BugCheck 9B, {14031c, fffff880088deb88, fffff880088de3f0, fffff80002e8b1ab}
Probably caused by : hardware ( udfs!UdfDetermineMediaType+46 )
BugCheck 1000007E, {ffffffffc0000005, fffff80002fad61c, fffff88003b85988, fffff88003b851f0}
Probably caused by : ntkrnlmp.exe ( nt!CmpRemoveKeyHash+4c )
BugCheck 1, {7768f72a, 0, ffff, fffff880088b7ca0}
Probably caused by : ntkrnlmp.exe ( nt!KiSystemServiceExit+245 )
Uninstall Kaspersky:
Removal tool for Kaspersky Lab products
https://www.microsoft.com/security_essentials/
Updae drivers:
Netgear Neutral Wireless Solution
scmndisp.sys Wed Jan 17 02:48:03 2007
Broadcom 802.11 Network Adapter wireless
bcmwlhigh664.sys Thu Nov 05 19:27:07 2009
NEC USB 3.0
nusb3hub.sys Thu Jan 21 22:22:18 2010
Realtek Audio
RTKVHD64.sys Tue Nov 03 06:39:55 2009
Marvell Yukon Ethernet Controller
yk62x64.sys Wed May 20 04:14:06 2009
-Reinstalled Windows
-Updated Drivers through Device Manager
-Ran a full scan with Kaspersky: No threats detected.
-Used Memtest86+....One test (I think #9) showed around two million errors. But I keep running over it again and it never showed those errors ever again..
The problem is that if memtest does show errors, sorting drivers won't help.
Crash Dumps:
Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\DMP\030711-21013-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02c16000 PsLoadedModuleList = 0xfffff800`02e53e50
Debug session time: Mon Mar 7 17:33:24.862 2011 (UTC - 5:00)
System Uptime: 0 days 3:33:34.954
Loading Kernel Symbols
...............................................................
................................................................
..............................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 9B, {14031c, fffff880088deb88, fffff880088de3f0, fffff80002e8b1ab}
Probably caused by : hardware ( udfs!UdfDetermineMediaType+46 )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
UDFS_FILE_SYSTEM (9b)
If you see UdfExceptionFilter on the stack then the 2nd and 3rd
parameters are the exception record and context record. Do a .cxr
on the 3rd parameter and then kb to obtain a more helpful stack
trace.
Arguments:
Arg1: 000000000014031c
Arg2: fffff880088deb88
Arg3: fffff880088de3f0
Arg4: fffff80002e8b1ab
Debugging Details:
------------------
EXCEPTION_RECORD: fffff880088deb88 -- (.exr 0xfffff880088deb88)
ExceptionAddress: fffff80002e8b1ab (nt!IopNotifyLastChanceShutdownQueueHead+0x000000000000000b)
ExceptionCode: c000001d (Illegal instruction)
ExceptionFlags: 00000000
NumberParameters: 0
CONTEXT: fffff880088de3f0 -- (.cxr 0xfffff880088de3f0)
rax=0000000000000000 rbx=fffffa8008871514 rcx=fffffa8006b3910f
rdx=00000000ffffffff rsi=fffff80002e8b200 rdi=0000000000000000
rip=fffff80002e8b1ab rsp=fffff880088dedc0 rbp=0000000000000000
r8=fffffa800554c0b8 r9=00000000ffffffff r10=fffffa8009109000
r11=fffff880088dedb0 r12=fffffa8007c09820 r13=0000000000000000
r14=fffff8800441cc98 r15=fffffa8007352bd0
iopl=0 nv up ei ng nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010286
nt!IopNotifyLastChanceShutdownQueueHead+0xb:
fffff800`02e8b1ab 06 ???
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x9B
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc000001d - {EXCEPTION} Illegal Instruction An attempt was made to execute an illegal instruction.
EXCEPTION_CODE: (NTSTATUS) 0xc000001d - {EXCEPTION} Illegal Instruction An attempt was made to execute an illegal instruction.
LAST_CONTROL_TRANSFER: from fffffa8008871514 to fffff80002e8b1ab
MISALIGNED_IP:
nt!IopNotifyLastChanceShutdownQueueHead+b
fffff800`02e8b1ab 06 ???
