New
#1
blue screen of death
Hello, i had a mysterious bsod today, i've got none last months, may do u read my minidump? thanks !
Attachment 106257
oh btw, i use windows xp :-s
Hello, i had a mysterious bsod today, i've got none last months, may do u read my minidump? thanks !
Attachment 106257
oh btw, i use windows xp :-s
Mini102110-01.dmp
BugCheck 1000008E, {c0000005, bf9170f6, b3ed0cb4, 0}
Probably caused by : memory_corruption
MEMORY_CORRUPTION_LARGE_4096
sptd.sys Mon Mar 23 08:38:33 2009
Uninstall Daemon Tools normally, then use Duplex Secure tool to uninstall sptd.sys DuplexSecure - FAQ
Run memtest overnight RAM - Test with Memtest86+
Code:Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64 Copyright (c) Microsoft Corporation. All rights reserved. Loading Dump File [G:\Mini102110-01.dmp] Mini Kernel Dump File: Only registers and stack trace are available Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols Executable search path is: Windows XP Kernel Version 2600 (Service Pack 2) MP (2 procs) Free x86 compatible Product: WinNt, suite: TerminalServer SingleUserTS Built by: 2600.xpsp_sp2_qfe.070719-1309 Machine Name: Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055c720 Debug session time: Thu Oct 21 06:13:57.984 2010 (UTC - 5:00) System Uptime: 0 days 0:01:32.742 Loading Kernel Symbols ............................................................... ................................................. Loading User Symbols Loading unloaded module list ........... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 1000008E, {c0000005, bf9170f6, b3ed0cb4, 0} Probably caused by : memory_corruption Followup: memory_corruption 804d7000 806e2000 nt ntkrpamp.exe Thu Jul 19 13:40:40 2007 (469F3FA8) 806e2000 80702d00 hal halmacpi.dll Mon Oct 30 13:27:29 2006 (4545E1A1) b198c000 b19b6180 kmixer kmixer.sys Wed Jun 14 11:50:19 2006 (448FCDCB) b37d1000 b3811200 HTTP HTTP.sys Fri Mar 17 03:08:09 2006 (441A0BF9) b3c9a000 b3cc1f00 secdrv secdrv.sys Tue Aug 31 16:42:55 2004 (4134805F) b3cc2000 b3d13480 srv srv.sys Mon Aug 14 15:00:40 2006 (44E065E8) b3e04000 b3e30400 mrxdav mrxdav.sys Wed Aug 04 09:00:49 2004 (41107B91) b4127000 b413b400 wdmaud wdmaud.sys Wed Jun 14 12:17:03 2006 (448FD40F) b439c000 b439f900 ndisuio ndisuio.sys Tue Aug 22 11:53:40 2006 (44EAC614) b440c000 b441b380 rspndr rspndr.sys Wed Nov 08 12:28:09 2006 (4551B139) b474c000 b4763480 dump_atapi dump_atapi.sys Wed Aug 04 08:59:41 2004 (41107B4D) b478c000 b47fb000 mrxsmb mrxsmb.sys Thu Feb 08 12:14:03 2007 (45CAF7EB) b47fb000 b4825a00 rdbss rdbss.sys Thu Jun 15 12:35:00 2006 (449129C4) b4826000 b4847d00 afd afd.sys Wed Aug 04 09:14:13 2004 (41107EB5) b4848000 b4869480 ipnat ipnat.sys Fri Apr 14 03:20:40 2006 (443EEAD8) b486a000 