Remove AhnLab Antivirus and replace it with MSE:
Mkd2kfNt.sys Fri Oct 17 04:50:22 2008
EagleNT.sys Thu Mar 25 07:46:03 2010
Mkd2Nadr.sys Fri Oct 17 04:50:33 2008
http://www.microsoft.com/security_essentials/
Update drivers:
bcmwl6.sys Thu Mar 26 20:58:48 2009
Broadcom 802.11 Network Adapter wireless
igdkmd32.sys Wed May 06 14:13:40 2009
Intel GMA
Rt86win7.sys Thu Feb 26 04:04:22 2009
Realtek 8101E/8168/8169 PCI/PCIe Adapters
Enjoy. : )
Crash Dumps:
Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\121510-22120-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16385.x86fre.win7_rtm.090713-1255
Machine Name:
Kernel base = 0x82846000 PsLoadedModuleList = 0x8298e810
Debug session time: Wed Dec 15 03:28:20.734 2010 (UTC - 5:00)
System Uptime: 0 days 1:08:59.435
Loading Kernel Symbols
...............................................................
................................................................
......................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1000008E, {c000001d, 8288b327, 8a638cc0, 0}
Probably caused by : ntkrpamp.exe ( nt!KiTrap07+cf )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KERNEL_MODE_EXCEPTION_NOT_HANDLED_M (1000008e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c000001d, The exception code that was not handled
Arg2: 8288b327, The address that the exception occurred at
Arg3: 8a638cc0, Trap Frame
Arg4: 00000000
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc000001d - {
FAULTING_IP:
nt!KiTrap07+cf
8288b327 0fae29 xrstor [ecx]
TRAP_FRAME: 8a638cc0 -- (.trap 0xffffffff8a638cc0)
ErrCode = 00000000
eax=00000007 ebx=80010031 ecx=8a638dc0 edx=00000000 esi=613a3838 edi=86761440
eip=8288b327 esp=8a638d34 ebp=8a638d34 iopl=0 nv up di pl nz na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010006
nt!KiTrap07+0xcf:
8288b327 0fae29 xrstor [ecx]
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x8E
PROCESS_NAME: MapleStory.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 6e579ac8 to 8288b327
FAILED_INSTRUCTION_ADDRESS:
nt!KiTrap07+cf
8288b327 0fae29 xrstor [ecx]
STACK_TEXT:
8a638d34 6e579ac8 badb0d00 800005cc 00000000 nt!KiTrap07+0xcf
WARNING: Frame IP not in any known module. Following frames may be wrong.
4fdefdf4 00000000 00000000 00000000 00000000 0x6e579ac8
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiTrap07+cf
8288b327 0fae29 xrstor [ecx]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!KiTrap07+cf
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrpamp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc007
FAILURE_BUCKET_ID: 0x8E_BAD_IP_nt!KiTrap07+cf
BUCKET_ID: 0x8E_BAD_IP_nt!KiTrap07+cf
Followup: MachineOwner
---------
Drivers:
Code:
start end module name
8e337000 8e363000 1394ohci 1394ohci.sys Mon Jul 13 19:51:59 2009 (4A5BC89F)
88485000 884cd000 ACPI ACPI.sys Mon Jul 13 19:11:11 2009 (4A5BBF0F)