STACK_TEXT:
fffff880`088dedc0 fffffa80`08871514 : fffff880`0442d17a fffffa80`08871514 fffff800`02e8b200 fffffa80`00000040 : nt!IopNotifyLastChanceShutdownQueueHead+0xb
fffff880`088dedc8 fffff880`0442d17a : fffffa80`08871514 fffff800`02e8b200 fffffa80`00000040 fffffa80`06aaed30 : 0xfffffa80`08871514
fffff880`088dedd0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : udfs!UdfDetermineMediaType+0x46
FOLLOWUP_IP:
udfs!UdfDetermineMediaType+46
fffff880`0442d17a 85c0 test eax,eax
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: udfs!UdfDetermineMediaType+46
FOLLOWUP_NAME: MachineOwner
IMAGE_NAME: hardware
DEBUG_FLR_IMAGE_TIMESTAMP: 0
STACK_COMMAND: .cxr 0xfffff880088de3f0 ; kb
MODULE_NAME: hardware
FAILURE_BUCKET_ID: X64_IP_MISALIGNED
BUCKET_ID: X64_IP_MISALIGNED
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\DMP\030711-22854-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02c4b000 PsLoadedModuleList = 0xfffff800`02e88e50
Debug session time: Mon Mar 7 17:58:02.907 2011 (UTC - 5:00)
System Uptime: 0 days 0:23:32.000
Loading Kernel Symbols
...............................................................
................................................................
.............................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1000007E, {ffffffffc0000005, fffff80002fad61c, fffff88003b85988, fffff88003b851f0}
Probably caused by : ntkrnlmp.exe ( nt!CmpRemoveKeyHash+4c )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff80002fad61c, The address that the exception occurred at
Arg3: fffff88003b85988, Exception Record Address
Arg4: fffff88003b851f0, Context Record Address
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!CmpRemoveKeyHash+4c
fffff800`02fad61c 488b01 mov rax,qword ptr [rcx]
EXCEPTION_RECORD: fffff88003b85988 -- (.exr 0xfffff88003b85988)
ExceptionAddress: fffff80002fad61c (nt!CmpRemoveKeyHash+0x000000000000004c)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff
CONTEXT: fffff88003b851f0 -- (.cxr 0xfffff88003b851f0)
rax=f0fffff8a008a1c5 rbx=fffff8a008b9a380 rcx=f0fffff8a008a1cd
rdx=0000000000000ba0 rsi=0000000000000004 rdi=fffff88003b85c00
rip=fffff80002fad61c rsp=fffff88003b85bc8 rbp=fffff88003b85c8c
r8=0000000000000000 r9=00000000192e9be0 r10=fffff8a008b9a258
r11=fffff8a008b9a390 r12=0000000000000003 r13=0000000000000003
r14=0000000000000000 r15=0000000000000001
iopl=0 nv up ei ng nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282
nt!CmpRemoveKeyHash+0x4c:
fffff800`02fad61c 488b01 mov rax,qword ptr [rcx] ds:002b:f0fffff8`a008a1cd=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ef30e0
ffffffffffffffff
FOLLOWUP_IP:
nt!CmpRemoveKeyHash+4c
fffff800`02fad61c 488b01 mov rax,qword ptr [rcx]
BUGCHECK_STR: 0x7E
LAST_CONTROL_TRANSFER: from fffff80002fad7e6 to fffff80002fad61c
STACK_TEXT:
fffff880`03b85bc8 fffff800`02fad7e6 : fffff8a0`08b9a380 fffff880`03b85c8c 00000000`00000004 00000000`00000000 : nt!CmpRemoveKeyHash+0x4c
fffff880`03b85bd0 fffff800`02f12fde : fffff8a0`08b9a380 fffff880`03b85c74 00000000`00000004 fffffa80`057a4400 : nt!CmpCleanUpKcbCacheWithLock+0x52
fffff880`03b85c00 fffff800`02cc8961 : fffff800`02f12ca4 fffff800`02e605f8 fffffa80`0552cb60 00000000`00000000 : nt!CmpDelayCloseWorker+0x33a
fffff880`03b85cb0 fffff800`02f5e7c6 : e7fde7fd`2c132c13 fffffa80`0552cb60 00000000`00000080 fffffa80`05491890 : nt!ExpWorkerThread+0x111
fffff880`03b85d40 fffff800`02c99c26 : fffff880`0396a180 fffffa80`0552cb60 fffff880`039750c0 04740474`48e748e7 : nt!PspSystemThreadStartup+0x5a
fffff880`03b85d80 00000000`00000000 : fffff880`03b86000 fffff880`03b80000 fffff880`03b859f0 00000000`00000000 : nt!KxStartSystemThread+0x16
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!CmpRemoveKeyHash+4c
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4cc791bd
STACK_COMMAND: .cxr 0xfffff88003b851f0 ; kb
FAILURE_BUCKET_ID: X64_0x7E_nt!CmpRemoveKeyHash+4c
BUCKET_ID: X64_0x7E_nt!CmpRemoveKeyHash+4c
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\DMP\030811-20217-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02c1e000 PsLoadedModuleList = 0xfffff800`02e5be50
Debug session time: Tue Mar 8 04:29:27.498 2011 (UTC - 5:00)
System Uptime: 0 days 10:27:44.591
Loading Kernel Symbols
...............................................................
................................................................
