Code:
Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\092910-35147-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c4f000 PsLoadedModuleList = 0xfffff800`02e8ce50
System Uptime: 0 days 4:08:04.454
Loading Kernel Symbols
...............................................................
................................................................
.................................
Loading User Symbols
Loading unloaded module list
....................
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 50, {ffffe9801b49a498, 0, fffff80002fd92e6, 7}
Could not read faulting driver name
Probably caused by : ntkrnlmp.exe ( nt!NtMapViewOfSection+365 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: ffffe9801b49a498, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff80002fd92e6, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000007, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ef70e0
ffffe9801b49a498
FAULTING_IP:
nt!NtMapViewOfSection+365
fffff800`02fd92e6 488b7c2478 mov rdi,qword ptr [rsp+78h]
MM_INTERNAL_CODE: 7
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: PerfTuneServic
CURRENT_IRQL: 0
TRAP_FRAME: fffff88009188950 -- (.trap 0xfffff88009188950)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffff88009188b58
rdx=fffff8a00452cec0 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002fd92e6 rsp=fffff88009188ae0 rbp=fffff88009188ca0
r8=fffffa8005d9a980 r9=00000000ffffffff r10=fffffa8009e4d1c0
r11=fffffa8006d744a8 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
nt!NtMapViewOfSection+0x365:
fffff800`02fd92e6 488b7c2478 mov rdi,qword ptr [rsp+78h] ss:0018:fffff880`09188b58=000000000000e000
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002d3e849 to fffff80002cbf740
STACK_TEXT:
fffff880`091887e8 fffff800`02d3e849 : 00000000`00000050 ffffe980`1b49a498 00000000`00000000 fffff880`09188950 : nt!KeBugCheckEx
fffff880`091887f0 fffff800`02cbd82e : 00000000`00000000 fffff8a0`135bc060 00000000`00000000 fffff8a0`0452cec0 : nt! ?? ::FNODOBFM::`string'+0x40e0b
fffff880`09188950 fffff800`02fd92e6 : fffffa80`00000001 fffffa80`06d74060 fffff880`09188b50 00000000`00000021 : nt!KiPageFault+0x16e
fffff880`09188ae0 fffff800`02cbe993 : 00000000`0000132c fffffa80`073e4910 00000000`04d0e518 00000000`00000000 : nt!NtMapViewOfSection+0x365
fffff880`09188bb0 00000000`76f6ffda : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`04d0e4f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76f6ffda
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!NtMapViewOfSection+365
fffff800`02fd92e6 488b7c2478 mov rdi,qword ptr [rsp+78h]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!NtMapViewOfSection+365
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x50_nt!NtMapViewOfSection+365
BUCKET_ID: X64_0x50_nt!NtMapViewOfSection+365
Followup: MachineOwner
Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\082110-37097-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c00000 PsLoadedModuleList = 0xfffff800`02e3de50
System Uptime: 0 days 14:12:39.727
Loading Kernel Symbols
.
Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.
.............................................Unable to load image Unknown_Module_00000000`00000000, Win32 error 0n2
*** WARNING: Unable to verify timestamp for Unknown_Module_00000000`00000000
Unable to add module at 00000000`00000000
Loading User Symbols
Loading unloaded module list
..Missing image name, possible paged-out or corrupt data.
..Missing image name, possible paged-out or corrupt data.
..Missing image name, possible paged-out or corrupt data.
..Missing image name, possible paged-out or corrupt data.
..Missing image name, possible paged-out or corrupt data.
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1E, {ffffffffc0000005, fffff88007bf4b20, 0, 0}
Probably caused by : ntkrnlmp.exe ( nt!PoIdle+53a )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff88007bf4b20, The address that the exception occurred at
Arg3: 0000000000000000, Parameter 0 of the exception
Arg4: 0000000000000000, Parameter 1 of the exception
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>
FAULTING_IP:
+0
fffff880`07bf4b20 ?? ???
