1. Replace Lavasoft with MSE:
FAQs | Lavasoft
http://www.microsoft.com/security_essentials/
2. Update:
nvm62x64.sys Sat Oct 18 00:01:06 2008
NVIDIA Networking Driver
nvstor.sys Wed May 20 09:45:37 2009
NVIDIA nForce(TM) SATA Driver
speedfan.sys Sun Sep 24 16:26:48 2006
Speedfan
Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\101610-17596-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`0285f000 PsLoadedModuleList = 0xfffff800`02a9ce50
Debug session time: Sun Oct 17 08:54:12.344 2010 (UTC - 5:00)
System Uptime: 0 days 0:05:33.108
Loading Kernel Symbols
...............................................................
................................................................
...............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c000008f, fffff9600005edf4, fffff88004be8de0, 0}
Probably caused by : win32k.sys ( win32k!cjCopyFontDataW+204 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c000008f, Exception code that caused the bugcheck
Arg2: fffff9600005edf4, Address of the instruction which caused the bugcheck
Arg3: fffff88004be8de0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc000008f - {
FAULTING_IP:
win32k!cjCopyFontDataW+204
fffff960`0005edf4 f30f590d8c162500 mulss xmm1,dword ptr [win32k!_real (fffff960`002b0488)]
CONTEXT: fffff88004be8de0 -- (.cxr 0xfffff88004be8de0)
rax=0000000000000800 rbx=fffff900c00bf010 rcx=00000000fffff55c
rdx=0000000000000001 rsi=fffff900c295b3a0 rdi=0000000000000060
rip=fffff9600005edf4 rsp=fffff88004be97b0 rbp=fffff900c00b1190
r8=fffff88004be98f0 r9=0000000000000000 r10=fffff88002eb8cc8
r11=fffff88004be9928 r12=0000000000000001 r13=0000000000000000
r14=0000000000000000 r15=0000000000000060
iopl=0 nv up ei pl nz na pe cy
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010203
win32k!cjCopyFontDataW+0x204:
fffff960`0005edf4 f30f590d8c162500 mulss xmm1,dword ptr [win32k!_real (fffff960`002b0488)] ds:002b:fffff960`002b0488=3eaaaaab
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: explorer.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff9600005edf4
STACK_TEXT:
fffff880`04be97b0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!cjCopyFontDataW+0x204
FOLLOWUP_IP:
win32k!cjCopyFontDataW+204
fffff960`0005edf4 f30f590d8c162500 mulss xmm1,dword ptr [win32k!_real (fffff960`002b0488)]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: win32k!cjCopyFontDataW+204
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: win32k
IMAGE_NAME: win32k.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4c7dc13c
STACK_COMMAND: .cxr 0xfffff88004be8de0 ; kb
FAILURE_BUCKET_ID: X64_0x3B_win32k!cjCopyFontDataW+204
BUCKET_ID: X64_0x3B_win32k!cjCopyFontDataW+204
Followup: MachineOwner
------------------------------------------------------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\101610-33633-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02856000 PsLoadedModuleList = 0xfffff800`02a93e50
Debug session time: Sun Oct 17 09:37:43.306 2010 (UTC - 5:00)
System Uptime: 0 days 0:01:25.893
Loading Kernel Symbols
...............................................................
................................................................