.................................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1, {7768f72a, 0, ffff, fffff880088b7ca0}
Probably caused by : ntkrnlmp.exe ( nt!KiSystemServiceExit+245 )
Followup: MachineOwner
---------
6: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
APC_INDEX_MISMATCH (1)
This is a kernel internal error. The most common reason to see this
bugcheck is when a filesystem or a driver has a mismatched number of
calls to disable and re-enable APCs. The key data item is the
Thread->KernelApcDisable field. A negative value indicates that a driver
has disabled APC calls without re-enabling them. A positive value indicates
that the reverse is true. This check is made on exit from a system call.
Arguments:
Arg1: 000000007768f72a, address of system function (system call)
Arg2: 0000000000000000, Thread->ApcStateIndex << 8 | Previous ApcStateIndex
Arg3: 000000000000ffff, Thread->KernelApcDisable
Arg4: fffff880088b7ca0, Previous KernelApcDisable
Debugging Details:
------------------
FAULTING_IP:
+3462396236393733
00000000`7768f72a ?? ???
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x1
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002c8dca9 to fffff80002c8e740
STACK_TEXT:
fffff880`088b7a68 fffff800`02c8dca9 : 00000000`00000001 00000000`7768f72a 00000000`00000000 00000000`0000ffff : nt!KeBugCheckEx
fffff880`088b7a70 fffff800`02c8dbe0 : 00000000`00003e62 00000000`01418ee8 00000000`01e4eea0 0000007f`ffffffff : nt!KiBugCheckDispatch+0x69
fffff880`088b7bb0 00000000`7768f72a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit+0x245
00000000`01e4e608 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7768f72a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiSystemServiceExit+245
fffff800`02c8dbe0 4883ec50 sub rsp,50h
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: nt!KiSystemServiceExit+245
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4cc791bd
FAILURE_BUCKET_ID: X64_0x1_SysCallNum_4_nt!KiSystemServiceExit+245
BUCKET_ID: X64_0x1_SysCallNum_4_nt!KiSystemServiceExit+245
Followup: MachineOwner
---------
Drivers:
Code:
start end module name
fffff880`04a00000 fffff880`04a3e000 1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f82000 fffff880`00fd9000 ACPI ACPI.sys Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`03573000 fffff880`035fd000 afd afd.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`04be5000 fffff880`04bfb000 AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`0111e000 fffff880`01129000 amdxata amdxata.sys Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`05e67000 fffff880`05e6f000 ASACPI ASACPI.sys Wed Jul 15 23:31:29 2009 (4A5E9F11)
fffff880`04800000 fffff880`04806000 AsIO AsIO.sys Thu Apr 22 07:18:03 2010 (4BD0306B)
fffff880`08d2c000 fffff880`08d37000 asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00eb3000 fffff880`00ebc000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00dbd000 fffff880`00de7000 ataport ataport.SYS Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`05b9f000 fffff880`05bbf000 AtihdW76 AtihdW76.sys Fri Sep 24 01:44:48 2010 (4C9C3AD0)
fffff880`05e7b000 fffff880`06777000 atikmdag atikmdag.sys Wed Jan 26 17:48:28 2011 (4D40A4BC)
fffff880`04a3f000 fffff880`04a8d000 atikmpag atikmpag.sys Wed Jan 26 17:13:33 2011 (4D409C8D)
fffff880`0405d000 fffff880`0412d000 bcmwlhigh664 bcmwlhigh664.sys Thu Nov 05 19:27:07 2009 (4AF36D5B)
fffff880`034c0000 fffff880`034c7000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`049ef000 fffff880`04a00000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`06b3d000 fffff880`06b5b000 bowser bowser.sys Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`006b0000 fffff960`006d7000 cdd cdd.dll unavailable (00000000)
fffff880`01800000 fffff880`0182a000 cdrom cdrom.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00ec2000 fffff880`00f82000 CI CI.dll Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01a50000 fffff880`01a80000 CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00d02000 fffff880`00d60000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`0140e000 fffff880`01481000 cng cng.sys Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`067ee000 fffff880`067fe000 CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`06a23000 fffff880`06a2c000 cpuz135_x64 cpuz135_x64.sys Wed Jan 19 11:42:06 2011 (4D37145E)
