Windows 7 Forums
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: BSODs

03 Nov 2010   #1
Kvakva

Win 7 home premium x64
 
 
BSODs

Hello,
I keep having BSODs

- Win7 home premium x64
- installed from cd
- retail version

- Intel i7 860 2.80GHz, ATI hd5850 (catalyst 10.10c), Esset smart security 4, monitor SyncMaster P2350.
- Reinstalled win on 2010 11 02 ( hhd is split)

PERFMON HTML is KV.html in zip.


My System SpecsSystem Spec
.
03 Nov 2010   #2
CarlTR6

Windows 7 Ultimate 32 bit
 
 

Hi Kvakva; welcome to the forum. I am sorry that you are having problems. I suggest that you install Daemon Tools. It is a known BSOD maker:
Quote:
Please uninstall any CD virtualization programs such as Daemon Tools and Alcohol 120%. They use a driver, found in your dump, sptd.sys, that is notorious for causing BSODs. Use this SPTD uninstaller when you're done: DuplexSecure - Downloads. Select delete; do not select reinstall.
Here is an alternative virtualization program that does not user the sptd.sys driver:
Freeware MagicISO Virtual CD/DVD-ROM(MagicDisc) Overview
I also see that you have Eset installed. Eset is known to cause BSOd's on some Win 7 systems. While you are troubleshooting, uninstall Eset using this removal tool: Tool. Download and install Microsoft Security Essentials and Make sure Windows Firewall is turned on. You can try Eset again after you get your system stable; but I do not recommend doing so.

I find an outdated driver on your system. Older drivers can and do cause memory corruption and BSOD's. This is another reason to uninstall Eset.
Quote:
Epfwndis.sys Thu Apr 09 08:43:20 2009 - ESET Personal Firewall NDIS filter is a driver file from ESET belonging ESET Smart Security.
Quote:
Error code 1E, KMODE_EXCEPTION_NOT_HANDLED. Usual causes: Device driver, hardware, System service, compatibility, Remote control programs, memory, BIOS.

Error code 7E, SYSTEM_THREAD_EXCEPTION_NOT_HANDLED. Usual causes: Insufficient disk space, Device driver, Video card, BIOS, Breakpoint with no debugger attached, Hardware incompatibility, Faulty system service, Memory, 3rd party remote control.
Code:
Windows 7 Kernel Version 7600 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02862000 PsLoadedModuleList = 0xfffff800`02a9fe50
Debug session time: Wed Nov  3 12:03:23.966 2010 (GMT-4)
System Uptime: 0 days 0:03:52.870
Loading Kernel Symbols
...............................................................
................................................................
................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1E, {ffffffffc0000005, fffff800028f7b7f, 0, ffffffffffffffff}

Probably caused by : memory_corruption ( nt!MiReplenishPageSlist+100 )

Followup: MachineOwner
---------

2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck.  Usually the exception address pinpoints
the driver/function that caused the problem.  Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff800028f7b7f, The address that the exception occurred at
Arg3: 0000000000000000, Parameter 0 of the exception
Arg4: ffffffffffffffff, Parameter 1 of the exception

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!MiReplenishPageSlist+100
fffff800`028f7b7f f00fba6b1000    lock bts dword ptr [rbx+10h],0

EXCEPTION_PARAMETER1:  0000000000000000

EXCEPTION_PARAMETER2:  ffffffffffffffff

READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002b0a0e0
 ffffffffffffffff 

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x1E

PROCESS_NAME:  svchost.exe

CURRENT_IRQL:  2

EXCEPTION_RECORD:  fffff88008b87708 -- (.exr 0xfffff88008b87708)
ExceptionAddress: fffff800028f7b7f (nt!MiReplenishPageSlist+0x0000000000000100)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 0000000000000000
   Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff

TRAP_FRAME:  fffff88008b877b0 -- (.trap 0xfffff88008b877b0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=2c00000000074542 rbx=0000000000000000 rcx=fdffffffffffffff
rdx=0000000000000047 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800028f7b7f rsp=fffff88008b87940 rbp=fffffa8003600a50
 r8=fffff80002b0c400  r9=fffffa8003600000 r10=fffffa8003600a70
r11=fffff88008b87998 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na po nc
nt!MiReplenishPageSlist+0x100:
fffff800`028f7b7f f00fba6b1000    lock bts dword ptr [rbx+10h],0 ds:00000000`00000010=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff8000290ca39 to fffff800028d2740

STACK_TEXT:  
fffff880`08b86f38 fffff800`0290ca39 : 00000000`0000001e ffffffff`c0000005 fffff800`028f7b7f 00000000`00000000 : nt!KeBugCheckEx
fffff880`08b86f40 fffff800`028d1d82 : fffff880`08b87708 3ffffa80`015cfc60 fffff880`08b877b0 00000000`00000001 : nt!KiDispatchException+0x1b9
fffff880`08b875d0 fffff800`028d068a : 00000000`0150070a fffff800`029f3531 00000000`00000000 00000000`0000001c : nt!KiExceptionDispatch+0xc2
fffff880`08b877b0 fffff800`028f7b7f : 00000000`00000001 fffffa80`0694b9e0 00000000`03345e10 00000000`03345e10 : nt!KiGeneralProtectionFault+0x10a
fffff880`08b87940 fffff800`028f80af : fffff800`02b0c400 00000000`00000042 fffffa80`015d4460 fffffa80`015d2c60 : nt!MiReplenishPageSlist+0x100
fffff880`08b879a0 fffff800`028eda9a : fffff680`0002bcf8 00000000`00000002 00000000`00000000 ffffffff`ffffffff : nt!MiRemoveAnyPage+0x24f
fffff880`08b87ac0 fffff800`028d082e : 00000000`00000001 00000000`00001000 00000000`00003001 00000000`050adad8 : nt!MmAccessFault+0x169a
fffff880`08b87c20 00000000`6ddc27f7 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
00000000`050ada88 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x6ddc27f7


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!MiReplenishPageSlist+100
fffff800`028f7b7f f00fba6b1000    lock bts dword ptr [rbx+10h],0

SYMBOL_STACK_INDEX:  4

SYMBOL_NAME:  nt!MiReplenishPageSlist+100

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c44a9

IMAGE_NAME:  memory_corruption

FAILURE_BUCKET_ID:  X64_0x1E_nt!MiReplenishPageSlist+100

BUCKET_ID:  X64_0x1E_nt!MiReplenishPageSlist+100

Followup: MachineOwner
---------

*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1000007E, {ffffffffc0000005, fffff800028bc905, fffff880033774c8, fffff88003376d30}

Probably caused by : ntkrnlmp.exe ( nt!ExpInterlockedPopEntrySListFault16+0 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck.  Usually the exception address pinpoints
the driver/function that caused the problem.  Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003.  This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG.  This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG.  This will let us see why this breakpoint is
happening.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff800028bc905, The address that the exception occurred at
Arg3: fffff880033774c8, Exception Record Address
Arg4: fffff88003376d30, Context Record Address

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!ExpInterlockedPopEntrySListFault16+0
fffff800`028bc905 498b08          mov     rcx,qword ptr [r8]

EXCEPTION_RECORD:  fffff880033774c8 -- (.exr 0xfffff880033774c8)
ExceptionAddress: fffff800028bc905 (nt!ExpInterlockedPopEntrySListFault16)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 0000000000000000
   Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff

CONTEXT:  fffff88003376d30 -- (.cxr 0xfffff88003376d30)
rax=0000000009000007 rbx=0000000000000000 rcx=fffffa8003603610
rdx=51fffa8000251a31 rsi=fffff80002a45b40 rdi=0000000000000000
rip=fffff800028bc905 rsp=fffff88003377700 rbp=fffff88003377780
 r8=51fffa8000251a30  r9=fffff6fc50036c40 r10=fffffa8003603610
r11=fffff6fb7e2801b0 r12=0000000000000000 r13=0000000000000061
r14=0000000000000004 r15=0000000000000000
iopl=0         nv up ei pl nz na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010206
nt!ExpInterlockedPopEntrySListFault16:
fffff800`028bc905 498b08          mov     rcx,qword ptr [r8] ds:002b:51fffa80`00251a30=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  System

CURRENT_IRQL:  0

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_PARAMETER1:  0000000000000000

EXCEPTION_PARAMETER2:  ffffffffffffffff

READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002af10e0
 ffffffffffffffff 

FOLLOWUP_IP: 
nt!ExpInterlockedPopEntrySListFault16+0
fffff800`028bc905 498b08          mov     rcx,qword ptr [r8]

BUGCHECK_STR:  0x7E

TRAP_FRAME:  fffff88003377a70 -- (.trap 0xfffff88003377a70)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff8a006d88008 rbx=0000000000000000 rcx=fffff8a006d8b040
rdx=fffff8a006d87ff8 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002cce14f rsp=fffff88003377c00 rbp=fffff8a006d87010
 r8=fffffa8003d8d2b8  r9=fffffa800410cf18 r10=00000000000000f0
r11=00000000000000f0 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na pe cy
nt!PfSnBuildDumpFromTrace+0x1df:
fffff800`02cce14f f30f7f02        movdqu  xmmword ptr [rdx],xmm0 ds:3e80:fffff8a0`06d87ff8=????????????????????????????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff800028d7322 to fffff800028bc905

STACK_TEXT:  
fffff880`03377700 fffff800`028d7322 : 80000000`093e0963 fffff880`03377780 fffff800`02a45b40 fffff800`02a45b40 : nt!ExpInterlockedPopEntrySListFault16
fffff880`03377710 fffff800`028d5ca2 : 00000000`00000001 fffff8a0`06d88000 fffff880`03377a70 fffff6fc`50036c40 : nt!MiResolveDemandZeroFault+0x5d2
fffff880`03377800 fffff800`028d3cf1 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MiDispatchFault+0x8c2
fffff880`03377910 fffff800`028b782e : 00000000`00000001 00000000`000003b9 00000000`00000000 00000000`00000801 : nt!MmAccessFault+0x8f1
fffff880`03377a70 fffff800`02cce14f : fffffa80`03d8d230 00000000`00000000 fffff800`02a33e80 fffff800`0297e9ca : nt!KiPageFault+0x16e
fffff880`03377c00 fffff800`02cce79d : 00000000`000000f1 fffffa80`00000000 fffff800`00004030 fffffa80`036e6b00 : nt!PfSnBuildDumpFromTrace+0x1df
fffff880`03377c80 fffff800`028c6961 : fffff8a0`06d87000 fffff800`02cceb50 fffff800`02a5e5f8 fffffa80`036e6b60 : nt!PfSnEndTrace+0xdd
fffff880`03377cb0 fffff800`02b5dc06 : 00000000`00000020 fffffa80`036e6b60 00000000`00000080 fffffa80`036cd040 : nt!ExpWorkerThread+0x111
fffff880`03377d40 fffff800`02897c26 : fffff880`03167180 fffffa80`036e6b60 fffff880`031720c0 00000000`00000000 : nt!PspSystemThreadStartup+0x5a
fffff880`03377d80 00000000`00000000 : fffff880`03378000 fffff880`03372000 fffff880`033779f0 00000000`00000000 : nt!KxStartSystemThread+0x16


SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!ExpInterlockedPopEntrySListFault16+0