.............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 50, {fffffa80060bad60, 0, fffff800028c599b, 2}
Could not read faulting driver name
Probably caused by : ntkrnlmp.exe ( nt!KiSystemServiceExit+0 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffffa80060bad60, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff800028c599b, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000002, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002afe0e0
fffffa80060bad60
FAULTING_IP:
nt!KiSystemServiceExit+0
fffff800`028c599b 488b9dc0000000 mov rbx,qword ptr [rbp+0C0h]
MM_INTERNAL_CODE: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: AAWService.exe
CURRENT_IRQL: 0
TRAP_FRAME: fffff880060baa20 -- (.trap 0xfffff880060baa20)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffffa80047e3340
rdx=fffff880060bab40 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800028c599b rsp=fffff880060babb0 rbp=fffffa80060baca0
r8=fffffa8004adda10 r9=fffffa8002986240 r10=fffffa80029384c0
r11=fffffa8004a72980 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!KiSystemServiceExit:
fffff800`028c599b 488b9dc0000000 mov rbx,qword ptr [rbp+0C0h] ss:0018:fffffa80`060bad60=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800029458f2 to fffff800028c6740
STACK_TEXT:
fffff880`060ba8b8 fffff800`029458f2 : 00000000`00000050 fffffa80`060bad60 00000000`00000000 fffff880`060baa20 : nt!KeBugCheckEx
fffff880`060ba8c0 fffff800`028c482e : 00000000`00000000 fffffa80`0336c060 fffff880`060bab00 fffffa80`047e3340 : nt! ?? ::FNODOBFM::`string'+0x40ec0
fffff880`060baa20 fffff800`028c599b : 00000000`0000033c 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
fffff880`060babb0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiSystemServiceExit+0
fffff800`028c599b 488b9dc0000000 mov rbx,qword ptr [rbp+0C0h]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!KiSystemServiceExit+0
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x50_nt!KiSystemServiceExit+0
BUCKET_ID: X64_0x50_nt!KiSystemServiceExit+0
Followup: MachineOwner
---------
------------------------------------------------------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\101710-16785-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`0280f000 PsLoadedModuleList = 0xfffff800`02a4ce50
Debug session time: Sun Oct 17 09:45:37.115 2010 (UTC - 5:00)
System Uptime: 0 days 0:06:11.878
Loading Kernel Symbols
...............................................................
................................................................
...............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {411, fffff68000023490, e1c00000467a0886, fffff8a00242cd71}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+6051 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000000411, The subtype of the bugcheck.
Arg2: fffff68000023490
Arg3: e1c00000467a0886
Arg4: fffff8a00242cd71
Debugging Details:
------------------
BUGCHECK_STR: 0x1a_411