8d822000 8d87c000 afd afd.sys Mon Jul 13 19:12:34 2009 (4A5BBF62)
8e3da000 8e3ec000 AgileVpn AgileVpn.sys Mon Jul 13 19:55:00 2009 (4A5BC954)
885ec000 885f5000 amdxata amdxata.sys Tue May 19 13:57:35 2009 (4A12F30F)
885a8000 885b1000 atapi atapi.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
885b1000 885d4000 ataport ataport.SYS Mon Jul 13 19:11:18 2009 (4A5BBF16)
8852c000 88537000 BATTC BATTC.SYS Mon Jul 13 19:19:15 2009 (4A5BC0F3)
8e215000 8e32d000 bcmwl6 bcmwl6.sys Thu Mar 26 20:58:48 2009 (49CC24C8)
88800000 88807000 Beep Beep.SYS Mon Jul 13 19:45:00 2009 (4A5BC6FC)
8ca18000 8ca26000 blbdrive blbdrive.sys Mon Jul 13 19:23:04 2009 (4A5BC1D8)
82ec5000 82ecd000 BOOTVID BOOTVID.dll Mon Jul 13 21:04:34 2009 (4A5BD9A2)
8daa9000 8dac2000 bowser bowser.sys Mon Jul 13 19:14:21 2009 (4A5BBFCD)
940b0000 940ce000 cdd cdd.dll Mon Jul 13 21:04:18 2009 (4A5BD992)
82f0f000 82fba000 CI CI.dll Mon Jul 13 21:09:28 2009 (4A5BDAC8)
88986000 889ab000 CLASSPNP CLASSPNP.SYS Mon Jul 13 19:11:20 2009 (4A5BBF18)
82ecd000 82f0f000 CLFS CLFS.SYS Mon Jul 13 19:11:10 2009 (4A5BBF0E)
8e37c000 8e37f700 CmBatt CmBatt.sys Mon Jul 13 19:19:18 2009 (4A5BC0F6)
8878a000 887e7000 cng cng.sys Mon Jul 13 19:32:55 2009 (4A5BC427)
88524000 8852c000 compbatt compbatt.sys Mon Jul 13 19:19:18 2009 (4A5BC0F6)
8e3cd000 8e3da000 CompositeBus CompositeBus.sys Mon Jul 13 19:45:26 2009 (4A5BC716)
906a1000 906ae000 crashdmp crashdmp.sys Mon Jul 13 19:45:50 2009 (4A5BC72E)
8d977000 8d9db000 csc csc.sys Mon Jul 13 19:15:08 2009 (4A5BBFFC)
8d9db000 8d9f3000 dfsc dfsc.sys Mon Jul 13 19:14:16 2009 (4A5BBFC8)
8d96b000 8d977000 discache discache.sys Mon Jul 13 19:24:04 2009 (4A5BC214)
88a08000 88a19000 disk disk.sys Mon Jul 13 19:11:28 2009 (4A5BBF20)
90688000 906a1000 drmk drmk.sys Mon Jul 13 20:36:05 2009 (4A5BD2F5)
906ae000 906b9000 dump_dumpata dump_dumpata.sys Mon Jul 13 19:11:16 2009 (4A5BBF14)
906c3000 906d4000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:12:47 2009 (4A5BBF6F)
906b9000 906c3000 dump_msahci dump_msahci.sys Mon Jul 13 19:45:50 2009 (4A5BC72E)
906d4000 906de000 Dxapi Dxapi.sys Mon Jul 13 19:25:25 2009 (4A5BC265)
8e115000 8e1cc000 dxgkrnl dxgkrnl.sys Mon Jul 13 19:26:15 2009 (4A5BC297)
8ca47000 8ca80000 dxgmms1 dxgmms1.sys Mon Jul 13 19:25:25 2009 (4A5BC265)
9496e000 949ddb80 EagleNT EagleNT.sys Thu Mar 25 07:46:03 2010 (4BAB4CFB)
94944000 9496e000 fastfat fastfat.SYS Mon Jul 13 19:14:01 2009 (4A5BBFB9)
82fee000 82fff000 fileinfo fileinfo.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
82fba000 82fee000 fltmgr fltmgr.sys Mon Jul 13 19:11:13 2009 (4A5BBF11)
887f5000 887fe000 Fs_Rec Fs_Rec.sys unavailable (00000000)
88954000 88986000 fvevol fvevol.sys Mon Jul 13 19:13:01 2009 (4A5BBF7D)
88b6b000 88b9c000 fwpkclnt fwpkclnt.sys Mon Jul 13 19:12:03 2009 (4A5BBF43)
8280f000 82846000 hal halmacpi.dll Mon Jul 13 19:11:03 2009 (4A5BBF07)
8cacb000 8caea000 HDAudBus HDAudBus.sys Mon Jul 13 19:50:55 2009 (4A5BC85F)