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: 0000000000000000
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ea80e0
0000000000000000
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x1E
PROCESS_NAME: System
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002c7e24a to fffff88003e02c61
STACK_TEXT:
fffff800`00b9cc98 fffff800`02c7e24a : 00000000`002a3744 fffffa80`05a230a8 fffff800`02deae80 00000000`00000001 : 0xfffff880`03e02c61
fffff800`00b9cca0 fffff800`02c78ebc : fffff800`02deae80 fffff800`00000000 00000000`00000000 fffff880`00000000 : nt!PoIdle+0x53a
fffff800`00b9cd80 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x2c
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!PoIdle+53a
fffff800`02c7e24a 0fba25f61318000f bt dword ptr [<Unloaded_Unknown_Module_00000000`0000ffff>+0x1713f7 (00000000`001813f6)],0Fh
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!PoIdle+53a
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x1E_nt!PoIdle+53a
BUCKET_ID: X64_0x1E_nt!PoIdle+53a
Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\091210-27955-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c09000 PsLoadedModuleList = 0xfffff800`02e46e50
System Uptime: 0 days 8:53:31.714
Loading Kernel Symbols
...............................................................
................................................................
................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 50, {fffff3000c84f750, 1, fffffa8004e03012, 7}
Could not read faulting driver name
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+40e0b )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff3000c84f750, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffffa8004e03012, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000007, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002eb10e0
fffff3000c84f750
FAULTING_IP:
+0
fffffa80`04e03012 000401 add byte ptr [rcx+rax],al
MM_INTERNAL_CODE: 7
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: PerfTuneServic
CURRENT_IRQL: 0
TRAP_FRAME: fffff88007b83ab0 -- (.trap 0xfffff88007b83ab0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff88007b83c10 rbx=0000000000000000 rcx=fffffa8004ccbb40
rdx=fffffa80042ffe90 rsi=0000000000000000 rdi=0000000000000000
rip=fffffa8004e03012 rsp=fffff88007b83c40 rbp=fffff14016e548a7
r8=fffff88007b83c10 r9=0000000000000000 r10=007e0045004c0045
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
fffffa80`04e03012 000401 add byte ptr [rcx+rax],al ds:fe80:fffff300`0c84f750=??
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002cf8849 to fffff80002c79740
STACK_TEXT:
fffff880`07b83948 fffff800`02cf8849 : 00000000`00000050 fffff300`0c84f750 00000000`00000001 fffff880`07b83ab0 : nt!KeBugCheckEx
fffff880`07b83950 fffff800`02c7782e : 00000000`00000001 fffffa80`042ffe80 fffffa80`042ffd00 fffff880`0617ac74 : nt! ?? ::FNODOBFM::`string'+0x40e0b
