New
#21
I looked at your three most recent dumps. Two blamed Windows' Direct X driver and one blamed a Windows USB audio driver. None of these are likely to be the real cause. All three dumps indicate memory corruption. I do find a very out of date driver loaded on on your system. It is an XP driver. Uninstall the utility this driver is associated with. It is obsolete and is known cause of problems with Win 7. Reboot and see how your system runs.
RTCore64.sys Wed May 25 02:39:12 2005 - RivaTuner/EVGA Precision/MSI Afterburner (known issues w/Win7). RivaTuner.Code:Windows 7 Kernel Version 7600 MP (4 procs) Free x64 Product: WinNt, suite: TerminalServer SingleUserTS Built by: 7600.16617.amd64fre.win7_gdr.100618-1621 Machine Name: Kernel base = 0xfffff800`02c5b000 PsLoadedModuleList = 0xfffff800`02e98e50 Debug session time: Sun Jan 23 20:11:29.298 2011 (GMT-5) System Uptime: 0 days 3:49:55.423 Loading Kernel Symbols ............................................................... ................................................................ .................... Loading User Symbols Loading unloaded module list ..... Unable to load image \SystemRoot\system32\DRIVERS\ks.sys, Win32 error 0n2 *** WARNING: Unable to verify timestamp for ks.sys *** ERROR: Module load completed but symbols could not be loaded for ks.sys ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 1000007E, {ffffffffc000001d, fffff880054d9596, fffff880031a8958, fffff880031a81c0} Probably caused by : usbaudio.sys ( usbaudio!USBCaptureProcessPin+14a ) Followup: MachineOwner --------- 1: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e) This is a very common bugcheck. Usually the exception address pinpoints the driver/function that caused the problem. Always note this address as well as the link date of the driver/image that contains this address. Some common problems are exception code 0x80000003. This means a hard coded breakpoint or assertion was hit, but this system was booted /NODEBUG. This is not supposed to happen as developers should never have hardcoded breakpoints in retail code, but ... If this happens, make sure a debugger gets connected, and the system is booted /DEBUG. This will let us see why this breakpoint is happening. Arguments: Arg1: ffffffffc000001d, The exception code that was not handled Arg2: fffff880054d9596, The address that the exception occurred at Arg3: fffff880031a8958, Exception Record Address Arg4: fffff880031a81c0, Context Record Address Debugging Details: ------------------ EXCEPTION_CODE: (NTSTATUS) 0xc000001d - {EXCEPTION} Illegal Instruction An attempt was made to execute an illegal instruction. FAULTING_IP: usbaudio!USBCaptureProcessPin+14a fffff880`054d9596 4180785000 cmp byte ptr [r8+50h],0 EXCEPTION_RECORD: fffff880031a8958 -- (.exr 0xfffff880031a8958) ExceptionAddress: fffff880054d9596 (usbaudio!USBCaptureProcessPin+0x000000000000014a) ExceptionCode: c000001d (Illegal instruction) ExceptionFlags: 00000000 NumberParameters: 0 CONTEXT: fffff880031a81c0 -- (.cxr 0xfffff880031a81c0) rax=000000000000000a rbx=fffffa800732e060 rcx=0000000000000000 rdx=0000000000000000 rsi=00000000000001bc rdi=fffffa800732e118 rip=fffff880054d9596 rsp=fffff880031a8b90 rbp=fffffa800732e3a8 r8=fffffa800732e0a0 r9=0000000000000000 r10=0000000000000000 r11=fffffa8007449690 r12=fffffa800732ee6c r13=fffffa8007d8f220 r14=000000000000005a r15=fffffa8007331438 iopl=0 nv up ei pl nz na pe nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010202 usbaudio!USBCaptureProcessPin+0x14a: fffff880`054d9596 4180785000 cmp byte ptr [r8+50h],0 ds:002b:fffffa80`0732e0f0=01 Resetting default scope CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0x7E PROCESS_NAME: System CURRENT_IRQL: 0 ERROR_CODE: (NTSTATUS) 0xc000001d - {EXCEPTION} Illegal Instruction An attempt was made to execute an illegal instruction. LAST_CONTROL_TRANSFER: from fffff88004484277 to fffff880054d9596 FAILED_INSTRUCTION_ADDRESS: usbaudio!USBCaptureProcessPin+14a fffff880`054d9596 4180785000 cmp byte ptr [r8+50h],0 STACK_TEXT: fffff880`031a8b90 fffff880`04484277 : fffffa80`07449690 fffff800`00000000 00000000`000001bc fffffa80`0732e060 : usbaudio!USBCaptureProcessPin+0x14a fffff880`031a8c20 fffffa80`07449690 : fffff800`00000000 00000000`000001bc fffffa80`0732e060 fffff880`009e7180 : ks+0x3277 fffff880`031a8c28 fffff800`00000000 : 00000000`000001bc fffffa80`0732e060 fffff880`009e7180 fffff800`02fbe217 : 0xfffffa80`07449690 fffff880`031a8c30 00000000`000001bc : fffffa80`0732e060 fffff880`009e7180 fffff800`02fbe217 fffffa80`098bb010 : 0xfffff800`00000000 fffff880`031a8c38 fffffa80`0732e060 : fffff880`009e7180 fffff800`02fbe217 fffffa80`098bb010 fffffa80`07449980 : 0x1bc fffff880`031a8c40 fffff880`009e7180 : fffff800`02fbe217 fffffa80`098bb010 fffffa80`07449980 fffffa80`06d40b60 : 0xfffffa80`0732e060 fffff880`031a8c48 fffff800`02fbe217 : fffffa80`098bb010 fffffa80`07449980 fffffa80`06d40b60 fffff880`044887ac : 0xfffff880`009e7180 fffff880`031a8c50 00000000`00000001 : fffffa80`098bb048 fffffa80`098bb010 fffffa80`098bb010 fffffa80`06d40b60 : nt!CmpLockRegistry+0x43 fffff880`031a8c80 fffffa80`098bb048 : fffffa80`098bb010 fffffa80`098bb010 fffffa80`06d40b60 fffffa80`098bb010 : 0x1 fffff880`031a8c88 fffffa80`098bb010 : fffffa80`098bb010 fffffa80`06d40b60 fffffa80`098bb010 fffff800`02cd8961 : 0xfffffa80`098bb048 fffff880`031a8c90 fffffa80`098bb010 : fffffa80`06d40b60 fffffa80`098bb010 fffff800`02cd8961 fffff880`04488744 : 0xfffffa80`098bb010 fffff880`031a8c98 fffffa80`06d40b60 : fffffa80`098bb010 fffff800`02cd8961 fffff880`04488744 fffff800`02e705f8 : 0xfffffa80`098bb010 fffff880`031a8ca0 fffffa80`098bb010 : fffff800`02cd8961 fffff880`04488744 fffff800`02e705f8 fffffa80`06d40b60 : 0xfffffa80`06d40b60 fffff880`031a8ca8 fffff800`02cd8961 : fffff880`04488744 fffff800`02e705f8 fffffa80`06d40b60 00000000`00000000 : 0xfffffa80`098bb010 fffff880`031a8cb0 fffff800`02f6fc06 : 00045683`b70f0000 fffffa80`06d40b60 00000000`00000080 fffffa80`06d03990 : nt!ExpWorkerThread+0x111 fffff880`031a8d40 fffff800`02ca9c26 : fffff880`02f64180 fffffa80`06d40b60 fffff880`02f6efc0 8d481472`0300003c : nt!PspSystemThreadStartup+0x5a fffff880`031a8d80 00000000`00000000 : fffff880`031a9000 fffff880`031a3000 fffff880`031a89f0 00000000`00000000 : nt!KxStartSystemThread+0x16 FOLLOWUP_IP: usbaudio!USBCaptureProcessPin+14a fffff880`054d9596 4180785000 cmp byte ptr [r8+50h],0 SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: usbaudio!USBCaptureProcessPin+14a FOLLOWUP_NAME: MachineOwner MODULE_NAME: usbaudio IMAGE_NAME: usbaudio.sys DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bcc07 STACK_COMMAND: .cxr 0xfffff880031a81c0 ; kb FAILURE_BUCKET_ID: X64_0x7E_BAD_IP_usbaudio!USBCaptureProcessPin+14a BUCKET_ID: X64_0x7E_BAD_IP_usbaudio!USBCaptureProcessPin+14a Followup: MachineOwner --------- Debug session time: Sun Jan 23 02:02:15.374 2011 (GMT-5) System Uptime: 0 days 6:41:01.514 Loading Kernel Symbols ............................................................... ................................................................ ..................... Loading User Symbols Loading unloaded module list ..... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 1000007E, {ffffffffc0000005, fffff88004020ff3, fffff88003851698, fffff88003850f00} Probably caused by : dxgmms1.sys ( dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3 ) Followup: MachineOwner --------- 2: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e) This is a very common bugcheck. Usually the exception address pinpoints the driver/function that caused the problem. Always note this address as well as the link date of the driver/image that contains this address. Some common problems are exception code 0x80000003. This means a hard coded breakpoint or assertion was hit, but this system was booted /NODEBUG. This is not supposed to happen as developers should never have hardcoded breakpoints in retail code, but ... If this happens, make sure a debugger gets connected, and the system is booted /DEBUG. This will let us see why this breakpoint is happening. Arguments: Arg1: ffffffffc0000005, The exception code that was not handled Arg2: fffff88004020ff3, The address that the exception occurred at Arg3: fffff88003851698, Exception Record Address Arg4: fffff88003850f00, Context Record Address Debugging Details: ------------------ EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s. FAULTING_IP: dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3 fffff880`04020ff3 48894108 mov qword ptr [rcx+8],rax EXCEPTION_RECORD: fffff88003851698 -- (.exr 0xfffff88003851698) ExceptionAddress: fffff88004020ff3 (dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+0x00000000000000a3) ExceptionCode: c0000005 (Access violation) ExceptionFlags: 00000000 NumberParameters: 2 Parameter[0]: 0000000000000000 Parameter[1]: ffffffffffffffff Attempt to read from address ffffffffffffffff CONTEXT: fffff88003850f00 -- (.cxr 0xfffff88003850f00) rax=fffffa80076e0490 rbx=fffff8a00ae7b700 rcx=ffdffa80075a2c80 rdx=fffff8a0081a7230 rsi=fffffa80076d7440 rdi=fffffa800907a000 rip=fffff88004020ff3 rsp=fffff880038518d0 rbp=0000000000000000 r8=fffffa80076d7490 r9=fffff88003851901 r10=0000000000000000 r11=fffffa8008e71410 r12=000000000000007d r13=0000000000000000 r14=fffffa8007061570 r15=00000000000000f1 iopl=0 nv up ei ng nz na po nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010286 dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+0xa3: fffff880`04020ff3 48894108 mov qword ptr [rcx+8],rax ds:002b:ffdffa80`075a2c88=???????????????? Resetting default scope CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT PROCESS_NAME: System CURRENT_IRQL: 0 ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s. EXCEPTION_PARAMETER1: 0000000000000000 EXCEPTION_PARAMETER2: ffffffffffffffff READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ebe0e0 ffffffffffffffff FOLLOWUP_IP: dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3 fffff880`04020ff3 48894108 mov qword ptr [rcx+8],rax BUGCHECK_STR: 0x7E LAST_CONTROL_TRANSFER: from fffff8800401e8af to fffff88004020ff3 STACK_TEXT: fffff880`038518d0 fffff880`0401e8af : 00000000`00000000 fffffa80`070153e8 00000000`000000f1 fffffa80`0704fbc0 : dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+0xa3 fffff880`03851910 fffff880`0403865d : 00000000`00000000 fffff8a0`0853bdf0 fffffa80`00000000 fffffa80`07061570 : dxgmms1!VIDMM_GLOBAL::PrepareDmaBuffer+0xe1b fffff880`03851ae0 fffff880`04038398 : fffff800`00b96080 fffff880`04037d00 fffffa80`00000000 fffffa80`00000000 : dxgmms1!VidSchiSubmitRenderCommand+0x241 