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c44a9

STACK_COMMAND:  .cxr 0xfffff88003376d30 ; kb

FAILURE_BUCKET_ID:  X64_0x7E_nt!ExpInterlockedPopEntrySListFault16+0

BUCKET_ID:  X64_0x7E_nt!ExpInterlockedPopEntrySListFault16+0

Followup: MachineOwner
---------

0: kd> lmtsmn
start             end                 module name
fffff880`04000000 fffff880`0403e000   1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`0102f000 fffff880`01086000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`02d6e000 fffff880`02df8000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`04200000 fffff880`04216000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`00ff4000 fffff880`00fff000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`02cb2000 fffff880`02cf7000   ar8ftsx7 ar8ftsx7.SYS Tue Jul 14 17:12:55 2009 (4A5CF4D7)
fffff880`00fc1000 fffff880`00fca000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fca000 fffff880`00ff4000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`0506f000 fffff880`0508f000   AtihdW76 AtihdW76.sys Mon Aug 16 06:41:02 2010 (4C6915BE)
fffff880`04805000 fffff880`04fdb000   atikmdag atikmdag.sys Tue Oct 26 12:49:17 2010 (4CC7068D)
fffff880`04149000 fffff880`04194000   atikmpag atikmpag.sys Tue Oct 26 12:22:37 2010 (4CC7004D)
fffff880`015f9000 fffff880`01600000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`040fc000 fffff880`0410d000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`03d20000 fffff880`03d3e000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`007b0000 fffff960`007d7000   cdd      cdd.dll      unavailable (00000000)
fffff880`00dd2000 fffff880`00dfc000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00cfe000 fffff880`00dbe000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`0143a000 fffff880`0146a000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00ca0000 fffff880`00cfe000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`014e5000 fffff880`01558000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`043db000 fffff880`043eb000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`0594f000 fffff880`0595d000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`040de000 fffff880`040fc000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`040cf000 fffff880`040de000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01698000 fffff880`016ae000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`0508f000 fffff880`050b1000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`05969000 fffff880`05972000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`0595d000 fffff880`05969000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`05972000 fffff880`05985000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`05992000 fffff880`0599e000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`04220000 fffff880`04314000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 21:00:14 2009 (4AC5509E)
fffff880`04314000 fffff880`0435a000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:38:32 2009 (4A5BC578)
fffff880`0437e000 fffff880`043ca000   e1k62x64 e1k62x64.sys Tue Apr 06 03:37:39 2010 (4BBAE4C3)
fffff880`02ac4000 fffff880`02b96000   eamon    eamon.sys    Fri Sep 11 01:12:19 2009 (4AA9DC33)
fffff880`00c00000 fffff880`00c23000   ehdrv    ehdrv.sys    Fri Sep 11 01:12:55 2009 (4AA9DC57)
fffff880`02bb7000 fffff880`02be3000   epfw     epfw.sys     Fri Sep 11 01:07:43 2009 (4AA9DB1F)
fffff880`043eb000 fffff880`043f6000   Epfwndis Epfwndis.sys Thu Apr 09 08:43:20 2009 (49DDED68)
fffff880`03c00000 fffff880`03c10000   epfwwfp  epfwwfp.sys  Fri Sep 11 01:07:43 2009 (4AA9DB1F)
fffff880`00dbe000 fffff880`00dd2000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`00e00000 fffff880`00e4c000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`01569000 fffff880`01573000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`01400000 fffff880`0143a000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`0162b000 fffff880`01675000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`02800000 fffff800`02849000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`0435a000 fffff880`0437e000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`058c1000 fffff880`0591d000   HdAudio  HdAudio.sys  Mon Jul 13 20:06:59 2009 (4A5BCC23)
fffff880`0592b000 fffff880`05944000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`05944000 fffff880`0594c080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`0591d000 fffff880`0592b000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`03c58000 fffff880`03d20000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`0168f000 fffff880`01698000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`04133000 fffff880`04149000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`0513a000 fffff880`05149000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`059d6000 fffff880`059e4000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00b9b000 fffff800`00ba5000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`0515a000 fffff880`0519d000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`014cb000 fffff880`014e5000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01600000 fffff880`0162b000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`051ec000 fffff880`051f1200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`02be3000 fffff880`02bf8000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`05800000 fffff880`05823000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00c48000 fffff880`00c8c000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`059e4000 fffff880`059f2000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`05149000 fffff880`05158000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05985000 fffff880`05992000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00fa7000 fffff880`00fc1000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`03d3e000 fffff880`03d56000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`03d56000 fffff880`03d83000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`03d83000 fffff880`03dd1000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`03dd1000 fffff880`03df4000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`02d27000 fffff880`02d32000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01086000 fffff880`01090000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`0146d000 fffff880`014cb000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`040c4000 fffff880`040cf000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`0167d000 fffff880`0168f000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`016ae000 fffff880`017a0000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`0403e000 fffff880`0404a000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`050b5000 fffff880`050e4000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`0505a000 fffff880`0506f000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`02c74000 fffff880`02c83000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02c00000 fffff880`02c45000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`017a0000 fffff880`01800000   NETIO    NETIO.SYS    Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`02d32000 fffff880`02d43000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`040b8000 fffff880`040c4000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02849000 fffff800`02e25000   nt       ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9)
fffff880`01223000 fffff880`013c6000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`01200000 fffff880`01209000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`02c4e000 fffff880`02c74000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`011e0000 fffff880`011f5000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00f03000 fffff880`00f36000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`011f5000 fffff880`011fc000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`0109d000 fffff880`010ad000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`01558000 fffff880`01569000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`02a18000 fffff880`02abe000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`051af000 fffff880`051ec000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c8c000 fffff880`00ca0000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`04fdb000 fffff880`04fff000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`050e4000 fffff880`050ff000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`050ff000 fffff880`05120000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`05120000 fffff880`0513a000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`04067000 fffff880`040b8000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`02d0c000 fffff880`02d15000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`02d15000 fffff880`02d1e000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`02d1e000 fffff880`02d27000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`015bf000 fffff880`015f9000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`02a00000 fffff880`02a18000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`01000000 fffff880`0102f000   SCSIPORT SCSIPORT.SYS Mon Jul 13 20:01:04 2009 (4A5BCAC0)
fffff880`03c10000 fffff880`03c1b000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`01675000 fffff880`0167d000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`05ef0000 fffff880`05f61000   spsys    spsys.sys    Mon May 11 13:20:58 2009 (4A085E7A)
fffff880`010b1000 fffff880`011d7000   sptd     sptd.sys     Sun Oct 11 16:55:14 2009 (4AD24632)
fffff880`05e29000 fffff880`05ebf000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`05835000 fffff880`0589c000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`03c1b000 fffff880`03c48000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`05158000 fffff880`05159480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01801000 fffff880`019fe000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`05823000 fffff880`05835000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`02d61000 fffff880`02d6e000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`02d43000 fffff880`02d61000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`02c9e000 fffff880`02cb2000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`00450000 fffff960`0045a000   TSDDD    TSDDD.dll    unavailable (00000000)
fffff880`0410d000 fffff880`04133000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`0519d000 fffff880`051af000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`059b9000 fffff880`059d6000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`0594d000 fffff880`0594ef00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`043ca000 fffff880`043db000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05000000 fffff880`0505a000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`04194000 fffff880`041ea000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`0599e000 fffff880`059b9000   USBSTOR  USBSTOR.SYS  Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`01090000 fffff880`0109d000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`01209000 fffff880`01217000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`00c23000 fffff880`00c48000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00f36000 fffff880`00f4b000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00f4b000 fffff880`00fa7000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01573000 fffff880`015bf000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02c83000 fffff880`02c9e000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`02cfc000 fffff880`02d0c000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00e50000 fffff880`00ef4000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00ef4000 fffff880`00f03000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`02c45000 fffff880`02c4e000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`00040000 fffff960`0034f000   win32k   win32k.sys   unavailable (00000000)
fffff880`011d7000 fffff880`011e0000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`02b96000 fffff880`02bb7000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`05ebf000 fffff880`05ef0000   WUDFRd   WUDFRd.sys   Mon Jul 13 20:06:06 2009 (4A5BCBEE)

Unloaded modules:
fffff880`013c6000 fffff880`013d4000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`013d4000 fffff880`013e0000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`013e0000 fffff880`013e9000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`013e9000 fffff880`013fc000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
Uninstall Daemon Tools and Eset, reboot, and let's see how your system does. Update us and let us know. If you get another BSOD, upload it and we will go from there.
My System SpecsSystem Spec
04 Nov 2010   #3
Kvakva

Win 7 home premium x64
 
 

Hello,
Thanks you for help. The BSODs have stopped by themselfs. But i removed daemon as you instructed and left esset for now. No BSOD so far. I will post as soon as something happens.
My System SpecsSystem Spec
.

04 Nov 2010   #4
CarlTR6

Windows 7 Ultimate 32 bit
 
 

Very good; and you are welcome. Thank your the update. I suspect Daemon was the primary cause. Let is know in two or three days how your system is doing.
My System SpecsSystem Spec
08 Nov 2010   #5
Kvakva

Win 7 home premium x64
 
 

Hello.
While playing Team fortress 2 a BSOD happened on 2010 11 02.
My System SpecsSystem Spec
08 Nov 2010   #6
CarlTR6

Windows 7 Ultimate 32 bit
 
 

Quote:
error code 3B, SYSTEM_SERVICE_EXCEPTION. Usual causes: System service, Device driver, graphics driver, ?memory
Code:
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff80002ba5e3c, fffff8800939b1a0, 0}

Probably caused by : ntkrnlmp.exe ( nt!NtWaitForKeyedEvent+a4 )

Followup: MachineOwner
---------

2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80002ba5e3c, Address of the exception record for the exception that caused the bugcheck
Arg3: fffff8800939b1a0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!NtWaitForKeyedEvent+a4
fffff800`02ba5e3c f0490fba2c2400  lock bts qword ptr [r12],0

CONTEXT:  fffff8800939b1a0 -- (.cxr 0xfffff8800939b1a0)
rax=000000000000006c rbx=ffffffffffffffff rcx=f7fff8a000009060
rdx=0000000000000001 rsi=0000000000000001 rdi=fffffa8003963b60
rip=fffff80002ba5e3c rsp=fffff8800939bb70 rbp=fffff8800939bca0
 r8=fffffa80065e9060  r9=0000000000000000 r10=0000000000000000
r11=00000000002eba98 r12=f7fff8a0000093c0 r13=f7fff8a0000093c8
r14=0000000000000000 r15=000000000462fc90
iopl=0         nv up ei ng nz na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010286
nt!NtWaitForKeyedEvent+0xa4:
fffff800`02ba5e3c f0490fba2c2400  lock bts qword ptr [r12],0 ds:002b:f7fff8a0`000093c0=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  iexplore.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from fffff800028b8993 to fffff80002ba5e3c

STACK_TEXT:  
fffff880`0939bb70 fffff800`028b8993 : 00000000`00000000 00000000`7efa7001 00000000`00000000 00000000`00000000 : nt!NtWaitForKeyedEvent+0xa4
fffff880`0939bc20 00000000`739e2dd9 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`039dec68 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x739e2dd9


FOLLOWUP_IP: 
nt!NtWaitForKeyedEvent+a4
fffff800`02ba5e3c f0490fba2c2400  lock bts qword ptr [r12],0

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!NtWaitForKeyedEvent+a4

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c44a9

STACK_COMMAND:  .cxr 0xfffff8800939b1a0 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_nt!NtWaitForKeyedEvent+a4