b4891c00 netbt netbt.sys Wed Aug 04 09:14:36 2004 (41107ECC) b4892000 b48ea100 tcpip tcpip.sys Tue Sep 26 12:21:36 2006 (4518F120) b48eb000 b48fd400 ipsec ipsec.sys Wed Aug 04 09:14:27 2004 (41107EC3) b4936000 b4938900 Dxapi Dxapi.sys Fri Aug 17 23:53:19 2001 (3B7D843F) b4996000 b4998f80 mouhid mouhid.sys Fri Aug 17 23:47:57 2001 (3B7D82FD) b499a000 b499c580 hidusb hidusb.sys Sat Aug 18 00:02:16 2001 (3B7D8658) b49ae000 b49cf700 portcls portcls.sys Tue Mar 16 20:58:17 2004 (40574E49) b49d0000 b4ed5000 RtkHDAud RtkHDAud.sys Fri May 22 18:37:47 2009 (4A16C6CB) b6ffd000 b7055e80 update update.sys Mon Apr 23 13:14:23 2007 (462C86FF) b7056000 b7086100 rdpdr rdpdr.sys Wed Aug 04 09:01:10 2004 (41107BA6) b70f7000 b7106900 Cdfs Cdfs.SYS Wed Aug 04 09:14:09 2004 (41107EB1) b7107000 b7110000 HIDCLASS HIDCLASS.SYS Tue Oct 31 12:26:12 2006 (454724C4) b7127000 b7137e00 psched psched.sys Wed Aug 04 09:04:16 2004 (41107C60) b7138000 b713a280 rasacd rasacd.sys Fri Aug 17 23:55:39 2001 (3B7D84CB) b7160000 b7176680 ndiswan ndiswan.sys Wed Aug 04 09:14:30 2004 (41107EC6) b7177000 b71af000 az2gd5l2 az2gd5l2.SYS Sat Mar 21 16:47:30 2009 (49C4FE02) b71af000 b71d1680 ks ks.sys Wed Aug 04 09:15:20 2004 (41107EF8) b71d2000 b71f7000 HDAudBus HDAudBus.sys Sat Jan 08 03:07:15 2005 (41DF3243) b71f7000 b721a200 USBPORT USBPORT.SYS Fri Jul 20 13:29:09 2007 (46A08E75) b721b000 b722ef00 VIDEOPRT VIDEOPRT.SYS Wed May 30 13:47:44 2007 (465D5650) b722f000 b7c4be60 nv4_mini nv4_mini.sys Sat Jul 10 00:19:49 2010 (4C379275) b7cd5000 b7ceea80 Mup Mup.sys Fri Sep 23 04:26:18 2005 (433359BA) b7cef000 b7d1ba80 NDIS NDIS.sys Wed Aug 04 09:14:27 2004 (41107EC3) b7d1c000 b7da8600 Ntfs Ntfs.sys Thu Apr 05 16:38:57 2007 (4614FBF1) b7da9000 b7dbf980 KSecDD KSecDD.sys Mon Jun 22 14:35:42 2009 (4A3F6C8E) b7dc0000 b7dd1f00 sr sr.sys Wed Aug 04 09:06:22 2004 (41107CDE) b7dd2000 b7df1b80 fltMgr fltMgr.sys Mon Apr 23 13:51:18 2007 (462C8FA6) b7df2000 b7e09480 atapi atapi.sys Wed Aug 04 08:59:41 2004 (41107B4D) b7e0a000 b7e2f700 dmio dmio.sys Wed Aug 04 09:07:13 2004 (41107D11) b7e30000 b7e4e880 ftdisk ftdisk.sys Fri Aug 17 23:52:41 2001 (3B7D8419) b7e4f000 b7e5fa80 pci pci.sys Wed Aug 04 09:07:45 2004 (41107D31) b7e60000 b7e8dd80 ACPI ACPI.sys Wed Aug 04 09:07:35 2004 (41107D27) b7e8e000 b7ea5800 SCSIPORT SCSIPORT.SYS Wed Aug 04 08:59:39 2004 (41107B4B) b7ea6000 b7fa7000 sptd sptd.sys Mon Mar 23 08:38:33 2009 (49C72E69) b80a8000 b80b0c00 isapnp isapnp.sys Fri Aug 17 23:58:01 2001 (3B7D8559) b80b8000 b80c2500 MountMgr MountMgr.sys Wed Aug 04 08:58:29 2004 (41107B05) b80c8000 b80d4c80 VolSnap VolSnap.sys Wed Aug 04 09:00:14 2004 (41107B6E) b80d8000 b80e0e00 disk disk.sys Wed Aug 04 08:59:53 2004 (41107B59) b80e8000 b80f4180 CLASSPNP CLASSPNP.SYS Thu