fffff880`03851cd0 fffff880`04037e96 : 00000000`00000000 fffffa80`06fa0950 00000000`00000080 fffffa80`08e71410 : dxgmms1!VidSchiSubmitQueueCommand+0x50 fffff880`03851d00 fffff800`02f2ac06 : 00000000`01e62ae0 fffffa80`08d6a620 fffffa80`06d02990 fffffa80`08d6a620 : dxgmms1!VidSchiWorkerThread+0xd6 fffff880`03851d40 fffff800`02c64c26 : fffff800`02e00e80 fffffa80`08d6a620 fffff800`02e0ec40 00000000`00000000 : nt!PspSystemThreadStartup+0x5a fffff880`03851d80 00000000`00000000 : fffff880`03852000 fffff880`0384c000 fffff880`03851690 00000000`00000000 : nt!KxStartSystemThread+0x16 SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3 FOLLOWUP_NAME: MachineOwner MODULE_NAME: dxgmms1 IMAGE_NAME: dxgmms1.sys DEBUG_FLR_IMAGE_TIMESTAMP: 4ccf7c90 STACK_COMMAND: .cxr 0xfffff88003850f00 ; kb FAILURE_BUCKET_ID: X64_0x7E_dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3 BUCKET_ID: X64_0x7E_dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3 Followup: MachineOwner --------- System Uptime: 0 days 0:56:29.267 Loading Kernel Symbols ............................................................... ................................................................ ..................... Loading User Symbols Loading unloaded module list ..... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 3B, {c0000005, fffff8800416f50a, fffff8800472feb0, 0} Probably caused by : dxgmms1.sys ( dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+182 ) Followup: MachineOwner --------- 0: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* SYSTEM_SERVICE_EXCEPTION (3b) An exception happened while executing a system service routine. Arguments: Arg1: 00000000c0000005, Exception code that caused the bugcheck Arg2: fffff8800416f50a, Address of the exception record for the exception that caused the bugcheck Arg3: fffff8800472feb0, Address of the context record for the exception that caused the bugcheck Arg4: 0000000000000000, zero. Debugging Details: ------------------ EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s. FAULTING_IP: dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+182 fffff880`0416f50a 48894108 mov qword ptr [rcx+8],rax CONTEXT: fffff8800472feb0 -- (.cxr 0xfffff8800472feb0) rax=fffff8a0073cab18 rbx=fffffa8008627e90 rcx=ffdff8a0073cab18 rdx=fffffa800908d000 rsi=fffff8a00b87a330 rdi=fffffa800901d000 rip=fffff8800416f50a rsp=fffff88004730880 rbp=0000000000000001 r8=fffffa800901e3d8 r9=0000000000000001 r10=0000000000000030 r11=fffff88004730850 r12=0000000000000000 r13=0000000000000000 r14=0000000000000000 r15=fffff8a007fa1410 iopl=0 nv up ei ng nz na pe nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282 dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+0x182: fffff880`0416f50a 48894108 mov qword ptr [rcx+8],rax ds:002b:ffdff8a0`073cab20=???????????????? Resetting default scope CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0x3B PROCESS_NAME: Wow.exe CURRENT_IRQL: 0 LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff8800416f50a STACK_TEXT: fffff880`04730880 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+0x182 FOLLOWUP_IP: dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+182 fffff880`0416f50a 48894108 mov qword ptr [rcx+8],rax SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+182 FOLLOWUP_NAME: MachineOwner MODULE_NAME: dxgmms1 IMAGE_NAME: dxgmms1.sys DEBUG_FLR_IMAGE_TIMESTAMP: 4ccf7c90 STACK_COMMAND: .cxr 0xfffff8800472feb0 ; kb FAILURE_BUCKET_ID: X64_0x3B_dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+182 BUCKET_ID: X64_0x3B_dxgmms1!VIDMM_GLOBAL::CloseOneAllocation+182 Followup: MachineOwner --------- 0: kd> lmtsmn start end module name fffff880`03f9d000 fffff880`03fdb000 1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30) fffff880`00f99000 fffff880`00ff0000 ACPI ACPI.sys Mon Jul 13 19:19:34 2009 (4A5BC106) fffff880`02c9b000 fffff880`02d25000 afd afd.sys Mon Jul 13 19:21:40 2009 (4A5BC184) fffff880`03fdb000 fffff880`03ff1000 AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0) fffff880`00c44000 fffff880`00c4f000 amdxata amdxata.sys Tue May 19 13:56:59 2009 (4A12F2EB) fffff880`06a71000 fffff880`06a7c000 asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5) fffff880`00ed7000 fffff880`00ee0000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`00c1a000 fffff880`00c44000 ataport ataport.SYS Mon Jul 13 19:19:52 2009 (4A5BC118) fffff960`00830000 fffff960`00891000 ATMFD ATMFD.DLL Tue Oct 19 23:05:45 2010 (4CBE5C89) fffff880`019f1000 fffff880`019f8000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D) fffff880`03eed000 fffff880`03efe000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF) fffff880`0550b000 fffff880`05529000 bowser bowser.sys Mon Jul 13 19:23:50 2009 (4A5BC206) fffff960`00790000 fffff960`007b7000 cdd cdd.dll Tue Nov 02 00:59:22 2010 (4CCF9AAA) fffff880`0198d000 fffff880`019b7000 cdrom cdrom.sys Mon Jul 13 19:19:54 2009 (4A5BC11A) fffff880`00d27000 fffff880`00de7000 CI CI.dll Mon Jul 13 21:32:13 2009 (4A5BE01D) fffff880`01927000 fffff880`01957000 CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E) fffff880`00cc9000 fffff880`00d27000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`010f6000 fffff880`01169000 cng cng.sys Mon Jul 13 19:49:40 2009 (4A5BC814) fffff880`0480f000 fffff880`0481f000 CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1) fffff880`045e9000 fffff880`045f7000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD) fffff880`03e4c000 fffff880`03ecf000 csc csc.sys Mon Jul 13 19:24:26 2009 (4A5BC22A) fffff880`03ecf000 fffff880`03eed000 dfsc dfsc.sys Mon Jul 13 19:23:44 2009 (4A5BC200) fffff880`02c68000 fffff880`02c77000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E) fffff880`01911000 fffff880`01927000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`04559000 fffff880`0457b000 drmk drmk.sys Mon Jul 13 21:01:25 2009 (4A5BD8E5) fffff880`0440c000 fffff880`04415000 dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`04400000 fffff880`0440c000 dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`04415000 fffff880`04428000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F) fffff880`045dd000 fffff880`045e9000 Dxapi Dxapi.sys Mon Jul 13 19:38:28 2009 (4A5BC574) fffff880`04060000 fffff880`04154000 dxgkrnl dxgkrnl.sys Mon Nov 01 22:51:31 2010 (4CCF7CB3) fffff880`04154000 fffff880`0419a000 dxgmms1 dxgmms1.sys Mon Nov 01 22:50:56 2010 (4CCF7C90) fffff880`01084000 fffff880`01098000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481) fffff880`01038000 fffff880`01084000 fltmgr fltmgr.sys Mon Jul 13 19:19:59 2009 (4A5BC11F) fffff880`0122b000 fffff880`01235000 Fs_Rec Fs_Rec.sys Mon Jul 13 19:19:45 2009 (4A5BC111) fffff880`018d7000 fffff880`01911000 fvevol fvevol.sys Fri Sep 25 22:34:26 2009 (4ABD7DB2) fffff880`01400000 fffff880`0144a000 fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164) fffff800`033f7000 fffff800`03440000 hal hal.dll Mon Jul 13 21:27:36 2009 (4A5BDF08) fffff880`0419a000 fffff880`041be000 HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5) fffff880`04581000 fffff880`045dd000 HdAudio