000 b7d53600 Ntfs Ntfs.sys Sun Apr 13 12:15:49 2008 (48025BE5)
    b7d54000 b7d66f00 WudfPf WudfPf.sys Thu Sep 28 18:55:43 2006 (451C7D1F)
    b7d67000 b7d7db00 KSecDD KSecDD.sys Wed Jun 24 04:18:40 2009 (4A420B90)
    b7d7e000 b7e39000 SYMEFA SYMEFA.SYS Sun Mar 13 20:20:09 2011 (4D7D8969)
    b7e39000 b7e4af00 sr sr.sys Sun Apr 13 11:36:50 2008 (480252C2)
    b7e4b000 b7ea2000 SYMDS SYMDS.SYS Tue Dec 07 16:16:20 2010 (4CFECE54)
    b7ea2000 b7ec1b00 fltmgr fltmgr.sys Sun Apr 13 11:32:58 2008 (480251DA)
    b7ec2000 b7ed9880 SCSIPORT SCSIPORT.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b7eda000 b7ef1000 SI3132 SI3132.sys Wed Oct 03 11:41:04 2007 (4703E240)
    b7ef1000 b7f0ab80 nvata nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b7f0b000 b7f22900 atapi atapi.sys Sun Apr 13 11:40:29 2008 (4802539D)
    b7f23000 b7f48700 dmio dmio.sys Sun Apr 13 11:44:45 2008 (4802549D)
    b7f49000 b7f67880 ftdisk ftdisk.sys Fri Aug 17 13:52:41 2001 (3B7D8419)
    b7f68000 b7f78a80 pci pci.sys Sun Apr 13 11:36:43 2008 (480252BB)
    b7f79000 b7fa6d80 ACPI ACPI.sys Sun Apr 13 11:36:33 2008 (480252B1)
    b80a8000 b80b1180 isapnp isapnp.sys Sun Apr 13 11:36:40 2008 (480252B8)
    b80b8000 b80c7100 ohci1394 ohci1394.sys Sun Apr 13 11:46:18 2008 (480254FA)
    b80c8000 b80d5080 1394BUS 1394BUS.SYS Sun Apr 13 11:46:18 2008 (480254FA)
    b80d8000 b80e2580 MountMgr MountMgr.sys Sun Apr 13 11:39:45 2008 (48025371)
    b80e8000 b80f4c80 VolSnap VolSnap.sys Sun Apr 13 11:41:00 2008 (480253BC)
    b80f8000 b8100e00 disk disk.sys Sun Apr 13 11:40:46 2008 (480253AE)
    b8108000 b8114180 CLASSPNP CLASSPNP.SYS Sun Apr 13 12:16:21 2008 (48025C05)
    b8118000 b8121300 PxHelp20 PxHelp20.sys Tue Jun 23 16:16:17 2009 (4A416241)
    b8168000 b8173d00 raspptp raspptp.sys Sun Apr 13 12:19:47 2008 (48025CD3)
    b8178000 b8180900 msgpc msgpc.sys Sun Apr 13 11:56:32 2008 (48025760)
    b8188000 b8191000 SaiBus SaiBus.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b8198000 b81a1f00 termdd termdd.sys Sun Apr 13 11:38:36 2008 (4802532C)
    b81a8000 b81b7180 nic1394 nic1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b81b8000 b81c7000 azvusb azvusb.sys Thu Aug 13 04:28:55 2009 (4A83F8F7)
    b81c8000 b81d2000 NDProxy NDProxy.SYS Tue Nov 02 08:17:02 2010 (4CD02B6E)
    b81e8000 b81f4e00 NVENETFD NVENETFD.sys Mon Aug 07 16:39:21 2006 (44D7CF29)
    b81f8000 b8202980 SRTSPX SRTSPX.SYS Tue Mar 29 19:43:23 2011 (4D9298CB)
    b8208000 b8214e20 SCDEmu SCDEmu.SYS Mon Jul 07 00:40:49 2008 (4871C881)
    b8218000 b8222e00 Fips Fips.SYS Sun Apr 13 11:33:27 2008 (480251F7)
    b8258000 b8260e00 intelppm intelppm.sys Sun Apr 13 11:31:31 2008 (48025183)
    b8268000 b8272480 imapi imapi.sys Sun Apr 13 11:40:57 2008 (480253B9)
    b8278000 b8287600 cdrom cdrom.sys Sun Apr 13 11:40:45 2008 (480253AD)
    b8288000 b8296100 redbook redbook.sys Sun Apr 13 11:40:27 2008 (4802539B)
    b8298000 b82a1000 nvnetbus nvnetbus.sys Mon Aug 07 16:39:23 2006 (44D7CF2B)
    b82a8000 b82b1000 HIDCLASS HIDCLASS.SYS Sun Apr 13 11:45:25 2008 (480254C5)
    b82c8000 b82d0880 LVUSBSta LVUSBSta.sys Wed May 09 21:00:54 2007 (464298F6)
    b82d8000 b82e6a80 usbaudio usbaudio.sys Sun Apr 13 11:45:11 2008 (480254B7)
    b82e8000 b82f1000 wacmoumonitor wacmoumonitor.sys Fri Oct 29 09:29:38 2010 (4CCAF672)
    b8308000 b8314880 rasl2tp rasl2tp.sys Sun Apr 13 12:19:43 2008 (48025CCF)
    b8318000 b8322200 raspppoe raspppoe.sys Sun Apr 13 11:57:31 2008 (4802579B)
    b8328000 b832e180 PCIIDEX PCIIDEX.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b8330000 b8334d00 PartMgr PartMgr.sys Sun Apr 13 11:40:48 2008 (480253B0)
    b8338000 b8340000 SiRemFil SiRemFil.sys Wed Jun 20 13:06:09 2007 (467988B1)
    b8358000 b8360000 LHidFilt LHidFilt.Sys Sat Apr 30 04:50:48 2011 (4DBBF798)
    b8378000 b837f780 LMouFilt LMouFilt.Sys Sat Apr 30 04:50:53 2011 (4DBBF79D)
    b8388000 b838c500 watchdog watchdog.sys Sun Apr 13 11:44:59 2008 (480254AB)
    b83f8000 b83f9000 fdc fdc.sys unavailable (00000000)
    b8400000 b8404300 usbohci usbohci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b8408000 b840f600 usbehci usbehci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b8410000 b8415280 GEARAspiWDM GEARAspiWDM.sys Mon May 18 05:16:53 2009 (4A1151B5)
    b8418000 b841e180 HIDPARSE HIDPARSE.SYS Sun Apr 13 11:45:22 2008 (480254C2)
    b8420000 b8424a80 TDI TDI.SYS Sun Apr 13 12:00:04 2008 (48025834)
    b8428000 b842c580 ptilink ptilink.sys Fri Aug 17 13:49:53 2001 (3B7D8371)
    b8430000 b8434080 raspti raspti.sys Fri Aug 17 13:55:32 2001 (3B7D84C4)
    b8438000 b843e000 kbdclass kbdclass.sys Sun Apr 13 11:39:46 2008 (48025372)
    b8440000 b8448000 wacommousefilter wacommousefilter.sys Fri Feb 16 10:12:29 2007 (45D5F40D)
    b8448000 b844d000 flpydisk flpydisk.sys Sun Apr 13 11:40:24 2008 (48025398)
    b8458000 b845d200 vga vga.sys Sun Apr 13 11:44:40 2008 (48025498)
    b8460000 b8464a80 Msfs Msfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b8468000 b846f880 Npfs Npfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b8478000 b847fd80 usbccgp usbccgp.sys Sun Apr 13 11:45:38 2008 (480254D2)
    b8480000 b8485a00 mouclass mouclass.sys Sun Apr 13 11:39:47 2008 (48025373)
    b84b8000 b84bb000 BOOTVID BOOTVID.dll Fri Aug 17 13:49:09 2001 (3B7D8345)
    b84bc000 b84bf100 SiWinAcc SiWinAcc.sys Thu Jun 14 17:02:27 2007 (4671D713)
    b8564000 b8566200 wacomvhid wacomvhid.sys Mon Sep 21 16:29:18 2009 (4AB80C4E)
    b8568000 b856a900 ndistapi ndistapi.sys Fri Jul 08 07:02:00 2011 (4E170DD8)
    b8584000 b8587c80 mssmbios mssmbios.sys Sun Apr 13 11:36:45 2008 (480252BD)
    b85a0000 b85a2f80 mouhid mouhid.sys Fri Aug 17 13:47:57 2001 (3B7D82FD)
    b85a8000 b85a9b80 kdcom kdcom.dll Fri Aug 17 13:49:10 2001 (3B7D8346)
    b85aa000 b85ab100 WMILIB WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b85ac000 b85ad700 dmload dmload.sys Fri Aug 17 13:58:15 2001 (3B7D8567)
    b85ba000 b85bbc00 lv302af lv302af.sys Wed May 09 21:01:36 2007 (46429920)
    b85bc000 b85bd440 AsIO AsIO.sys Wed Dec 21 00:55:21 2005 (43A91879)
    b85de000 b85df100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b862a000 b862b420 ASACPI ASACPI.sys Thu Aug 12 19:52:52 2004 (411C2D04)
    b8640000 b8641100 swenum swenum.sys Sun Apr 13 11:39:52 2008 (48025378)
    b8646000 b8647280 USBD USBD.SYS Fri Aug 17 14:02:58 2001 (3B7D8682)
    b8650000 b8651f00 Fs_Rec Fs_Rec.SYS Fri Aug 17 13:49:37 2001 (3B7D8361)
    b8652000 b8653080 Beep Beep.SYS Fri Aug 17 13:47:33 2001 (3B7D82E5)
    b8654000 b8655080 mnmdd mnmdd.SYS Fri Aug 17 13:57:28 2001 (3B7D8538)
    b8656000 b8657080 RDPCDD RDPCDD.sys Fri Aug 17 13:46:56 2001 (3B7D82C0)
    b8670000 b8670d00 pciide pciide.sys Fri Aug 17 13:51:49 2001 (3B7D83E5)
    b8708000 b8708e80 LBeepKE LBeepKE.sys Sat Apr 30 04:52:33 2011 (4DBBF801)
    b870e000 b870ed00 dxgthk dxgthk.sys Fri Aug 17 13:53:12 2001 (3B7D8438)
    b8799000 b8799b80 Null Null.SYS Fri Aug 17 13:47:39 2001 (3B7D82EB)
    b87fe000 b87fec00 audstub audstub.sys Fri Aug 17 13:59:40 2001 (3B7D85BC)
    bd000000 bd011600 dxg dxg.sys Sun Apr 13 11:38:27 2008 (48025323)
    bd012000 bd416080 nv4_disp nv4_disp.dll Wed Aug 03 01:56:54 2011 (4E390D56)
    bd417000 bd45de80 ATMFD ATMFD.DLL Tue Feb 15 04:56:39 2011 (4D5A7807)
    bf800000 bf9c5d80 win32k win32k.sys Thu Jun 02 07:01:55 2011 (4DE797D3)