BUCKET_ID:  X64_0x3B_nt!NtWaitForKeyedEvent+a4

Followup: MachineOwner
---------

2: kd> lmtsmn
start             end                 module name
fffff880`04056000 fffff880`04094000   1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`01000000 fffff880`01057000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`02cbd000 fffff880`02d47000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`050d1000 fffff880`050e7000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`05071000 fffff880`050b6000   am2y8r6i am2y8r6i.SYS Tue Jul 14 17:12:55 2009 (4A5CF4D7)
fffff880`00e4d000 fffff880`00e58000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`00e1a000 fffff880`00e23000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00e23000 fffff880`00e4d000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`043dc000 fffff880`043fc000   AtihdW76 AtihdW76.sys Mon Aug 16 06:41:02 2010 (4C6915BE)
fffff880`0481b000 fffff880`04ff1000   atikmdag atikmdag.sys Tue Oct 26 12:49:17 2010 (4CC7068D)
fffff880`04181000 fffff880`041cc000   atikmpag atikmpag.sys Tue Oct 26 12:22:37 2010 (4CC7004D)
fffff880`014b1000 fffff880`014b8000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`04134000 fffff880`04145000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`054fc000 fffff880`0551a000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`00770000 fffff960`00797000   cdd      cdd.dll      Wed May 19 15:48:26 2010 (4BF4408A)
fffff880`00e6c000 fffff880`00e96000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00d28000 fffff880`00de8000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01200000 fffff880`01230000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00cca000 fffff880`00d28000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01530000 fffff880`015a3000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`050b6000 fffff880`050c6000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`0593e000 fffff880`0594c000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`04116000 fffff880`04134000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`04107000 fffff880`04116000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01486000 fffff880`0149c000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`058ba000 fffff880`058dc000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`05958000 fffff880`05961000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`0594c000 fffff880`05958000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`05961000 fffff880`05974000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`05974000 fffff880`05980000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`04269000 fffff880`0435d000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 21:00:14 2009 (4AC5509E)
fffff880`0435d000 fffff880`043a3000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:38:32 2009 (4A5BC578)
fffff880`04200000 fffff880`0424c000   e1k62x64 e1k62x64.sys Tue Apr 06 03:37:39 2010 (4BBAE4C3)
fffff880`02ada000 fffff880`02bac000   eamon    eamon.sys    Fri Sep 11 01:12:19 2009 (4AA9DC33)
fffff880`00c4c000 fffff880`00c6f000   ehdrv    ehdrv.sys    Fri Sep 11 01:12:55 2009 (4AA9DC57)
fffff880`02bcd000 fffff880`02bf9000   epfw     epfw.sys     Fri Sep 11 01:07:43 2009 (4AA9DB1F)
fffff880`050c6000 fffff880`050d1000   Epfwndis Epfwndis.sys Thu Apr 09 08:43:20 2009 (49DDED68)
fffff880`055d0000 fffff880`055e0000   epfwwfp  epfwwfp.sys  Fri Sep 11 01:07:43 2009 (4AA9DB1F)
fffff880`00e58000 fffff880`00e6c000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`00c00000 fffff880`00c4c000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`015b4000 fffff880`015be000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`015be000 fffff880`015f8000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`0168b000 fffff880`016d5000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`02800000 fffff800`02849000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`043a3000 fffff880`043c7000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`058e2000 fffff880`0593e000   HdAudio  HdAudio.sys  Mon Jul 13 20:06:59 2009 (4A5BCC23)
fffff880`0598e000 fffff880`059a7000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`059a7000 fffff880`059af080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`05980000 fffff880`0598e000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`05434000 fffff880`054fc000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`017e3000 fffff880`017ec000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`0416b000 fffff880`04181000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`0519c000 fffff880`051ab000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05800000 fffff880`0580e000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00b9a000 fffff800`00ba4000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`051bc000 fffff880`051ff000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`01516000 fffff880`01530000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01660000 fffff880`0168b000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`058dc000 fffff880`058e1200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`02a00000 fffff880`02a15000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`0581c000 fffff880`0583f000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00c72000 fffff880`00cb6000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`0580e000 fffff880`0581c000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`051ab000 fffff880`051ba000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`059b2000 fffff880`059bf000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00e00000 fffff880`00e1a000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`0551a000 fffff880`05532000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`05532000 fffff880`0555f000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`0555f000 fffff880`055ad000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`055ad000 fffff880`055d0000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`02c76000 fffff880`02c81000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01057000 fffff880`01061000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`014b8000 fffff880`01516000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`040fc000 fffff880`04107000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`017d1000 fffff880`017e3000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`016d7000 fffff880`017c9000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`0510b000 fffff880`05117000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`05117000 fffff880`05146000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`043c7000 fffff880`043dc000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`02dbb000 fffff880`02dca000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02d47000 fffff880`02d8c000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01600000 fffff880`01660000   NETIO    NETIO.SYS    Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`02c81000 fffff880`02c92000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`040f0000 fffff880`040fc000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02849000 fffff800`02e25000   nt       ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9)
fffff880`0123c000 fffff880`013df000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`013f2000 fffff880`013fb000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`02d95000 fffff880`02dbb000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`00f50000 fffff880`00f65000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`0106e000 fffff880`010a1000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00fd6000 fffff880`00fdd000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00fdd000 fffff880`00fed000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`015a3000 fffff880`015b4000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`02a2d000 fffff880`02ad3000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`0587d000 fffff880`058ba000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00cb6000 fffff880`00cca000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`050e7000 fffff880`0510b000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`05146000 fffff880`05161000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`05161000 fffff880`05182000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`05182000 fffff880`0519c000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`0409f000 fffff880`040f0000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`02c5b000 fffff880`02c64000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`02c64000 fffff880`02c6d000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`02c6d000 fffff880`02c76000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`0144c000 fffff880`01486000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`02a15000 fffff880`02a2d000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`011d0000 fffff880`011ff000   SCSIPORT SCSIPORT.SYS Mon Jul 13 20:01:04 2009 (4A5BCAC0)
fffff880`055e0000 fffff880`055eb000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`017c9000 fffff880`017d1000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`05e31000 fffff880`05ea2000   spsys    spsys.sys    Mon May 11 13:20:58 2009 (4A085E7A)
fffff880`010a1000 fffff880`011c7000   sptd     sptd.sys     Sun Oct 11 16:55:14 2009 (4AD24632)
fffff880`05f42000 fffff880`05fd8000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`05edb000 fffff880`05f42000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`05400000 fffff880`0542d000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`051ba000 fffff880`051bb480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01802000 fffff880`019ff000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`055eb000 fffff880`055fd000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`02cb0000 fffff880`02cbd000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`02c92000 fffff880`02cb0000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`02de5000 fffff880`02df9000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`004a0000 fffff960`004aa000   TSDDD    TSDDD.dll    unavailable (00000000)
fffff880`04145000 fffff880`0416b000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`05000000 fffff880`05012000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`059da000 fffff880`059f7000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`059b0000 fffff880`059b1f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`0424c000 fffff880`0425d000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05012000 fffff880`0506c000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`04000000 fffff880`04056000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`059bf000 fffff880`059da000   USBSTOR  USBSTOR.SYS  Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`01061000 fffff880`0106e000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`00fed000 fffff880`00ffb000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`02c26000 fffff880`02c4b000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00f65000 fffff880`00f7a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00f7a000 fffff880`00fd6000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01400000 fffff880`0144c000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02dca000 fffff880`02de5000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`02c4b000 fffff880`02c5b000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00e9d000 fffff880`00f41000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f41000 fffff880`00f50000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`02d8c000 fffff880`02d95000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`000c0000 fffff960`003cf000   win32k   win32k.sys   Tue Aug 31 22:58:04 2010 (4C7DC13C)
fffff880`011c7000 fffff880`011d0000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`02bac000 fffff880`02bcd000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`05e00000 fffff880`05e31000   WUDFRd   WUDFRd.sys   Mon Jul 13 20:06:06 2009 (4A5BCBEE)