Oct 06 02:53:44 2005 (43446788) b80f8000 b8101200 PxHelp20 PxHelp20.sys Thu Mar 13 03:57:44 2008 (47D88A18) b8148000 b8156800 usbhub usbhub.sys Thu Jul 19 13:33:28 2007 (469F3DF8) b8158000 b8166b80 drmk drmk.sys Wed Aug 04 09:07:54 2004 (41107D3A) b81a8000 b81b6d80 sysaudio sysaudio.sys Wed Aug 04 09:15:54 2004 (41107F1A) b81b8000 b81c0700 wanarp wanarp.sys Wed Aug 04 09:04:57 2004 (41107C89) b81c8000 b81d0700 netbios netbios.sys Wed Aug 04 09:03:19 2004 (41107C27) b81d8000 b81e0880 Fips Fips.SYS Sat Aug 18 04:31:49 2001 (3B7DC585) b81e8000 b81f0d00 intelppm intelppm.sys Sat Aug 28 00:42:44 2004 (412FAAD4) b81f8000 b8206000 l1e51x86 l1e51x86.sys Wed Aug 05 08:49:35 2009 (4A791D6F) b8208000 b8214e00 i8042prt i8042prt.sys Wed Aug 04 09:14:36 2004 (41107ECC) b8218000 b8227d80 serial serial.sys Wed Aug 04 09:15:51 2004 (41107F17) b8228000 b8232400 imapi imapi.sys Wed Jul 06 02:45:39 2005 (42CB1BA3) b8238000 b8247480 cdrom cdrom.sys Wed Apr 25 15:20:29 2007 (462F478D) b8248000 b8256080 redbook redbook.sys Wed Aug 04 08:59:34 2004 (41107B46) b8258000 b8264880 rasl2tp rasl2tp.sys Wed Aug 04 09:14:21 2004 (41107EBD) b8268000 b8272200 raspppoe raspppoe.sys Wed Aug 04 09:05:06 2004 (41107C92) b8278000 b8283d00 raspptp raspptp.sys Wed Aug 04 09:14:26 2004 (41107EC2) b8288000 b8290900 msgpc msgpc.sys Wed Aug 04 09:04:11 2004 (41107C5B) b8298000 b82a1f00 termdd termdd.sys Wed Aug 04 08:58:52 2004 (41107B1C) b82a8000 b82b1480 NDProxy NDProxy.SYS Fri Aug 17 23:55:30 2001 (3B7D84C2) b8328000 b832e200 PCIIDEX PCIIDEX.SYS Wed Aug 04 08:59:40 2004 (41107B4C) b8330000 b8334900 PartMgr PartMgr.sys Sat Aug 18 04:32:23 2001 (3B7DC5A7) b8348000 b834c280 KMWDFilter KMWDFilter.SYS Thu Mar 29 10:00:14 2007 (460B63FE) b8380000 b8386180 HIDPARSE HIDPARSE.SYS Wed Aug 04 09:08:15 2004 (41107D4F) b8390000 b8394500 watchdog watchdog.sys Wed Aug 04 09:07:32 2004 (41107D24) b83c0000 b83c5080 usbuhci usbuhci.sys Fri Jul 20 13:29:11 2007 (46A08E77) b83c8000 b83cf600 usbehci usbehci.sys Fri Jul 20 13:29:09 2007 (46A08E75) b83d0000 b83d6000 kbdclass kbdclass.sys Wed Aug 04 08:58:32 2004 (41107B08) b8438000 b843c880 TDI TDI.SYS Wed Aug 04 09:07:47 2004 (41107D33) b8440000 b8444580 ptilink ptilink.sys Fri Aug 17 23:49:53 2001 (3B7D8371) b8448000 b844c080 raspti raspti.sys Fri Aug 17 23:55:32 2001 (3B7D84C4) b8450000 b8457580 Modem Modem.SYS Wed Aug 04 09:08:04 2004 (41107D44) b8458000 b845da00 mouclass mouclass.sys Wed Aug 04 08:58:32 2004 (41107B08) b8498000 b849d200 vga vga.sys Wed Aug 04 09:07:06 2004 (41107D0A) b84a0000 b84a4a80 Msfs Msfs.SYS Wed Aug 04 09:00:37 2004 (41107B85) b84a8000 b84af880 Npfs Npfs.SYS Wed Aug 04 09:00:38 2004 (41107B86) b84b8000 b84bb000 BOOTVID BOOTVID.dll Fri Aug 17 23:49:09 2001 (3B7D8345) b8564000 