Daily Random BSODs Win7 Ent x64

Page 1 of 2 12 LastLast

  1. Posts : 10
    Windows 7 Enterprise x64
       #1

    Daily Random BSODs Win7 Ent x64


    Hi All,

    I've been experiencing random BSODs with different errors almost daily, sometimes as many as 5 in 1 day. On top of BSODs the System will randomly freeze (screen will freeze up or screen will distort to multicoloured lines and a random buzzing noise comes from the speakers).

    This is a new install (DEC 14-2010) of Win7 Ent x64.

    My Hardware is as follows:
    Mobo: Gigaybyte EP43-UD3L (Nov 25-2010)
    Mem: 4x1gb OCZ SpecOps 800 MHZ (Over 3 yrs old)
    CPU: Intel e6750 2.66GHz (Over 3 yrs old)

    Currently on this install there is no A/V as I've been trying to determine the cause.

    - Ran memtest for over 24 hours and 0 errors were been detected (have run it multiple times, latest version from site).
    - Ran Windows Memory checker with verifier enabled 1 pass claimed hardware errors, with verifier disabled no issues. Have not been able to replicate the hardware errors claimed since.
    - Verifier has been enabled and did not trigger any blue screens, has since been disabled.

    If there is anything in the dumps or ideas for troubleshooting please let me know.

    Thanks and have a happy new year.

    Jordie
      My Computer


  2. Posts : 11,990
    Windows 7 Ultimate 32 bit
       #2

    Hi, Jordie, and happy New Year to you. Welcome to the forum. I looked at your four most recent dumps. None give a direct cause; all three indicate memory corruption. I was unable to determine what antivirus and firewall you are running.

    Outdated drivers can cause memory corruption and BSOD's and I find three out of date drivers on your system. Thye one in red font is really obsolete. Update these drivers from the links provided.
    atikmdag.sys Fri Apr 24 06:51:57 2009 - ATI Video driver (remove the Catalyst Control Center and only install the Display Driver).Global Provider of Innovative Graphics, Processors and Media Solutions | AMD

    gdrv.sys Thu Mar 12 23:22:29 2009 - gdvr.sys - GIGABYTE Tools - Windows (R) Server 2003 DDK driver; belongs to EasySaver. Uninstall EasySaver.

    SCDEmu.SYS Mon Apr 09 23:37:52 2007 - PowerISO Virtual Drive driver. PowerISO - Create, Edit, Extract, Mount, Compress, Encrypt, Split ISO file, ISO/BIN converter, Virtual Drive, DAA. update this driver or uninstall Power ISO.
    Update the drivers or uninstall the software. Reboot and see if your system is more stable. Post back and let us know. If you get another BSOD, upload it and we will take the next steps and test RAM.
    Code:
    Windows 7 Kernel Version 7600 MP (2 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
    Machine Name:
    Kernel base = 0xfffff800`02a0c000 PsLoadedModuleList = 0xfffff800`02c49e50
    Debug session time: Wed Dec 29 12:26:10.725 2010 (GMT-5)
    System Uptime: 0 days 0:00:16.395
    Loading Kernel Symbols
    ...............................................................
    ...............................................................
    Loading User Symbols
    Loading unloaded module list
    ....
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 3B, {c0000005, fffff8800429a66c, fffff88005f3e110, 0}
    
    Probably caused by : memory_corruption
    
    Followup: memory_corruption
    ---------
    
    1: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    SYSTEM_SERVICE_EXCEPTION (3b)
    An exception happened while executing a system service routine.
    Arguments:
    Arg1: 00000000c0000005, Exception code that caused the bugcheck
    Arg2: fffff8800429a66c, Address of the exception record for the exception that caused the bugcheck
    Arg3: fffff88005f3e110, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    
    Debugging Details:
    ------------------
    
    
    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
    
    FAULTING_IP: 
    dxgkrnl!GetUniqueModesFromUnionList+68
    fffff880`0429a66c 488b7708        mov     rsi,qword ptr [rdi+8]
    