fffff880`07b83ab0 fffffa80`04e03012 : fffffa80`042ffe80 00000000`0000004e fffff140`16e548a7 00000000`00000000 : nt!KiPageFault+0x16e
fffff880`07b83c40 fffffa80`042ffe80 : 00000000`0000004e fffff140`16e548a7 00000000`00000000 fffffa80`070f95c0 : 0xfffffa80`04e03012
fffff880`07b83c48 00000000`0000004e : fffff140`16e548a7 00000000`00000000 fffffa80`070f95c0 00000000`00000000 : 0xfffffa80`042ffe80
fffff880`07b83c50 fffff140`16e548a7 : 00000000`00000000 fffffa80`070f95c0 00000000`00000000 00000000`00000010 : 0x4e
fffff880`07b83c58 00000000`00000000 : fffffa80`070f95c0 00000000`00000000 00000000`00000010 fffffa80`00000030 : 0xfffff140`16e548a7
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+40e0b
fffff800`02cf8849 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+40e0b
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x50_nt!_??_::FNODOBFM::_string_+40e0b
BUCKET_ID: X64_0x50_nt!_??_::FNODOBFM::_string_+40e0b
Followup: MachineOwner
---------
Followup: MachineOwner
---------
0: kd> lmtn
start end module name
fffff800`00ba5000 fffff800`00baf000 kdcom kdcom.dll Tue Jul 14 04:31:07 2009 (4A5BDFDB)
fffff800`02c06000 fffff800`02c4f000 hal hal.dll Tue Jul 14 04:27:36 2009 (4A5BDF08)
fffff800`02c4f000 fffff800`0322b000 nt ntkrnlmp.exe Sat Jun 19 07:16:41 2010 (4C1C44A9)
fffff880`00c00000 fffff880`00cc0000 CI CI.dll Tue Jul 14 04:32:13 2009 (4A5BE01D)
fffff880`00cc0000 fffff880`00cd9000 HIDCLASS HIDCLASS.SYS Tue Jul 14 03:06:21 2009 (4A5BCBFD)
fffff880`00cd9000 fffff880`00d1d000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Tue Jul 14 04:29:10 2009 (4A5BDF66)
fffff880`00d1d000 fffff880`00d31000 PSHED PSHED.dll Tue Jul 14 04:32:23 2009 (4A5BE027)
fffff880`00d31000 fffff880`00d8f000 CLFS CLFS.SYS Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`00d8f000 fffff880`00da9000 mountmgr mountmgr.sys Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`00da9000 fffff880`00db2000 atapi atapi.sys Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`00db2000 fffff880`00ddc000 ataport ataport.SYS Tue Jul 14 02:19:52 2009 (4A5BC118)
fffff880`00ddc000 fffff880`00de7000 msahci msahci.sys Tue Jul 14 03:01:01 2009 (4A5BCABD)
fffff880`00de7000 fffff880`00df2000 amdxata amdxata.sys Tue May 19 20:56:59 2009 (4A12F2EB)
fffff880`00df2000 fffff880`00e00000 hidusb hidusb.sys Tue Jul 14 03:06:22 2009 (4A5BCBFE)
fffff880`00e00000 fffff880`00e07000 pciide pciide.sys Tue Jul 14 02:19:49 2009 (4A5BC115)
fffff880`00e07000 fffff880`00e17000 PCIIDEX PCIIDEX.SYS Tue Jul 14 02:19:48 2009 (4A5BC114)
fffff880`00e17000 fffff880`00ebb000 Wdf01000 Wdf01000.sys Tue Jul 14 02:22:07 2009 (4A5BC19F)
fffff880`00ebb000 fffff880`00eca000 WDFLDR WDFLDR.SYS Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`00eca000 fffff880`00f21000 ACPI ACPI.sys Tue Jul 14 02:19:34 2009 (4A5BC106)
fffff880`00f21000 fffff880`00f2a000 WMILIB WMILIB.SYS Tue Jul 14 02:19:51 2009 (4A5BC117)
fffff880`00f2a000 fffff880`00f34000 msisadrv msisadrv.sys Tue Jul 14 02:19:26 2009 (4A5BC0FE)