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: AAWService.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff8000284671e to fffff8000287f740
STACK_TEXT:
fffff880`066388c8 fffff800`0284671e : 00000000`0000001a 00000000`00000411 fffff680`00023490 e1c00000`467a0886 : nt!KeBugCheckEx
fffff880`066388d0 fffff800`028b17ad : 00000000`04692018 fffff680`00023490 0000007f`fffffff8 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x6051
fffff880`06638920 fffff800`0289bd26 : 00000000`00000000 00000000`04691040 00000000`00000000 fffffa80`0492ccb8 : nt!MiResolveTransitionFault+0x38d
fffff880`066389b0 fffff800`02899743 : ffffffff`ffffffff 00000000`00000000 ffffffff`ffffffff 00000000`00000000 : nt!MiDispatchFault+0x946
fffff880`06638ac0 fffff800`0287d82e : 00000000`00000000 00000000`00000000 00000000`00000101 00000000`7efad000 : nt!MmAccessFault+0x343
fffff880`06638c20 00000000`7741e082 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
00000000`0240fae8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7741e082
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+6051
fffff800`0284671e cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+6051
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6051
BUCKET_ID: X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6051
fffff800`00bb7000 fffff800`00bc1000 kdcom kdcom.dll Tue Jul 14 04:31:07 2009 (4A5BDFDB)
fffff800`0280f000 fffff800`02deb000 nt ntkrnlmp.exe Sat Jun 19 07:16:41 2010 (4C1C44A9)
fffff800`02deb000 fffff800`02e34000 hal hal.dll Tue Jul 14 04:27:36 2009 (4A5BDF08)
fffff880`00c05000 fffff880`00c12000 mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Tue Jul 14 04:29:09 2009 (4A5BDF65)
fffff880`00c12000 fffff880`00c26000 PSHED PSHED.dll Tue Jul 14 04:32:23 2009 (4A5BE027)
fffff880`00c26000 fffff880`00c84000 CLFS CLFS.SYS Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`00c84000 fffff880`00d44000 CI CI.dll Tue Jul 14 04:32:13 2009 (4A5BE01D)
fffff880`00d44000 fffff880`00de8000 Wdf01000 Wdf01000.sys Tue Jul 14 02:22:07 2009 (4A5BC19F)
fffff880`00de8000 fffff880`00df7000 WDFLDR WDFLDR.SYS Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`00e2e000 fffff880`00e85000 ACPI ACPI.sys Tue Jul 14 02:19:34 2009 (4A5BC106)
fffff880`00e85000 fffff880`00e8e000 WMILIB WMILIB.SYS Tue Jul 14 02:19:51 2009 (4A5BC117)
fffff880`00e8e000 fffff880`00e98000 msisadrv msisadrv.sys Tue Jul 14 02:19:26 2009 (4A5BC0FE)
fffff880`00e98000 fffff880`00ecb000 pci pci.sys Tue Jul 14 02:19:51 2009 (4A5BC117)
fffff880`00ecb000 fffff880`00ed8000 vdrvroot vdrvroot.sys Tue Jul 14 03:01:31 2009 (4A5BCADB)
fffff880`00ed8000 fffff880`00eed000 partmgr partmgr.sys Tue Jul 14 02:19:58 2009 (4A5BC11E)
fffff880`00eed000 fffff880`00f02000 volmgr volmgr.sys Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`00f02000 fffff880`00f5e000 volmgrx volmgrx.sys Tue Jul 14 02:20:33 2009 (4A5BC141)
fffff880`00f5e000 fffff880`00f65000 pciide pciide.sys Tue Jul 14 02:19:49 2009 (4A5BC115)
fffff880`00f65000 fffff880`00f75000 PCIIDEX PCIIDEX.SYS Tue Jul 14 02:19:48 2009 (4A5BC114)