90609000 90659000 HdAudio HdAudio.sys Mon Jul 13 19:51:46 2009 (4A5BC892)
9070d000 90720000 HIDCLASS HIDCLASS.SYS Mon Jul 13 19:51:01 2009 (4A5BC865)
90720000 90726480 HIDPARSE HIDPARSE.SYS Mon Jul 13 19:50:59 2009 (4A5BC863)
90702000 9070d000 hidusb hidusb.sys Mon Jul 13 19:51:04 2009 (4A5BC868)
8da24000 8daa9000 HTTP HTTP.sys Mon Jul 13 19:12:53 2009 (4A5BBF75)
88a00000 88a08000 hwpolicy hwpolicy.sys Mon Jul 13 19:11:01 2009 (4A5BBF05)
8e380000 8e398000 i8042prt i8042prt.sys Mon Jul 13 19:11:23 2009 (4A5BBF1B)
8dc18000 8e115000 igdkmd32 igdkmd32.sys Wed May 06 14:13:40 2009 (4A01D354)
8e3bb000 8e3cd000 intelppm intelppm.sys Mon Jul 13 19:11:03 2009 (4A5BBF07)
8e398000 8e3a5000 kbdclass kbdclass.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
94814000 94820000 kbdhid kbdhid.sys Mon Jul 13 19:45:09 2009 (4A5BC705)
80bc1000 80bc9000 kdcom kdcom.dll Mon Jul 13 21:08:58 2009 (4A5BDAAA)
8cb5f000 8cb93000 ks ks.sys Mon Jul 13 19:45:13 2009 (4A5BC709)
88777000 8878a000 ksecdd ksecdd.sys Mon Jul 13 19:11:56 2009 (4A5BBF3C)
88902000 88927000 ksecpkg ksecpkg.sys Mon Jul 13 19:34:00 2009 (4A5BC468)
90797000 907a7000 lltdio lltdio.sys Mon Jul 13 19:53:18 2009 (4A5BC8EE)
90762000 9077d000 luafv luafv.sys Mon Jul 13 19:15:44 2009 (4A5BC020)
82e3c000 82eb4000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:06:41 2009 (4A5BDA21)
949de000 949fe000 Mkd2kfNt Mkd2kfNt.sys Fri Oct 17 04:50:22 2008 (48F851CE)
94800000 94813500 Mkd2Nadr Mkd2Nadr.sys Fri Oct 17 04:50:33 2008 (48F851D9)
906de000 906e9000 monitor monitor.sys Mon Jul 13 19:25:58 2009 (4A5BC286)
8e3a5000 8e3b2000 mouclass mouclass.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
9074b000 90756000 mouhid mouhid.sys Mon Jul 13 19:45:08 2009 (4A5BC704)
88592000 885a8000 mountmgr mountmgr.sys Mon Jul 13 19:11:27 2009 (4A5BBF1F)
8dac2000 8dad4000 mpsdrv mpsdrv.sys Mon Jul 13 19:52:52 2009 (4A5BC8D4)
8dad4000 8daf7000 mrxsmb mrxsmb.sys Mon Jul 13 19:14:24 2009 (4A5BBFD0)
8daf7000 8db32000 mrxsmb10 mrxsmb10.sys Mon Jul 13 19:14:34 2009 (4A5BBFDA)
8db32000 8db4d000 mrxsmb20 mrxsmb20.sys Mon Jul 13 19:14:29 2009 (4A5BBFD5)
885d4000 885de000 msahci msahci.sys Mon Jul 13 19:45:50 2009 (4A5BC72E)
88610000 8861b000 Msfs Msfs.SYS Mon Jul 13 19:11:26 2009 (4A5BBF1E)
884d6000 884de000 msisadrv msisadrv.sys Mon Jul 13 19:11:09 2009 (4A5BBF0D)
8874c000 88777000 msrpc msrpc.sys unavailable (00000000)
8d961000 8d96b000 mssmbios mssmbios.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
88bec000 88bfc000 mup mup.sys Mon Jul 13 19:14:14 2009 (4A5BBFC6)
8880d000 888c4000 ndis ndis.sys Mon Jul 13 19:12:24 2009 (4A5BBF58)
8e3ec000 8e3f7000 ndistapi ndistapi.sys Mon Jul 13 19:54:24 2009 (4A5BC930)
907ed000 907fd000 ndisuio ndisuio.sys Mon Jul 13 19:53:51 2009 (4A5BC90F)
8cb0f000 8cb31000 ndiswan ndiswan.sys Mon Jul 13 19:54:34 2009 (4A5BC93A)