fffff880`00f34000 fffff880`00f67000 pci pci.sys Tue Jul 14 02:19:51 2009 (4A5BC117)
fffff880`00f67000 fffff880`00f74000 vdrvroot vdrvroot.sys Tue Jul 14 03:01:31 2009 (4A5BCADB)
fffff880`00f74000 fffff880`00f89000 partmgr partmgr.sys Tue Jul 14 02:19:58 2009 (4A5BC11E)
fffff880`00f89000 fffff880`00f9e000 volmgr volmgr.sys Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`00f9e000 fffff880`00ffa000 volmgrx volmgrx.sys Tue Jul 14 02:20:33 2009 (4A5BC141)
fffff880`01000000 fffff880`01073000 cng cng.sys Tue Jul 14 02:49:40 2009 (4A5BC814)
fffff880`01073000 fffff880`010bf000 volsnap volsnap.sys Tue Jul 14 02:20:08 2009 (4A5BC128)
fffff880`010bf000 fffff880`010f9000 rdyboost rdyboost.sys Tue Jul 14 02:34:34 2009 (4A5BC48A)
fffff880`010f9000 fffff880`01145000 fltmgr fltmgr.sys Tue Jul 14 02:19:59 2009 (4A5BC11F)
fffff880`01145000 fffff880`01159000 fileinfo fileinfo.sys Tue Jul 14 02:34:25 2009 (4A5BC481)
fffff880`01159000 fffff880`011b7000 msrpc msrpc.sys Tue Jul 14 02:21:32 2009 (4A5BC17C)
fffff880`011b7000 fffff880`011f1000 fvevol fvevol.sys Sat Sep 26 05:34:26 2009 (4ABD7DB2)
fffff880`011f1000 fffff880`01200000 mouclass mouclass.sys Tue Jul 14 02:19:50 2009 (4A5BC116)
fffff880`01200000 fffff880`0121a000 ksecdd ksecdd.sys Tue Jul 14 02:20:54 2009 (4A5BC156)
fffff880`0121a000 fffff880`0122b000 pcw pcw.sys Tue Jul 14 02:19:27 2009 (4A5BC0FF)
fffff880`0122b000 fffff880`01235000 Fs_Rec Fs_Rec.sys Tue Jul 14 02:19:45 2009 (4A5BC111)
fffff880`01235000 fffff880`0124b000 disk disk.sys Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`0124b000 fffff880`0125a000 kbdclass kbdclass.sys Tue Jul 14 02:19:50 2009 (4A5BC116)
fffff880`0125b000 fffff880`013fe000 Ntfs Ntfs.sys Tue Jul 14 02:20:47 2009 (4A5BC14F)
fffff880`01400000 fffff880`01460000 NETIO NETIO.SYS Tue Jul 14 02:21:46 2009 (4A5BC18A)
fffff880`01460000 fffff880`0148b000 ksecpkg ksecpkg.sys Fri Dec 11 08:03:32 2009 (4B21E0B4)
fffff880`0148b000 fffff880`014d5000 fwpkclnt fwpkclnt.sys Tue Jul 14 02:21:08 2009 (4A5BC164)
fffff880`014d7000 fffff880`015c9000 ndis ndis.sys Tue Jul 14 02:21:40 2009 (4A5BC184)
fffff880`015c9000 fffff880`015d9000 vmstorfl vmstorfl.sys Tue Jul 14 02:42:54 2009 (4A5BC67E)
fffff880`015d9000 fffff880`015e1000 spldr spldr.sys Mon May 11 19:56:27 2009 (4A0858BB)
fffff880`015e1000 fffff880`015f3000 mup mup.sys Tue Jul 14 02:23:45 2009 (4A5BC201)
fffff880`015f3000 fffff880`015fc000 hwpolicy hwpolicy.sys Tue Jul 14 02:19:22 2009 (4A5BC0FA)
fffff880`01600000 fffff880`017fd000 tcpip tcpip.sys Mon Jun 14 06:39:04 2010 (4C15A458)
fffff880`01804000 fffff880`01834000 CLASSPNP CLASSPNP.SYS Tue Jul 14 02:19:58 2009 (4A5BC11E)
fffff880`01834000 fffff880`01847000 dump_dumpfve dump_dumpfve.sys Tue Jul 14 02:21:51 2009 (4A5BC18F)
fffff880`01847000 fffff880`01864000 usbccgp usbccgp.sys Tue Jul 14 03:06:45 2009 (4A5BCC15)