    Unloaded modules:
    af735000 af760000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    af735000 af760000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b0335000 b0360000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b0a61000 b0a8c000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b1999000 b19c4000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b85cc000 b85ce000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b87a5000 b87a6000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00001000
    b1b94000 b1ba1000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b19c4000 b19e7000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00023000
    b1ba4000 b1bb2000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000E000
    b15bf000 b15cf000 Serial.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00010000
    b13dc000 b13f0000 Parport.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00014000
    b781b000 b7828000 i8042prt.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b8450000 b8455000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00005000
    b6622000 b6625000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00003000
    b785b000 b7864000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b863e000 b8640000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82f8000 b8301000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8638000 b863a000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82e8000 b82f1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8634000 b8636000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82d8000 b82e1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8630000 b8632000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82c8000 b82d1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b862c000 b862e000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82b8000 b82c1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    Closing open log file c:debuglog.txt
     
  14. 2011/10/06
    rsinfo

    rsinfo SuperGeek Alumni

    Joined:
    2005/12/25
    Messages:
    4,076
    Likes Received:
    178
    Running chkdsk without "/f" doesn't do anything. It only spits out the errors. Run chkdsk /f before going further.
     
  15. 2011/10/07
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Hey Arie sorry for the misunderstanding, I did run a chkdsk/f but that didn't really tell me much as far as problems it found. It really seems to run its coarse then start Windows normally. With just the chkdsk, it does the scan, but tells me what it found, but I actually had ran both when I wrote the last post. I did run chkdsk/f again just now and it again ran its coarse then started windows normally, but when windows started up it gave me 2, Windows has recovered from a serious error.... windows. Once it reported, the webpages it brought up as far as an explanation where:

    Troubleshoot a problem with your antivirus software

    A problem related to your antivirus software caused your computer to shut down unexpectedly to protect itself from data corruption or loss.

    To try to solve this problem, follow these steps. One step might solve the problem, but if it doesn't, then go on to the next step.

    Update your antivirus software

    Check for multiple antivirus programs running on your computer

    Contact the antivirus manufacturer

    and:


    Stop (blue screen) error caused by a device or driver

    You received this message because a hardware device, its driver, or related software has caused a stop error, also called a blue screen error. This type of error means the computer has shut down abruptly to protect itself from potential data corruption or loss. In this case, we were unable to detect the specific device or driver that caused the problem.

    The following troubleshooting steps might prevent the stop error from recurring. Try them in the order given. If one step does not solve the problem, then move on to the next one.
    Steps to solve this problem

    Download and install the latest updates and device drivers for your computer

    Scan your computer for viruses

    Check your hard disk for errors
    Steps to work around this problem

    Warning
    These steps are designed to address a particular problem but might do so by temporarily disabling or removing some functionality on your computer.

    Remove any new hardware or software to isolate the cause of the blue screen

    Restore your computer to an earlier state


    Windows did crash on me twice today. Still not as frequent but there is still a problem. Any ideas? Again thank you for all your help.
    Here are the dump reports:


    First:
    Opened log file 'c:debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini100711-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp3_gdr.101209-1647
    Machine Name:
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
    Debug session time: Thu Oct 6 20:58:07.046 2011 (UTC - 7:00)
    System Uptime: 0 days 0:58:32.084
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .............................
    Loading User Symbols
    Loading unloaded module list
    ......................
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000000A, {0, 2, 1, 80522718}

    *** ERROR: Module load completed but symbols could not be loaded for nv4_disp.dll
    Probably caused by : nv4_disp.dll ( nv4_disp+460b3 )

    Followup: MachineOwner
    ---------

    2: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high. This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 00000000, memory referenced
    Arg2: 00000002, IRQL
    Arg3: 00000001, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: 80522718, address which referenced memory

    Debugging Details:
    ------------------


    WRITE_ADDRESS: 00000000

    CURRENT_IRQL: 2

    FAULTING_IP:
    nt!MiRemovePageByColor+66
    80522718 ff08 dec dword ptr [eax]

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0xA

    PROCESS_NAME: PicasaPhotoView

    TRAP_FRAME: b088467c -- (.trap 0xffffffffb088467c)
    .trap 0xffffffffb088467c
    ErrCode = 00000002
    eax=b82418e0 ebx=00000000 ecx=000008c0 edx=00000020 esi=b82406e0 edi=021ef000
    eip=bd0580b3 esp=b08846f0 ebp=b0884704 iopl=0 nv up ei pl nz na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010206
    nv4_disp+0x460b3:
    bd0580b3 0f2b07 movntps xmmword ptr [edi],xmm0 ds:0023:021ef000=????????????????????????????????
    .trap
    Resetting default scope

    LAST_CONTROL_TRANSFER: from 80522c42 to 80522718

    STACK_TEXT:
    b08845f8 80522c42 00000000 c0010f78 00000012 nt!MiRemovePageByColor+0x66
    b0884610 805208c5 021ef000 b82406e0 b0884704 nt!MiRemoveAnyPage+0xbc
    b0884664 805445f0 00000001 021ef000 00000000 nt!MmAccessFault+0xed3
    b0884664 bd0580b3 00000001 021ef000 00000000 nt!KiTrap0E+0xd0
    WARNING: Stack unwind information not available. Following frames may be wrong.
    b0884704 bd058795 021ede00 b82406e0 00001ae0 nv4_disp+0x460b3
    b08847d0 bd01a130 e1a52010 b08847fc 00000000 nv4_disp+0x46795
    b0884840 bf805a5b e26ae320 e2a6ecb8 00000000 nv4_disp+0x8130
    b088488c bf8a80d1 e26ae320 e2a6ecb8 00000000 win32k!WatchdogDrvCopyBits+0x53
    b08848d4 bf863bca bf805a0f bf9a85dc e26ae320 win32k!OffCopyBits+0x7d
    b0884990 bf8a7dae e26ae320 e1a24048 00000000 win32k!bSpBltFromScreen+0x235
    b0884a40 bf8a811e e26ae320 e2a6ecb8 00000000 win32k!SpBitBlt+0x56
    b0884a74 bf898e50 e26ae320 e2a6ecb8 00000000 win32k!SpCopyBits+0x27
    b0884c9c bf809d01 bf8a80f7 00000000 00000000 win32k!EngCopyBits+0xed
    b0884d30 8054167c e26ae310 e43d8608 e2a7f2b0 win32k!NtGdiBitBlt+0x51c
    b0884d30 7c90e514 e26ae310 e43d8608 e2a7f2b0 nt!KiFastCallEntry+0xfc
    0012eee0 00000000 00000000 00000000 00000000 0x7c90e514