    CONTEXT:  fffff88005f3e110 -- (.cxr 0xfffff88005f3e110)
    rax=fffff8a000fcc000 rbx=fffff8a000fcc000 rcx=fffff88005f3ebb0
    rdx=00000000000005ed rsi=00000000000005ed rdi=000000000000002c
    rip=fffff8800429a66c rsp=fffff88005f3eae0 rbp=fffff88005f3ebb0
     r8=fffff8a000feb000  r9=fffff88005f3ed30 r10=00000000000005ed
    r11=000000000000079b r12=0000000000000001 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000001
    iopl=0         nv up ei ng nz ac po cy
    cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010297
    dxgkrnl!GetUniqueModesFromUnionList+0x68:
    fffff880`0429a66c 488b7708        mov     rsi,qword ptr [rdi+8] ds:002b:00000000`00000034=????????????????
    Resetting default scope
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  CODE_CORRUPTION
    
    BUGCHECK_STR:  0x3B
    
    PROCESS_NAME:  csrss.exe
    
    CURRENT_IRQL:  0
    
    LAST_CONTROL_TRANSFER:  from fffff8800429c17f to fffff8800429a66c
    
    STACK_TEXT:  
    fffff880`05f3eae0 fffff880`0429c17f : fffff8a0`00f67520 00000000`000005ed fffff8a0`00feb000 fffff880`05f3ed30 : dxgkrnl!GetUniqueModesFromUnionList+0x68
    fffff880`05f3eb60 fffff880`042a0627 : fffff8a0`077f8540 fffffa80`050a2000 fffff8a0`00f67520 00000000`00000001 : dxgkrnl!ObtainModeSetAvailOnVidPnSource+0x35b
    fffff880`05f3ebf0 fffff880`0427ceeb : fffff880`05f3ed20 fffff880`05f3ed40 fffff8a0`076bf490 fffff8a0`076e27f0 : dxgkrnl!GetActiveVidPnBasedDisplayModeList+0x36f
    fffff880`05f3ecd0 fffff880`0429038f : 00000000`ffffffff ffffffff`c0000225 fffff880`05f3edb0 fffffa80`050a2000 : dxgkrnl!DXGADAPTER::CreateModeList+0xdf
    fffff880`05f3ed00 fffff960`006aeb2b : 00000000`00000000 00000000`00000001 00000000`00000004 fffff880`042a57bd : dxgkrnl!DxgkCddGetDisplayModeList+0x2f7
    fffff880`05f3ed90 fffff960`006af25f : 00000000`00000000 00000000`00000001 fffff880`05f3ef70 fffffa80`05116c20 : cdd!GetDisplayModeList+0xdf
    fffff880`05f3ee10 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : cdd!DrvGetModes+0x377
    
    
    CHKIMG_EXTENSION: !chkimg -lo 50 -d !dxgkrnl
        fffff8800429a66e - dxgkrnl!GetUniqueModesFromUnionList+6a
        [ 75:77 ]
    1 error : !dxgkrnl (fffff8800429a66e)
    
    MODULE_NAME: memory_corruption
    
    IMAGE_NAME:  memory_corruption
    
    FOLLOWUP_NAME:  memory_corruption
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  0
    
    MEMORY_CORRUPTOR:  ONE_BIT
    
    STACK_COMMAND:  .cxr 0xfffff88005f3e110 ; kb
    
    FAILURE_BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT
    
    BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT
    
    Followup: memory_corruption
    ---------
    
    Debug session time: Thu Dec 30 23:01:35.184 2010 (GMT-5)
    System Uptime: 0 days 7:47:15.854
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ..................
    Loading User Symbols
    Loading unloaded module list
    .......
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck A, {3, 2, 0, fffff80002aa7f6c}
    
    Probably caused by : memory_corruption ( nt!MiResolveDemandZeroFault+21c )
    
    Followup: MachineOwner
    ---------
    
    0: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 0000000000000003, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000000, bitfield :
        bit 0 : value 0 = read operation, 1 = write operation
        bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff80002aa7f6c, address which referenced memory
    
    Debugging Details:
    ------------------
    
    
    READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002cc20e0
     0000000000000003 
    
    CURRENT_IRQL:  2
    
    FAULTING_IP: 
    nt!MiResolveDemandZeroFault+21c
    fffff800`02aa7f6c 483b1d05a12100  cmp     rbx,qword ptr [nt!MiHighestUserPte (fffff800`02cc2078)]
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    BUGCHECK_STR:  0xA
    
