BSOD normal usage 0x1000007e caused by fvevol.sys used to be RAID1


  1. Posts : 5
    Windows 7 Professional x64
       #1

    BSOD normal usage 0x1000007e caused by fvevol.sys used to be RAID1


    I'm getting a BSOD after downgrading from RAID 1 to AHCI SATA. It worked well for 3 days now all of the sudden I'm getting issues. Please help if you can!

    This is our main PC that needs to be up and running all the time (has databases and is running as a server at an office).

    Thank you!

    Dump files are attached.

    PC Data:
    http://speccy.piriform.com/results/0...qyXYMwjHSll8aE
      My Computer


  2. Posts : 5
    Windows 7 Professional x64
    Thread Starter
       #2

    Also, a log file dump from MiniToolBox:

    MiniToolBox by Farbar Version: 13-07-2013
    Ran by Staff (administrator) on 31-10-2013 at 09:48:44
    Running from "C:\Users\Staff\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0S30LHHS"
    Microsoft Windows 7 Professional Service Pack 1 (X64)
    Boot Mode: Normal
    ***************************************************************************

    ========================= Flush DNS: ===================================

    Windows IP Configuration

    Successfully flushed the DNS Resolver Cache.

    ========================= IE Proxy Settings: ==============================

    Proxy is not enabled.
    No Proxy Server is set.

    "Reset IE Proxy Settings": IE Proxy Settings were reset.
    ========================= Hosts content: =================================



    ========================= IP Configuration: ================================

    Intel® 82579V Gigabit Network Connection = Local Area Connection (Connected)


    # ----------------------------------
    # IPv4 Configuration
    # ----------------------------------
    pushd interface ipv4

    reset
    set global icmpredirects=enabled


    popd
    # End of IPv4 configuration



    Windows IP Configuration

    Host Name . . . . . . . . . . . . : Server1
    Primary Dns Suffix . . . . . . . :
    Node Type . . . . . . . . . . . . : Hybrid
    IP Routing Enabled. . . . . . . . : No
    WINS Proxy Enabled. . . . . . . . : No
    DNS Suffix Search List. . . . . . : Home

    Ethernet adapter Local Area Connection:

    Connection-specific DNS Suffix . : Home
    Description . . . . . . . . . . . : Intel® 82579V Gigabit Network Connection
    Physical Address. . . . . . . . . : 00-22-4D-88-F6-35
    DHCP Enabled. . . . . . . . . . . : Yes
    Autoconfiguration Enabled . . . . : Yes
    IPv4 Address. . . . . . . . . . . : 192.168.0.10(Preferred)
    Subnet Mask . . . . . . . . . . . : 255.255.255.0
    Lease Obtained. . . . . . . . . . : Thursday, October 31, 2013 9:34:05 AM
    Lease Expires . . . . . . . . . . : Friday, November 01, 2013 9:34:04 AM
    Default Gateway . . . . . . . . . : 192.168.0.1
    DHCP Server . . . . . . . . . . . : 192.168.0.1
    DNS Servers . . . . . . . . . . . : 192.168.0.1
    205.171.2.25
    NetBIOS over Tcpip. . . . . . . . : Enabled

    Tunnel adapter isatap.Home:

    Connection-specific DNS Suffix . : Home
    Description . . . . . . . . . . . : Microsoft ISATAP Adapter
    Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
    DHCP Enabled. . . . . . . . . . . : No
    Autoconfiguration Enabled . . . . : Yes
    Link-local IPv6 Address . . . . . : fe80::5efe:192.168.0.10%12(Preferred)
    Default Gateway . . . . . . . . . :
    DNS Servers . . . . . . . . . . . : 192.168.0.1
    205.171.2.25
    NetBIOS over Tcpip. . . . . . . . : Disabled

    Tunnel adapter Teredo Tunneling Pseudo-Interface:

    Connection-specific DNS Suffix . :
    Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
    Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
    DHCP Enabled. . . . . . . . . . . : No
    Autoconfiguration Enabled . . . . : Yes
    IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fd:3854:1ea3:3f57:fff5(Preferred)
    Link-local IPv6 Address . . . . . : fe80::3854:1ea3:3f57:fff5%13(Preferred)
    Default Gateway . . . . . . . . . : ::
    NetBIOS over Tcpip. . . . . . . . : Disabled
    DNS request timed out.
    timeout was 2 seconds.
    Server: UnKnown
    Address: 192.168.0.1

    Name: google.com
    Addresses: 2607:f8b0:400a:805::1009
    173.194.33.166
    173.194.33.167
    173.194.33.168
    173.194.33.169
    173.194.33.162
    173.194.33.163
    173.194.33.165
    173.194.33.161
    173.194.33.164
    173.194.33.174
    173.194.33.160


    Pinging google.com [173.194.33.134] with 32 bytes of data:
    Reply from 173.194.33.134: bytes=32 time=23ms TTL=57
    Reply from 173.194.33.134: bytes=32 time=21ms TTL=57

    Ping statistics for 173.194.33.134:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
    Approximate round trip times in milli-seconds:
    Minimum = 21ms, Maximum = 23ms, Average = 22ms
    DNS request timed out.
    timeout was 2 seconds.
    Server: UnKnown
    Address: 192.168.0.1

    Name: yahoo.com
    Addresses: 206.190.36.45
    98.139.183.24
    98.138.253.109


    Pinging yahoo.com [98.138.253.109] with 32 bytes of data:
    Reply from 98.138.253.109: bytes=32 time=102ms TTL=52
    Reply from 98.138.253.109: bytes=32 time=182ms TTL=52

    Ping statistics for 98.138.253.109:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
    Approximate round trip times in milli-seconds:
    Minimum = 102ms, Maximum = 182ms, Average = 142ms

    Pinging 127.0.0.1 with 32 bytes of data:
    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

    Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
    Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
    ===========================================================================
    Interface List
    11...00 22 4d 88 f6 35 ......Intel® 82579V Gigabit Network Connection
    1...........................Software Loopback Interface 1
    12...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
    13...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
    ===========================================================================

    IPv4 Route Table
    ===========================================================================
    Active Routes:
    Network Destination Netmask Gateway Interface Metric
    0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.10 10
    127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
    127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
    127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
    192.168.0.0 255.255.255.0 On-link 192.168.0.10 266
    192.168.0.10 255.255.255.255 On-link 192.168.0.10 266
    192.168.0.255 255.255.255.255 On-link 192.168.0.10 266
    224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
    224.0.0.0 240.0.0.0 On-link 192.168.0.10 266
    255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
    255.255.255.255 255.255.255.255 On-link 192.168.0.10 266
    ===========================================================================
    Persistent Routes:
    None

    IPv6 Route Table
    ===========================================================================
    Active Routes:
    If Metric Network Destination Gateway
    13 58 ::/0 On-link
    1 306 ::1/128 On-link
    13 58 2001::/32 On-link
    13 306 2001:0:5ef5:79fd:3854:1ea3:3f57:fff5/128
    On-link
    13 306 fe80::/64 On-link
    12 266 fe80::5efe:192.168.0.10/128
    On-link
    13 306 fe80::3854:1ea3:3f57:fff5/128
    On-link
    1 306 ff00::/8 On-link
    13 306 ff00::/8 On-link
    ===========================================================================
    Persistent Routes:
    None
    ========================= Winsock entries =====================================

    Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
    Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
    Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
    Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
    Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
    Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
    x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
    x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
    x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
    x64-Catalog5 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
    x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)

    ========================= Event log errors: ===============================

    Application errors:
    ==================
    Error: (10/31/2013 09:18:08 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Error calling a routine on the Shadow Copy Provider {b5946137-7b9f-4925-af80-51abd60b20d5}. Routine returned E_INVALIDARG.
    Routine details GetSnapshot({00000000-0000-0000-0000-000000000000},00000000003EADF0).