    STACK_COMMAND: kb

    FOLLOWUP_IP:
    nv4_disp+460b3
    bd0580b3 0f2b07 movntps xmmword ptr [edi],xmm0

    SYMBOL_STACK_INDEX: 4

    SYMBOL_NAME: nv4_disp+460b3

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: nv4_disp

    IMAGE_NAME: nv4_disp.dll

    DEBUG_FLR_IMAGE_TIMESTAMP: 4e390d56

    FAILURE_BUCKET_ID: 0xA_nv4_disp+460b3

    BUCKET_ID: 0xA_nv4_disp+460b3

    Followup: MachineOwner
    ---------

    eax=00000000 ebx=00000000 ecx=000bc2fc edx=0000003c esi=82e95390 edi=00000000
    eip=80522718 esp=b08845dc ebp=b08845f8 iopl=0 nv up ei pl nz na pe nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010206
    nt!MiRemovePageByColor+0x66:
    80522718 ff08 dec dword ptr [eax] ds:0023:00000000=????????
    ChildEBP RetAddr Args to Child
    b08845f8 80522c42 00000000 c0010f78 00000012 nt!MiRemovePageByColor+0x66 (FPO: [Non-Fpo])
    b0884610 805208c5 021ef000 b82406e0 b0884704 nt!MiRemoveAnyPage+0xbc (FPO: [Non-Fpo])
    b0884664 805445f0 00000001 021ef000 00000000 nt!MmAccessFault+0xed3 (FPO: [Non-Fpo])
    b0884664 bd0580b3 00000001 021ef000 00000000 nt!KiTrap0E+0xd0 (FPO: [0,0] TrapFrame @ b088467c)
    WARNING: Stack unwind information not available. Following frames may be wrong.
    b0884704 bd058795 021ede00 b82406e0 00001ae0 nv4_disp+0x460b3
    b08847d0 bd01a130 e1a52010 b08847fc 00000000 nv4_disp+0x46795
    b0884840 bf805a5b e26ae320 e2a6ecb8 00000000 nv4_disp+0x8130
    b088488c bf8a80d1 e26ae320 e2a6ecb8 00000000 win32k!WatchdogDrvCopyBits+0x53 (FPO: [Non-Fpo])
    b08848d4 bf863bca bf805a0f bf9a85dc e26ae320 win32k!OffCopyBits+0x7d (FPO: [Non-Fpo])
    b0884990 bf8a7dae e26ae320 e1a24048 00000000 win32k!bSpBltFromScreen+0x235 (FPO: [Non-Fpo])
    b0884a40 bf8a811e e26ae320 e2a6ecb8 00000000 win32k!SpBitBlt+0x56 (FPO: [Non-Fpo])
    b0884a74 bf898e50 e26ae320 e2a6ecb8 00000000 win32k!SpCopyBits+0x27 (FPO: [Non-Fpo])
    b0884c9c bf809d01 bf8a80f7 00000000 00000000 win32k!EngCopyBits+0xed (FPO: [Non-Fpo])
    b0884d30 8054167c e26ae310 e43d8608 e2a7f2b0 win32k!NtGdiBitBlt+0x51c (FPO: [Non-Fpo])
    b0884d30 7c90e514 e26ae310 e43d8608 e2a7f2b0 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ b0884d64)
    0012eee0 00000000 00000000 00000000 00000000 0x7c90e514
    start end module name
    804d7000 806e5000 nt ntkrpamp.exe Thu Dec 09 05:06:55 2010 (4D00D46F)
    806e5000 80705d00 hal halmacpi.dll Sun Apr 13 11:31:27 2008 (4802517F)
    afff6000 b0020180 kmixer kmixer.sys Sun Apr 13 11:45:07 2008 (480254B3)
    b0592000 b05a5600 NAVENG NAVENG.SYS Fri Jul 29 05:10:02 2011 (4E32A31A)
    b05a6000 b0725300 NAVEX15 NAVEX15.SYS Fri Jul 29 05:07:28 2011 (4E32A280)
    b0726000 b07ac000 SRTSP SRTSP.SYS Tue Mar 29 19:43:18 2011 (4D9298C6)
    b07fc000 b083ce00 HTTP HTTP.sys Tue Oct 20 09:20:15 2009 (4ADDE33F)
    b0d65000 b0d88180 Fastfat Fastfat.SYS Sun Apr 13 12:14:28 2008 (48025B94)
    b1149000 b11a0600 srv srv.sys Thu Feb 17 05:18:01 2011 (4D5D2009)
    b12b9000 b12e5180 mrxdav mrxdav.sys Sun Apr 13 11:32:42 2008 (480251CA)
    b13b2000 b13bb000 cpuz135_x32 cpuz135_x32.sys Tue Nov 09 05:32:57 2010 (4CD94D89)
    b1678000 b167a280 psi_mf psi_mf.sys Wed Sep 01 00:53:16 2010 (4C7E066C)
    b18ec000 b1900480 wdmaud wdmaud.sys Sun Apr 13 12:17:18 2008 (48025C3E)
    b1b09000 b1b2a000 SbieDrv SbieDrv.sys Fri Jun 17 06:29:37 2011 (4DFB56C1)
    b1b56000 b1b59900 ndisuio ndisuio.sys Sun Apr 13 11:55:57 2008 (4802573D)
    b1b7a000 b1b88d80 sysaudio sysaudio.sys Sun Apr 13 12:15:55 2008 (48025BEB)
    b28d7000 b28f0b80 dump_nvata dump_nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b28f1000 b2962000 wdf01000 wdf01000.sys Mon Jul 13 16:11:36 2009 (4A5BBF28)
    b2a02000 b2b38080 LV302V32 LV302V32.SYS Wed May 09 21:09:48 2007 (46429B0C)
    b2b39000 b2c04000 BHDrvx86 BHDrvx86.sys Wed Sep 21 20:56:15 2011 (4E7AB1DF)
    b2c04000 b2c22000 EraserUtilRebootDrv EraserUtilRebootDrv.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2c22000 b2c80000 eeCtrl eeCtrl.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2c80000 b2cef680 mrxsmb mrxsmb.sys Fri Jul 15 06:29:28 2011 (4E2040B8)
    b2d18000 b2d42e80 rdbss rdbss.sys Sun Apr 13 12:28:38 2008 (48025EE6)
    b2d43000 b2d67000 Ironx86 Ironx86.SYS Fri Nov 12 15:05:54 2010 (4CDDC852)
    b2d67000 b2d88d00 afd afd.sys Wed Feb 16 05:22:47 2011 (4D5BCFA7)
    b2d89000 b2db0c00 netbt netbt.sys Sun Apr 13 12:20:59 2008 (48025D1B)
    b2db1000 b2e0c000 IDSxpx86 IDSxpx86.sys Wed Jul 20 06:18:06 2011 (4E26D58E)
    b2e0c000 b2e32000 SYMEVENT SYMEVENT.SYS Thu Mar 24 16:02:08 2011 (4D8BCD70)
    b2e32000 b2e57500 ipnat ipnat.sys Sun Apr 13 11:57:10 2008 (48025786)
    b2e58000 b2eb0a00 SYMTDI SYMTDI.SYS Thu Mar 17 20:04:50 2011 (4D82CBD2)
    b2ed9000 b2f31480 tcpip tcpip.sys Fri Jun 20 04:51:09 2008 (485B99AD)
    b2f32000 b2f44600 ipsec ipsec.sys Sun Apr 13 12:19:42 2008 (48025CCE)
    b2fb8000 b2fd9780 adidts adidts.sys Tue Jul 14 01:21:04 2009 (4A5C3FF0)
    b2fda000 b2ff0f00 AEAudio AEAudio.sys Mon Aug 07 06:57:27 2006 (44D746C7)
    b2ff1000 b3014a80 portcls portcls.sys Sun Apr 13 12:19:40 2008 (48025CCC)
    b3015000 b3061000 ADIHdAud ADIHdAud.sys Tue Jan 16 06:09:04 2007 (45ACDC80)
    b30c5000 b30c7880 hidusb hidusb.sys Sun Apr 13 11:45:27 2008 (480254C7)
    b3162000 b3170000 WDFLDR WDFLDR.SYS Mon Jul 13 16:11:25 2009 (4A5BBF1D)
    b3172000 b3181900 Cdfs Cdfs.SYS Sun Apr 13 12:14:21 2008 (48025B8D)
    b3192000 b319b000 wacmoumonitor wacmoumonitor.sys Fri Oct 29 09:29:38 2010 (4CCAF672)
    b31a2000 b31b0a80 usbaudio usbaudio.sys Sun Apr 13 11:45:11 2008 (480254B7)
    b3259000 b325b900 Dxapi Dxapi.sys Fri Aug 17 13:53:19 2001 (3B7D843F)
    b328d000 b328f280 rasacd rasacd.sys Fri Aug 17 13:55:39 2001 (3B7D84CB)
    b6098000 b60f5f00 update update.sys Sun Apr 13 11:39:46 2008 (48025372)
    b611e000 b614de80 rdpdr rdpdr.sys Sun Apr 13 11:32:50 2008 (480251D2)
    b614e000 b615ee00 psched psched.sys Sun Apr 13 11:56:36 2008 (48025764)
    b615f000 b6175580 ndiswan ndiswan.sys Sun Apr 13 12:20:41 2008 (48025D09)
    b68ed000 b6900f00 VIDEOPRT VIDEOPRT.SYS Sun Apr 13 11:44:39 2008 (48025497)
    b6901000 b74f7280 nv4_mini nv4_mini.sys Wed Aug 03 02:02:29 2011 (4E390EA5)
    b74f8000 b754b000 NVSNPU NVSNPU.SYS Mon Aug 07 16:38:41 2006 (44D7CF01)
    b754b000 b7658c00 NVNRM NVNRM.SYS Mon Aug 07 16:39:02 2006 (44D7CF16)
    b7659000 b7681000 HDAudBus HDAudBus.sys Thu May 26 08:46:29 2005 (4295EF55)
    b7681000 b76a3700 ks ks.sys Sun Apr 13 12:16:34 2008 (48025C12)
    b76a4000 b76c7200 USBPORT USBPORT.SYS Sun Apr 13 11:45:34 2008 (480254CE)
    b76e8000 b76f6b00 drmk drmk.sys Sun Apr 13 11:45:12 2008 (480254B8)
    b7718000 b7726880 usbhub usbhub.sys Sun Apr 13 11:45:36 2008 (480254D0)
    b7728000 b7734e00 NVENETFD NVENETFD.sys Mon Aug 07 16:39:21 2006 (44D7CF29)
    b7748000 b7752000 NDProxy NDProxy.SYS Tue Nov 02 08:17:02 2010 (4CD02B6E)
    b7758000 b7767000 azvusb azvusb.sys Thu Aug 13 04:28:55 2009 (4A83F8F7)
    b7c4c000 b7c4f900 kbdhid kbdhid.sys Sun Apr 13 11:39:47 2008 (48025373)
    b7c50000 b7c53700 SaiMini SaiMini.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b7c80000 b7c99c00 Mup Mup.sys Thu Apr 21 06:37:43 2011 (4DB03327)
    b7c9a000 b7cc6980 NDIS NDIS.sys Sun Apr 13 12:20:35 2008 (48025D03)
