Windows 7 Forums

Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: Bsod first time ntoskrnl.exe help me please

20 Aug 2013   #1
drugo

windows 7 ultimate 64bit
 
 
Bsod first time ntoskrnl.exe help me please crash ntoskrnl.exe+75c00

hi

some seconds ago i got a bsod w7 64bit ultimate

i used BlueScreenView.exe
and i got

Quote:
A problem has been detected and Windows has been shut down to prevent damage
to your computer.

The problem seems to be caused by the following file: ntoskrnl.exe

IRQL_NOT_LESS_OR_EQUAL

If this is the first time you've seen this stop error screen,
restart your computer. If this screen appears again, follow
these steps:

Check to make sure any new hardware or software is properly installed.
If this is a new installation, ask your hardware or software manufacturer
for any Windows updates you might need.

If problems continue, disable or remove any newly installed hardware
or software. Disable BIOS memory options such as caching or shadowing.
If you need to use safe mode to remove or disable components, restart
your computer, press F8 to select Advanced Startup Options, and then
select Safe Mode.

Technical Information:

*** STOP: 0x0000000a (0x0000000000000000, 0x0000000000000002, 0x0000000000000001,
0xfffff80002c8dc2f)

*** ntoskrnl.exe - Address 0xfffff80002c84c00 base at 0xfffff80002c0f000 DateStamp
0x5147d9c6
Quote:
==================================================
Filename : ntoskrnl.exe
Address In Stack : ntoskrnl.exe+f20c4
From Address : fffff800`02c0f000
To Address : fffff800`031f5000
Size : 0x005e6000
Time Stamp : 0x5147d9c6
Time String : 19/03/2013 05:21:42
Product Name : Microsoft® Windows® Operating System
File Description : NT Kernel & System
File Version : 6.1.7601.18113 (win7sp1_gdr.130318-1533)
Company : Microsoft Corporation
Full Path : C:\Windows\system32\ntoskrnl.exe
==================================================
i have Not installed new hardware or software or drivers

uploaded sf diagnostic tool too


My System SpecsSystem Spec
.
20 Aug 2013   #2
koolkat77

Microsoft Community Contributor Award Recipient

Windows 10 Home 64Bit
 
 

It appears that the cause of your BSOD is ESET epfwwfp.sys - ESET Personal Firewall Driver.

As a test, please remove ESET with Microsoft Security Essentials & the Free version of Malwarebytes, update and make full scans separately:
Uninstallers (removal tools) for common antivirus software - ESET Knowledgebase

Help protect your PC with Microsoft Security Essentials

Malwarebytes Free
  • Do not start the trial version of MalwareBytes
You may also take a look at:
Good & Free System Security Combination
Reduce items at start up:
Performing a Clean Startup in Windows 7

Add, or Remove Startup Programs in Windows 7
Your Antivirus software is basically whats just needed there.

Use the System File Checker tool and Run Disk Check:
Repair Windows 7 System Files with System File Checker

Run Disk Check in Windows 7 for Bad Sectors & Errors
Code:
BugCheck A, {0, 2, 1, fffff80002c8dc2f}
*** WARNING: Unable to verify timestamp for epfwwfp.sys
*** ERROR: Module load completed but symbols could not be loaded for epfwwfp.sys
Probably caused by : NETIO.SYS ( NETIO!WfpExpireEntryLru+17 )

Followup: MachineOwner
---------

WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ebc100
GetUlongFromAddress: unable to read from fffff80002ebc1c0
 0000000000000000 Nonpaged pool

CURRENT_IRQL:  2

FAULTING_IP: 
nt!KeAcquireInStackQueuedSpinLockAtDpcLevel+4f
fffff800`02c8dc2f 488713          xchg    rdx,qword ptr [rbx]

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  ekrn.exe

LAST_CONTROL_TRANSFER:  from fffff80002c841a9 to fffff80002c84c00

STACK_COMMAND:  kb

FOLLOWUP_IP: 
NETIO!WfpExpireEntryLru+17
fffff880`0194e9a7 488b4310        mov     rax,qword ptr [rbx+10h]