Unloaded modules:
fffff880`017ec000 fffff880`017fa000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`0149c000 fffff880`014a8000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`014a8000 fffff880`014b1000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`013df000 fffff880`013f2000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
The dump blames memory corruption. Your version of Eset has an outdated driver. As I stated previously, Eset is known to cause BSOD's on some Win 7 sytems. Add an outdated driver to the mix and it makes Eset a suspect for the crash.
Quote:
Epfwndis.sys Thu Apr 09 08:43:20 2009
Uninstall ESet and install Microsoft Security Essentials. Make sure Windows firewall is turned on. Run your system and let's see how it does. If you get another BSOD, upload it and we will go from there.
My System SpecsSystem Spec
12 Feb 2011   #7
Kvakva

Win 7 home premium x64
 
 

Hello again.
All was ok mostly apart from random display driver freezes (usually while browsing in ie8). And started to get BSODs again (latest BSOD was while verifying integrity of l4d2 in steam):

- Windows 7 home premium x64
- installed from cd
- retail version

- Intel i7 860 2.80GHz, ATI hd5850 (catalyst 10.11), Esset smart security 4, monitor SyncMaster P2350.
My System SpecsSystem Spec
12 Feb 2011   #8
Kvakva

Win 7 home premium x64
 
 

And anotehr one :
My System SpecsSystem Spec
15 Feb 2011   #9
CarlTR6

Windows 7 Ultimate 32 bit
 
 

I looked at your four latest dumps and each has a different bugcheck code. This usually means a hard or hardware related problem. Three of the four directly blame memory corruption. Your latest dumps blames win32k.sys, a Windows system driver and very unlikely to be the real cause.

Now is the time to uninstall Eset. Your version is a know cause of BSOD's on some Win 7 systems and add to that that the Eset firewall filter driver is outdated. Uninstall Eset using this removal tool: Tool. Download and install Microsoft Security Essentials and Make sure Windows Firewall is turned on. Once you get your system stable, you can try the latest version of Eset if you choose. Do not reinstall your current version. The dumps indicate a conflict and Eset can certainly be causing that conflict.
Quote:
Epfwndis.sys Thu Apr 09 08:43:20 2009 - ESET Firewall Filter
Let's see if removing Eset improves your system's stability. Please post back and let us know.

Code:
Windows 7 Kernel Version 7600 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02c5b000 PsLoadedModuleList = 0xfffff800`02e98e50
Debug session time: Sat Feb 12 13:17:44.004 2011 (GMT-5)
System Uptime: 0 days 1:52:49.019
Loading Kernel Symbols
...............................................................
................................................................
...............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 34, {50830, fffff8800333f658, fffff8800333eec0, fffff80002d8c24b}

Probably caused by : memory_corruption ( nt!MiRemoveLowestPriorityStandbyPage+24b )

Followup: MachineOwner
---------

4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

CACHE_MANAGER (34)
    See the comment for FAT_FILE_SYSTEM (0x23)
Arguments:
Arg1: 0000000000050830
Arg2: fffff8800333f658
Arg3: fffff8800333eec0
Arg4: fffff80002d8c24b

Debugging Details:
------------------


EXCEPTION_RECORD:  fffff8800333f658 -- (.exr 0xfffff8800333f658)
ExceptionAddress: fffff80002d8c24b (nt!MiRemoveLowestPriorityStandbyPage+0x000000000000024b)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 0000000000000000
   Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff

CONTEXT:  fffff8800333eec0 -- (.cxr 0xfffff8800333eec0)
rax=380000000018f0f0 rbx=fffffa80026f7750 rcx=fffffa8000000008
rdx=0000000000000000 rsi=fffff80002e57d68 rdi=fffff80002e57d48
rip=fffff80002d8c24b rsp=fffff8800333f890 rbp=fffff8800333f980
 r8=fffff8800333f8c0  r9=fffff80002e57dc0 r10=fffffa800366dc98
r11=fffff8800333f8e0 r12=00000000000cfd27 r13=0000000000000002
r14=ffffffffffffffff r15=0000000000000001
iopl=0         nv up ei pl nz ac po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010216
nt!MiRemoveLowestPriorityStandbyPage+0x24b:
fffff800`02d8c24b 4c8934c1        mov     qword ptr [rcx+rax*8],r14 ds:002b:bffffa80`00c78788=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  System

CURRENT_IRQL:  2

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_PARAMETER1:  0000000000000000

EXCEPTION_PARAMETER2:  ffffffffffffffff

READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002f030e0
 ffffffffffffffff 

FOLLOWUP_IP: 
nt!MiRemoveLowestPriorityStandbyPage+24b
fffff800`02d8c24b 4c8934c1        mov     qword ptr [rcx+rax*8],r14

FAULTING_IP: 
nt!MiRemoveLowestPriorityStandbyPage+24b
fffff800`02d8c24b 4c8934c1        mov     qword ptr [rcx+rax*8],r14

BUGCHECK_STR:  0x34

LAST_CONTROL_TRANSFER:  from fffff80002c709f5 to fffff80002d8c24b

STACK_TEXT:  
fffff880`0333f890 fffff800`02c709f5 : fa800732`684004c0 fffff880`0333f980 00000000`000004b0 00000000`00000000 : nt!MiRemoveLowestPriorityStandbyPage+0x24b
fffff880`0333f910 fffff800`02f6afd2 : fffffa80`03b778f0 fffffa80`00000001 fffffa80`03b778f0 00000000`00000005 : nt! ?? ::FNODOBFM::`string'+0x2d8e8
fffff880`0333fa80 fffff800`02c7da77 : fffffa80`03b778f0 00000000`0b978000 00000000`0b978000 fffff800`02e705a0 : nt!MmPrefetchForCacheManager+0x96
fffff880`0333fad0 fffff800`02cbf576 : fffffa80`03b4ca40 00000000`00000000 00000000`00000005 fffff880`041662dd : nt!CcPerformReadAhead+0x2f3
fffff880`0333fc00 fffff800`02cd8961 : fffffa80`0371f190 fffff800`02cbf358 fffff800`02ed2150 00000000`00000002 : nt!CcWorkerThread+0x21e
fffff880`0333fcb0 fffff800`02f6e7c6 : 00000000`00000000 fffffa80`0371db60 00000000`00000080 fffffa80`0366d890 : nt!ExpWorkerThread+0x111
fffff880`0333fd40 fffff800`02ca9c26 : fffff880`03167180 fffffa80`0371db60 fffff880`031720c0 00000000`00000000 : nt!PspSystemThreadStartup+0x5a
fffff880`0333fd80 00000000`00000000 : fffff880`03340000 fffff880`0333a000 fffff880`0333f6e0 00000000`00000000 : nt!KxStartSystemThread+0x16


SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!MiRemoveLowestPriorityStandbyPage+24b

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

DEBUG_FLR_IMAGE_TIMESTAMP:  4cc791bd

STACK_COMMAND:  .cxr 0xfffff8800333eec0 ; kb

IMAGE_NAME:  memory_corruption

FAILURE_BUCKET_ID:  X64_0x34_nt!MiRemoveLowestPriorityStandbyPage+24b

BUCKET_ID:  X64_0x34_nt!MiRemoveLowestPriorityStandbyPage+24b

Followup: MachineOwner
---------

Debug session time: Sat Feb 12 11:01:53.357 2011 (GMT-5)
System Uptime: 0 days 1:03:24.372
Loading Kernel Symbols
...............................................................
................................................................
...............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c000001d, fffff80002fc2b0e, fffff8800a0260c0, 0}

Probably caused by : memory_corruption

Followup: memory_corruption
---------

2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c000001d, Exception code that caused the bugcheck
Arg2: fffff80002fc2b0e, Address of the exception record for the exception that caused the bugcheck
Arg3: fffff8800a0260c0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc000001d - {EXCEPTION}  Illegal Instruction  An attempt was made to execute an illegal instruction.