    b7cc7000 b7d53600 Ntfs Ntfs.sys Sun Apr 13 12:15:49 2008 (48025BE5)
    b7d54000 b7d66f00 WudfPf WudfPf.sys Thu Sep 28 18:55:43 2006 (451C7D1F)
    b7d67000 b7d7db00 KSecDD KSecDD.sys Wed Jun 24 04:18:40 2009 (4A420B90)
    b7d7e000 b7e39000 SYMEFA SYMEFA.SYS Sun Mar 13 20:20:09 2011 (4D7D8969)
    b7e39000 b7e4af00 sr sr.sys Sun Apr 13 11:36:50 2008 (480252C2)
    b7e4b000 b7ea2000 SYMDS SYMDS.SYS Tue Dec 07 16:16:20 2010 (4CFECE54)
    b7ea2000 b7ec1b00 fltmgr fltmgr.sys Sun Apr 13 11:32:58 2008 (480251DA)
    b7ec2000 b7ed9880 SCSIPORT SCSIPORT.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b7eda000 b7ef1000 SI3132 SI3132.sys Wed Oct 03 11:41:04 2007 (4703E240)
    b7ef1000 b7f0ab80 nvata nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b7f0b000 b7f22900 atapi atapi.sys Sun Apr 13 11:40:29 2008 (4802539D)
    b7f23000 b7f48700 dmio dmio.sys Sun Apr 13 11:44:45 2008 (4802549D)
    b7f49000 b7f67880 ftdisk ftdisk.sys Fri Aug 17 13:52:41 2001 (3B7D8419)
    b7f68000 b7f78a80 pci pci.sys Sun Apr 13 11:36:43 2008 (480252BB)
    b7f79000 b7fa6d80 ACPI ACPI.sys Sun Apr 13 11:36:33 2008 (480252B1)
    b80a8000 b80b1180 isapnp isapnp.sys Sun Apr 13 11:36:40 2008 (480252B8)
    b80b8000 b80c7100 ohci1394 ohci1394.sys Sun Apr 13 11:46:18 2008 (480254FA)
    b80c8000 b80d5080 1394BUS 1394BUS.SYS Sun Apr 13 11:46:18 2008 (480254FA)
    b80d8000 b80e2580 MountMgr MountMgr.sys Sun Apr 13 11:39:45 2008 (48025371)
    b80e8000 b80f4c80 VolSnap VolSnap.sys Sun Apr 13 11:41:00 2008 (480253BC)
    b80f8000 b8100e00 disk disk.sys Sun Apr 13 11:40:46 2008 (480253AE)
    b8108000 b8114180 CLASSPNP CLASSPNP.SYS Sun Apr 13 12:16:21 2008 (48025C05)
    b8118000 b8121300 PxHelp20 PxHelp20.sys Tue Jun 23 16:16:17 2009 (4A416241)
    b8188000 b8197180 nic1394 nic1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b81b8000 b81c0880 LVUSBSta LVUSBSta.sys Wed May 09 21:00:54 2007 (464298F6)
    b81c8000 b81d4880 rasl2tp rasl2tp.sys Sun Apr 13 12:19:43 2008 (48025CCF)
    b81d8000 b81e2200 raspppoe raspppoe.sys Sun Apr 13 11:57:31 2008 (4802579B)
    b81e8000 b81f3d00 raspptp raspptp.sys Sun Apr 13 12:19:47 2008 (48025CD3)
    b81f8000 b8200900 msgpc msgpc.sys Sun Apr 13 11:56:32 2008 (48025760)
    b8208000 b8211000 SaiBus SaiBus.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b8218000 b8221f00 termdd termdd.sys Sun Apr 13 11:38:36 2008 (4802532C)
    b8248000 b8250700 wanarp wanarp.sys Sun Apr 13 11:57:20 2008 (48025790)
    b8258000 b8266d80 arp1394 arp1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b8268000 b8270780 netbios netbios.sys Sun Apr 13 11:56:01 2008 (48025741)
    b8278000 b8282980 SRTSPX SRTSPX.SYS Tue Mar 29 19:43:23 2011 (4D9298CB)
    b8288000 b8294e20 SCDEmu SCDEmu.SYS Mon Jul 07 00:40:49 2008 (4871C881)
    b8298000 b82a2e00 Fips Fips.SYS Sun Apr 13 11:33:27 2008 (480251F7)
    b82c8000 b82d0e00 intelppm intelppm.sys Sun Apr 13 11:31:31 2008 (48025183)
    b82d8000 b82e2480 imapi imapi.sys Sun Apr 13 11:40:57 2008 (480253B9)
    b82e8000 b82f7600 cdrom cdrom.sys Sun Apr 13 11:40:45 2008 (480253AD)
    b82f8000 b8306100 redbook redbook.sys Sun Apr 13 11:40:27 2008 (4802539B)
    b8308000 b8311000 nvnetbus nvnetbus.sys Mon Aug 07 16:39:23 2006 (44D7CF2B)
    b8318000 b8321000 HIDCLASS HIDCLASS.SYS Sun Apr 13 11:45:25 2008 (480254C5)
    b8328000 b832e180 PCIIDEX PCIIDEX.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b8330000 b8334d00 PartMgr PartMgr.sys Sun Apr 13 11:40:48 2008 (480253B0)
    b8338000 b8340000 SiRemFil SiRemFil.sys Wed Jun 20 13:06:09 2007 (467988B1)
    b8378000 b837fd80 usbccgp usbccgp.sys Sun Apr 13 11:45:38 2008 (480254D2)
    b8398000 b83a0000 LHidFilt LHidFilt.Sys Sat Apr 30 04:50:48 2011 (4DBBF798)
    b83a0000 b83a7780 LMouFilt LMouFilt.Sys Sat Apr 30 04:50:53 2011 (4DBBF79D)
    b83c0000 b83c4500 watchdog watchdog.sys Sun Apr 13 11:44:59 2008 (480254AB)
    b8408000 b8409000 fdc fdc.sys unavailable (00000000)
    b8410000 b8414300 usbohci usbohci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b8418000 b841f600 usbehci usbehci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b8420000 b8425280 GEARAspiWDM GEARAspiWDM.sys Mon May 18 05:16:53 2009 (4A1151B5)
    b8428000 b842e180 HIDPARSE HIDPARSE.SYS Sun Apr 13 11:45:22 2008 (480254C2)
    b8430000 b8434a80 TDI TDI.SYS Sun Apr 13 12:00:04 2008 (48025834)
    b8438000 b843c580 ptilink ptilink.sys Fri Aug 17 13:49:53 2001 (3B7D8371)
    b8440000 b8444080 raspti raspti.sys Fri Aug 17 13:55:32 2001 (3B7D84C4)
    b8448000 b844e000 kbdclass kbdclass.sys Sun Apr 13 11:39:46 2008 (48025372)
    b8450000 b8455a00 mouclass mouclass.sys Sun Apr 13 11:39:47 2008 (48025373)
    b8458000 b8460000 wacommousefilter wacommousefilter.sys Fri Feb 16 10:12:29 2007 (45D5F40D)
    b8460000 b8465000 flpydisk flpydisk.sys Sun Apr 13 11:40:24 2008 (48025398)
    b8480000 b8485200 vga vga.sys Sun Apr 13 11:44:40 2008 (48025498)
    b8488000 b848ca80 Msfs Msfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b8490000 b8497880 Npfs Npfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b84b8000 b84bb000 BOOTVID BOOTVID.dll Fri Aug 17 13:49:09 2001 (3B7D8345)
    b84bc000 b84bf100 SiWinAcc SiWinAcc.sys Thu Jun 14 17:02:27 2007 (4671D713)
    b8558000 b855a200 wacomvhid wacomvhid.sys Mon Sep 21 16:29:18 2009 (4AB80C4E)
    b855c000 b855e900 ndistapi ndistapi.sys Fri Jul 08 07:02:00 2011 (4E170DD8)
    b8580000 b8583c80 mssmbios mssmbios.sys Sun Apr 13 11:36:45 2008 (480252BD)
    b8590000 b8592f80 mouhid mouhid.sys Fri Aug 17 13:47:57 2001 (3B7D82FD)
    b85a8000 b85a9b80 kdcom kdcom.dll Fri Aug 17 13:49:10 2001 (3B7D8346)
    b85aa000 b85ab100 WMILIB WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b85ac000 b85ad700 dmload dmload.sys Fri Aug 17 13:58:15 2001 (3B7D8567)
    b85dc000 b85dd100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b861e000 b861f420 ASACPI ASACPI.sys Thu Aug 12 19:52:52 2004 (411C2D04)
    b8632000 b8633100 swenum swenum.sys Sun Apr 13 11:39:52 2008 (48025378)
    b8636000 b8637280 USBD USBD.SYS Fri Aug 17 14:02:58 2001 (3B7D8682)
    b8648000 b8649f00 Fs_Rec Fs_Rec.SYS Fri Aug 17 13:49:37 2001 (3B7D8361)
    b864a000 b864b080 Beep Beep.SYS Fri Aug 17 13:47:33 2001 (3B7D82E5)
    b864c000 b864d080 mnmdd mnmdd.SYS Fri Aug 17 13:57:28 2001 (3B7D8538)
    b864e000 b864f080 RDPCDD RDPCDD.sys Fri Aug 17 13:46:56 2001 (3B7D82C0)
    b8658000 b8659440 AsIO AsIO.sys Wed Dec 21 00:55:21 2005 (43A91879)
    b865c000 b865dc00 lv302af lv302af.sys Wed May 09 21:01:36 2007 (46429920)
    b8670000 b8670d00 pciide pciide.sys Fri Aug 17 13:51:49 2001 (3B7D83E5)
    b86de000 b86deb80 Null Null.SYS Fri Aug 17 13:47:39 2001 (3B7D82EB)
    b8733000 b8733c00 audstub audstub.sys Fri Aug 17 13:59:40 2001 (3B7D85BC)
    b8764000 b8764e80 LBeepKE LBeepKE.sys Sat Apr 30 04:52:33 2011 (4DBBF801)
    b87a4000 b87a4d00 dxgthk dxgthk.sys Fri Aug 17 13:53:12 2001 (3B7D8438)
    bd000000 bd011600 dxg dxg.sys Sun Apr 13 11:38:27 2008 (48025323)
    bd012000 bd416080 nv4_disp nv4_disp.dll Wed Aug 03 01:56:54 2011 (4E390D56)
    bd417000 bd45de80 ATMFD ATMFD.DLL Tue Feb 15 04:56:39 2011 (4D5A7807)
    bf800000 bf9c5d80 win32k win32k.sys Thu Jun 02 07:01:55 2011 (4DE797D3)