fffff880`0413a000 fffff880`04148000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`049d1000 fffff880`049ef000 dfsc dfsc.sys Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`049c2000 fffff880`049d1000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01a3a000 fffff880`01a50000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`05a00000 fffff880`05a22000 drmk drmk.sys Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`04148000 fffff880`04152000 dump_diskdump dump_diskdump.sys Mon Jul 12 23:32:05 2010 (4C3BDE35)
fffff880`041de000 fffff880`041f1000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`04152000 fffff880`041de000 dump_mv91xx dump_mv91xx.sys Wed Jun 30 21:55:14 2010 (4C2BF582)
fffff880`019cc000 fffff880`019d4000 dump_mvxxmm dump_mvxxmm.sys Wed Jun 30 21:54:57 2010 (4C2BF571)
fffff880`05a7c000 fffff880`05a88000 Dxapi Dxapi.sys Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`04a8d000 fffff880`04b81000 dxgkrnl dxgkrnl.sys Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`06777000 fffff880`067bd000 dxgmms1 dxgmms1.sys Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`04806000 fffff880`0480f000 easytthr easytthr.sys Sun Aug 29 10:10:54 2010 (4C7A6A6E)
fffff880`01175000 fffff880`01189000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`01129000 fffff880`01175000 fltmgr fltmgr.sys Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`01492000 fffff880`0149c000 Fs_Rec Fs_Rec.sys Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`01a00000 fffff880`01a3a000 fvevol fvevol.sys Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`01842000 fffff880`0188c000 fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`031fb000 fffff800`03244000 hal hal.dll Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`067bd000 fffff880`067e1000 HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`08de8000 fffff880`08df2000 hiber_diskdump hiber_diskdump.sys Mon Jul 12 23:32:05 2010 (4C3BDE35)
fffff880`08dd5000 fffff880`08de8000 hiber_dumpfve hiber_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`08d37000 fffff880`08dc3000 hiber_mv91xx hiber_mv91xx.sys Wed Jun 30 21:55:14 2010 (4C2BF582)
fffff880`08dcd000 fffff880`08dd5000 hiber_mvxxmm hiber_mvxxmm.sys Wed Jun 30 21:54:57 2010 (4C2BF571)
fffff880`04000000 fffff880`04019000 HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`04019000 fffff880`04021080 HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`041f1000 fffff880`041ff000 hidusb hidusb.sys Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`06a75000 fffff880`06b3d000 HTTP HTTP.sys Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`021e5000 fffff880`021ee000 hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`04835000 fffff880`0484b000 intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`0182a000 fffff880`01839000 kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05a88000 fffff880`05a96000 kbdhid kbdhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00ba5000 fffff800`00baf000 kdcom kdcom.dll Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`01a86000 fffff880`021e5000 kl1 kl1.sys Wed Jun 09 09:34:19 2010 (4C0F985B)
fffff880`0356c000 fffff880`03573000 kl2 kl2.sys Wed Jun 09 09:24:47 2010 (4C0F961F)
fffff880`03421000 fffff880`034b7000 klif klif.sys Fri Oct 01 03:28:56 2010 (4CA58DB8)
fffff880`04913000 fffff880`0491c000 klim6 klim6.sys Thu Apr 22 11:07:24 2010 (4BD0662C)
fffff880`0402f000 fffff880`04039000 klmouflt klmouflt.sys Mon Nov 02 11:26:06 2009 (4AEF081E)
fffff880`05ac3000 fffff880`05b06000 ks ks.sys Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`013bf000 fffff880`013d9000 ksecdd ksecdd.sys Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01000000 fffff880`0102b000 ksecpkg ksecpkg.sys Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`05a22000 fffff880`05a27200 ksthunk ksthunk.sys Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`05aa4000 fffff880`05ab9000 lltdio lltdio.