    PROCESS_NAME:  GSvr.exe
    
    TRAP_FRAME:  fffff88003827690 -- (.trap 0xfffff88003827690)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000000000000002 rbx=0000000000000000 rcx=fffff8a007d59708
    rdx=000fffffffffffff rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80002aa7f6c rsp=fffff88003827820 rbp=fffff88003827880
     r8=0000000000000004  r9=0000000000000001 r10=0000058000000000
    r11=fffff68000002180 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei pl nz na po nc
    nt!MiResolveDemandZeroFault+0x21c:
    fffff800`02aa7f6c 483b1d05a12100  cmp     rbx,qword ptr [nt!MiHighestUserPte (fffff800`02cc2078)] ds:fffff800`02cc2078=????????????????
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from fffff80002a89ca9 to fffff80002a8a740
    
    STACK_TEXT:  
    fffff880`03827548 fffff800`02a89ca9 : 00000000`0000000a 00000000`00000003 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
    fffff880`03827550 fffff800`02a88920 : fffffa80`047a6800 fffff8a0`07d59708 00000000`00000000 fffff800`02c39b30 : nt!KiBugCheckDispatch+0x69
    fffff880`03827690 fffff800`02aa7f6c : fffff8a0`07d59708 fffff880`03827880 00000000`00437fff fffffa80`0541d3f8 : nt!KiPageFault+0x260
    fffff880`03827820 fffff800`02ab0eb8 : 00000000`00000001 00000000`00430004 fffff880`03827c20 fffff8a0`07d59708 : nt!MiResolveDemandZeroFault+0x21c
    fffff880`03827910 fffff800`02aa65be : 00000000`00000001 00000000`00430004 fffff680`00002180 fffffa80`0541d3f8 : nt!MiResolveProtoPteFault+0x508
    fffff880`038279b0 fffff800`02aa4743 : ffffffff`ffffff00 00000000`00430004 00000000`00008000 fffff800`00000000 : nt!MiDispatchFault+0x1de
    fffff880`03827ac0 fffff800`02a8882e : 00000000`00000001 00000000`000002d3 00000000`0048e801 00000000`00008000 : nt!MmAccessFault+0x343
    fffff880`03827c20 00000000`74fa9492 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
    00000000`0207fa00 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x74fa9492
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    nt!MiResolveDemandZeroFault+21c
    fffff800`02aa7f6c 483b1d05a12100  cmp     rbx,qword ptr [nt!MiHighestUserPte (fffff800`02cc2078)]
    
    SYMBOL_STACK_INDEX:  3
    
    SYMBOL_NAME:  nt!MiResolveDemandZeroFault+21c
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: nt
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c44a9
    
    IMAGE_NAME:  memory_corruption
    
    FAILURE_BUCKET_ID:  X64_0xA_nt!MiResolveDemandZeroFault+21c
    
    BUCKET_ID:  X64_0xA_nt!MiResolveDemandZeroFault+21c
    
    Followup: MachineOwner
    ---------
    
    Debug session time: Thu Dec 30 15:12:54.898 2010 (GMT-5)
    System Uptime: 0 days 22:28:53.568
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ..................
    Loading User Symbols
    Loading unloaded module list
    .......
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 1A, {41287, 2, 0, 0}
    
    Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+42ba5 )
    
    Followup: MachineOwner
    ---------
    
    1: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    MEMORY_MANAGEMENT (1a)
        # Any other values for parameter 1 must be individually examined.
    Arguments:
    Arg1: 0000000000041287, The subtype of the bugcheck.
    Arg2: 0000000000000002
    Arg3: 0000000000000000
    Arg4: 0000000000000000
    
    Debugging Details:
    ------------------
    
    
    BUGCHECK_STR:  0x1a_41287
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    PROCESS_NAME:  iexplore.exe
    