    Unloaded modules:
    b1876000 b18a1000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b85fc000 b85fe000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8761000 b8762000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00001000
    b1a39000 b1a46000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b18a1000 b18c4000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00023000
    b1a49000 b1a57000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000E000
    b148c000 b149c000 Serial.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00010000
    b127d000 b1291000 Parport.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00014000
    b8238000 b8245000 i8042prt.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b8478000 b847d000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00005000
    b60fa000 b60fd000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00003000
    b76f8000 b7701000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8630000 b8632000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b81b8000 b81c1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b862c000 b862e000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b81a8000 b81b1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8628000 b862a000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8198000 b81a1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8624000 b8626000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8178000 b8181000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8620000 b8622000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8168000 b8171000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    Closing open log file c:debuglog.txt


    The Second:

    Opened log file 'c:debuglog.txt'

    Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini100711-02.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp3_gdr.101209-1647
    Machine Name:
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
    Debug session time: Fri Oct 7 14:58:21.828 2011 (UTC - 7:00)
    System Uptime: 0 days 0:03:06.468
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ..............................
    Loading User Symbols
    Loading unloaded module list
    ......................
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 1000008E, {c000001d, 80535506, b18f9c44, 0}

    Probably caused by : memory_corruption

    Followup: memory_corruption
    ---------

    3: kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    KERNEL_MODE_EXCEPTION_NOT_HANDLED_M (1000008e)
    This is a very common bugcheck. Usually the exception address pinpoints
    the driver/function that caused the problem. Always note this address
    as well as the link date of the driver/image that contains this address.
    Some common problems are exception code 0x80000003. This means a hard
    coded breakpoint or assertion was hit, but this system was booted
    /NODEBUG. This is not supposed to happen as developers should never have
    hardcoded breakpoints in retail code, but ...
    If this happens, make sure a debugger gets connected, and the
    system is booted /DEBUG. This will let us see why this breakpoint is
    happening.
    Arguments:
    Arg1: c000001d, The exception code that was not handled
    Arg2: 80535506, The address that the exception occurred at
    Arg3: b18f9c44, Trap Frame
    Arg4: 00000000

    Debugging Details:
    ------------------


    EXCEPTION_CODE: (NTSTATUS) 0xc000001d - {EXCEPTION} Illegal Instruction An attempt was made to execute an illegal instruction.

    FAULTING_IP:
    nt!WmipWmiIrpCompletion+1c
    80535506 ff ???

    TRAP_FRAME: b18f9c44 -- (.trap 0xffffffffb18f9c44)
    .trap 0xffffffffb18f9c44
    ErrCode = 00000000
    eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=8aa9a320 edi=00000000
    eip=80535506 esp=b18f9cb8 ebp=b18f9cd4 iopl=0 nv up ei ng nz na pe cy
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010287
    nt!WmipWmiIrpCompletion+0x1c:
    80535506 ff ???
    .trap
    Resetting default scope

    CUSTOMER_CRASH_COUNT: 2

    DEFAULT_BUCKET_ID: CODE_CORRUPTION

    BUGCHECK_STR: 0x8E

    PROCESS_NAME: explorer.exe

    MISALIGNED_IP:
    nt!WmipWmiIrpCompletion+1c
    80535506 ff ???