FAULTING_IP: 
nt!IoRemoveIoCompletion+5e
fffff800`02fc2b0e 0f              ???

CONTEXT:  fffff8800a0260c0 -- (.cxr 0xfffff8800a0260c0)
rax=0000000000000000 rbx=fffff8800a026bc8 rcx=0000000000000000
rdx=0000000000000002 rsi=0000000000000001 rdi=0000000000000000
rip=fffff80002fc2b0e rsp=fffff8800a026a90 rbp=fffff8800a026ca0
 r8=fffff80002c59000  r9=0000000000000000 r10=fffffffffffffffb
r11=fffffa800380a160 r12=fffffa800380b060 r13=fffff8800a026ba8
r14=000000000a026ca0 r15=0000000000000001
iopl=0         nv up ei ng nz ac po cy
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010297
nt!IoRemoveIoCompletion+0x5e:
fffff800`02fc2b0e 0f              ???
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  CODE_CORRUPTION

BUGCHECK_STR:  0x3B

PROCESS_NAME:  Skype.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from fffff80002cd9aa6 to fffff80002fc2b0e

STACK_TEXT:  
fffff880`0a026a90 fffff800`02cd9aa6 : 00000000`00000000 fffff880`0a026ba8 fffff880`0a026bc8 00000000`00000001 : nt!IoRemoveIoCompletion+0x5e
fffff880`0a026b20 fffff800`02cc8993 : fffffa80`06081660 00000000`7efa4000 fffff880`0a026ca0 00000000`7efa4000 : nt!NtWaitForWorkViaWorkerFactory+0x285
fffff880`0a026c20 00000000`76d00fba : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`04cde7e8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76d00fba


CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
    fffff80002fc2b0f - nt!IoRemoveIoCompletion+5f
    [ 83:c3 ]
1 error : !nt (fffff80002fc2b0f)

MODULE_NAME: memory_corruption

IMAGE_NAME:  memory_corruption

FOLLOWUP_NAME:  memory_corruption

DEBUG_FLR_IMAGE_TIMESTAMP:  0

MEMORY_CORRUPTOR:  ONE_BIT

STACK_COMMAND:  .cxr 0xfffff8800a0260c0 ; kb

FAILURE_BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT

BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT

Followup: memory_corruption
---------

Debug session time: Sat Feb 12 09:57:37.896 2011 (GMT-5)
System Uptime: 0 days 4:41:03.927
Loading Kernel Symbols
...............................................................
................................................................
...............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 50, {fffffa804b54329d, 1, fffff80002cd2777, 5}


Could not read faulting driver name
Probably caused by : memory_corruption

Followup: memory_corruption
---------

2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced.  This cannot be protected by try-except,
it must be protected by a Probe.  Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffffa804b54329d, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffff80002cd2777, If non-zero, the instruction address which referenced the bad memory
    address.
Arg4: 0000000000000005, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ef40e0
 fffffa804b54329d 

FAULTING_IP: 
nt!MmCreateKernelStack+57
fffff800`02cd2777 108b3cc76644    adc     byte ptr [rbx+4466C73Ch],cl

MM_INTERNAL_CODE:  5

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  CODE_CORRUPTION

BUGCHECK_STR:  0x50

PROCESS_NAME:  svchost.exe

CURRENT_IRQL:  0

TRAP_FRAME:  fffff88009e91c40 -- (.trap 0xfffff88009e91c40)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000002
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002cd2777 rsp=fffff88009e91dd0 rbp=0000000000000002
 r8=fffffa8006ed6b60  r9=0000000000000000 r10=0000000000000000
r11=fffff8800124f4f4 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl zr na po nc
nt!MmCreateKernelStack+0x57:
fffff800`02cd2777 108b3cc76644    adc     byte ptr [rbx+4466C73Ch],cl ds:00000000`4466c73c=??
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff80002d3b8c1 to fffff80002cbc740

STACK_TEXT:  
fffff880`09e91ad8 fffff800`02d3b8c1 : 00000000`00000050 fffffa80`4b54329d 00000000`00000001 fffff880`09e91c40 : nt!KeBugCheckEx
fffff880`09e91ae0 fffff800`02cba82e : 00000000`00000001 fffffa80`06ed6b61 fffffa80`043c3f00 fffffa80`046bd8e0 : nt! ?? ::FNODOBFM::`string'+0x40e8b
fffff880`09e91c40 fffff800`02cd2777 : fffffa80`046bd8e0 00000000`00000000 fffff880`09e91e80 fffffa80`0479e180 : nt!KiPageFault+0x16e
fffff880`09e91dd0 fffff800`02ccbfc4 : fffffa80`06cbc6e0 fffff880`0124de26 fffffa80`04395e40 fffff8a0`03986140 : nt!MmCreateKernelStack+0x57
fffff880`09e91eb0 fffff880`0124db69 : fffff880`0124f534 fffff880`09e91fc8 fffff6fc`00004000 fffffa80`00000000 : nt!KeExpandKernelStackAndCalloutEx+0x244
fffff880`09e91f90 fffff880`0124d036 : fffffa80`06636290 00000000`00000000 fffff8a0`03986140 00001f80`00000000 : Ntfs!NtfsMultipleAsync+0xa9
fffff880`09e92000 fffffa80`06ed6c68 : 00004792`03010000 fffffa80`0730c1f8 fffffa80`0730c1f8 fffffa80`06ed6b60 : Ntfs!NtfsNonCachedIo+0x216
fffffa80`06ed6c90 00004792`03010000 : fffffa80`0730c1f8 fffffa80`0730c1f8 fffffa80`06ed6b60 fffffa80`0730c1f0 : 0xfffffa80`06ed6c68
fffffa80`06ed6c98 fffffa80`0730c1f8 : fffffa80`0730c1f8 fffffa80`06ed6b60 fffffa80`0730c1f0 fffffa80`06ed6cc8 : 0x4792`03010000
fffffa80`06ed6ca0 fffffa80`0730c1f8 : fffffa80`06ed6b60 fffffa80`0730c1f0 fffffa80`06ed6cc8 00000302`02010001 : 0xfffffa80`0730c1f8
fffffa80`06ed6ca8 fffffa80`06ed6b60 : fffffa80`0730c1f0 fffffa80`06ed6cc8 00000302`02010001 fffffa80`03b95f58 : 0xfffffa80`0730c1f8
fffffa80`06ed6cb0 fffffa80`0730c1f0 : fffffa80`06ed6cc8 00000302`02010001 fffffa80`03b95f58 fffffa80`03b95f58 : 0xfffffa80`06ed6b60
fffffa80`06ed6cb8 fffffa80`06ed6cc8 : 00000302`02010001 fffffa80`03b95f58 fffffa80`03b95f58 fffffa80`06ed6b60 : 0xfffffa80`0730c1f0
fffffa80`06ed6cc0 00000302`02010001 : fffffa80`03b95f58 fffffa80`03b95f58 fffffa80`06ed6b60 fffffa80`03b95f50 : 0xfffffa80`06ed6cc8
fffffa80`06ed6cc8 fffffa80`03b95f58 : fffffa80`03b95f58 fffffa80`06ed6b60 fffffa80`03b95f50 fffffa80`06ed6c68 : 0x302`02010001
fffffa80`06ed6cd0 fffffa80`03b95f58 : fffffa80`06ed6b60 fffffa80`03b95f50 fffffa80`06ed6c68 00107eb6`02010002 : 0xfffffa80`03b95f58
fffffa80`06ed6cd8 fffffa80`06ed6b60 : fffffa80`03b95f50 fffffa80`06ed6c68 00107eb6`02010002 fffffa80`06ed6c28 : 0xfffffa80`03b95f58
fffffa80`06ed6ce0 fffffa80`03b95f50 : fffffa80`06ed6c68 00107eb6`02010002 fffffa80`06ed6c28 fffffa80`06ed6c28 : 0xfffffa80`06ed6b60
fffffa80`06ed6ce8 fffffa80`06ed6c68 : 00107eb6`02010002 fffffa80`06ed6c28 fffffa80`06ed6c28 fffffa80`06ed6b60 : 0xfffffa80`03b95f50
fffffa80`06ed6cf0 00107eb6`02010002 : fffffa80`06ed6c28 fffffa80`06ed6c28 fffffa80`06ed6b60 00000000`00000000 : 0xfffffa80`06ed6c68
fffffa80`06ed6cf8 fffffa80`06ed6c28 : fffffa80`06ed6c28 fffffa80`06ed6b60 00000000`00000000 00000000`00000000 : 0x107eb6`02010002
fffffa80`06ed6d00 fffffa80`06ed6c28 : fffffa80`06ed6b60 00000000`00000000 00000000`00000000 fffffffe`02010102 : 0xfffffa80`06ed6c28
fffffa80`06ed6d08 fffffa80`06ed6b60 : 00000000`00000000 00000000`00000000 fffffffe`02010102 fffffa80`06e1f8e8 : 0xfffffa80`06ed6c28
fffffa80`06ed6d10 00000000`00000000 : 00000000`00000000 fffffffe`02010102 fffffa80`06e1f8e8 fffffa80`07336ca0 : 0xfffffa80`06ed6b60