    CURRENT_IRQL:  0
    
    TRAP_FRAME:  fffff88009215840 -- (.trap 0xfffff88009215840)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000000000000000 rbx=0000000000000000 rcx=fffff6800006bbb0
    rdx=000fffffffffffff rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80002aa1f6c rsp=fffff880092159d0 rbp=fffff88009215a40
     r8=0000000000000004  r9=fffff6800006bbb0 r10=0000058000000000
    r11=fffff88009215c20 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei pl nz na po nc
    nt!MiResolveDemandZeroFault+0x21c:
    fffff800`02aa1f6c 483b1d05a12100  cmp     rbx,qword ptr [nt!MiHighestUserPte (fffff800`02cbc078)] ds:7000:fffff800`02cbc078=????????????????
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from fffff80002a30b7a to fffff80002a84740
    
    STACK_TEXT:  
    fffff880`092156d8 fffff800`02a30b7a : 00000000`0000001a 00000000`00041287 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
    fffff880`092156e0 fffff800`02a8282e : 00000000`00000000 fffff680`0006bbb0 00000000`00000000 00000001`09215968 : nt! ?? ::FNODOBFM::`string'+0x42ba5
    fffff880`09215840 fffff800`02aa1f6c : fffff680`0006bbb0 fffff880`09215a40 00000000`00001000 fffffa80`0628db68 : nt!KiPageFault+0x16e
    fffff880`092159d0 fffff800`02a9e9c6 : 00000000`00000001 00000000`0d776ff8 fffff880`09215c20 fffff680`0006bbb0 : nt!MiResolveDemandZeroFault+0x21c
    fffff880`09215ac0 fffff800`02a8282e : 00000000`00000001 00000000`0d756fe0 00000000`00000001 fffffa80`066a15f0 : nt!MmAccessFault+0x5c6
    fffff880`09215c20 00000000`77a1b1c0 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
    00000000`05b9903c 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77a1b1c0
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    nt! ?? ::FNODOBFM::`string'+42ba5
    fffff800`02a30b7a cc              int     3
    
    SYMBOL_STACK_INDEX:  1
    
    SYMBOL_NAME:  nt! ?? ::FNODOBFM::`string'+42ba5
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c44a9
    