    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 09:03:38 AM) (Source: WinMgmt) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (10/31/2013 08:41:56 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Error calling a routine on the Shadow Copy Provider {b5946137-7b9f-4925-af80-51abd60b20d5}. Routine returned E_INVALIDARG.
    Routine details GetSnapshot({00000000-0000-0000-0000-000000000000},000000000015CB90).


    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 08:41:56 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Error calling a routine on a Shadow Copy Provider {b5946137-7b9f-4925-af80-51abd60b20d5}. Routine details EndPrepareSnapshots({7d8e932b-ca94-4139-a0ae-628e50758d3b}) [hr = 0x80042302, A Volume Shadow Copy Service component encountered an unexpected error.
    Check the Application event log for more information.
    ].


    Operation:
    Executing Asynchronous Operation

    Context:
    Current State: DoSnapshotSet

    Error: (10/31/2013 08:41:56 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Unexpected error calling routine Error calling CreateFile on volume '\\?\Volume{5841644b-0a62-11e3-9678-00224d88f635}\'. hr = 0x80070037, The specified network resource or device is no longer available.
    .


    Operation:
    Automatically choosing a diff-area volume
    Processing EndPrepareSnapshots

    Context:
    Execution Context: System Provider

    Error: (10/31/2013 08:41:24 AM) (Source: WinMgmt) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (10/31/2013 08:36:43 AM) (Source: WinMgmt) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (10/31/2013 08:09:17 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Error calling a routine on the Shadow Copy Provider {b5946137-7b9f-4925-af80-51abd60b20d5}. Routine returned E_INVALIDARG.
    Routine details GetSnapshot({00000000-0000-0000-0000-000000000000},00000000003720D0).


    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 07:52:41 AM) (Source: VSS) (User: )
    Description: Volume Shadow Copy Service error: Error calling a routine on the Shadow Copy Provider {b5946137-7b9f-4925-af80-51abd60b20d5}. Routine returned E_INVALIDARG.
    Routine details GetSnapshot({00000000-0000-0000-0000-000000000000},00000000002342F0).


    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 06:32:51 AM) (Source: WinMgmt) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


    System errors:
    =============
    Error: (10/31/2013 09:29:57 AM) (Source: Disk) (User: )
    Description: The driver detected a controller error on \Device\Harddisk1\DR2.

    Error: (10/31/2013 09:29:57 AM) (Source: Disk) (User: )
    Description: The driver detected a controller error on \Device\Harddisk1\DR2.

    Error: (10/31/2013 09:29:56 AM) (Source: Disk) (User: )
    Description: The driver detected a controller error on \Device\Harddisk1\DR2.

    Error: (10/31/2013 09:29:56 AM) (Source: Disk) (User: )
    Description: The driver detected a controller error on \Device\Harddisk1\DR2.

    Error: (10/31/2013 09:29:55 AM) (Source: Disk) (User: )
    Description: The driver detected a controller error on \Device\Harddisk1\DR2.

    Error: (10/31/2013 09:18:06 AM) (Source: Disk) (User: )
    Description: The driver detected a controller error on \Device\Harddisk1\DR1.

    Error: (10/31/2013 09:04:13 AM) (Source: Service Control Manager) (User: )
    Description: The Intel® ME Service service failed to start due to the following error:
    %%2

    Error: (10/31/2013 09:02:00 AM) (Source: BugCheck) (User: )
    Description: 0x0000007e (0xffffffffc0000005, 0x0000000000000000, 0xfffff880037aedc8, 0xfffff880037ae620)C:\Windows\MEMORY.DMP103113-12854-01

    Error: (10/31/2013 09:01:51 AM) (Source: EventLog) (User: )
    Description: The previous system shutdown at 8:59:28 AM on ?10/?31/?2013 was unexpected.

    Error: (10/31/2013 08:57:15 AM) (Source: volsnap) (User: )
    Description: The shadow copies of volume E: were aborted during detection because a critical control file could not be opened.