STACK_COMMAND:  kb

CHKIMG_EXTENSION: !chkimg -lo 50 -db !nt
2 errors : !nt (fffff80002cd274f-fffff80002cd2777)
fffff80002cd2740  44  05  00  00  49  8b  d8  48  83  cb  01  48  89  bc  24 *c8 D...I..H...H..$.
...
fffff80002cd2770  22  17  00  41  0f  b7  c4 *10  8b  3c  c7  66  44  39  bf  80 "..A.....<.fD9..

MODULE_NAME: memory_corruption

IMAGE_NAME:  memory_corruption

FOLLOWUP_NAME:  memory_corruption

DEBUG_FLR_IMAGE_TIMESTAMP:  0

MEMORY_CORRUPTOR:  STRIDE

FAILURE_BUCKET_ID:  X64_MEMORY_CORRUPTION_STRIDE

BUCKET_ID:  X64_MEMORY_CORRUPTION_STRIDE

Followup: memory_corruption
---------

Debug session time: Sat Feb 12 05:15:45.002 2011 (GMT-5)
System Uptime: 0 days 0:20:02.017
Loading Kernel Symbols
...............................................................
................................................................
...............
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 4A, {754c1f0a, 2, 0, fffff880041bf520}

Probably caused by : win32k.sys ( win32k!HmgLockEx+122 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_GT_ZERO_AT_SYSTEM_SERVICE (4a)
Returning to usermode from a system call at an IRQL > PASSIVE_LEVEL.
Arguments:
Arg1: 00000000754c1f0a, Address of system function (system call routine)
Arg2: 0000000000000002, Current IRQL
Arg3: 0000000000000000, 0
Arg4: fffff880041bf520, 0

Debugging Details:
------------------


PROCESS_NAME:  Steam.exe

BUGCHECK_STR:  RAISED_IRQL_FAULT

FAULTING_IP: 
+5252952f00c2dd90
00000000`754c1f0a ??              ???

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

CURRENT_IRQL:  2

LAST_CONTROL_TRANSFER:  from fffff80002c74ca9 to fffff80002c75740

STACK_TEXT:  
fffff880`041bf2e8 fffff800`02c74ca9 : 00000000`0000004a 00000000`754c1f0a 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`041bf2f0 fffff800`02c74be0 : 00000000`06011496 00000000`0018d3b8 fffff900`00000002 00000000`0018d3d8 : nt!KiBugCheckDispatch+0x69
fffff880`041bf430 00000000`754c1f0a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit+0x245
00000000`0008caa8 fffff800`02c6d080 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x754c1f0a
fffff880`041bf880 fffff900`c08af450 : fffff960`00124692 00000000`ffff5001 00000000`00000000 00000000`00463f5f : nt!KiCallUserMode
fffff880`041bf888 fffff960`00124692 : 00000000`ffff5001 00000000`00000000 00000000`00463f5f fffff880`041bfdb0 : 0xfffff900`c08af450
fffff880`041bf890 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!HmgLockEx+0x122


STACK_COMMAND:  kb

FOLLOWUP_IP: 
win32k!HmgLockEx+122
fffff960`00124692 4c8d5c2450      lea     r11,[rsp+50h]

SYMBOL_STACK_INDEX:  6

SYMBOL_NAME:  win32k!HmgLockEx+122

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: win32k

IMAGE_NAME:  win32k.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4d23ecb0