SYMBOL_STACK_INDEX:  4

SYMBOL_NAME:  NETIO!WfpExpireEntryLru+17

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: NETIO

IMAGE_NAME:  NETIO.SYS

DEBUG_FLR_IMAGE_TIMESTAMP:  5034f6a0

FAILURE_BUCKET_ID:  X64_0xA_NETIO!WfpExpireEntryLru+17

BUCKET_ID:  X64_0xA_NETIO!WfpExpireEntryLru+17

Followup: MachineOwner
---------
Code:
STACK_TEXT:  
fffff880`09e39e78 fffff800`02c841a9 : 00000000`0000000a 00000000`00000000 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`09e39e80 fffff800`02c82e20 : 00000000`00000010 fffff880`09e3a1b0 fffff880`00000003 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`09e39fc0 fffff800`02c8dc2f : 00000000`00000003 00000000`00000001 00000000`00000003 00000000`00000001 : nt!KiPageFault+0x260
fffff880`09e3a150 fffff880`0194e9a7 : 00000000`00000008 fffff880`09e3a430 00000000`00000000 fffffa80`0ccd97c8 : nt!KeAcquireInStackQueuedSpinLockAtDpcLevel+0x4f
fffff880`09e3a1a0 fffff880`01ae5d4d : fffffa80`10d76af0 fffffa80`0ebfe010 fffff880`09e3a430 00000000`00000000 : NETIO!WfpExpireEntryLru+0x17
fffff880`09e3a1f0 fffff880`01aaa8d7 : 00000000`00000004 fffff880`01920030 fffffa80`0ce19060 00000000`00000001 : tcpip!WfpAleCloseRemoteEndpointConnection+0x2d
fffff880`09e3a220 fffff880`01b25b1b : fffffa80`10d76af0 fffffa80`112edc0a 00000000`00000028 fffffa80`10d76af0 : tcpip! ?? ::FNODOBFM::`string'+0x220a2
fffff880`09e3a370 fffff880`01b25ea2 : 00000000`4f196ada fffffa80`112edb40 00000000`00000000 00000000`00000028 : tcpip!WfpAleHandleSendCompletion+0xeb
fffff880`09e3a490 fffff880`01b30372 : fffffa80`111c9a30 fffffa80`111c9a30 00000000`00000000 00000000`00000000 : tcpip!WfpAlepAuthorizeSendCompletion+0x32
fffff880`09e3a4e0 fffff880`019b3af2 : 00000000`00000000 00000000`00000000 fffff880`0180e740 00000000`00000028 : tcpip!WfpAleCompleteOperation+0x162
fffff880`09e3a580 fffff880`01809141 : 00000000`00000000 00000000`00000000 fffff880`0180e740 00000000`00000028 : fwpkclnt!FwpsCompleteOperation0+0x1e
fffff880`09e3a5b0 00000000`00000000 : 00000000`00000000 fffff880`0180e740 00000000`00000028 00000000`00000001 : epfwwfp+0x9141
My System SpecsSystem Spec
20 Aug 2013   #3
drugo

windows 7 ultimate 64bit
 
 

Quote   Quote: Originally Posted by koolkat77 View Post
It appears that the cause of your BSOD is ESET epfwwfp.sys - ESET Personal Firewall Driver.

As a test, please remove ESET with Microsoft Security Essentials & the Free version of Malwarebytes, update and make full scans separately:
thanks a lot for answer

i have only smart security v5 64bit last buily
i have no malwarebytes


Quote:
Code:
BugCheck A, {0, 2, 1, fffff80002c8dc2f}
*** WARNING: Unable to verify timestamp for epfwwfp.sys
*** ERROR: Module load completed but symbols could not be loaded for epfwwfp.sys
Probably caused by : NETIO.SYS ( NETIO!WfpExpireEntryLru+17 )

Followup: MachineOwner
---------

WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ebc100
GetUlongFromAddress: unable to read from fffff80002ebc1c0
 0000000000000000 Nonpaged pool

CURRENT_IRQL:  2

FAULTING_IP: 
nt!KeAcquireInStackQueuedSpinLockAtDpcLevel+4f
fffff800`02c8dc2f 488713          xchg    rdx,qword ptr [rbx]