    Microsoft Office Sessions:
    =========================
    Error: (10/31/2013 09:18:08 AM) (Source: VSS)(User: )
    Description: {b5946137-7b9f-4925-af80-51abd60b20d5}GetSnapshot({00000000-0000-0000-0000-000000000000},00000000003EADF0)

    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 09:03:38 AM) (Source: WinMgmt)(User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (10/31/2013 08:41:56 AM) (Source: VSS)(User: )
    Description: {b5946137-7b9f-4925-af80-51abd60b20d5}GetSnapshot({00000000-0000-0000-0000-000000000000},000000000015CB90)

    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 08:41:56 AM) (Source: VSS)(User: )
    Description: {b5946137-7b9f-4925-af80-51abd60b20d5}EndPrepareSnapshots({7d8e932b-ca94-4139-a0ae-628e50758d3b})0x80042302, A Volume Shadow Copy Service component encountered an unexpected error.
    Check the Application event log for more information.


    Operation:
    Executing Asynchronous Operation

    Context:
    Current State: DoSnapshotSet

    Error: (10/31/2013 08:41:56 AM) (Source: VSS)(User: )
    Description: Error calling CreateFile on volume '\\?\Volume{5841644b-0a62-11e3-9678-00224d88f635}\'0x80070037, The specified network resource or device is no longer available.


    Operation:
    Automatically choosing a diff-area volume
    Processing EndPrepareSnapshots

    Context:
    Execution Context: System Provider

    Error: (10/31/2013 08:41:24 AM) (Source: WinMgmt)(User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (10/31/2013 08:36:43 AM) (Source: WinMgmt)(User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (10/31/2013 08:09:17 AM) (Source: VSS)(User: )
    Description: {b5946137-7b9f-4925-af80-51abd60b20d5}GetSnapshot({00000000-0000-0000-0000-000000000000},00000000003720D0)

    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 07:52:41 AM) (Source: VSS)(User: )
    Description: {b5946137-7b9f-4925-af80-51abd60b20d5}GetSnapshot({00000000-0000-0000-0000-000000000000},00000000002342F0)

    Operation:
    Get Shadow Copy Properties

    Context:
    Execution Context: Coordinator

    Error: (10/31/2013 06:32:51 AM) (Source: WinMgmt)(User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


    CodeIntegrity Errors:
    ===================================
    Date: 2013-08-27 09:36:11.846
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

    Date: 2013-08-27 09:32:43.798
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.
      My Computer


  3. Posts : 5
    Windows 7 Professional x64
    Thread Starter
       #3

    and the rest of the log...