fffff880`0186c000 fffff880`01896000 cdrom cdrom.sys Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`01896000 fffff880`0189f000 Null Null.SYS Tue Jul 14 02:19:37 2009 (4A5BC109)
fffff880`0189f000 fffff880`018a6000 Beep Beep.SYS Tue Jul 14 03:00:13 2009 (4A5BCA8D)
fffff880`018a6000 fffff880`018b4000 vga vga.sys Tue Jul 14 02:38:47 2009 (4A5BC587)
fffff880`018b4000 fffff880`018d9000 VIDEOPRT VIDEOPRT.SYS Tue Jul 14 02:38:51 2009 (4A5BC58B)
fffff880`018d9000 fffff880`018e9000 watchdog watchdog.sys Tue Jul 14 02:37:35 2009 (4A5BC53F)
fffff880`018e9000 fffff880`018f2000 RDPCDD RDPCDD.sys Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff880`018f2000 fffff880`018fb000 rdpencdd rdpencdd.sys Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff880`018fb000 fffff880`01904000 rdprefmp rdprefmp.sys Tue Jul 14 03:16:35 2009 (4A5BCE63)
fffff880`01904000 fffff880`0190f000 Msfs Msfs.SYS Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`0190f000 fffff880`01920000 Npfs Npfs.SYS Tue Jul 14 02:19:48 2009 (4A5BC114)
fffff880`01920000 fffff880`0193e000 tdx tdx.sys Tue Jul 14 02:21:15 2009 (4A5BC16B)
fffff880`0193e000 fffff880`0194b000 TDI TDI.SYS Tue Jul 14 02:21:18 2009 (4A5BC16E)
fffff880`0194b000 fffff880`0199c000 avgtdia avgtdia.sys Fri Jun 04 00:09:57 2010 (4C081A25)
fffff880`0199c000 fffff880`019e1000 netbt netbt.sys Tue Jul 14 02:21:28 2009 (4A5BC178)
fffff880`019e1000 fffff880`019fb000 rassstp rassstp.sys Tue Jul 14 03:10:25 2009 (4A5BCCF1)
fffff880`02c00000 fffff880`02c21000 raspptp raspptp.sys Tue Jul 14 03:10:18 2009 (4A5BCCEA)
fffff880`02c23000 fffff880`02cad000 afd afd.sys Tue Jul 14 02:21:40 2009 (4A5BC184)
fffff880`02cad000 fffff880`02cb8000 ws2ifsl ws2ifsl.sys Tue Jul 14 03:10:33 2009 (4A5BCCF9)
fffff880`02cb8000 fffff880`02cc1000 wfplwf wfplwf.sys Tue Jul 14 03:09:26 2009 (4A5BCCB6)
fffff880`02cc1000 fffff880`02ce7000 pacer pacer.sys Tue Jul 14 03:09:41 2009 (4A5BCCC5)
fffff880`02ce7000 fffff880`02cf4000 jswpslwfx jswpslwfx.sys Thu May 15 13:28:50 2008 (482C1062)
fffff880`02cf4000 fffff880`02d0a000 vwififlt vwififlt.sys Tue Jul 14 03:07:22 2009 (4A5BCC3A)
fffff880`02d0a000 fffff880`02d19000 netbios netbios.sys Tue Jul 14 03:09:26 2009 (4A5BCCB6)
fffff880`02d19000 fffff880`02d34000 wanarp wanarp.sys Tue Jul 14 03:10:21 2009 (4A5BCCED)
fffff880`02d34000 fffff880`02d48000 termdd termdd.sys Tue Jul 14 03:16:36 2009 (4A5BCE64)
fffff880`02d48000 fffff880`02d99000 rdbss rdbss.sys Tue Jul 14 02:24:09 2009 (4A5BC219)
fffff880`02d99000 fffff880`02da5000 nsiproxy nsiproxy.sys Tue Jul 14 02:21:02 2009 (4A5BC15E)
fffff880`02da5000 fffff880`02db0000 ckldrv ckldrv.sys Mon Mar 17 18:46:29 2008 (47DEA065)
fffff880`02db0000 fffff880`02dbb000 mssmbios mssmbios.sys Tue Jul 14 02:31:10 2009 (4A5BC3BE)
fffff880`02dbb000 fffff880`02dca000 discache discache.sys Tue Jul 14 02:37:18 2009 (4A5BC52E)
fffff880`02dca000 fffff880`02df9000 ndiswan ndiswan.sys Tue Jul 14 03:10:11 2009 (4A5BCCE3)
fffff880`03a00000 fffff880`03a3e000 1394ohci 1394ohci.sys Tue Jul 14 03:07:12 2009 (4A5BCC30)
