I'm working on a co-workers computer oversea's via remote since I don't have physical access to it. The computer is partially brand new (the monitor was broken in flight). The user hasn't used the computer that often but she says that it shuts down randomly.
After remoting in I viewed the Event Viewer and the only thing I noticed was several Kernal_Power logs and one BugCheck (F4). I've tried some basic things I can do via remote such as SFC, AV scan, and update. I'm not exactly sure what else to do since it's really difficult not having physical access to the machine. I need to get this computer fixed rather quickly too.
Code:
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_OBJECT_TERMINATION (f4)
A process or thread crucial to system operation has unexpectedly exited or been
terminated.
Several processes and threads are necessary for the operation of the
system; when they are terminated (for any reason), the system can no
longer function.
Arguments:
Arg1: 0000000000000003, Process
Arg2: fffffa8009257b30, Terminating object
Arg3: fffffa8009257e10, Process image file name
Arg4: fffff800031ce460, Explanatory message (ascii)
Debugging Details:
------------------
----- ETW minidump data unavailable-----
TRIAGER: Could not open triage file : c:\Program Files\Windows Kits\8.0\Debuggers\x86\triage\modclass.ini, error 2
PROCESS_OBJECT: fffffa8009257b30
IMAGE_NAME: wininit.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: wininit
FAULTING_MODULE: 0000000000000000
PROCESS_NAME: wininit.exe
EXCEPTION_CODE: (Win32) 0x5 (5) - Access is denied.
BUGCHECK_STR: 0xF4_5
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
CURRENT_IRQL: 0
STACK_TEXT:
fffff880`0425b9c8 fffff800`03256822 : 00000000`000000f4 00000000`00000003 fffffa80`09257b30 fffffa80`09257e10 : nt!KeBugCheckEx
fffff880`0425b9d0 fffff800`03202e0b : 00000000`00000001 fffffa80`080b6650 fffffa80`09257b30 fffff880`0425bae0 : nt!PspCatchCriticalBreak+0x92
fffff880`0425ba10 fffff800`03181f04 : 00000000`00000001 00000000`00000001 fffffa80`09257b30 0000007f`00000000 : nt! ?? ::NNGAKEGL::`string'+0x176e6
fffff880`0425ba60 fffff800`02ece253 : 00000000`00000008 00000000`00000005 fffffa80`080b6650 00000000`00635d98 : nt!NtTerminateProcess+0xf4
fffff880`0425bae0 00000000`77bb15da : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`001ffb98 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77bb15da
STACK_COMMAND: kb
FOLLOWUP_NAME: MachineOwner
FAILURE_BUCKET_ID: X64_0xF4_5_IMAGE_wininit.exe
BUCKET_ID: X64_0xF4_5_IMAGE_wininit.exe
Followup: MachineOwner
---------
Everything is in the attachment.