    FAILURE_BUCKET_ID:  X64_0x1a_41287_nt!_??_::FNODOBFM::_string_+42ba5
    
    BUCKET_ID:  X64_0x1a_41287_nt!_??_::FNODOBFM::_string_+42ba5
    
    Followup: MachineOwner
    ---------
    
    1: kd> lmtsmn
    start             end                 module name
    fffff880`00f76000 fffff880`00fcd000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
    fffff880`02c67000 fffff880`02cf1000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
    fffff880`041da000 fffff880`041f0000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
    fffff880`01176000 fffff880`01181000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
    fffff880`0677d000 fffff880`06788000   asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
    fffff880`01143000 fffff880`0114c000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`0114c000 fffff880`01176000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
    fffff880`03ca8000 fffff880`041ca000   atikmdag atikmdag.sys Fri Apr 24 06:51:57 2009 (49F199CD)
    fffff880`015f9000 fffff880`01600000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
    fffff880`03b2f000 fffff880`03b40000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
    fffff880`029c3000 fffff880`029e1000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
    fffff960`00720000 fffff960`00747000   cdd      cdd.dll      unavailable (00000000)
    fffff880`014b6000 fffff880`014e0000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`00ce8000 fffff880`00da8000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
    fffff880`01450000 fffff880`01480000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
    fffff880`00c8a000 fffff880`00ce8000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`014e5000 fffff880`01558000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
    fffff880`041ca000 fffff880`041da000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`04847000 fffff880`04855000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
    fffff880`03aac000 fffff880`03b2f000   csc      csc.sys      Mon Jul 13 19:24:26 2009 (4A5BC22A)
    fffff880`00e88000 fffff880`00ea3000   ctxusbm  ctxusbm.sys  Mon Sep 07 14:09:28 2009 (4AA54C58)
    fffff880`00e6a000 fffff880`00e88000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
    fffff880`02ddc000 fffff880`02deb000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
    fffff880`0143a000 fffff880`01450000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`04800000 fffff880`04822000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
    fffff880`04861000 fffff880`0486a000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`04855000 fffff880`04861000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`0486a000 fffff880`0487d000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
    fffff880`03c9c000 fffff880`03ca8000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
    fffff880`042ae000 fffff880`043a2000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 21:00:14 2009 (4AC5509E)
    fffff880`043a2000 fffff880`043e8000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:38:32 2009 (4A5BC578)
    fffff880`04298000 fffff880`042a5000   fdc      fdc.sys      Mon Jul 13 20:00:54 2009 (4A5BCAB6)
    fffff880`011cd000 fffff880`011e1000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
    fffff880`0493c000 fffff880`04947000   flpydisk flpydisk.sys Mon Jul 13 20:00:54 2009 (4A5BCAB6)
    fffff880`01181000 fffff880`011cd000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
    fffff880`01569000 fffff880`01573000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
    fffff880`01400000 fffff880`0143a000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
    fffff880`01600000 fffff880`0164a000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
    fffff880`066db000 fffff880`066e4000   gdrv     gdrv.sys     Thu Mar 12 23:22:29 2009 (49B9D175)
    fffff800`02ff0000 fffff800`03039000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
    fffff880`04200000 fffff880`04224000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
    fffff880`0495c000 fffff880`049b8000   HdAudio  HdAudio.sys  Mon Jul 13 20:06:59 2009 (4A5BCC23)
    fffff880`048a8000 fffff880`048c1000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
    fffff880`048c1000 fffff880`048c9080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
    fffff880`0489a000 fffff880`048a8000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
    fffff880`028fb000 fffff880`029c3000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
    fffff880`017f2000 fffff880`017fb000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
    fffff880`03c6f000 fffff880`03c8d000   i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`03b66000 fffff880`03b7c000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
    fffff880`03c8d000 fffff880`03c9c000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff800`00b96000 fffff800`00ba0000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
    fffff880`03a4a000 fffff880`03a8d000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
    fffff880`013c4000 fffff880`013de000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
    fffff880`0179d000 fffff880`017c8000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
    fffff880`04822000 fffff880`04827200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
    fffff880`02deb000 fffff880`02e00000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`01480000 fffff880`014a3000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
    fffff880`00c32000 fffff880`00c76000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
    fffff880`03bea000 fffff880`03bf8000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
    fffff880`03a3b000 fffff880`03a4a000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff880`048ca000 fffff880`048d7000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
    fffff880`01129000 fffff880`01143000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`029e1000 fffff880`029f9000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
    fffff880`02800000 fffff880`0282d000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
    fffff880`0282d000 fffff880`0287b000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
    fffff880`0287b000 fffff880`0289e000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
    fffff880`0108c000 fffff880`01097000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`00fd6000 fffff880`00fe0000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
    fffff880`01000000 fffff880`0105e000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
    fffff880`02dd1000 fffff880`02ddc000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