fffff880`03a41000 fffff880`03ac4000 csc csc.sys Tue Jul 14 02:24:26 2009 (4A5BC22A)
fffff880`03ac4000 fffff880`03ae2000 dfsc dfsc.sys Tue Jul 14 02:23:44 2009 (4A5BC200)
fffff880`03ae2000 fffff880`03af3000 blbdrive blbdrive.sys Tue Jul 14 02:35:59 2009 (4A5BC4DF)
fffff880`03af3000 fffff880`03afa080 avgmfx64 avgmfx64.sys Mon Apr 26 00:06:15 2010 (4BD4AEC7)
fffff880`03afb000 fffff880`03b42000 avgldx64 avgldx64.sys Fri Jun 04 00:06:48 2010 (4C081968)
fffff880`03b42000 fffff880`03b68000 tunnel tunnel.sys Tue Jul 14 03:09:37 2009 (4A5BCCC1)
fffff880`03b68000 fffff880`03b7e000 intelppm intelppm.sys Tue Jul 14 02:19:25 2009 (4A5BC0FD)
fffff880`03b7e000 fffff880`03bc5000 atikmpag atikmpag.sys Wed Aug 04 04:15:45 2010 (4C58BF41)
fffff880`03bc5000 fffff880`03be9000 rasl2tp rasl2tp.sys Tue Jul 14 03:10:11 2009 (4A5BCCE3)
fffff880`03be9000 fffff880`03bf4000 rdpbus rdpbus.sys Tue Jul 14 03:17:46 2009 (4A5BCEAA)
fffff880`04000000 fffff880`04024000 HDAudBus HDAudBus.sys Tue Jul 14 03:06:13 2009 (4A5BCBF5)
fffff880`04024000 fffff880`0406d000 e1e6232e e1e6232e.sys Fri Mar 26 10:14:14 2010 (4BAC6CD6)
fffff880`0406d000 fffff880`0407a000 usbuhci usbuhci.sys Tue Jul 14 03:06:27 2009 (4A5BCC03)
fffff880`0407a000 fffff880`0408b000 usbehci usbehci.sys Tue Jul 14 03:06:30 2009 (4A5BCC06)
fffff880`0408b000 fffff880`04098000 GEARAspiWDM GEARAspiWDM.sys Mon May 18 15:17:04 2009 (4A1151C0)
fffff880`04098000 fffff880`040a7880 intelsmb intelsmb.sys Wed May 13 10:31:00 2009 (4A0A7734)
fffff880`040a8000 fffff880`040b4000 ndistapi ndistapi.sys Tue Jul 14 03:10:00 2009 (4A5BCCD8)
fffff880`040b5000 fffff880`041a9000 dxgkrnl dxgkrnl.sys Fri Oct 02 04:00:14 2009 (4AC5509E)
fffff880`041a9000 fffff880`041ef000 dxgmms1 dxgmms1.sys Tue Jul 14 02:38:32 2009 (4A5BC578)
fffff880`041ef000 fffff880`041ff000 CompositeBus CompositeBus.sys Tue Jul 14 03:00:33 2009 (4A5BCAA1)
fffff880`04400000 fffff880`0443d000 portcls portcls.sys Tue Jul 14 03:06:27 2009 (4A5BCC03)
fffff880`0443d000 fffff880`0445f000 drmk drmk.sys Tue Jul 14 04:01:25 2009 (4A5BD8E5)
fffff880`0445f000 fffff880`04464200 ksthunk ksthunk.sys Tue Jul 14 03:00:19 2009 (4A5BCA93)
fffff880`04465000 fffff880`044c1000 HdAudio HdAudio.sys Tue Jul 14 03:06:59 2009 (4A5BCC23)
fffff880`044c1000 fffff880`044cd000 Dxapi Dxapi.sys Tue Jul 14 02:38:28 2009 (4A5BC574)
fffff880`044cd000 fffff880`044db000 crashdmp crashdmp.sys Tue Jul 14 03:01:01 2009 (4A5BCABD)
fffff880`044db000 fffff880`044e3080 HIDPARSE HIDPARSE.SYS Tue Jul 14 03:06:17 2009 (4A5BCBF9)
fffff880`044e6000 fffff880`04529000 ks ks.sys Tue Jul 14 03:00:31 2009 (4A5BCA9F)
fffff880`04529000 fffff880`0453b000 circlass circlass.sys Tue Jul 14 03:06:34 2009 (4A5BCC0A)
fffff880`0453b000 fffff880`0454d000 umbus umbus.sys Tue Jul 14 03:06:56 2009 (4A5BCC20)
fffff880`0454d000 fffff880`045a7000 usbhub usbhub.sys Tue Jul 14 03:07:09 2009 (4A5BCC2D)