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`01936000 fffff880`01959000 luafv luafv.sys Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00caa000 fffff880`00cee000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`05a96000 fffff880`05aa4000 monitor monitor.sys Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`019e7000 fffff880`019f6000 mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`04022000 fffff880`0402f000 mouhid mouhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00c6c000 fffff880`00c86000 mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`06b5b000 fffff880`06b73000 mpsdrv mpsdrv.sys Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`06b73000 fffff880`06ba0000 mrxsmb mrxsmb.sys Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`06ba0000 fffff880`06bee000 mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`06a00000 fffff880`06a23000 mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`03525000 fffff880`03530000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fe2000 fffff880`00fec000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`01189000 fffff880`011e7000 msrpc msrpc.sys Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`049b7000 fffff880`049c2000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`01924000 fffff880`01936000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`0105b000 fffff880`010e7000 mv91xx mv91xx.sys Wed Jun 30 21:55:14 2010 (4C2BF582)
fffff880`01116000 fffff880`0111e000 mvxxmm mvxxmm.sys Wed Jun 30 21:54:57 2010 (4C2BF571)
fffff880`0149c000 fffff880`0158e000 ndis ndis.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`0487d000 fffff880`04889000 ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`019ac000 fffff880`019bf000 ndisuio ndisuio.sys Mon Jul 13 20:09:25 2009 (4A5BCCB5)
fffff880`0102b000 fffff880`0105a000 ndiswan ndiswan.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`05b8a000 fffff880`05b9f000 NDProxy NDProxy.SYS Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`0491c000 fffff880`0492b000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`04889000 fffff880`048ce000 netbt netbt.sys Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`0158e000 fffff880`015ee000 NETIO NETIO.SYS Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`03530000 fffff880`03541000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`049ab000 fffff880`049b7000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c1e000 fffff800`031fb000 nt ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`0121c000 fffff880`013bf000 Ntfs Ntfs.sys Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`034b7000 fffff880`034c0000 Null Null.SYS Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`05b18000 fffff880`05b30000 nusb3hub nusb3hub.sys Thu Jan 21 22:22:18 2010 (4B5919EA)
fffff880`0484b000 fffff880`0487b000 nusb3xhc nusb3xhc.sys Thu Jan 21 22:22:21 2010 (4B5919ED)
fffff880`01959000 fffff880`019ac000 nwifi nwifi.sys Mon Jul 13 20:07:23 2009 (4A5BCC3B)
fffff880`048d7000 fffff880`048fd000 pacer pacer.sys Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`00d93000 fffff880`00da8000 partmgr partmgr.sys Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00d60000 fffff880`00d93000 pci pci.sys Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00ff9000 fffff880`01000000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00c5c000 fffff880`00c6c000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`01481000 fffff880`01492000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`08a84000 fffff880`08b2a000 peauth peauth.sys Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`05bbf000 fffff880`05bfc000 portcls portcls.sys Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00cee000 fffff880`00d02000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`013d9000 fffff880`013fd000 rasl2tp rasl2tp.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`03400000 fffff880`0341b000 raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`00c86000 fffff880`00ca7000 raspptp raspptp.sys Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`01200000 fffff880`0121a000 rassstp rassstp.sys Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`0495a000 fffff880`049ab000 rdbss rdbss.sys Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`0350a000 fffff880`03513000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`03513000 fffff880`0351c000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0351c000 fffff880`03525000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`018ea000 fffff880`01924000 rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`011e7000 fffff880`011ff000 rspndr rspndr.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`0740b000 fffff880`075f7780 RTKVHD64 RTKVHD64.sys Tue Nov 03 06:39:55 2009 (4AF0168B)
fffff880`0188c000 fffff880`01896000 scmndisp scmndisp.sys Wed Jan 17 02:48:03 2007 (45ADD4B3)