fffff880`00f75000 fffff880`00f8f000 mountmgr mountmgr.sys Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`00f8f000 fffff880`00f98000 atapi atapi.sys Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`00f98000 fffff880`00fc2000 ataport ataport.SYS Tue Jul 14 02:19:52 2009 (4A5BC118)
fffff880`00fc2000 fffff880`00fed000 nvstor nvstor.sys Wed May 20 09:45:37 2009 (4A13A711)
fffff880`01015000 fffff880`01077000 storport storport.sys Tue Jul 14 03:01:18 2009 (4A5BCACE)
fffff880`01077000 fffff880`01082000 amdxata amdxata.sys Tue May 19 20:56:59 2009 (4A12F2EB)
fffff880`01082000 fffff880`010ce000 fltmgr fltmgr.sys Tue Jul 14 02:19:59 2009 (4A5BC11F)
fffff880`010ce000 fffff880`010e2000 fileinfo fileinfo.sys Tue Jul 14 02:34:25 2009 (4A5BC481)
fffff880`010e2000 fffff880`010f7000 Lbd Lbd.sys Tue May 25 10:45:36 2010 (4BFB8020)
fffff880`010f7000 fffff880`01155000 msrpc msrpc.sys Tue Jul 14 02:21:32 2009 (4A5BC17C)
fffff880`01155000 fffff880`011c8000 cng cng.sys Tue Jul 14 02:49:40 2009 (4A5BC814)
fffff880`011c8000 fffff880`011d9000 Npfs Npfs.SYS Tue Jul 14 02:19:48 2009 (4A5BC114)
fffff880`011d9000 fffff880`011f7000 tdx tdx.sys Tue Jul 14 02:21:15 2009 (4A5BC16B)
fffff880`01200000 fffff880`01211000 pcw pcw.sys Tue Jul 14 02:19:27 2009 (4A5BC0FF)
fffff880`01211000 fffff880`0121b000 Fs_Rec Fs_Rec.sys Tue Jul 14 02:19:45 2009 (4A5BC111)
fffff880`0121b000 fffff880`01226000 Msfs Msfs.SYS Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`01226000 fffff880`01233000 TDI TDI.SYS Tue Jul 14 02:21:18 2009 (4A5BC16E)
fffff880`01235000 fffff880`013d8000 Ntfs Ntfs.sys Tue Jul 14 02:20:47 2009 (4A5BC14F)
fffff880`013d8000 fffff880`013f2000 ksecdd ksecdd.sys Tue Jul 14 02:20:54 2009 (4A5BC156)
fffff880`01400000 fffff880`01425000 VIDEOPRT VIDEOPRT.SYS Tue Jul 14 02:38:51 2009 (4A5BC58B)
fffff880`01425000 fffff880`01435000 watchdog watchdog.sys Tue Jul 14 02:37:35 2009 (4A5BC53F)
fffff880`01435000 fffff880`0143e000 rdpencdd rdpencdd.sys Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff880`0143e000 fffff880`01447000 rdprefmp rdprefmp.sys Tue Jul 14 03:16:35 2009 (4A5BCE63)
fffff880`01449000 fffff880`0153b000 ndis ndis.sys Tue Jul 14 02:21:40 2009 (4A5BC184)
fffff880`0153b000 fffff880`0159b000 NETIO NETIO.SYS Tue Jul 14 02:21:46 2009 (4A5BC18A)
fffff880`0159b000 fffff880`015c6000 ksecpkg ksecpkg.sys Fri Dec 11 08:03:32 2009 (4B21E0B4)
fffff880`015f0000 fffff880`015fe000 vga vga.sys Tue Jul 14 02:38:47 2009 (4A5BC587)
fffff880`01601000 fffff880`017fe000 tcpip tcpip.sys Mon Jun 14 06:39:04 2010 (4C15A458)
fffff880`01800000 fffff880`01830000 CLASSPNP CLASSPNP.SYS Tue Jul 14 02:19:58 2009 (4A5BC11E)
fffff880`01886000 fffff880`0188f000 Null Null.SYS Tue Jul 14 02:19:37 2009 (4A5BC109)
fffff880`0188f000 fffff880`01896000 Beep Beep.SYS Tue Jul 14 03:00:13 2009 (4A5BCA8D)
fffff880`01896000 fffff880`0189f000 RDPCDD RDPCDD.sys Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff880`018a2000 fffff880`018ec000 fwpkclnt fwpkclnt.sys Tue Jul 14 02:21:08 2009 (4A5BC164)