    =========================== Installed Programs ============================

    Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
    Adobe Reader XI (11.0.05) (Version: 11.0.05)
    Brother MFL-Pro Suite MFC-7460DN (Version: 1.1.3.0)
    CareCredit CCware Version 4.6.0.0 (Version: 4.5.0.0)
    Cisco WebEx Meetings
    CrashPlan (Version: 3.5.3)
    CS 3D Imaging Software (remove only) (Version: 3.2.9.0)
    CS FilmComposer (remove only) (Version: 3.2.9.0)
    CS SoftDent
    CS Volume Converter (remove only) (Version: 1.0.6.0)
    Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
    DYMO Label Software
    EclipseDB (Version: 1.0.0.41)
    Epson Copy Utility 3.5 (Version: 3.5.0.0)
    EPSON Perf V700-V750 Guide
    EPSON Scan
    ESET NOD32 Antivirus (Version: 6.0.316.0)
    GeForce Experience NvStream Client Components (Version: 1.6.28)
    Google Chrome (Version: 30.0.1599.101)
    Google Update Helper (Version: 1.3.21.165)
    GoToAssist Unattended Customer 1.6.0.498 (Version: 1.6.0.498)
    Intel® Desktop Utilities (Version: 1.0.0)
    Intel® Desktop Utilities (Version: 3.2.6)
    Intel® Manageability Engine Firmware Recovery Agent (Version: 1.0.0.35132)
    Intel® Management Engine Components (Version: 9.0.0.1310)
    Intel® Network Connections 18.7.28.0 (Version: 18.7.28.0)
    Intel® SMBus
    Intel® USB 3.0 eXtensible Host Controller Driver (Version: 1.0.9.254)
    Intel® Trusted Connect Service Client (Version: 1.27.757.1)
    Java 7 Update 25 (Version: 7.0.250)
    Java Auto Updater (Version: 2.1.9.5)
    Kodak Dental Imaging
    Macrium Reflect Professional Edition (Version: 5.2)
    Macrium Reflect Professional Edition (Version: 5.2.6354)
    Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
    Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Home and Business 2010 (Version: 14.0.6029.1000)
    Microsoft Office Office 32-bit Components 2010 (Version: 14.0.6029.1000)
    Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Shared 32-bit MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Office Single Image 2010 (Version: 14.0.6029.1000)
    Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000)
    Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
    Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
    MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
    MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
    MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
    MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0)
    MSXML 4.0 SP3 Parser (Version: 4.30.2100.0)
    NVIDIA 3D Vision Controller Driver 331.65 (Version: 331.65)
    NVIDIA 3D Vision Driver 331.65 (Version: 331.65)
    NVIDIA Control Panel 331.65 (Version: 331.65)
    NVIDIA GeForce Experience 1.7 (Version: 1.7)
    NVIDIA Graphics Driver 331.65 (Version: 331.65)
    NVIDIA HD Audio Driver 1.3.26.4 (Version: 1.3.26.4)
    NVIDIA Install Application (Version: 2.1002.140.952)
    NVIDIA LED Visualizer 1.0 (Version: 1.0)
    NVIDIA PhysX (Version: 9.13.0725)
    NVIDIA PhysX System Software 9.13.0725 (Version: 9.13.0725)
    NVIDIA ShadowPlay 9.3.16 (Version: 9.3.16)
    NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.3165)
    NVIDIA Update 9.3.16 (Version: 9.3.16)
    NVIDIA Update Components (Version: 9.3.16)
    NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9)
    PDFCreator (Version: 1.3.2)
    PowerChute Personal Edition 3.0.2 (Version: 3.0.2)
    QuickBurn Application (remove only) (Version: 1.3.0.1-B)
    ScreenConnect Client (34e153f671b0fa56) (Version: 3.4.4855.4932)
    SHIELD Streaming (Version: 1.6.34)
    SilverFast Epson-SE 6.6.1r2b
    TrueCrypt (Version: 7.1a)
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
    Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
    Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
    Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
    Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
    Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
    Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (Version: 3)
    Update for Microsoft Access 2010 (KB2553446) 64-Bit Edition
    Update for Microsoft Filter Pack 2.0 (KB2810071) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2553065)
    Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2566458)
    Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2598242) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2767886) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2826026) 64-Bit Edition
    Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition
    Update for Microsoft OneNote 2010 (KB2810072) 64-Bit Edition
    Update for Microsoft Outlook 2010 (KB2687623) 64-Bit Edition
    Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition
    Update for Microsoft PowerPoint 2010 (KB2553145) 64-Bit Edition
    Update for Microsoft SharePoint Workspace 2010 (KB2589371) 64-Bit Edition
    Update for Microsoft Visio Viewer 2010 (KB2810066) 64-Bit Edition
    Update for Microsoft Word 2010 (KB2827323) 64-Bit Edition

    ========================= Devices: ================================


    ========================= Memory info: ===================================

    Percentage of memory in use: 19%
    Total physical RAM: 16351.89 MB
    Available physical RAM: 13096.16 MB
    Total Pagefile: 32701.97 MB
    Available Pagefile: 29410.82 MB
    Total Virtual: 4095.88 MB
    Available Virtual: 3966.55 MB

    ========================= Partitions: =====================================

    1 Drive c: () (Fixed) (Total:931.41 GB) (Free:857.67 GB) NTFS
    3 Drive e: (Backup2) (Fixed) (Total:931.51 GB) (Free:687.43 GB) NTFS

    ========================= Users: ========================================

    User accounts for \\SERVER1

    Administrator Guest Staff
    UpdatusUser

    ========================= Minidump Files ==================================

    No minidump file found

    ========================= Restore Points ==================================


    **** End of log ****
      My Computer


  4. Posts : 3,056
    Windows 10
       #4

    Not to sound rude or anything, but why can't you take it up with the IT department?
    They won't be happy if we interfere with their job.
      My Computer


  5. Posts : 5
    Windows 7 Professional x64
    Thread Starter
       #5

    I am the IT provider, but I'm not able to figure this one out and could use a second opinion.