    fffff880`017e0000 fffff880`017f2000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
    fffff880`0164b000 fffff880`0173d000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
    fffff880`043f4000 fffff880`04400000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
    fffff880`03ba0000 fffff880`03bcf000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
    fffff880`04947000 fffff880`0495c000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
    fffff880`02d65000 fffff880`02d74000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff880`02cf1000 fffff880`02d36000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
    fffff880`0173d000 fffff880`0179d000   NETIO    NETIO.SYS    Mon Jul 13 19:21:46 2009 (4A5BC18A)
    fffff880`01097000 fffff880`010a8000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`02c51000 fffff880`02c5d000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
    fffff800`02a14000 fffff800`02ff0000   nt       ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9)
    fffff880`01221000 fffff880`013c4000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
    fffff880`013de000 fffff880`013e7000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
    fffff880`02d3f000 fffff880`02d65000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
    fffff880`03c52000 fffff880`03c6f000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
    fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`01112000 fffff880`01119000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
    fffff880`01119000 fffff880`01129000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`01558000 fffff880`01569000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
    fffff880`0644b000 fffff880`064f1000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
    fffff880`049b8000 fffff880`049f5000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`00c76000 fffff880`00c8a000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
    fffff880`03b7c000 fffff880`03ba0000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
    fffff880`03bcf000 fffff880`03bea000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
    fffff880`03a00000 fffff880`03a21000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
    fffff880`03a21000 fffff880`03a3b000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
    fffff880`02c00000 fffff880`02c51000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
    fffff880`041f0000 fffff880`041fb000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
    fffff880`01210000 fffff880`01219000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`013f5000 fffff880`013fe000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`01083000 fffff880`0108c000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
    fffff880`015bf000 fffff880`015f9000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
    fffff880`00ea3000 fffff880`00ebb000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`03c00000 fffff880`03c52000   Rt64win7 Rt64win7.sys Mon Feb 08 22:42:09 2010 (4B70D991)
    fffff880`02dc0000 fffff880`02dd1000   SCDEmu   SCDEmu.SYS   Mon Apr 09 23:37:52 2007 (461B0690)
    fffff880`064f1000 fffff880`064fc000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
    fffff880`043e8000 fffff880`043f4000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`02d74000 fffff880`02d91000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`017d8000 fffff880`017e0000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
    fffff880`066e4000 fffff880`06755000   spsys    spsys.sys    Mon May 11 13:20:58 2009 (4A085E7A)
    fffff880`06645000 fffff880`066db000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
    fffff880`0653b000 fffff880`065a2000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
    fffff880`064fc000 fffff880`06529000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
    fffff880`042a5000 fffff880`042a6480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
    fffff880`01803000 fffff880`01a00000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
    fffff880`06529000 fffff880`0653b000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
    fffff880`010a8000 fffff880`010b5000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
    fffff880`011e1000 fffff880`011ff000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
    fffff880`02dac000 fffff880`02dc0000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
    fffff960`00490000 fffff960`0049a000   TSDDD    TSDDD.dll    unavailable (00000000)
    fffff880`03b40000 fffff880`03b66000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
    fffff880`03a8d000 fffff880`03a9f000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
    fffff880`04828000 fffff880`04845000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
    fffff880`04845000 fffff880`04846f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
    fffff880`04287000 fffff880`04298000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
    fffff880`048e2000 fffff880`0493c000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
    fffff880`04231000 fffff880`04287000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
    fffff880`0488e000 fffff880`0489a000   usbprint usbprint.sys Mon Jul 13 20:38:18 2009 (4A5BD37A)
    fffff880`0487d000 fffff880`0488e000   usbscan  usbscan.sys  Mon Jul 13 20:35:32 2009 (4A5BD2D4)
    fffff880`04224000 fffff880`04231000   usbuhci  usbuhci.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
    fffff880`013e7000 fffff880`013f5000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
    fffff880`0105e000 fffff880`01083000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
    fffff880`017c8000 fffff880`017d8000   vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
    fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`010b6000 fffff880`01112000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
    fffff880`01573000 fffff880`015bf000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
    fffff880`02d91000 fffff880`02dac000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
    fffff880`01200000 fffff880`01210000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
    fffff880`00ec3000 fffff880`00f67000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
    fffff880`00f67000 fffff880`00f76000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`02d36000 fffff880`02d3f000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff960`00000000 fffff960`00310000   win32k   win32k.sys   Tue Oct 19 23:08:46 2010 (4CBE5D3E)
    fffff880`00fcd000 fffff880`00fd6000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`00da8000 fffff880`00dc9000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
    