fffff880`045a7000 fffff880`045bc000 NDProxy NDProxy.SYS Tue Jul 14 03:10:05 2009 (4A5BCCDD)
fffff880`045bc000 fffff880`045df000 AtiHdmi AtiHdmi.sys Thu May 06 12:20:39 2010 (4BE289E7)
fffff880`045df000 fffff880`045eb000 dump_dumpata dump_dumpata.sys Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`045eb000 fffff880`045f6000 dump_msahci dump_msahci.sys Tue Jul 14 03:01:01 2009 (4A5BCABD)
fffff880`045f6000 fffff880`045f7f00 USBD USBD.SYS Tue Jul 14 03:06:23 2009 (4A5BCBFF)
fffff880`045f8000 fffff880`045fcf80 Lycosa Lycosa.sys Wed Sep 30 07:45:50 2009 (4AC2E27E)
fffff880`04800000 fffff880`0481b000 raspppoe raspppoe.sys Tue Jul 14 03:10:17 2009 (4A5BCCE9)
fffff880`0481b000 fffff880`0481c480 swenum swenum.sys Tue Jul 14 03:00:18 2009 (4A5BCA92)
fffff880`04820000 fffff880`04f8e000 atikmdag atikmdag.sys Wed Aug 04 04:39:08 2010 (4C58C4BC)
fffff880`04f8e000 fffff880`04fe4000 USBPORT USBPORT.SYS Tue Jul 14 03:06:31 2009 (4A5BCC07)
fffff880`04fe4000 fffff880`04ffa000 AgileVpn AgileVpn.sys Tue Jul 14 03:10:24 2009 (4A5BCCF0)
fffff880`05e7a000 fffff880`05e88000 kbdhid kbdhid.sys Tue Jul 14 03:00:20 2009 (4A5BCA94)
fffff880`05e88000 fffff880`05ea7000 usbcir usbcir.sys Tue Jul 14 03:06:36 2009 (4A5BCC0C)
fffff880`05ea7000 fffff880`05f6f000 HTTP HTTP.sys Tue Jul 14 02:22:16 2009 (4A5BC1A8)
fffff880`05f6f000 fffff880`05fbd000 mrxsmb10 mrxsmb10.sys Sat Feb 27 09:52:28 2010 (4B88CF3C)
fffff880`05fbd000 fffff880`05fe0000 mrxsmb20 mrxsmb20.sys Sat Feb 27 09:52:26 2010 (4B88CF3A)
fffff880`06a00000 fffff880`06a68000 srv2 srv2.sys Tue Jun 22 06:20:47 2010 (4C202C0F)
fffff880`06ad1000 fffff880`06b77000 peauth peauth.sys Tue Jul 14 04:01:19 2009 (4A5BD8DF)
fffff880`06b77000 fffff880`06b82000 secdrv secdrv.SYS Wed Sep 13 16:18:38 2006 (4508052E)
fffff880`06b82000 fffff880`06baf000 srvnet srvnet.sys Tue Jun 22 06:20:32 2010 (4C202C00)
fffff880`06baf000 fffff880`06bc1000 tcpipreg tcpipreg.sys Tue Jul 14 03:09:49 2009 (4A5BCCCD)
fffff880`06e00000 fffff880`06e51200 lvrs64 lvrs64.sys Tue Jul 27 11:00:02 2010 (4C4E9202)
fffff880`06e56000 fffff880`06eec000 srv srv.sys Tue Jun 22 06:21:11 2010 (4C202C27)
fffff880`06ef9000 fffff880`06f03000 LVPr2M64 LVPr2M64.sys Sat May 08 04:38:16 2010 (4BE4C088)
fffff880`06f5d000 fffff880`06f68000 asyncmac asyncmac.sys Tue Jul 14 03:10:13 2009 (4A5BCCE5)
fffff880`06fdb000 fffff880`06ff5c00 usbaudio usbaudio.sys Tue Jul 14 03:06:31 2009 (4A5BCC07)
fffff880`07200000 fffff880`07215000 lltdio lltdio.sys Tue Jul 14 03:08:50 2009 (4A5BCC92)
fffff880`07215000 fffff880`07268000 nwifi nwifi.sys Tue Jul 14 03:07:23 2009 (4A5BCC3B)
fffff880`07268000 fffff880`0727b000 ndisuio ndisuio.sys Tue Jul 14 03:09:25 2009 (4A5BCCB5)
fffff880`0727b000 fffff880`07293000 rspndr rspndr.sys Tue Jul 14 03:08:50 2009 (4A5BCC92)
fffff880`07293000 fffff880`072b1000 bowser bowser.sys Tue Jul 14 02:23:50 2009 (4A5BC206)
fffff880`072b1000 fffff880`072c9000 mpsdrv mpsdrv.sys Tue Jul 14 03:08:25 2009 (4A5BCC79)