    If you are unwilling to help me, I'll just wait for someone who is.
      My Computer


  6. Posts : 3,056
    Windows 10
       #6

    I'll have to take your word for it then, and I didn't say I wasn't willing to help,
    I was just second guessing situation as you said it's an office PC...

    In that case more information the better, please follow the Blue Screen of Death (BSOD) Posting Instructions.
      My Computer


  7. Posts : 5
    Windows 7 Professional x64
    Thread Starter
       #7

    Here it is.
      My Computer


  8. Posts : 3,056
    Windows 10
       #8

    Here's what I'm getting from the dumps.

    I'm seeing a fair bit of file system /disk activity along with other security oriented modules.
    (NTFS, volsnap, fvevol, fltmgr, ataport)

    This is the unloaded modules list (across all three dumps):

    Code:
    Unloaded modules:
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS
    fffff880`084b5000 fffff880`084d0000   USBSTOR.SYS
    fffff880`0848a000 fffff880`084a5000   USBSTOR.SYS
    fffff880`0846f000 fffff880`0848a000   USBSTOR.SYS
    fffff880`08454000 fffff880`0846f000   USBSTOR.SYS
    fffff880`08439000 fffff880`08454000   USBSTOR.SYS


    All of the System Event log entries are of the following:


    Code:
    Event[34999]:
      Log Name: System
      Source: Disk
      Date: 2013-10-31T08:09:16.663
      Event ID: 51
      Task: N/A
      Level: Warning
      Opcode: N/A
      Keyword: Classic
      User: N/A
      User Name: N/A
      Computer: Server1
      Description: 
    An error was detected on device \Device\Harddisk1\DR5 during a paging operation.
    Your hard-drives:

    Code:
    Model    Hitachi HUA722010CLA330 ATA Device
    Media Type    Fixed hard disk
    Partition    Disk #0, Partition #1
    
    Model    WD Elements 1042 USB Device
    Media Type    External hard disk media
    Partition    Disk #1, Partition #0


    The intel driver is very old:

    Code:
    lmvm iaStor
    
    fffff880`0120c000 fffff880`015b0000   iaStor     (deferred)             
        Image path: \SystemRoot\system32\DRIVERS\iaStor.sys
        Image name: iaStor.sys
        Browse all global symbols  functions  data
        Timestamp:        Wed Nov 30 05:39:19 2011




    This is how I would advance with this manner:


    Please scan for possible infection and file corruption.


    (*Kaspersky Rescue CD from a USB thumbdrive)



    Test both HDDs:


    1. Perform a Disk Check | Disk Check
    2. Then Post the results following | THIS METHOD
    3. Download SeaTools for DOS if you don't want to use a CD to test the HDD you can use YUMI – Multiboot USB Creator to create a bootable USB (instructions are found at the bottom of both pages).
    4. If SeaTools for Windows is unable to recognize your HDD visit HDDdiag and follow the instructions.

    If SeaTools For DOS does not recognize the drive;
    Boot into the BIOS using the *Fx key.
    Look for an entry called SATA Mode (or something similar), it should be set to IDE / AHCI.
    It's probably set to AHCI which is why SeaTools doesn't recognize them in the DOS environment.
    Set it to IDE then save and exit usually by pressing the F10 key.
    Now boot into SeaTools and it should detect the drives.
    Start the Long Test and let it run.
    Upon completion don't try to boot into Windows as it will only result in a BSOD, go back into the BIOS
    and change the SATA setting back to what it was in the first place.





    Hope that helps, post back with the results.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 01:41.
Find Us