HdAudio.sys Mon Jul 13 20:06:59 2009 (4A5BCC23) fffff880`01000000 fffff880`01019000 HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD) fffff880`045f7000 fffff880`045ff080 HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9) fffff880`011ef000 fffff880`011fd000 hidusb hidusb.sys Mon Jul 13 20:06:22 2009 (4A5BCBFE) fffff880`05443000 fffff880`0550b000 HTTP HTTP.sys Mon Jul 13 19:22:16 2009 (4A5BC1A8) fffff880`0144a000 fffff880`01453000 hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA) fffff880`041dc000 fffff880`041fa000 i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`03f24000 fffff880`03f3a000 intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD) fffff880`04800000 fffff880`0480f000 kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116) fffff800`00bb4000 fffff800`00bbe000 kdcom kdcom.dll Mon Jul 13 21:31:07 2009 (4A5BDFDB) fffff880`0442f000 fffff880`04472000 ks ks.sys Wed Mar 03 23:32:25 2010 (4B8F37D9) fffff880`01200000 fffff880`0121a000 ksecdd ksecdd.sys Mon Jul 13 19:20:54 2009 (4A5BC156) fffff880`015a5000 fffff880`015d0000 ksecpkg ksecpkg.sys Fri Dec 11 01:03:32 2009 (4B21E0B4) fffff880`0457b000 fffff880`04580200 ksthunk ksthunk.sys Mon Jul 13 20:00:19 2009 (4A5BCA93) fffff880`05416000 fffff880`0542b000 lltdio lltdio.sys Mon Jul 13 20:08:50 2009 (4A5BCC92) fffff880`01965000 fffff880`01988000 luafv luafv.sys Mon Jul 13 19:26:13 2009 (4A5BC295) fffff880`00c71000 fffff880`00cb5000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66) fffff880`01957000 fffff880`01965000 monitor monitor.sys Mon Jul 13 19:38:52 2009 (4A5BC58C) fffff880`02df1000 fffff880`02e00000 mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116) fffff880`01019000 fffff880`01026000 mouhid mouhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94) fffff880`00c00000 fffff880`00c1a000 mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A) fffff880`019b7000 fffff880`019e8000 MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110) fffff880`055df000 fffff880`055ef000 MpNWMon MpNWMon.sys Tue Sep 14 20:19:30 2010 (4C901112) fffff880`05529000 fffff880`05541000 mpsdrv mpsdrv.sys Mon Jul 13 20:08:25 2009 (4A5BCC79) fffff880`05541000 fffff880`0556e000 mrxsmb mrxsmb.sys Sat Feb 27 02:52:19 2010 (4B88CF33) fffff880`0556e000 fffff880`055bc000 mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C) fffff880`055bc000 fffff880`055df000 mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A) fffff880`0185e000 fffff880`01869000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`00e00000 fffff880`00e0a000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE) fffff880`01098000 fffff880`010f6000 msrpc msrpc.sys Mon Jul 13 19:21:32 2009 (4A5BC17C) fffff880`02c5d000 fffff880`02c68000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE) fffff880`015e8000 fffff880`015fa000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201) fffff880`01453000 fffff880`01545000 ndis ndis.sys Mon Jul 13 19:21:40 2009 (4A5BC184) fffff880`03e24000 fffff880`03e30000 ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8) fffff880`018a5000 fffff880`018d4000 ndiswan ndiswan.