b8567c80 serenum serenum.sys Wed Aug 04 08:59:06 2004 (41107B2A) b8578000 b857a580 ndistapi ndistapi.sys Fri Aug 17 23:55:29 2001 (3B7D84C1) b8594000 b8597c80 mssmbios mssmbios.sys Wed Aug 04 09:07:47 2004 (41107D33) b85a8000 b85a9b80 kdcom kdcom.dll Fri Aug 17 23:49:10 2001 (3B7D8346) b85aa000 b85ab100 WMILIB WMILIB.SYS Sat Aug 18 00:07:23 2001 (3B7D878B) b85ac000 b85ad700 dmload dmload.sys Fri Aug 17 23:58:15 2001 (3B7D8567) b85be000 b85bf700 RootMdm RootMdm.sys Fri Aug 17 23:57:36 2001 (3B7D8540) b85c0000 b85c1100 swenum swenum.sys Wed Aug 04 08:58:41 2004 (41107B11) b85c6000 b85c7280 USBD USBD.SYS Sat Aug 18 00:02:58 2001 (3B7D8682) b85ce000 b85cff00 Fs_Rec Fs_Rec.SYS Fri Aug 17 23:49:37 2001 (3B7D8361) b85d0000 b85d1080 Beep Beep.SYS Fri Aug 17 23:47:33 2001 (3B7D82E5) b85d2000 b85d3080 mnmdd mnmdd.SYS Fri Aug 17 23:57:28 2001 (3B7D8538) b85d4000 b85d5080 RDPCDD RDPCDD.sys Fri Aug 17 23:46:56 2001 (3B7D82C0) b85de000 b85df100 dump_WMILIB dump_WMILIB.SYS Sat Aug 18 00:07:23 2001 (3B7D878B) b8670000 b8670d00 pciide pciide.sys Fri Aug 17 23:51:49 2001 (3B7D83E5) b868e000 b868ec00 audstub audstub.sys Fri Aug 17 23:59:40 2001 (3B7D85BC) b869e000 b869ed00 dxgthk dxgthk.sys Fri Aug 17 23:53:12 2001 (3B7D8438) b87cc000 b87ccb80 Null Null.SYS Fri Aug 17 23:47:39 2001 (3B7D82EB) bd000000 bd011580 dxg dxg.sys Wed Aug 04 09:00:51 2004 (41107B93) bd012000 bd61e980 nv4_disp nv4_disp.dll Sat Jul 10 00:18:40 2010 (4C379230) bf800000 bf9c2300 win32k win32k.sys Wed Jul 18 14:11:55 2007 (469DF57B) bffa0000 bffe5c00 ATMFD ATMFD.DLL Wed Aug 04 10:56:56 2004 (411096C8) Unloaded modules: b4039000 b4064000 kmixer.sys Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 0002B000 b86fa000 b86fb000 drmkaud.sys Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00001000 b46d4000 b46e1000 DMusic.sys Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 0000D000 b8318000 b8326000 swmidi.sys Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 0000E000 b4104000 b4127000 aec.sys Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00023000 b8636000 b8638000 splitter.sys Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00002000 b3df0000 b3e04000 Parport.SYS Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00014000 b8490000 b8495000 Cdaudio.SYS Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00005000 b713c000 b713f000 Sfloppy.SYS Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00003000 b8488000 b848d000 Flpydisk.SYS Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00005000 b8480000 b8487000 Fdc.SYS Timestamp: unavailable (00000000) Checksum: 00000000 ImageSize: 00007000 ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* KERNEL_MODE_EXCEPTION_NOT_HANDLED_M (1000008e) This is a very common bugcheck. Usually