8cbe5000 8cbf6000 NDProxy NDProxy.SYS Mon Jul 13 19:54:27 2009 (4A5BC933)
8d8e5000 8d8f3000 netbios netbios.sys Mon Jul 13 19:53:54 2009 (4A5BC912)
8d87c000 8d8ae000 netbt netbt.sys Mon Jul 13 19:12:18 2009 (4A5BBF52)
888c4000 88902000 NETIO NETIO.SYS Mon Jul 13 19:12:35 2009 (4A5BBF63)
82e21000 82e2f000 Npfs Npfs.SYS Mon Jul 13 19:11:31 2009 (4A5BBF23)
8d957000 8d961000 nsiproxy nsiproxy.sys Mon Jul 13 19:12:08 2009 (4A5BBF48)
82846000 82c56000 nt ntkrpamp.exe Mon Jul 13 19:15:19 2009 (4A5BC007)
8861d000 8874c000 Ntfs Ntfs.sys Mon Jul 13 19:12:05 2009 (4A5BBF45)
88a19000 88a20000 Null Null.SYS unavailable (00000000)
907a7000 907ed000 nwifi nwifi.sys Mon Jul 13 19:51:59 2009 (4A5BC89F)
8d8b5000 8d8d4000 pacer pacer.sys Mon Jul 13 19:53:58 2009 (4A5BC916)
88513000 88524000 partmgr partmgr.sys Mon Jul 13 19:11:35 2009 (4A5BBF27)
884de000 88508000 pci pci.sys Mon Jul 13 19:11:16 2009 (4A5BBF14)
885de000 885ec000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:11:15 2009 (4A5BBF13)
887e7000 887f5000 pcw pcw.sys Mon Jul 13 19:11:10 2009 (4A5BBF0E)
8db65000 8dbfc000 peauth peauth.sys Mon Jul 13 20:35:44 2009 (4A5BD2E0)
90659000 90688000 portcls portcls.sys Mon Jul 13 19:51:00 2009 (4A5BC864)
82eb4000 82ec5000 PSHED PSHED.dll Mon Jul 13 21:09:36 2009 (4A5BDAD0)
8e1e6000 8e1fe000 rasl2tp rasl2tp.sys Mon Jul 13 19:54:33 2009 (4A5BC939)
8dc00000 8dc18000 raspppoe raspppoe.sys Mon Jul 13 19:54:53 2009 (4A5BC94D)
8cb31000 8cb48000 raspptp raspptp.sys Mon Jul 13 19:54:47 2009 (4A5BC947)
8cb48000 8cb5f000 rassstp rassstp.sys Mon Jul 13 19:54:57 2009 (4A5BC951)
8d916000 8d957000 rdbss rdbss.sys Mon Jul 13 19:14:26 2009 (4A5BBFD2)
8e200000 8e20a000 rdpbus rdpbus.sys Mon Jul 13 20:02:40 2009 (4A5BCB20)
889f7000 889ff000 RDPCDD RDPCDD.sys Mon Jul 13 20:01:40 2009 (4A5BCAE4)
88600000 88608000 rdpencdd rdpencdd.sys Mon Jul 13 20:01:39 2009 (4A5BCAE3)
88608000 88610000 rdprefmp rdprefmp.sys Mon Jul 13 20:01:41 2009 (4A5BCAE5)
88927000 88954000 rdyboost rdyboost.sys Mon Jul 13 19:22:02 2009 (4A5BC19A)
8ca00000 8ca13000 rspndr rspndr.sys Mon Jul 13 19:53:20 2009 (4A5BC8F0)
8caea000 8cb0f000 Rt86win7 Rt86win7.sys Thu Feb 26 04:04:22 2009 (49A65B16)
8e363000 8e37c000 sdbus sdbus.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
8da00000 8da0a000 secdrv secdrv.SYS Wed Sep 13 09:18:32 2006 (45080528)
88be4000 88bec000 spldr spldr.sys Mon May 11 12:13:47 2009 (4A084EBB)
948f3000 94944000 srv srv.sys Mon Jul 13 19:15:10 2009 (4A5BBFFE)
948a4000 948f3000 srv2 srv2.sys Mon Jul 13 19:14:52 2009 (4A5BBFEC)
889ab000 889cc000 srvnet srvnet.sys Mon Jul 13 19:14:45 2009 (4A5BBFE5)
8e20a000 8e20b380 swenum swenum.sys Mon Jul 13 19:45:08 2009 (4A5BC704)
88a22000 88b6b000 tcpip tcpip.sys Mon Jul 13 19:13:18 2009 (4A5BBF8E)
94897000 948a4000 tcpipreg tcpipreg.sys Mon Jul 13 19:54:14 2009 (4A5BC926)
8d817000 8d822000 TDI TDI.SYS Mon Jul 13 19:12:12 2009 (4A5BBF4C)