fffff880`018ec000 fffff880`018fc000 vmstorfl vmstorfl.sys Tue Jul 14 02:42:54 2009 (4A5BC67E)
fffff880`018fc000 fffff880`01948000 volsnap volsnap.sys Tue Jul 14 02:20:08 2009 (4A5BC128)
fffff880`01948000 fffff880`01950000 spldr spldr.sys Mon May 11 19:56:27 2009 (4A0858BB)
fffff880`01950000 fffff880`01957000 speedfan speedfan.sys Sun Sep 24 16:26:48 2006 (45168798)
fffff880`01957000 fffff880`01991000 rdyboost rdyboost.sys Tue Jul 14 02:34:34 2009 (4A5BC48A)
fffff880`01991000 fffff880`019a3000 mup mup.sys Tue Jul 14 02:23:45 2009 (4A5BC201)
fffff880`019a3000 fffff880`019ac000 hwpolicy hwpolicy.sys Tue Jul 14 02:19:22 2009 (4A5BC0FA)
fffff880`019ac000 fffff880`019e6000 fvevol fvevol.sys Sat Sep 26 05:34:26 2009 (4ABD7DB2)
fffff880`019e6000 fffff880`019fc000 disk disk.sys Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`02225000 fffff880`022bb000 srv srv.sys Fri Aug 27 06:38:00 2010 (4C773318)
fffff880`022bb000 fffff880`022c2000 KernExplorer64 KernExplorer64.sys Fri May 07 12:48:03 2010 (4BE3E1D3)
fffff880`022c2000 fffff880`02333000 spsys spsys.sys Mon May 11 20:20:58 2009 (4A085E7A)
fffff880`02a00000 fffff880`02a2d000 mrxsmb mrxsmb.sys Sat Feb 27 09:52:19 2010 (4B88CF33)
fffff880`02a2d000 fffff880`02a7b000 mrxsmb10 mrxsmb10.sys Sat Feb 27 09:52:28 2010 (4B88CF3C)
fffff880`02a7b000 fffff880`02a9e000 mrxsmb20 mrxsmb20.sys Sat Feb 27 09:52:26 2010 (4B88CF3A)
fffff880`02ae8000 fffff880`02bb0000 HTTP HTTP.sys Tue Jul 14 02:22:16 2009 (4A5BC1A8)
fffff880`02bb0000 fffff880`02bce000 bowser bowser.sys Tue Jul 14 02:23:50 2009 (4A5BC206)
fffff880`02bce000 fffff880`02be6000 mpsdrv mpsdrv.sys Tue Jul 14 03:08:25 2009 (4A5BCC79)
fffff880`03a00000 fffff880`03a1d000 serial serial.sys Tue Jul 14 03:00:40 2009 (4A5BCAA8)
fffff880`03a1d000 fffff880`03a38000 wanarp wanarp.sys Tue Jul 14 03:10:21 2009 (4A5BCCED)
fffff880`03a38000 fffff880`03a4c000 termdd termdd.sys Tue Jul 14 03:16:36 2009 (4A5BCE64)
fffff880`03a4c000 fffff880`03a9d000 rdbss rdbss.sys Tue Jul 14 02:24:09 2009 (4A5BC219)
fffff880`03a9d000 fffff880`03aa9000 nsiproxy nsiproxy.sys Tue Jul 14 02:21:02 2009 (4A5BC15E)
fffff880`03aa9000 fffff880`03ab4000 mssmbios mssmbios.sys Tue Jul 14 02:31:10 2009 (4A5BC3BE)
fffff880`03ab4000 fffff880`03ac3000 discache discache.sys Tue Jul 14 02:37:18 2009 (4A5BC52E)
fffff880`03aeb000 fffff880`03b75000 afd afd.sys Tue Jul 14 02:21:40 2009 (4A5BC184)
fffff880`03b75000 fffff880`03bba000 netbt netbt.sys Tue Jul 14 02:21:28 2009 (4A5BC178)
fffff880`03bba000 fffff880`03bc3000 wfplwf wfplwf.sys Tue Jul 14 03:09:26 2009 (4A5BCCB6)
fffff880`03bc3000 fffff880`03be9000 pacer pacer.sys Tue Jul 14 03:09:41 2009 (4A5BCCC5)
fffff880`03be9000 fffff880`03bf8000 netbios netbios.sys Tue Jul 14 03:09:26 2009 (4A5BCCB6)
fffff880`03c00000 fffff880`03c0c000 serenum serenum.sys Tue Jul 14 03:00:33 2009 (4A5BCAA1)
fffff880`03c0c000 fffff880`03c17000 usbohci usbohci.sys Tue Jul 14 03:06:30 2009 (4A5BCC06)