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  ekrn.exe

LAST_CONTROL_TRANSFER:  from fffff80002c841a9 to fffff80002c84c00

STACK_COMMAND:  kb

FOLLOWUP_IP: 
NETIO!WfpExpireEntryLru+17
fffff880`0194e9a7 488b4310        mov     rax,qword ptr [rbx+10h]

SYMBOL_STACK_INDEX:  4

SYMBOL_NAME:  NETIO!WfpExpireEntryLru+17

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: NETIO

IMAGE_NAME:  NETIO.SYS

DEBUG_FLR_IMAGE_TIMESTAMP:  5034f6a0

FAILURE_BUCKET_ID:  X64_0xA_NETIO!WfpExpireEntryLru+17

BUCKET_ID:  X64_0xA_NETIO!WfpExpireEntryLru+17

Followup: MachineOwner
---------
Code:
STACK_TEXT:  
fffff880`09e39e78 fffff800`02c841a9 : 00000000`0000000a 00000000`00000000 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`09e39e80 fffff800`02c82e20 : 00000000`00000010 fffff880`09e3a1b0 fffff880`00000003 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`09e39fc0 fffff800`02c8dc2f : 00000000`00000003 00000000`00000001 00000000`00000003 00000000`00000001 : nt!KiPageFault+0x260
fffff880`09e3a150 fffff880`0194e9a7 : 00000000`00000008 fffff880`09e3a430 00000000`00000000 fffffa80`0ccd97c8 : nt!KeAcquireInStackQueuedSpinLockAtDpcLevel+0x4f
fffff880`09e3a1a0 fffff880`01ae5d4d : fffffa80`10d76af0 fffffa80`0ebfe010 fffff880`09e3a430 00000000`00000000 : NETIO!WfpExpireEntryLru+0x17
fffff880`09e3a1f0 fffff880`01aaa8d7 : 00000000`00000004 fffff880`01920030 fffffa80`0ce19060 00000000`00000001 : tcpip!WfpAleCloseRemoteEndpointConnection+0x2d
fffff880`09e3a220 fffff880`01b25b1b : fffffa80`10d76af0 fffffa80`112edc0a 00000000`00000028 fffffa80`10d76af0 : tcpip! ?? ::FNODOBFM::`string'+0x220a2
fffff880`09e3a370 fffff880`01b25ea2 : 00000000`4f196ada fffffa80`112edb40 00000000`00000000 00000000`00000028 : tcpip!WfpAleHandleSendCompletion+0xeb
fffff880`09e3a490 fffff880`01b30372 : fffffa80`111c9a30 fffffa80`111c9a30 00000000`00000000 00000000`00000000 : tcpip!WfpAlepAuthorizeSendCompletion+0x32
fffff880`09e3a4e0 fffff880`019b3af2 : 00000000`00000000 00000000`00000000 fffff880`0180e740 00000000`00000028 : tcpip!WfpAleCompleteOperation+0x162
fffff880`09e3a580 fffff880`01809141 : 00000000`00000000 00000000`00000000 fffff880`0180e740 00000000`00000028 : fwpkclnt!FwpsCompleteOperation0+0x1e
fffff880`09e3a5b0 00000000`00000000 : 00000000`00000000 fffff880`0180e740 00000000`00000028 00000000`00000001 : epfwwfp+0x9141
may i know what is it this? i'm really a novice
is the minidump? is threre a program to read it?
do you find a here that can be eset?
thanks
My System SpecsSystem Spec
.

20 Aug 2013   #4
koolkat77

Microsoft Community Contributor Award Recipient

Windows 10 Home 64Bit
 
 

Look here: BugCheck A, {0, 2, 1, fffff80002c8dc2f}
*** WARNING: Unable to verify timestamp for epfwwfp.sys
*** ERROR: Module load completed but symbols could not be loaded for epfwwfp.sys
Probably caused by : NETIO.SYS ( NETIO!WfpExpireEntryLru+17 )


Driver Reference Table - epfwwfp.sys

epfwwfp.sys

Driver Description: ESET Personal Firewall Driver

Driver Update Site: Antivirus Downloads | ESET Internet Security Software Downloads
My System SpecsSystem Spec
20 Aug 2013   #5
drugo

windows 7 ultimate 64bit
 
 