the exception address pinpoints the driver/function that caused the problem. Always note this address as well as the link date of the driver/image that contains this address. Some common problems are exception code 0x80000003. This means a hard coded breakpoint or assertion was hit, but this system was booted /NODEBUG. This is not supposed to happen as developers should never have hardcoded breakpoints in retail code, but ... If this happens, make sure a debugger gets connected, and the system is booted /DEBUG. This will let us see why this breakpoint is happening. Arguments: Arg1: c0000005, The exception code that was not handled Arg2: bf9170f6, The address that the exception occurred at Arg3: b3ed0cb4, Trap Frame Arg4: 00000000 Debugging Details: ------------------ EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text> FAULTING_IP: win32k!IsHandleEntrySecure+0 bf9170f6 0000 add byte ptr [eax],al TRAP_FRAME: b3ed0cb4 -- (.trap 0xffffffffb3ed0cb4) ErrCode = 00000002 eax=00000001 ebx=b9d11878 ecx=0002020a edx=e2f5a8e8 esi=e2ef7ca0 edi=ba3606e8 eip=bf9170f6 esp=b3ed0d28 ebp=b3ed0d48 iopl=0 nv up ei pl nz na po nc cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202 win32k!IsHandleEntrySecure: bf9170f6 0000 add byte ptr [eax],al ds:0023:00000001=?? Resetting default scope CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: CODE_CORRUPTION BUGCHECK_STR: 0x8E PROCESS_NAME: chrome.exe LAST_CONTROL_TRANSFER: from bf8015a1 to bf9170f6 STACK_TEXT: b3ed0d24 bf8015a1 0002020a b9d11878 00000001 win32k!IsHandleEntrySecure b3ed0d48 bf80454a b3ed0d64 0012ed0c b3ed0d64 win32k!ValidateHwnd+0xe6 b3ed0d58 8054137c 00000000 0012ed78 7c90eb94 win32k!NtUserGetDC+0x61 b3ed0d58 7c90eb94 00000000 0012ed78 7c90eb94 nt!KiFastCallEntry+0xfc WARNING: Frame IP not in any known module. Following frames may be wrong. 0012ed78 00000000 00000000 00000000 00000000 0x7c90eb94 STACK_COMMAND: kb CHKIMG_EXTENSION: !chkimg -lo 50 -d !win32k bf917000-bf917004 5 bytes - win32k!Win32KDriverUnload+23 [ bf e8 6e dc 03:00 00 00 00 00 ] bf917006-bf9170a3 158 bytes - win32k!Win32KDriverUnload+29 (+0x06) [ a1 78 b0 9a bf 80 0d 15:00 00 00 00 00 00 00 00 ] bf9170a5-bf9170ef 75 bytes - win32k!Win32KDriverUnload+c8 (+0x9f) [ e8 f0 f4 ff ff e8 39 f5:00 00 00 00 00 00 00 00 ] bf9170f1-bf91713f 79 bytes - win32k!Win32KDriverUnload+114 (+0x4c) [ 90 90 90 90 90 8b ff 55:00 00 00 00 00 00 00 00 ] bf917141-bf917144 4 bytes - win32k!IsHandleEntrySecure+4b (+0x50) [ 8b 88 58 01:00 00 00 00 ] bf917147-bf91714a 4 bytes - win32k!IsHandleEntrySecure+51 (+0x06) [ 39 8a 58 01:00 00 00 00 ] bf91714d-bf917150 4 bytes - win32k!IsHandleEntrySecure+57 (+0x06) [ 75 09 b8 01:00 00 00 00 ] bf917154-bf917156 3 bytes - win32k!IsHandleEntrySecure+5e (+0x07) [ 5d c2 08:00 00 00 ] bf917158-bf91717b 36 bytes - win32k!IsHandleEntrySecure+62 (+0x04) [ 8b 51 24 33 c0 85 d2 74:00 00 00 00 00 00 00 00 ] bf91717d-bf91717e 2 bytes - win32k!IsHandleEntrySecure+87 (+0x25) [ b8 01:00 00 ] bf917182-bf917185 4 bytes - win32k!IsHandleEntrySecure+8c (+0x05) [ 5e 5d c2 08:00 00 00 00 ] bf917187-bf9171b2 44 bytes - win32k!IsHandleEntrySecure+91 (+0x05) [ 90 90 90 90 90 8b ff 55:00 00 00 00 00 00 00 00 ] bf9171b4-bf9171c1 14 bytes - win32k!UserGetCurrentDesktopId+28 (+0x2d) [ 90 90 90 90 90 8b ff 55:00 00 00 00 00 00 00 00 ] bf9171c4-bf9171e5 34 bytes - win32k!FindMirrorDriver+b (+0x10) [ a1 b4 a3 99 bf 53 89 45:00 00 00 00 00 00 00 00 ] bf9171e7-bf9171ef 9 bytes - win32k!FindMirrorDriver+2e (+0x23) [ c4 98 bf 53 53 c7 06 48:00 00 00 00 00 00 00 00 ] bf9171f2-bf91720a 25 bytes - win32k!FindMirrorDriver+39 (+0x0b) [ a1 78 b0 9a bf 8b 40 30:00 00 00 00 00 00 00 00 ] bf91720d-bf917217 11 bytes - win32k!FindMirrorDriver+54 (+0x1b) [ 57 ff 85 f8 fc ff ff f6:00 00 00 00 00 00 00 00 ] bf91721a-bf91721e 5 bytes - win32k!FindMirrorDriver+61 (+0x0d) [ 08 0f 84 2b 01:00 00 00 00 00 ] bf917221-bf917224 4 bytes - win32k!FindMirrorDriver+68 (+0x07) [ 33 c0 b9 80:00 00 00 00 ] bf917228-bf917231 10 bytes - win32k!FindMirrorDriver+6f (+0x07) [ 8d bd fc fd ff ff f3 ab:00 00 00 00 00 00 00 00 ] bf917235-bf917238 4 bytes - win32k!FindMirrorDriver+7c (+0x0d) [ 8d 86 48 02:00 00 00 00 ] bf91723b-bf917278 62 bytes - win32k!FindMirrorDriver+82 (+0x06) [ 50 8d 85 fc fd ff ff 50:00 00 00 00 00 00 00 00 ] bf91727c-bf917297 28 bytes - win32k!FindMirrorDriver+c3 (+0x41) [ 83 c0 02 8d 8d f0 fc ff:00 00 00 00 00 00 00 00 ] bf91729b-bf917325 139 bytes - win32k!FindMirrorDriver+e2 (+0x1f) [ c7 85 c0 fc ff ff 48 ec:00 00 00 00 00 00 00 00 ] bf917327-bf917382 92 bytes - win32k!FindMirrorDriver+16e (+0x8c) [ 01 ff 15 f0 c5 98 bf 85:00 00 00 00 00 00 00 00 ] bf917385-bf917390 12 bytes - win32k!FindMirrorDriver+1cd (+0x5e) [ c0 8b c3 5b e8 fb 9c ee:00 00 00 00 00 00 00 00 ] bf917392-bf91739e 13 bytes - win32k!FindMirrorDriver+1da (+0x0d) [ 90 90 90 90 90 8b ff 55:00 00 00 00 00 00 00 00 ] bf9173a2-bf9173b2 17 bytes - win32k!ReadCurrentPowerSettting+b (+0x10) [ a1 b4 a3 99 bf 56 57 89:00 00 00 00 00 00 00 00 ] bf9173b6-bf917406 81 bytes - win32k!ReadCurrentPowerSettting+1f (+0x14) [ 8d 85 14 ff ff ff 50 33:00 00 00 00 00 00 00 00 ] bf917408-bf917410 9 bytes - win32k!UserSessionSwitchBlock_Start+6 (+0x52) [ 0a c0 e8 0b 97 ee ff 83:00 00 00 00 00 00 00 00 ] bf917412-bf917414 3 bytes - win32k!UserSessionSwitchBlock_Start+10 (+0x0a) [ 9f 9a bf:00 00 00 ] bf917416-bf91742a 21 bytes - win32k!UserSessionSwitchBlock_Start+14 (+0x04) [ 75 22 a1 d8 02 df ff 3b:00 00 00 00 00 00 00 00 ] bf91742c-bf917434 