FAILURE_BUCKET_ID:  X64_RAISED_IRQL_FAULT_Steam.exe_win32k!HmgLockEx+122

BUCKET_ID:  X64_RAISED_IRQL_FAULT_Steam.exe_win32k!HmgLockEx+122

Followup: MachineOwner
---------

0: kd> lmtsmn
start             end                 module name
fffff880`03d9e000 fffff880`03ddc000   1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f7a000 fffff880`00fd1000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`02c7b000 fffff880`02d05000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`051e6000 fffff880`051fc000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`00df1000 fffff880`00dfc000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`06b91000 fffff880`06b9c000   asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00dbe000 fffff880`00dc7000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00dc7000 fffff880`00df1000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`048cf000 fffff880`051cb000   atikmdag atikmdag.sys Wed Jan 19 13:08:16 2011 (4D372890)
fffff880`03cfa000 fffff880`03d48000   atikmpag atikmpag.sys Wed Jan 19 12:35:23 2011 (4D3720DB)
fffff880`019af000 fffff880`019b6000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`02dd5000 fffff880`02de6000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`0393f000 fffff880`0395d000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`00680000 fffff960`006a7000   cdd      cdd.dll      Wed Jan 26 01:31:34 2011 (4D3FBFC6)
fffff880`0197c000 fffff880`019a6000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00ce4000 fffff880`00da4000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01916000 fffff880`01946000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00c86000 fffff880`00ce4000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`010d9000 fffff880`0114c000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`051cb000 fffff880`051db000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`05b2d000 fffff880`05b3b000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`02db7000 fffff880`02dd5000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`02c68000 fffff880`02c77000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01900000 fffff880`01916000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`056e6000 fffff880`05708000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`05b47000 fffff880`05b50000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`05b3b000 fffff880`05b47000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`05b50000 fffff880`05b63000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`05b21000 fffff880`05b2d000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`03c00000 fffff880`03cf4000   dxgkrnl  dxgkrnl.sys  Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`04800000 fffff880`04846000   dxgmms1  dxgmms1.sys  Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`0486a000 fffff880`048b6000   e1k62x64 e1k62x64.sys Tue Apr 06 03:37:39 2010 (4BBAE4C3)
fffff880`0570e000 fffff880`057e0000   eamon    eamon.sys    Fri Sep 11 01:12:19 2009 (4AA9DC33)
fffff880`019b6000 fffff880`019d9000   ehdrv    ehdrv.sys    Fri Sep 11 01:12:55 2009 (4AA9DC57)
fffff880`05844000 fffff880`05870000   epfw     epfw.sys     Fri Sep 11 01:07:43 2009 (4AA9DB1F)
fffff880`051db000 fffff880`051e6000   Epfwndis Epfwndis.sys Thu Apr 09 08:43:20 2009 (49DDED68)
fffff880`03823000 fffff880`03833000   epfwwfp  epfwwfp.sys  Fri Sep 11 01:07:43 2009 (4AA9DB1F)
fffff880`01067000 fffff880`0107b000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`0101b000 fffff880`01067000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`0122b000 fffff880`01235000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`018c6000 fffff880`01900000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`0157e000 fffff880`015c8000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`031e2000 fffff800`0322b000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`04846000 fffff880`0486a000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`0564d000 fffff880`056a9000   HdAudio  HdAudio.sys  Mon Jul 13 20:06:59 2009 (4A5BCC23)
fffff880`05b71000 fffff880`05b8a000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`05b8a000 fffff880`05b92080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`05b63000 fffff880`05b71000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`03877000 fffff880`0393f000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`015e2000 fffff880`015eb000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`02de6000 fffff880`02dfc000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`04534000 fffff880`04543000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05bda000 fffff880`05be8000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00b9a000 fffff800`00ba4000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`04400000 fffff880`04443000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`01200000 fffff880`0121a000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01553000 fffff880`0157e000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`05708000 fffff880`0570d200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`05870000 fffff880`05885000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`05800000 fffff880`05823000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`04552000 fffff880`0458e880   mcdbus   mcdbus.sys   Tue Feb 24 05:34:07 2009 (49A3CD1F)
fffff880`00c2e000 fffff880`00c72000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`05be8000 fffff880`05bf6000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`04543000 fffff880`04552000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05b95000 fffff880`05ba2000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00da4000 fffff880`00dbe000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`0395d000 fffff880`03975000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`03975000 fffff880`039a2000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`039a2000 fffff880`039f0000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`03800000 fffff880`03823000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`01850000 fffff880`0185b000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fda000 fffff880`00fe4000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`0107b000 fffff880`010d9000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`02c5d000 fffff880`02c68000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`015d0000 fffff880`015e2000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`01401000 fffff880`014f3000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`019e7000 fffff880`019f3000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`044af000 fffff880`044de000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`045c0000 fffff880`045d5000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`02d79000 fffff880`02d88000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02d05000 fffff880`02d4a000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`014f3000 fffff880`01553000   NETIO    NETIO.SYS    Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`0185b000 fffff880`0186c000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`02c51000 fffff880`02c5d000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c05000 fffff800`031e2000   nt       ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`01258000 fffff880`013fb000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`019a6000 fffff880`019af000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`02d53000 fffff880`02d79000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00fe4000 fffff880`00feb000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00feb000 fffff880`00ffb000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`0121a000 fffff880`0122b000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`06646000 fffff880`066ec000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`056a9000 fffff880`056e6000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c72000 fffff880`00c86000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`03ddc000 fffff880`03e00000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`044de000 fffff880`044f9000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`044f9000 fffff880`0451a000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`0451a000 fffff880`04534000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`02c00000 fffff880`02c51000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`01835000 fffff880`0183e000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0183e000 fffff880`01847000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01847000 fffff880`01850000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`01198000 fffff880`011d2000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`05885000 fffff880`0589d000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`058e0000 fffff880`05b20200   RTKVHD64 RTKVHD64.sys Fri May 07 06:56:11 2010 (4BE3F1CB)
fffff880`0458f000 fffff880`045be000   SCSIPORT SCSIPORT.SYS Mon Jul 13 20:01:04 2009 (4A5BCAC0)
fffff880`066ec000 fffff880`066f7000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`015c8000 fffff880`015d0000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`06a59000 fffff880`06aef000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`06736000 fffff880`0679d000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`066f7000 fffff880`06724000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`045be000 fffff880`045bf480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01601000 fffff880`017fe000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`06724000 fffff880`06736000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`0188a000 fffff880`01897000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`0186c000 fffff880`0188a000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`02da3000 fffff880`02db7000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`00480000 fffff960`0048a000   TSDDD    TSDDD.dll    unavailable (00000000)
fffff880`01897000 fffff880`018bd000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`04443000 fffff880`04455000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`05bbd000 fffff880`05bda000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`05b93000 fffff880`05b94f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`048b6000 fffff880`048c7000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04455000 fffff880`044af000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`03d48000 fffff880`03d9e000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`05ba2000 fffff880`05bbd000   USBSTOR  USBSTOR.SYS  Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`019d9000 fffff880`019e7000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`01800000 fffff880`01825000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00e6a000 fffff880`00ec6000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`0114c000 fffff880`01198000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02d88000 fffff880`02da3000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`01825000 fffff880`01835000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00ec7000 fffff880`00f6b000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f6b000 fffff880`00f7a000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`02d4a000 fffff880`02d53000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`00060000 fffff960`00370000   win32k   win32k.sys   Tue Jan 04 22:59:44 2011 (4D23ECB0)
fffff880`00fd1000 fffff880`00fda000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`05823000 fffff880`05844000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`06aef000 fffff880`06b20000   WUDFRd   WUDFRd.sys   Mon Jul 13 20:06:06 2009 (4A5BCBEE)

Unloaded modules:
fffff880`06b20000 fffff880`06b91000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`01946000 fffff880`01954000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`01954000 fffff880`01960000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`01960000 fffff880`01969000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
fffff880`01969000 fffff880`0197c000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
My System SpecsSystem Spec
15 Feb 2011   #10
badkarma11

Windows 7 Ultimate x64 Full Retail SP1
 
 

Do what Carl said, in the order that he said to do it. The guy knows his stuff (and apparently has much free time to help people like us). He had gotten me from wanting to use my 'puter for target practice to a useable system.
My System SpecsSystem Spec
Reply

 BSODs




Thread Tools




Similar help and support threads
Thread Forum
Please help me with my BSODs
I experience BSODs every time my laptop is plugged in. But no BSODs happen when I'm not plugged in. Please help me on what I need to do. Here are my laptop's specs: Asus K42jC-vx169 Core i5 M460 2.53GHz 2Gb Ram 320Gb HDD 1gb VRAM (Nvidia GeForce CUDA 310M) Windows 7 ultimate 64-bit
BSOD Help and Support
And Still More BSODs
Sorry in my last post I said I changed CPU when I actually meant Motherboard. After changing my motherboard and running memtest ver. 4.0 I would usually end up with 1 mil errors for every ram in every slot. Same problem happened to my last motherboard which was the same model. Whenever I run...
BSOD Help and Support
BSODs, lots of BSODS
Hi, The blue screen of death are coming with win32k.sys, at first then irql_not_less_or_equal. I have win7 64 bit, clean installed like 1 year or so back. The dell hardware I bought was almost 2 years back but was fully replaced, motherboard, cpu except hardrive 6 months back. It is...
BSOD Help and Support
BSODs every day... need help
Hi guys, i have a serious problem with my new config... i built it 2 weeks ago, and since then i get the BSODs almost every day. i run memtest on both RAMs, individually both were OK, but when tried to run the test on dual, the system crashed after few seconds. checkdisk showed no problems on...
BSOD Help and Support
BSODs in Win 7 pro
Hello, I'm running W7 Pro, and have been having problems with BSODs. I recently purchased a powered usb hub, and on three separate occasions, I received a BSOD error related to the USB. I can't remember exactly what the error was, as the computer's activity log notes the crash, but not the...
BSOD Help and Support
BSODs on win 7 x64
I recently upgraded to win 7 and iv been getting random BSODs. the reason I decided to upgrade was because I started to get some BSODs on vista x64. I have a feeling it could be related to my wireless adapter (ZYXEL G202) drivers. I have attached the latest BSOD minidump files. Could somebody...
BSOD Help and Support


Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 19:21.
Twitter Facebook Google+ Seven Forums iOS App Seven Forums Android App