fffff880`03c17000 fffff880`03c6d000 USBPORT USBPORT.SYS Tue Jul 14 03:06:31 2009 (4A5BCC07)
fffff880`03c6d000 fffff880`03c7e000 usbehci usbehci.sys Sat Oct 24 07:27:33 2009 (4AE28235)
fffff880`03c7e000 fffff880`03ca2000 HDAudBus HDAudBus.sys Tue Jul 14 03:06:13 2009 (4A5BCBF5)
fffff880`03cb8000 fffff880`03d3b000 csc csc.sys Tue Jul 14 02:24:26 2009 (4A5BC22A)
fffff880`03d3b000 fffff880`03d59000 dfsc dfsc.sys Tue Jul 14 02:23:44 2009 (4A5BC200)
fffff880`03d59000 fffff880`03d6a000 blbdrive blbdrive.sys Tue Jul 14 02:35:59 2009 (4A5BC4DF)
fffff880`03d6a000 fffff880`03d90000 tunnel tunnel.sys Tue Jul 14 03:09:37 2009 (4A5BCCC1)
fffff880`03d90000 fffff880`03da7000 amdk8 amdk8.sys Tue Jul 14 02:19:25 2009 (4A5BC0FD)
fffff880`03da7000 fffff880`03dc4000 parport parport.sys Tue Jul 14 03:00:40 2009 (4A5BCAA8)
fffff880`03dc4000 fffff880`03de2000 i8042prt i8042prt.sys Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`03de2000 fffff880`03df1000 kbdclass kbdclass.sys Tue Jul 14 02:19:50 2009 (4A5BC116)
fffff880`03df1000 fffff880`03e00000 mouclass mouclass.sys Tue Jul 14 02:19:50 2009 (4A5BC116)
fffff880`03e00000 fffff880`03e43000 ks ks.sys Thu Mar 04 06:32:25 2010 (4B8F37D9)
fffff880`03e43000 fffff880`03e66000 luafv luafv.sys Tue Jul 14 02:26:13 2009 (4A5BC295)
fffff880`03e66000 fffff880`03e87000 WudfPf WudfPf.sys Tue Jul 14 03:05:37 2009 (4A5BCBD1)
fffff880`03e8c000 fffff880`03eefd80 nvm62x64 nvm62x64.sys Sat Oct 18 00:01:06 2008 (48F8FD12)
fffff880`03ef0000 fffff880`03fe4000 dxgkrnl dxgkrnl.sys Fri Oct 02 04:00:14 2009 (4AC5509E)
fffff880`03fe4000 fffff880`03ffc000 rspndr rspndr.sys Tue Jul 14 03:08:50 2009 (4A5BCC92)
fffff880`04000000 fffff880`04022000 drmk drmk.sys Tue Jul 14 04:01:25 2009 (4A5BD8E5)
fffff880`04022000 fffff880`04027200 ksthunk ksthunk.sys Tue Jul 14 03:00:19 2009 (4A5BCA93)
fffff880`04028000 fffff880`04045000 usbccgp usbccgp.sys Tue Jul 14 03:06:45 2009 (4A5BCC15)
fffff880`04045000 fffff880`04046f00 USBD USBD.SYS Tue Jul 14 03:06:23 2009 (4A5BCBFF)
fffff880`04047000 fffff880`04055000 crashdmp crashdmp.sys Tue Jul 14 03:01:01 2009 (4A5BCABD)
fffff880`04055000 fffff880`0405f000 dump_diskdump dump_diskdump.sys Tue Jul 14 03:01:00 2009 (4A5BCABC)
fffff880`0405f000 fffff880`0408a000 dump_nvstor dump_nvstor.sys Wed May 20 09:45:37 2009 (4A13A711)
fffff880`0408a000 fffff880`0409d000 dump_dumpfve dump_dumpfve.sys Tue Jul 14 02:21:51 2009 (4A5BC18F)
fffff880`0409d000 fffff880`040ab000 hidusb hidusb.sys Tue Jul 14 03:06:22 2009 (4A5BCBFE)
fffff880`040ab000 fffff880`040c4000 HIDCLASS HIDCLASS.SYS Tue Jul 14 03:06:21 2009 (4A5BCBFD)
fffff880`040c4000 fffff880`040cc080 HIDPARSE HIDPARSE.SYS Tue Jul 14 03:06:17 2009 (4A5BCBF9)
fffff880`040cd000 fffff880`040db000 kbdhid kbdhid.sys Tue Jul 14 03:00:20 2009 (4A5BCA94)
fffff880`040db000 fffff880`040e7000 Dxapi Dxapi.sys Tue Jul 14 02:38:28 2009 (4A5BC574)
fffff880`040f2000 fffff880`0414c000 usbhub usbhub.sys Sat Oct 24 07:28:24 2009 (4AE28268)