    Unloaded modules:
    fffff880`06755000 fffff880`06761000   hiber_atapor
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06761000 fffff880`0676a000   hiber_atapi.
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`0676a000 fffff880`0677d000   hiber_dumpfv
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`01480000 fffff880`0148e000   crashdmp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`0148e000 fffff880`0149a000   dump_ataport
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`0149a000 fffff880`014a3000   dump_atapi.s
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`014a3000 fffff880`014b6000   dump_dumpfve
        Timestamp: unavailable (00000000)
        Checksum:  00000000
      My Computer


  3. Posts : 10
    Windows 7 Enterprise x64
    Thread Starter
       #3

    Hi Carl,

    Thanks for your quick reply. I have followed your advice and updated or removed the outdated drivers.

    ATI - Updated
    PowerIso - Uninstalled
    Easy Saver - Uninstalled (System crashed right after uninstalling this)

    The system has crashed 2 times with a BSOD and frozen 2 times with no dumps since the drivers were addressed. Latest Dumps have been attached.

    Currently there is no A/V or Firewall running as I wanted to eliminate this as a possible cause of the BSODs.

    Again any advice is appreciated.

    Jordie
      My Computer


  4. Posts : 11,990
    Windows 7 Ultimate 32 bit
       #4

    You can pretty much safely run Microsoft Security Essentials and Windows Firewall. They will rarely cause a BSOD. I don't suggest that you run without protection; there are too many nasties out there on the net.

    I looked at your two dumps from today. Both are different error codes. On blames memory corruption and the other indicated memory corruption. I see these two outdated drivers loaded on your system in your most recent dump. If nothing else rename these two drivers. Create a restore point, using Windows Explorer, navigate to C:\Windows\System32\Drivers, locate the driver files, and rename them from .sys to .old. Reboot and the drivers will not load. This will break whatever software or hardware these drivers are associated with.
    gdrv.sys Thu Mar 12 23:22:29 2009 - gdvr.sys - GIGABYTE Tools - Windows (R) Server 2003 DDK driver; belongs to EasySaver. Uninstall EasySaver.

    SCDEmu.SYS Mon Apr 09 23:37:52 2007 - PowerISO Virtual Drive driver. PowerISO - Create, Edit, Extract, Mount, Compress, Encrypt, Split ISO file, ISO/BIN converter, Virtual Drive, DAA. update this driver or uninstall Power ISO.
    You can get a list of all your drivers by typing cmd in search and then in cmd window, type driverquery.

    Once you have renamed these drivers, reboot and see how your system runs. If you get another crash, upload the dump and we will start testing hardware.
    Code:
    Windows 7 Kernel Version 7600 MP (2 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
    Machine Name:
    Kernel base = 0xfffff800`02a54000 PsLoadedModuleList = 0xfffff800`02c91e50
    Debug session time: Mon Jan  3 12:33:55.334 2011 (GMT-5)
    System Uptime: 0 days 0:08:29.004
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .............
    Loading User Symbols
    Loading unloaded module list
    ....
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 3B, {c0000096, fffff80002aa5183, fffff880084810d0, 0}
    
    Probably caused by : memory_corruption
    
    Followup: memory_corruption
    ---------
    
    1: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    SYSTEM_SERVICE_EXCEPTION (3b)
    An exception happened while executing a system service routine.
    Arguments:
    Arg1: 00000000c0000096, Exception code that caused the bugcheck
    Arg2: fffff80002aa5183, Address of the exception record for the exception that caused the bugcheck
    Arg3: fffff880084810d0, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    
    Debugging Details:
    ------------------
    
    
    EXCEPTION_CODE: (NTSTATUS) 0xc0000096 - {EXCEPTION}  Privileged instruction.
    
    FAULTING_IP: 
    nt!KeFlushQueueApc+57
    fffff800`02aa5183 440f22c1        mov     cr8,rcx
    
    CONTEXT:  fffff880084810d0 -- (.cxr 0xfffff880084810d0)
    rax=fffffa80038d6bb0 rbx=0000000000000002 rcx=fffffa80038d6b60
    rdx=0000000000000001 rsi=0000000000000001 rdi=fffffa80038d6b60
    rip=fffff80002aa5183 rsp=fffff88008481aa0 rbp=0000000000000000
     r8=0000000000000000  r9=00000000000000a0 r10=fffff880009e8d60
    r11=fffff88008481ab0 r12=fffffa80038fe0e0 r13=0000000000000030
    r14=fffffa80038fe200 r15=0000000000000001
    iopl=0         nv up ei pl zr na po nc
    cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
    nt!KeFlushQueueApc+0x57:
    fffff800`02aa5183 440f22c1        mov     cr8,rcx
    Resetting default scope
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  CODE_CORRUPTION
    
    BUGCHECK_STR:  0x3B
    
    PROCESS_NAME:  svchost.exe
    
    CURRENT_IRQL:  0
    
    LAST_CONTROL_TRANSFER:  from fffff80002da9d97 to fffff80002aa5183
    
    STACK_TEXT:  
    fffff880`08481aa0 fffff800`02da9d97 : 000007ff`fffd7000 00000000`00000000 00000000`00000000 fffffa80`038d6b60 : nt!KeFlushQueueApc+0x57
    fffff880`08481ad0 fffff800`02dad72d : fffff6fb`00000000 00000000`00000000 000007ff`fffd7000 00000000`00000000 : nt!PspExitThread+0x8f7
    fffff880`08481b90 fffff800`02dad969 : fffffa80`038d6b60 00000000`00000000 fffffa80`038d6b60 000007ff`fffdf000 : nt!PspTerminateThreadByPointer+0x4d
    fffff880`08481be0 fffff800`02ac3993 : 00000000`00000008 fffff880`08481ca0 00000000`00000000 fffffa80`056cd3e0 : nt!NtTerminateThread+0x45
    fffff880`08481c20 00000000`77a1028a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
    00000000`0026fb18 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77a1028a
    