Quote   Quote: Originally Posted by koolkat77 View Post
Look here: BugCheck A, {0, 2, 1, fffff80002c8dc2f}
*** WARNING: Unable to verify timestamp for epfwwfp.sys
*** ERROR: Module load completed but symbols could not be loaded for epfwwfp.sys
Probably caused by : NETIO.SYS ( NETIO!WfpExpireEntryLru+17 )


Driver Reference Table - epfwwfp.sys

epfwwfp.sys

Driver Description: ESET Personal Firewall Driver

Driver Update Site: Antivirus Downloads | ESET Internet Security Software Downloads
thanks i will uninstall and update
may i know which program did you use to open and read the dumpfile ?
i mean
Quote:
BugCheck A, {0, 2, 1, fffff80002c8dc2f}
*** WARNING: Unable to verify timestamp for epfwwfp.sys
My System SpecsSystem Spec
20 Aug 2013   #6
koolkat77

Microsoft Community Contributor Award Recipient

Windows 10 Home 64Bit
 
 

My System SpecsSystem Spec
20 Aug 2013   #7
drugo

windows 7 ultimate 64bit
 
 

Quote   Quote: Originally Posted by koolkat77 View Post
thanks

in short BlueScreenView v1.52 is unless ..isn't it
My System SpecsSystem Spec
20 Aug 2013   #8
koolkat77

Microsoft Community Contributor Award Recipient

Windows 10 Home 64Bit
 
 

Quote   Quote: Originally Posted by drugo View Post
Quote   Quote: Originally Posted by koolkat77 View Post
thanks

in short BlueScreenView v1.52 is unless ..isn't it
Yes
My System SpecsSystem Spec
Reply

 Bsod first time ntoskrnl.exe help me please




Thread Tools Search this Thread
Search this Thread:

Advanced Search




Similar help and support threads
Thread Forum
BSOD ntoskrnl.exe , All the Time !! Crash Address ntoskrnl.exe+80640
Jan 2014 //------------------------------------------- How to Solve : 1- I've uninstalled my windows and recover my laptop with recovery DVD to it's original factory state.(original windows :)) 2- Never installed Norton internet security again , I'm using Microsoft Security Essentials now. 3-...
BSOD Help and Support
Multiple BSOD at a time, ntoskrnl.exe+75c00
Hi, could somebody please take a look at the zip file i'm attaching here and tell me what to do to fix my computer? I have uninstalled a number of drivers that may cause the crash, but my computer is still laggy and has another potential crash soon. Thank you very much!
BSOD Help and Support
BSOD, ntoskrnl.exe+75c10, random time
Hello again. I posted a while ago. Didn't get much help then, but I managed to stop the BSODs for a bit after taking out 1 clip of RAM. Computer keeps on crashing on random moments, browsing web, watching youtube, playing games. It seems to be similar error all the time. I'm running...
BSOD Help and Support
BSOD any game for a period of time (hal.dll & ntoskrnl.exe).
I used the recommended software from this forum to gather all of the logs and post it. I have tried using Heaven DX11 to stress test the video card and ran it for..45minutes+ allowing the GPU to get to a heat of 80C and no BSOD. It has BSODed when playing Dota 2, or Borderlands 2. (I don't...
BSOD Help and Support
BSOD every time ntoskrnl.exe+7cc40
For two weeks I am getting 2 or 3 times a day the same BSOD with ntoskrnl.exe+7cc40 with my Dell 15z Mostly it happens when I am not working on the computer. But also it happens during my work, but I did not notice a real pattern. My computer is a Dell 15z of 8 months old, 64 bits. My...
BSOD Help and Support
BSOD from ntoskrnl.exe and few others that vary each time
I have been trying to do a restore on a hard drive that's supposed to take a few days, but every time I try, I get a blue screen. This has been very painful to restart the restore process after 24 or 36 hours or so. I have been using blue screen viewer, but I cannot decipher the information I...
BSOD Help and Support


Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd

All times are GMT -5. The time now is 23:22.

Twitter Facebook Google+



Windows 7 Forums

Seven Forums Android App Seven Forums IOS App