    LAST_CONTROL_TRANSFER: from 80536202 to 80535506

    FAILED_INSTRUCTION_ADDRESS:
    nt!WmipWmiIrpCompletion+1c
    80535506 ff ???

    STACK_TEXT:
    b18f9cd4 80536202 b18f9d64 01defec8 bf8036c5 nt!WmipWmiIrpCompletion+0x1c
    b18f9cf4 bf800b5e 8aa9a320 00000001 bf8036d6 nt!ExAcquireResourceExclusiveLite+0x8e
    b18f9d00 bf8036d6 b18f9d64 01defec8 bf8036c5 win32k!EnterCrit+0x14
    b18f9d48 8054167c 01deff28 00000000 00000000 win32k!NtUserPeekMessage+0x11
    b18f9d48 7c90e514 01deff28 00000000 00000000 nt!KiFastCallEntry+0xfc
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    01defed4 00000000 00000000 00000000 00000000 0x7c90e514


    STACK_COMMAND: kb

    CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
    !chkimg -lo 50 -d !nt
    80535156-8053515a 5 bytes - nt!NtTraceEvent

    [ 6a 0c 68 30 cd:e9 a5 fa 22 38 ]
    5 errors : !nt (80535156-8053515a)

    MODULE_NAME: memory_corruption

    IMAGE_NAME: memory_corruption

    FOLLOWUP_NAME: memory_corruption

    DEBUG_FLR_IMAGE_TIMESTAMP: 0

    MEMORY_CORRUPTOR: LARGE

    FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE

    BUCKET_ID: MEMORY_CORRUPTION_LARGE

    Followup: memory_corruption
    ---------

    eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=8aa9a320 edi=00000000
    eip=80535506 esp=b18f9cb8 ebp=b18f9cd4 iopl=0 nv up ei ng nz na pe cy
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010287
    nt!WmipWmiIrpCompletion+0x1c:
    80535506 ff ???
    ChildEBP RetAddr Args to Child
    b18f9cd4 80536202 b18f9d64 01defec8 bf8036c5 nt!WmipWmiIrpCompletion+0x1c (FPO: [Non-Fpo])
    b18f9cf4 bf800b5e 8aa9a320 00000001 bf8036d6 nt!ExAcquireResourceExclusiveLite+0x8e (FPO: [Non-Fpo])
    b18f9d00 bf8036d6 b18f9d64 01defec8 bf8036c5 win32k!EnterCrit+0x14 (FPO: [0,0,0])
    b18f9d48 8054167c 01deff28 00000000 00000000 win32k!NtUserPeekMessage+0x11 (FPO: [Non-Fpo])
    b18f9d48 7c90e514 01deff28 00000000 00000000 nt!KiFastCallEntry+0xfc (FPO: [0,0] TrapFrame @ b18f9d64)
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    01defed4 00000000 00000000 00000000 00000000 0x7c90e514
    start end module name
    804d7000 806e5000 nt ntkrpamp.exe Thu Dec 09 05:06:55 2010 (4D00D46F)
    806e5000 80705d00 hal halmacpi.dll Sun Apr 13 11:31:27 2008 (4802517F)
    b034c000 b0376180 kmixer kmixer.sys Sun Apr 13 11:45:07 2008 (480254B3)
    b0467000 b04a7e00 HTTP HTTP.sys Tue Oct 20 09:20:15 2009 (4ADDE33F)
    b0570000 b0583600 NAVENG NAVENG.SYS Fri Jul 29 05:10:02 2011 (4E32A31A)
    b0584000 b0703300 NAVEX15 NAVEX15.SYS Fri Jul 29 05:07:28 2011 (4E32A280)
    b0704000 b078a000 SRTSP SRTSP.SYS Tue Mar 29 19:43:18 2011 (4D9298C6)
    b109a000 b10f1600 srv srv.sys Thu Feb 17 05:18:01 2011 (4D5D2009)
    b11e2000 b120e180 mrxdav mrxdav.sys Sun Apr 13 11:32:42 2008 (480251CA)
    b12d1000 b12da000 cpuz135_x32 cpuz135_x32.sys Tue Nov 09 05:32:57 2010 (4CD94D89)
    b16c1000 b16c3280 psi_mf psi_mf.sys Wed Sep 01 00:53:16 2010 (4C7E066C)
    b1829000 b183d480 wdmaud wdmaud.sys Sun Apr 13 12:17:18 2008 (48025C3E)
    b1866000 b1889180 Fastfat Fastfat.SYS Sun Apr 13 12:14:28 2008 (48025B94)
    b19ea000 b19f8d80 sysaudio sysaudio.sys Sun Apr 13 12:15:55 2008 (48025BEB)
    b1a92000 b1ab3000 SbieDrv SbieDrv.sys Fri Jun 17 06:29:37 2011 (4DFB56C1)
    b1c27000 b1c2a900 ndisuio ndisuio.sys Sun Apr 13 11:55:57 2008 (4802573D)
    b2838000 b2851b80 dump_nvata dump_nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b2852000 b28c3000 wdf01000 wdf01000.sys Mon Jul 13 16:11:36 2009 (4A5BBF28)
    b2963000 b2a99080 LV302V32 LV302V32.SYS Wed May 09 21:09:48 2007 (46429B0C)
    b2ac2000 b2b8d000 BHDrvx86 BHDrvx86.sys Wed Sep 21 20:56:15 2011 (4E7AB1DF)
    b2b8d000 b2bab000 EraserUtilRebootDrv EraserUtilRebootDrv.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2bab000 b2c09000 eeCtrl eeCtrl.sys Thu Jul 07 18:45:11 2011 (4E166127)
    b2c09000 b2c78680 mrxsmb mrxsmb.sys Fri Jul 15 06:29:28 2011 (4E2040B8)
    b2c91000 b2c93900 Dxapi Dxapi.sys Fri Aug 17 13:53:19 2001 (3B7D843F)
    b2ca1000 b2ccbe80 rdbss rdbss.sys Sun Apr 13 12:28:38 2008 (48025EE6)
    b2ccc000 b2cf0000 Ironx86 Ironx86.SYS Fri Nov 12 15:05:54 2010 (4CDDC852)
    b2cf0000 b2d11d00 afd afd.sys Wed Feb 16 05:22:47 2011 (4D5BCFA7)
    b2d12000 b2d39c00 netbt netbt.sys Sun Apr 13 12:20:59 2008 (48025D1B)
    b2d3a000 b2d95000 IDSxpx86 IDSxpx86.sys Wed Jul 20 06:18:06 2011 (4E26D58E)
    b2d95000 b2dbb000 SYMEVENT SYMEVENT.SYS Thu Mar 24 16:02:08 2011 (4D8BCD70)
    b2dbb000 b2de0500 ipnat ipnat.sys Sun Apr 13 11:57:10 2008 (48025786)
    b2de1000 b2e39a00 SYMTDI SYMTDI.SYS Thu Mar 17 20:04:50 2011 (4D82CBD2)
    b2e3a000 b2e92480 tcpip tcpip.sys Fri Jun 20 04:51:09 2008 (485B99AD)
    b2e93000 b2ea5600 ipsec ipsec.sys Sun Apr 13 12:19:42 2008 (48025CCE)
    b2ece000 b2ed0880 hidusb hidusb.sys Sun Apr 13 11:45:27 2008 (480254C7)
    b2f41000 b2f62780 adidts adidts.sys Tue Jul 14 01:21:04 2009 (4A5C3FF0)
    b2f63000 b2f79f00 AEAudio AEAudio.sys Mon Aug 07 06:57:27 2006 (44D746C7)
    b2f7a000 b2f9da80 portcls portcls.sys Sun Apr 13 12:19:40 2008 (48025CCC)
    b2f9e000 b2fea000 ADIHdAud ADIHdAud.sys Tue Jan 16 06:09:04 2007 (45ACDC80)
    b30eb000 b30f4000 wacmoumonitor wacmoumonitor.sys Fri Oct 29 09:29:38 2010 (4CCAF672)
    b30fb000 b3109a80 usbaudio usbaudio.sys Sun Apr 13 11:45:11 2008 (480254B7)
    b310b000 b3113880 LVUSBSta LVUSBSta.sys Wed May 09 21:00:54 2007 (464298F6)
    b3202000 b3204280 rasacd rasacd.sys Fri Aug 17 13:55:39 2001 (3B7D84CB)
    b6021000 b607ef00 update update.sys Sun Apr 13 11:39:46 2008 (48025372)
    b60a7000 b60d6e80 rdpdr rdpdr.sys Sun Apr 13 11:32:50 2008 (480251D2)
    b60d7000 b60e7e00 psched psched.sys Sun Apr 13 11:56:36 2008 (48025764)
    b60e8000 b60fe580 ndiswan ndiswan.sys Sun Apr 13 12:20:41 2008 (48025D09)
    b6876000 b6889f00 VIDEOPRT VIDEOPRT.SYS Sun Apr 13 11:44:39 2008 (48025497)
    b688a000 b7480280 nv4_mini nv4_mini.sys Wed Aug 03 02:02:29 2011 (4E390EA5)
    b7481000 b74d4000 NVSNPU NVSNPU.SYS Mon Aug 07 16:38:41 2006 (44D7CF01)
    b74d4000 b75e1c00 NVNRM NVNRM.SYS Mon Aug 07 16:39:02 2006 (44D7CF16)
    b75e2000 b760a000 HDAudBus HDAudBus.sys Thu May 26 08:46:29 2005 (4295EF55)
    b760a000 b762c700 ks ks.sys Sun Apr 13 12:16:34 2008 (48025C12)
    b762d000 b7650200 USBPORT USBPORT.SYS Sun Apr 13 11:45:34 2008 (480254CE)
    b76a1000 b76afb00 drmk drmk.sys Sun Apr 13 11:45:12 2008 (480254B8)
    b76b1000 b76bf000 WDFLDR WDFLDR.SYS Mon Jul 13 16:11:25 2009 (4A5BBF1D)
    b76c1000 b76d0900 Cdfs Cdfs.SYS Sun Apr 13 12:14:21 2008 (48025B8D)
    b76e1000 b76ef880 usbhub usbhub.sys Sun Apr 13 11:45:36 2008 (480254D0)
    b7c44000 b7c47900 kbdhid kbdhid.sys Sun Apr 13 11:39:47 2008 (48025373)
    b7c48000 b7c4b700 SaiMini SaiMini.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b7c80000 b7c99c00 Mup Mup.sys Thu Apr 21 06:37:43 2011 (4DB03327)
    b7c9a000 b7cc6980 NDIS NDIS.sys Sun Apr 13 12:20:35 2008 (48025D03)
    b7cc7000 b7d53600 Ntfs Ntfs.sys Sun Apr 13 12:15:49 2008 (48025BE5)
    b7d54000 b7d66f00 WudfPf WudfPf.sys Thu Sep 28 18:55:43 2006 (451C7D1F)
    b7d67000 b7d7db00 KSecDD KSecDD.sys Wed Jun 24 04:18:40 2009 (4A420B90)