8d800000 8d817000 tdx tdx.sys Mon Jul 13 19:12:10 2009 (4A5BBF4A)
8d906000 8d916000 termdd termdd.sys Mon Jul 13 20:01:35 2009 (4A5BCADF)
94080000 94089000 TSDDD TSDDD.dll unavailable (00000000)
8ca26000 8ca47000 tunnel tunnel.sys Mon Jul 13 19:54:03 2009 (4A5BC91B)
8cb93000 8cba1000 umbus umbus.sys Mon Jul 13 19:51:38 2009 (4A5BC88A)
906e9000 90700000 usbccgp usbccgp.sys Mon Jul 13 19:51:31 2009 (4A5BC883)
90700000 90701700 USBD USBD.SYS Mon Jul 13 19:51:05 2009 (4A5BC869)
8e1d7000 8e1e6000 usbehci usbehci.sys Mon Jul 13 19:51:14 2009 (4A5BC872)
8cba1000 8cbe5000 usbhub usbhub.sys Mon Jul 13 19:52:06 2009 (4A5BC8A6)
8ca80000 8cacb000 USBPORT USBPORT.SYS Mon Jul 13 19:51:13 2009 (4A5BC871)
8e1cc000 8e1d7000 usbuhci usbuhci.sys Mon Jul 13 19:51:10 2009 (4A5BC86E)
90727000 9074ab00 usbvideo usbvideo.sys Mon Jul 13 19:51:51 2009 (4A5BC897)
88508000 88513000 vdrvroot vdrvroot.sys Mon Jul 13 19:46:19 2009 (4A5BC74B)
889de000 889ea000 vga vga.sys Mon Jul 13 19:25:50 2009 (4A5BC27E)
82e00000 82e21000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:25:49 2009 (4A5BC27D)
88b9c000 88ba5000 vmstorfl vmstorfl.sys unavailable (00000000)
88537000 88547000 volmgr volmgr.sys Mon Jul 13 19:11:25 2009 (4A5BBF1D)
88547000 88592000 volmgrx volmgrx.sys Mon Jul 13 19:11:41 2009 (4A5BBF2D)
88ba5000 88be4000 volsnap volsnap.sys Mon Jul 13 19:11:34 2009 (4A5BBF26)
8e32d000 8e337000 vwifibus vwifibus.sys Mon Jul 13 19:52:02 2009 (4A5BC8A2)
8d8d4000 8d8e5000 vwififlt vwififlt.sys Mon Jul 13 19:52:03 2009 (4A5BC8A3)
8d8f3000 8d906000 wanarp wanarp.sys Mon Jul 13 19:55:02 2009 (4A5BC956)
889ea000 889f7000 watchdog watchdog.sys Mon Jul 13 19:24:10 2009 (4A5BC21A)
88406000 88477000 Wdf01000 Wdf01000.sys Mon Jul 13 19:11:36 2009 (4A5BBF28)
88477000 88485000 WDFLDR WDFLDR.SYS Mon Jul 13 19:11:25 2009 (4A5BBF1D)
8d8ae000 8d8b5000 wfplwf wfplwf.sys Mon Jul 13 19:53:51 2009 (4A5BC90F)
93e20000 9406a000 win32k win32k.sys Mon Jul 13 19:26:26 2009 (4A5BC2A2)
8e3b2000 8e3bb000 wmiacpi wmiacpi.sys Mon Jul 13 19:19:16 2009 (4A5BC0F4)
884cd000 884d6000 WMILIB WMILIB.SYS Mon Jul 13 19:11:22 2009 (4A5BBF1A)
9077d000 90797000 WudfPf WudfPf.sys Mon Jul 13 19:50:13 2009 (4A5BC835)
Unloaded modules:
90756000 90762000 kbdhid.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000C000
9482d000 94897000 spsys.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0006A000
8db4d000 8db65000 parport.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00018000
889ab000 889b8000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000D000
889b8000 889c3000 dump_pciidex
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000B000
889c3000 889cd000 dump_msahci.
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000A000
889cd000 889de000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00011000
889de000 889fd000 cdrom.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0001F000