fffff880`072c9000 fffff880`072f6000 mrxsmb mrxsmb.sys Sat Feb 27 09:52:19 2010 (4B88CF33)
fffff880`072f6000 fffff880`0791ee00 lvuvc64 lvuvc64.sys Tue Jul 27 11:00:43 2010 (4C4E922B)
fffff880`0797a000 fffff880`0798b000 hidir hidir.sys Tue Jul 14 03:06:23 2009 (4A5BCBFF)
fffff880`0798b000 fffff880`0798e800 copperhd copperhd.sys Tue Nov 10 09:50:17 2009 (4AF91B39)
fffff880`0798f000 fffff880`0799c000 mouhid mouhid.sys Tue Jul 14 03:00:20 2009 (4A5BCA94)
fffff880`0799c000 fffff880`079aa000 monitor monitor.sys Tue Jul 14 02:38:52 2009 (4A5BC58C)
fffff880`079aa000 fffff880`079cd000 luafv luafv.sys Tue Jul 14 02:26:13 2009 (4A5BC295)
fffff880`079cd000 fffff880`079ee000 WudfPf WudfPf.sys Tue Jul 14 03:05:37 2009 (4A5BCBD1)
fffff880`079ee000 fffff880`079f8000 IOCBIOS IOCBIOS.SYS Thu Jul 09 20:47:22 2009 (4A562D2A)
fffff960`000c0000 fffff960`003cf000 win32k win32k.sys Sat Jun 19 07:31:59 2010 (4C1C483F)
fffff960`00480000 fffff960`0048a000 TSDDD TSDDD.dll Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff960`00750000 fffff960`00777000 cdd cdd.dll unavailable (00000000)
fffff960`008f0000 fffff960`00951000 ATMFD ATMFD.DLL Thu May 27 07:11:31 2010 (4BFDF0F3)
Unloaded modules:
fffff880`06ef1000 fffff880`06ef9000 drmkaud.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06eef000 fffff880`06ef1000 MSTEE.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06eec000 fffff880`06eef000 MSKSSRV.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06e54000 fffff880`06e56000 MSPQM.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06e52000 fffff880`06e54000 MSPCLOCK.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06f83000 fffff880`06fd2000 lvrs64.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06f68000 fffff880`06f83000 usbaudio.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06fd7000 fffff880`06fd9000 MSTEE.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06fd9000 fffff880`06fdb000 MSPQM.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06fd4000 fffff880`06fd7000 MSKSSRV.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06fd2000 fffff880`06fd4000 MSPCLOCK.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`06eec000 fffff880`06f5d000 spsys.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`072f6000 fffff880`0790a000 lvuvc64.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`072fc000 fffff880`07910000 lvuvc64.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`0792b000 fffff880`0797a000 lvrs64.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`07910000 fffff880`0792b000 usbaudio.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`01834000 fffff880`01842000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`01842000 fffff880`0184e000 dump_pciidex
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`0184e000 fffff880`01859000 dump_msahci.
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`01859000 fffff880`0186c000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000