    b7d7e000 b7e39000 SYMEFA SYMEFA.SYS Sun Mar 13 20:20:09 2011 (4D7D8969)
    b7e39000 b7e4af00 sr sr.sys Sun Apr 13 11:36:50 2008 (480252C2)
    b7e4b000 b7ea2000 SYMDS SYMDS.SYS Tue Dec 07 16:16:20 2010 (4CFECE54)
    b7ea2000 b7ec1b00 fltmgr fltmgr.sys Sun Apr 13 11:32:58 2008 (480251DA)
    b7ec2000 b7ed9880 SCSIPORT SCSIPORT.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b7eda000 b7ef1000 SI3132 SI3132.sys Wed Oct 03 11:41:04 2007 (4703E240)
    b7ef1000 b7f0ab80 nvata nvata.sys Thu Sep 21 15:39:13 2006 (45131491)
    b7f0b000 b7f22900 atapi atapi.sys Sun Apr 13 11:40:29 2008 (4802539D)
    b7f23000 b7f48700 dmio dmio.sys Sun Apr 13 11:44:45 2008 (4802549D)
    b7f49000 b7f67880 ftdisk ftdisk.sys Fri Aug 17 13:52:41 2001 (3B7D8419)
    b7f68000 b7f78a80 pci pci.sys Sun Apr 13 11:36:43 2008 (480252BB)
    b7f79000 b7fa6d80 ACPI ACPI.sys Sun Apr 13 11:36:33 2008 (480252B1)
    b80a8000 b80b1180 isapnp isapnp.sys Sun Apr 13 11:36:40 2008 (480252B8)
    b80b8000 b80c7100 ohci1394 ohci1394.sys Sun Apr 13 11:46:18 2008 (480254FA)
    b80c8000 b80d5080 1394BUS 1394BUS.SYS Sun Apr 13 11:46:18 2008 (480254FA)
    b80d8000 b80e2580 MountMgr MountMgr.sys Sun Apr 13 11:39:45 2008 (48025371)
    b80e8000 b80f4c80 VolSnap VolSnap.sys Sun Apr 13 11:41:00 2008 (480253BC)
    b80f8000 b8100e00 disk disk.sys Sun Apr 13 11:40:46 2008 (480253AE)
    b8108000 b8114180 CLASSPNP CLASSPNP.SYS Sun Apr 13 12:16:21 2008 (48025C05)
    b8118000 b8121300 PxHelp20 PxHelp20.sys Tue Jun 23 16:16:17 2009 (4A416241)
    b8168000 b8172200 raspppoe raspppoe.sys Sun Apr 13 11:57:31 2008 (4802579B)
    b8178000 b8183d00 raspptp raspptp.sys Sun Apr 13 12:19:47 2008 (48025CD3)
    b8188000 b8197180 nic1394 nic1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b8198000 b81a0900 msgpc msgpc.sys Sun Apr 13 11:56:32 2008 (48025760)
    b81a8000 b81b1000 SaiBus SaiBus.sys Wed Apr 21 09:34:46 2010 (4BCF2926)
    b81b8000 b81c1f00 termdd termdd.sys Sun Apr 13 11:38:36 2008 (4802532C)
    b81c8000 b81d7000 azvusb azvusb.sys Thu Aug 13 04:28:55 2009 (4A83F8F7)
    b81d8000 b81e2000 NDProxy NDProxy.SYS Tue Nov 02 08:17:02 2010 (4CD02B6E)
    b81f8000 b8204e00 NVENETFD NVENETFD.sys Mon Aug 07 16:39:21 2006 (44D7CF29)
    b8218000 b8220700 wanarp wanarp.sys Sun Apr 13 11:57:20 2008 (48025790)
    b8228000 b8236d80 arp1394 arp1394.sys Sun Apr 13 11:51:22 2008 (4802562A)
    b8258000 b8260780 netbios netbios.sys Sun Apr 13 11:56:01 2008 (48025741)
    b8268000 b8270e00 intelppm intelppm.sys Sun Apr 13 11:31:31 2008 (48025183)
    b8278000 b8282480 imapi imapi.sys Sun Apr 13 11:40:57 2008 (480253B9)
    b8288000 b8297600 cdrom cdrom.sys Sun Apr 13 11:40:45 2008 (480253AD)
    b8298000 b82a6100 redbook redbook.sys Sun Apr 13 11:40:27 2008 (4802539B)
    b82a8000 b82b1000 nvnetbus nvnetbus.sys Mon Aug 07 16:39:23 2006 (44D7CF2B)
    b82b8000 b82c1000 HIDCLASS HIDCLASS.SYS Sun Apr 13 11:45:25 2008 (480254C5)
    b82c8000 b82d2980 SRTSPX SRTSPX.SYS Tue Mar 29 19:43:23 2011 (4D9298CB)
    b82d8000 b82e4e20 SCDEmu SCDEmu.SYS Mon Jul 07 00:40:49 2008 (4871C881)
    b82e8000 b82f2e00 Fips Fips.SYS Sun Apr 13 11:33:27 2008 (480251F7)
    b8318000 b8324880 rasl2tp rasl2tp.sys Sun Apr 13 12:19:43 2008 (48025CCF)
    b8328000 b832e180 PCIIDEX PCIIDEX.SYS Sun Apr 13 11:40:29 2008 (4802539D)
    b8330000 b8334d00 PartMgr PartMgr.sys Sun Apr 13 11:40:48 2008 (480253B0)
    b8338000 b8340000 SiRemFil SiRemFil.sys Wed Jun 20 13:06:09 2007 (467988B1)
    b8358000 b835f880 Npfs Npfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b83a0000 b83a7d80 usbccgp usbccgp.sys Sun Apr 13 11:45:38 2008 (480254D2)
    b83b8000 b83be700 USBSTOR USBSTOR.SYS Sun Apr 13 11:45:37 2008 (480254D1)
    b83d8000 b83e0000 LHidFilt LHidFilt.Sys Sat Apr 30 04:50:48 2011 (4DBBF798)
    b83e0000 b83e7780 LMouFilt LMouFilt.Sys Sat Apr 30 04:50:53 2011 (4DBBF79D)
    b83f0000 b83f4500 watchdog watchdog.sys Sun Apr 13 11:44:59 2008 (480254AB)
    b8410000 b8411000 fdc fdc.sys unavailable (00000000)
    b8418000 b841c300 usbohci usbohci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b8420000 b8427600 usbehci usbehci.sys Sun Apr 13 11:45:34 2008 (480254CE)
    b8428000 b842d280 GEARAspiWDM GEARAspiWDM.sys Mon May 18 05:16:53 2009 (4A1151B5)
    b8430000 b8436180 HIDPARSE HIDPARSE.SYS Sun Apr 13 11:45:22 2008 (480254C2)
    b8438000 b843ca80 TDI TDI.SYS Sun Apr 13 12:00:04 2008 (48025834)
    b8440000 b8444580 ptilink ptilink.sys Fri Aug 17 13:49:53 2001 (3B7D8371)
    b8448000 b844c080 raspti raspti.sys Fri Aug 17 13:55:32 2001 (3B7D84C4)
    b8450000 b8456000 kbdclass kbdclass.sys Sun Apr 13 11:39:46 2008 (48025372)
    b8458000 b845da00 mouclass mouclass.sys Sun Apr 13 11:39:47 2008 (48025373)
    b8460000 b8468000 wacommousefilter wacommousefilter.sys Fri Feb 16 10:12:29 2007 (45D5F40D)
    b8468000 b846d000 flpydisk flpydisk.sys Sun Apr 13 11:40:24 2008 (48025398)
    b84a8000 b84ad200 vga vga.sys Sun Apr 13 11:44:40 2008 (48025498)
    b84b0000 b84b4a80 Msfs Msfs.SYS Sun Apr 13 11:32:38 2008 (480251C6)
    b84b8000 b84bb000 BOOTVID BOOTVID.dll Fri Aug 17 13:49:09 2001 (3B7D8345)
    b84bc000 b84bf100 SiWinAcc SiWinAcc.sys Thu Jun 14 17:02:27 2007 (4671D713)
    b8560000 b8562200 wacomvhid wacomvhid.sys Mon Sep 21 16:29:18 2009 (4AB80C4E)
    b8564000 b8566900 ndistapi ndistapi.sys Fri Jul 08 07:02:00 2011 (4E170DD8)
    b8588000 b858bc80 mssmbios mssmbios.sys Sun Apr 13 11:36:45 2008 (480252BD)
    b8598000 b859af80 mouhid mouhid.sys Fri Aug 17 13:47:57 2001 (3B7D82FD)
    b85a8000 b85a9b80 kdcom kdcom.dll Fri Aug 17 13:49:10 2001 (3B7D8346)
    b85aa000 b85ab100 WMILIB WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b85ac000 b85ad700 dmload dmload.sys Fri Aug 17 13:58:15 2001 (3B7D8567)
    b85c4000 b85c5c00 lv302af lv302af.sys Wed May 09 21:01:36 2007 (46429920)
    b85ec000 b85ed100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 14:07:23 2001 (3B7D878B)
    b8610000 b8611420 ASACPI ASACPI.sys Thu Aug 12 19:52:52 2004 (411C2D04)
    b8624000 b8625100 swenum swenum.sys Sun Apr 13 11:39:52 2008 (48025378)
    b8628000 b8629280 USBD USBD.SYS Fri Aug 17 14:02:58 2001 (3B7D8682)
    b863c000 b863df00 Fs_Rec Fs_Rec.SYS Fri Aug 17 13:49:37 2001 (3B7D8361)
    b8642000 b8643080 Beep Beep.SYS Fri Aug 17 13:47:33 2001 (3B7D82E5)
    b864c000 b864d080 mnmdd mnmdd.SYS Fri Aug 17 13:57:28 2001 (3B7D8538)
    b864e000 b864f080 RDPCDD RDPCDD.sys Fri Aug 17 13:46:56 2001 (3B7D82C0)
    b866c000 b866d440 AsIO AsIO.sys Wed Dec 21 00:55:21 2005 (43A91879)
    b8670000 b8670d00 pciide pciide.sys Fri Aug 17 13:51:49 2001 (3B7D83E5)
    b8688000 b8688b80 Null Null.SYS Fri Aug 17 13:47:39 2001 (3B7D82EB)
    b86da000 b86dac00 audstub audstub.sys Fri Aug 17 13:59:40 2001 (3B7D85BC)
    b8701000 b8701e80 LBeepKE LBeepKE.sys Sat Apr 30 04:52:33 2011 (4DBBF801)
    b8760000 b8760d00 dxgthk dxgthk.sys Fri Aug 17 13:53:12 2001 (3B7D8438)
    bd000000 bd011600 dxg dxg.sys Sun Apr 13 11:38:27 2008 (48025323)
    bd012000 bd416080 nv4_disp nv4_disp.dll Wed Aug 03 01:56:54 2011 (4E390D56)
    bd417000 bd45de80 ATMFD ATMFD.DLL Tue Feb 15 04:56:39 2011 (4D5A7807)
    bf800000 bf9c5d80 win32k win32k.sys Thu Jun 02 07:01:55 2011 (4DE797D3)