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3) fffff880`044de000 fffff880`044f3000 NDProxy NDProxy.SYS Mon Jul 13 20:10:05 2009 (4A5BCCDD) fffff880`02d99000 fffff880`02da8000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6) fffff880`02d25000 fffff880`02d6a000 netbt netbt.sys Mon Jul 13 19:21:28 2009 (4A5BC178) fffff880`01545000 fffff880`015a5000 NETIO NETIO.SYS Thu Apr 08 22:43:59 2010 (4BBE946F) fffff880`06b54000 fffff880`06b69000 NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149) fffff880`01869000 fffff880`0187a000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114) fffff880`02c51000 fffff880`02c5d000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E) fffff800`02e1b000 fffff800`033f7000 nt ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9) fffff880`01259000 fffff880`013fc000 Ntfs Ntfs.sys Mon Jul 13 19:20:47 2009 (4A5BC14F) fffff880`019e8000 fffff880`019f1000 Null Null.SYS Mon Jul 13 19:19:37 2009 (4A5BC109) fffff880`053fd000 fffff880`053fe180 nvBridge nvBridge.kmd Sat Oct 16 13:06:16 2010 (4CB9DB88) fffff880`044f3000 fffff880`0451c000 nvhda64v nvhda64v.sys Tue Sep 07 16:08:40 2010 (4C869BC8) fffff880`04823000 fffff880`053fca80 nvlddmkm nvlddmkm.sys Sat Oct 16 13:12:46 2010 (4CB9DD0E) fffff880`02d73000 fffff880`02d99000 pacer pacer.sys Mon Jul 13 20:09:41 2009 (4A5BCCC5) fffff880`00e4a000 fffff880`00e5f000 partmgr partmgr.sys Mon Jul 13 19:19:58 2009 (4A5BC11E) fffff880`00e0a000 fffff880`00e3d000 pci pci.sys Mon Jul 13 19:19:51 2009 (4A5BC117) fffff880`00ed0000 fffff880`00ed7000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115) fffff880`00de7000 fffff880`00df7000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114) fffff880`0121a000 fffff880`0122b000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF) fffff880`068eb000 fffff880`06991000 peauth peauth.sys Mon Jul 13 21:01:19 2009 (4A5BD8DF) fffff880`0451c000 fffff880`04559000 portcls portcls.sys Mon Jul 13 20:06:27 2009 (4A5BCC03) fffff880`00cb5000 fffff880`00cc9000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027) fffff880`06a7c000 fffff880`06a8c000 qwavedrv qwavedrv.sys Mon Jul 13 20:09:48 2009 (4A5BCCCC) fffff880`03e00000 fffff880`03e24000 rasl2tp rasl2tp.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3) fffff880`03e30000 fffff880`03e4b000 raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9) fffff880`02c77000 fffff880`02c98000 raspptp raspptp.sys Mon Jul 13 20:10:18 2009 (4A5BCCEA) fffff880`02dd7000 fffff880`02df1000 rassstp rassstp.sys Mon Jul 13 20:10:25 2009 (4A5BCCF1) fffff880`02c00000 fffff880`02c51000 rdbss rdbss.sys Mon Jul 13 19:24:09 2009 (4A5BC219) fffff880`03ff1000 fffff880`03ffc000 rdpbus rdpbus.sys Mon Jul 13 20:17:46 2009 (4A5BCEAA) fffff880`01843000 fffff880`0184c000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62) fffff880`0184c000 fffff880`01855000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62) fffff880`01855000 fffff880`0185e000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63) fffff880`011b5000 fffff880`011ef000 rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A) fffff880`0542b000 fffff880`05443000 rspndr rspndr.sys Mon Jul 13 20:08:50 2009 (4A5BCC92) fffff880`06b69000 fffff880`06b6f000 RTCore64 RTCore64.sys Wed May 25 02:39:12 2005 (42941D90) fffff880`06991000 fffff880`0699c000 secdrv secdrv.SYS Wed Sep 13 09:18:38 2006 (4508052E) fffff880`015e0000 fffff880`015e8000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB) fffff880`06abe000 fffff880`06b54000 srv srv.sys Thu Aug 26 23:38:00 2010 (4C773318) fffff880`06800000 fffff880`06867000 srv2 srv2.sys Thu Aug 26 23:37:46 2010 (4C77330A) fffff880`0699c000 fffff880`069c9000 srvnet srvnet.sys Thu Aug 26 23:37:24 2010 (4C7732F4) fffff880`041fa000 fffff880`041fb480 swenum swenum.sys Mon Jul 13 20:00:18 2009 (4A5BCA92) fffff880`01600000 fffff880`017fd000 tcpip tcpip.sys Sun Jun 13 23:39:04 2010 (4C15A458) fffff880`069c9000 fffff880`069db000 tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD) fffff880`01898000 fffff880`018a5000 TDI TDI.SYS Mon Jul 13 19:21:18 2009 (4A5BC16E) fffff880`0187a000 fffff880`01898000 tdx tdx.sys Mon Jul 13 19:21:15 2009 (4A5BC16B) fffff880`02dc3000 fffff880`02dd7000 termdd termdd.sys Mon Jul 13 20:16:36 2009 (4A5BCE64) fffff960`00550000 fffff960`0055a000 TSDDD TSDDD.dll unavailable (00000000) fffff880`03efe000 fffff880`03f24000 tunnel tunnel.sys Mon Jul 13 20:09:37 2009 (4A5BCCC1) fffff880`06b8c000 fffff880`06be0000 udfs udfs.sys Mon Jul 13 19:23:37 2009 (4A5BC1F9) fffff880`04472000 fffff880`04484000 umbus umbus.sys Mon Jul 13 20:06:56 2009 (4A5BCC20) fffff880`06be0000 fffff880`06bfac00 usbaudio usbaudio.sys Mon Jul 13 20:06:31 2009 (4A5BCC07) fffff880`06b6f000 fffff880`06b8c000 usbccgp usbccgp.sys Mon Jul 13 20:06:45 2009 (4A5BCC15) fffff880`04428000 fffff880`04429f00 USBD USBD.SYS Mon Jul 13 20:06:23 2009 (4A5BCBFF) fffff880`041cb000 fffff880`041dc000 usbehci usbehci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06) fffff880`04484000 fffff880`044de000 usbhub usbhub.sys Mon Jul 13 20:07:09 2009 (4A5BCC2D) fffff880`04000000 fffff880`04056000 USBPORT USBPORT.SYS Mon Jul 13 20:06:31 2009 (4A5BCC07) fffff880`00c4f000 fffff880`00c6a000 USBSTOR USBSTOR.SYS Mon Jul 13 20:06:34 2009 (4A5BCC0A) fffff880`041be000 fffff880`041cb000 usbuhci usbuhci.sys Mon Jul 13 20:06:27 2009 (4A5BCC03) fffff880`00e3d000 fffff880`00e4a000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB) fffff880`01800000 fffff880`0180e000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587) fffff880`0180e000 fffff880`01833000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B) fffff880`015d0000 fffff880`015e0000 vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E) fffff880`00e5f000 fffff880`00e74000 volmgr volmgr.sys Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`00e74000 fffff880`00ed0000 volmgrx volmgrx.sys Mon Jul 13 19:20:33 2009 (4A5BC141) fffff880`01169000 fffff880`011b5000 volsnap volsnap.sys Mon Jul 13 19:20:08 2009 (4A5BC128) fffff880`02da8000 fffff880`02dc3000 wanarp wanarp.sys Mon Jul 13 20:10:21 2009 (4A5BCCED) fffff880`01833000 fffff880`01843000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F) fffff880`0442a000 fffff880`0442d880 wdcsam64 wdcsam64.sys Wed Apr 16 04:39:08 2008 (4805BB2C) fffff880`00ee6000 fffff880`00f8a000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F) fffff880`00f8a000 fffff880`00f99000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A) fffff880`02d6a000 fffff880`02d73000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6) fffff960`00060000 fffff960`00370000 win32k win32k.sys Tue Oct 19 23:08:46 2010 (4CBE5D3E) fffff880`04056000 fffff880`0405f000 wmiacpi wmiacpi.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6) fffff880`00ff0000 fffff880`00ff9000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117) fffff880`01235000 fffff880`01256000 WudfPf WudfPf.sys Mon Jul 13 20:05:37 2009 (4A5BCBD1) fffff880`03f3a000 fffff880`03f9d000 yk62x64 yk62x64.sys Wed Sep 15 10:31:29 2010 (4C90D8C1) Unloaded modules: fffff880`06a00000 fffff880`06a71000 spsys.sys Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`01957000 fffff880`01965000 crashdmp.sys Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`01965000 fffff880`01971000 dump_ataport Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`01971000 fffff880`0197a000 dump_atapi.s Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`0197a000 fffff880`0198d000 dump_dumpfve Timestamp: unavailable (00000000) Checksum: 00000000