fffff880`0414c000 fffff880`04161000 NDProxy NDProxy.SYS Tue Jul 14 03:10:05 2009 (4A5BCCDD)
fffff880`04161000 fffff880`041bd000 HdAudio HdAudio.sys Tue Jul 14 03:06:59 2009 (4A5BCC23)
fffff880`041bd000 fffff880`041fa000 portcls portcls.sys Tue Jul 14 03:06:27 2009 (4A5BCC03)
fffff880`04200000 fffff880`04267000 srv2 srv2.sys Fri Aug 27 06:37:46 2010 (4C77330A)
fffff880`042e0000 fffff880`04386000 peauth peauth.sys Tue Jul 14 04:01:19 2009 (4A5BD8DF)
fffff880`04386000 fffff880`04391000 secdrv secdrv.SYS Wed Sep 13 16:18:38 2006 (4508052E)
fffff880`04391000 fffff880`043be000 srvnet srvnet.sys Fri Aug 27 06:37:24 2010 (4C7732F4)
fffff880`043be000 fffff880`043d0000 tcpipreg tcpipreg.sys Tue Jul 14 03:09:49 2009 (4A5BCCCD)
fffff880`0f000000 fffff880`0f021000 raspptp raspptp.sys Tue Jul 14 03:10:18 2009 (4A5BCCEA)
fffff880`0f021000 fffff880`0f03b000 rassstp rassstp.sys Tue Jul 14 03:10:25 2009 (4A5BCCF1)
fffff880`0f03b000 fffff880`0f046000 rdpbus rdpbus.sys Tue Jul 14 03:17:46 2009 (4A5BCEAA)
fffff880`0f046000 fffff880`0f047480 swenum swenum.sys Tue Jul 14 03:00:18 2009 (4A5BCA92)
fffff880`0f048000 fffff880`0f05a000 umbus umbus.sys Tue Jul 14 03:06:56 2009 (4A5BCC20)
fffff880`0f05a000 fffff880`0f068000 monitor monitor.sys Tue Jul 14 02:38:52 2009 (4A5BC58C)
fffff880`0f068000 fffff880`0f07d000 lltdio lltdio.sys Tue Jul 14 03:08:50 2009 (4A5BCC92)
fffff880`0f082000 fffff880`0fd13e00 nvlddmkm nvlddmkm.sys Sat Jul 10 00:15:58 2010 (4C37918E)
fffff880`0fd14000 fffff880`0fd15180 nvBridge nvBridge.kmd Sat Jul 10 00:07:54 2010 (4C378FAA)
fffff880`0fd16000 fffff880`0fd5c000 dxgmms1 dxgmms1.sys Tue Jul 14 02:38:32 2009 (4A5BC578)
fffff880`0fd5c000 fffff880`0fd6c000 CompositeBus CompositeBus.sys Tue Jul 14 03:00:33 2009 (4A5BCAA1)
fffff880`0fd6c000 fffff880`0fd82000 AgileVpn AgileVpn.sys Tue Jul 14 03:10:24 2009 (4A5BCCF0)
fffff880`0fd82000 fffff880`0fda6000 rasl2tp rasl2tp.sys Tue Jul 14 03:10:11 2009 (4A5BCCE3)
fffff880`0fda6000 fffff880`0fdb2000 ndistapi ndistapi.sys Tue Jul 14 03:10:00 2009 (4A5BCCD8)
fffff880`0fdb2000 fffff880`0fde1000 ndiswan ndiswan.sys Tue Jul 14 03:10:11 2009 (4A5BCCE3)
fffff880`0fde1000 fffff880`0fdfc000 raspppoe raspppoe.sys Tue Jul 14 03:10:17 2009 (4A5BCCE9)
fffff960`00060000 fffff960`0036f000 win32k win32k.sys Wed Sep 01 05:58:04 2010 (4C7DC13C)
fffff960`00520000 fffff960`0052a000 TSDDD TSDDD.dll Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff960`00620000 fffff960`00647000 cdd cdd.dll unavailable (00000000)
Unloaded modules:
fffff880`01830000 fffff880`0183e000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000E000
fffff880`0183e000 fffff880`01848000 dump_storpor
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000A000
fffff880`01848000 fffff880`01873000 dump_nvstor.
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0002B000
fffff880`01873000 fffff880`01886000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00013000
fffff880`015c6000 fffff880`015f0000 cdrom.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0002A000