fffff880`010e7000 fffff880`01116000 SCSIPORT SCSIPORT.SYS Mon Jul 13 20:01:04 2009 (4A5BCAC0)
fffff880`08b2a000 fffff880`08b35000 secdrv secdrv.SYS Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`018e2000 fffff880`018ea000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`08c25000 fffff880`08cbb000 srv srv.sys Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`08b74000 fffff880`08bdb000 srv2 srv2.sys Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`08b35000 fffff880`08b62000 srvnet srvnet.sys Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`067fe000 fffff880`067ff480 swenum swenum.sys Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01602000 fffff880`017ff000 tcpip tcpip.sys Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`08b62000 fffff880`08b74000 tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`0355f000 fffff880`0356c000 TDI TDI.SYS Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`03541000 fffff880`0355f000 tdx tdx.sys Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`04946000 fffff880`0495a000 termdd termdd.sys Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`00460000 fffff960`0046a000 TSDDD TSDDD.dll unavailable (00000000)
fffff880`0480f000 fffff880`04835000 tunnel tunnel.sys Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`05a28000 fffff880`05a7c000 udfs udfs.sys Mon Jul 13 19:23:37 2009 (4A5BC1F9)
fffff880`05b06000 fffff880`05b18000 umbus umbus.sys Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`04039000 fffff880`04056000 usbccgp usbccgp.sys Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`0487b000 fffff880`0487cf00 USBD USBD.SYS Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`05e56000 fffff880`05e67000 usbehci usbehci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05b30000 fffff880`05b8a000 usbhub usbhub.sys Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`05e00000 fffff880`05e56000 USBPORT USBPORT.SYS Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`067e1000 fffff880`067ee000 usbuhci usbuhci.sys Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00fec000 fffff880`00ff9000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`034c7000 fffff880`034d5000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`034d5000 fffff880`034fa000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00da8000 fffff880`00dbd000 volmgr volmgr.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00c00000 fffff880`00c5c000 volmgrx volmgrx.sys Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01896000 fffff880`018e2000 volsnap volsnap.sys Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`0412d000 fffff880`0413a000 vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
fffff880`048fd000 fffff880`04913000 vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
fffff880`0492b000 fffff880`04946000 wanarp wanarp.sys Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`034fa000 fffff880`0350a000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00e00000 fffff880`00ea4000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00ea4000 fffff880`00eb3000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`048ce000 fffff880`048d7000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`000a0000 fffff960`003b0000 win32k win32k.sys unavailable (00000000)
fffff880`05e6f000 fffff880`05e78000 wmiacpi wmiacpi.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00fd9000 fffff880`00fe2000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`04b81000 fffff880`04be5000 yk62x64 yk62x64.sys Wed May 20 04:14:06 2009 (4A13BBCE)
Unloaded modules:
fffff880`08d37000 fffff880`08d41000 hiber_scsipo
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000A000
fffff880`08d41000 fffff880`08dcd000 hiber_mv91xx
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0008C000
fffff880`08dd5000 fffff880`08de8000 hiber_dumpfv
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00013000
fffff880`08cbb000 fffff880`08d2c000 spsys.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00071000
fffff880`021ee000 fffff880`021fc000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000E000
fffff880`01936000 fffff880`01940000 dump_scsipor
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000A000
fffff880`01940000 fffff880`019cc000 dump_mv91xx.
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0008C000
fffff880`019d4000 fffff880`019e7000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00013000