    Unloaded modules:
    b17db000 b1806000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0002B000
    b861c000 b861e000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8783000 b8784000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00001000
    b1806000 b1829000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00023000
    b19ca000 b19d7000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b19da000 b19e8000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000E000
    b18da000 b18ea000 Serial.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00010000
    b11ce000 b11e2000 Parport.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00014000
    b7661000 b766e000 i8042prt.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 0000D000
    b8480000 b8485000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00005000
    b607f000 b6082000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00003000
    b76b1000 b76ba000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8622000 b8624000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b8308000 b8311000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b861e000 b8620000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82f8000 b8301000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b861a000 b861c000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82e8000 b82f1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8616000 b8618000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82d8000 b82e1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    b8612000 b8614000 USBD.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00002000
    b82c8000 b82d1000 LVUSBSta.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    ImageSize: 00009000
    Closing open log file c:debuglog.txt
     
  16. 2011/10/08
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    Start by testing your memory. Run Memtest86 or Windows Memory Diagnostic.


    Please note:

    To work around the above, test the installed RAM in various configurations. If you have a single module, swap it around the slots. If you have a pair of modules, run each one singly, swapping between slots; and then run them in pairs swapping between pairs of slots. If you have 2 sets of matched modules do not get them mixed up.
     
  17. 2011/10/17
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Hey Arie thank you for the response. I'm sorry I didn't get back sooner. I have been really busy lately.

    It seems like after those one or two crashes I mentioned last post plus two more a day later I really haven't had another crash all week. So, I was figuring I might just see if it crashes again before having to start running extensive memory tests. One thing I was wondering about, I believe those crashes occurred when I was running a bunch of things at the same time, could the fact that I have 4gb of ram installed and I'm running Windows XP 32bit with its 3.2gb cap be causing the problems? Maybe it trying to reference the memory outside of the cap?

    Two side questions I had were , one is, do you know anything about the 3gb switch for Windows XP and is it good or does it cause more problems then its worth and were can one get it? The second question is, as far as memtest goes, how many passes and errors would you consider to be a clear sign of bad or good ram?
     
  18. 2011/10/17
    wildfire

    wildfire Getting Old

    Joined:
    2008/04/21
    Messages:
    4,649
    Likes Received:
    124
    It isn't a cap, all 32bit OS's have a 4GB physical limitation, since your hardware also requires some of this address space most systems can only see 3-3.5GB
     
  19. 2011/10/18
    justsomeguy

    justsomeguy Inactive Thread Starter

    Joined:
    2011/09/25
    Messages:
    16
    Likes Received:
    0
    Just wondering then why does this only happen when your ram starts to exceed 3.2gb of ram, also then how does the switch work which seems to allow you to access the rest?
     
  20. 2011/10/18
    rsinfo

    rsinfo SuperGeek Alumni

    Joined:
    2005/12/25
    Messages:
    4,076
    Likes Received:
    178

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.