9 bytes - win32k!UserSessionSwitchBlock_Start+2a (+0x16) [ 75 0c c7 05 54 4a 9a bf:00 00 00 00 00 00 00 00 ] bf917438-bf917452 27 bytes - win32k!UserSessionSwitchBlock_Start+36 (+0x0c) [ 33 f6 e8 07 97 ee ff 8b:00 00 00 00 00 00 00 00 ] bf917454-bf917472 31 bytes - win32k!UserSessionSwitchBlock_End+c (+0x1c) [ e9 ed 96 ee ff 90 90 90:00 00 00 00 00 00 00 00 ] bf917474-bf91747b 8 bytes - win32k!UserGetDisconnectDeviceResolutionHint+17 (+0x20) [ 74 41 8b 45 08 c7 40 48:00 00 00 00 00 00 00 00 ] bf91747e - win32k!UserGetDisconnectDeviceResolutionHint+21 (+0x0a) [ 1c:00 ] bf917480-bf917489 10 bytes - win32k!UserGetDisconnectDeviceResolutionHint+23 (+0x02) [ 8b 0d f8 a2 9a bf 8b 89:00 00 00 00 00 00 00 00 ] bf91748c-bf91748e 3 bytes - win32k!UserGetDisconnectDeviceResolutionHint+2f (+0x0c) [ 89 88 ac:00 00 00 ] bf917492-bf91749b 10 bytes - win32k!UserGetDisconnectDeviceResolutionHint+35 (+0x06) [ 8b 0d f8 a2 9a bf 8b 89:00 00 00 00 00 00 00 00 ] bf91749e-bf9174a0 3 bytes - win32k!UserGetDisconnectDeviceResolutionHint+41 (+0x0c) [ 89 88 b0:00 00 00 ] bf9174a4-bf9174ae 11 bytes - win32k!UserGetDisconnectDeviceResolutionHint+47 (+0x06) [ 8b 0d f8 a2 9a bf 0f b6:00 00 00 00 00 00 00 00 ] bf9174b1-bf9174b3 3 bytes - win32k!UserGetDisconnectDeviceResolutionHint+54 (+0x0d) [ 89 88 a8:00 00 00 ] bf9174b7-bf9174b9 3 bytes - win32k!UserGetDisconnectDeviceResolutionHint+5a (+0x06) [ 5d c2 04:00 00 00 ] bf9174bb-bf9174c8 14 bytes - win32k!UserGetDisconnectDeviceResolutionHint+5e (+0x04) [ 90 90 90 90 90 8b ff 55:00 00 00 00 00 00 00 00 ] bf9174cb-bf9174fc 50 bytes - win32k!xxxRemoteConsoleShadowStop+b (+0x10) [ a1 b4 a3 99 bf 53 57 89:00 00 00 00 00 00 00 00 ] bf9174ff-bf917509 11 bytes - win32k!xxxRemoteConsoleShadowStop+3f (+0x34) [ f6 05 d0 02 fe 7f 10 0f:00 00 00 00 00 00 00 00 ] bf91750c-bf917516 11 bytes - win32k!xxxRemoteConsoleShadowStop+4c (+0x0d) [ a1 e0 9e 9a bf 3b c3 75:00 00 00 00 00 00 00 00 ] bf917519-bf91751b 3 bytes - win32k!xxxRemoteConsoleShadowStop+59 (+0x0d) [ c0 e9 f6:00 00 00 ] bf91751f-bf91752f 17 bytes - win32k!xxxRemoteConsoleShadowStop+5f (+0x06) [ ff 35 44 9e 9a bf ff 35:00 00 00 00 00 00 00 00 ] WARNING: !chkimg output was truncated to 50 lines. Invoke !chkimg without '-lo [num_lines]' to view entire output. 3798 errors : !win32k (bf917000-bf917fff) MODULE_NAME: memory_corruption IMAGE_NAME: memory_corruption FOLLOWUP_NAME: memory_corruption DEBUG_FLR_IMAGE_TIMESTAMP: 0 MEMORY_CORRUPTOR: LARGE_4096 FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE_4096 BUCKET_ID: MEMORY_CORRUPTION_LARGE_4096 Followup: memory_corruption ---------
Hi -
You are running XP SP2 and need to install ALL outstanding Windows Updates including XP SP3 -
www.update.microsoft.com
Regards. . .
jcgriff2
`