    
    CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
        fffff80002aa517e - nt!KeFlushQueueApc+52
        [ b9:bb ]
    1 error : !nt (fffff80002aa517e)
    
    MODULE_NAME: memory_corruption
    
    IMAGE_NAME:  memory_corruption
    
    FOLLOWUP_NAME:  memory_corruption
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  0
    
    MEMORY_CORRUPTOR:  ONE_BIT
    
    STACK_COMMAND:  .cxr 0xfffff880084810d0 ; kb
    
    FAILURE_BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT
    
    BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT
    
    Followup: memory_corruption
    ---------
    
    Debug session time: Mon Jan  3 01:26:23.217 2011 (GMT-5)
    System Uptime: 0 days 13:07:22.608
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ...............
    Loading User Symbols
    Loading unloaded module list
    ...........
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck A, {22, 2, 0, fffff80002a4b36d}
    
    Probably caused by : win32k.sys ( win32k!GreAcquireSemaphore+1c )
    
    Followup: MachineOwner
    ---------
    
    0: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 0000000000000022, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000000, bitfield :
        bit 0 : value 0 = read operation, 1 = write operation
        bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff80002a4b36d, address which referenced memory
    
    Debugging Details:
    ------------------
    
    
    READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002cf20e0
     0000000000000022 
    
    CURRENT_IRQL:  2
    
    FAULTING_IP: 
    nt!IoBoostThreadIoPriority+2ed
    fffff800`02a4b36d 418a442422      mov     al,byte ptr [r12+22h]
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    BUGCHECK_STR:  0xA
    
    PROCESS_NAME:  explorer.exe
    
    TRAP_FRAME:  fffff880068ddc20 -- (.trap 0xfffff880068ddc20)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=fffff880068dde30 rbx=0000000000000000 rcx=fffff880068dde48
    rdx=fffffa80045a983e rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80002a4b36d rsp=fffff880068dddb0 rbp=0000000000000000
     r8=0000000000000004  r9=0000000000000000 r10=0000000000000000
    r11=fffff880068de158 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei pl nz ac po cy
    nt!IoBoostThreadIoPriority+0x2ed:
    fffff800`02a4b36d 418a442422      mov     al,byte ptr [r12+22h] ds:3848:00000000`00000022=??
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from fffff80002ab9ca9 to fffff80002aba740
    
    STACK_TEXT:  
    fffff880`068ddad8 fffff800`02ab9ca9 : 00000000`0000000a 00000000`00000022 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
    fffff880`068ddae0 fffff800`02ab8920 : 00000000`02faf8b8 00000000`00000001 fffff900`c01f6d20 fffff880`068de248 : nt!KiBugCheckDispatch+0x69
    fffff880`068ddc20 fffff800`02a4b36d : 00000000`00000000 00000000`00000001 00000000`00000001 ffffffff`b8040d03 : nt!KiPageFault+0x260
    fffff880`068dddb0 fffff800`02b1def6 : fffffa80`05aeb440 fffff800`00000002 fffffa80`05aeb828 fffff880`068dde30 : nt!IoBoostThreadIoPriority+0x2ed
    fffff880`068ddf60 fffff800`02a83221 : fffffa80`05aeb440 00000000`00000001 fffff880`068de100 fffff800`02c34e80 : nt! ?? ::FNODOBFM::`string'+0x1a684
    fffff880`068ddfa0 fffff800`02ac25ac : ffffffff`ffb3b4c0 00000504`00000000 fffffa80`05aeb440 00000000`0000401a : nt!ExpWaitForResource+0x8d
    fffff880`068de010 fffff800`02ac621b : 00000000`00000000 fffffa80`05aeb440 ffffffff`b9040d03 ffffffff`b9040d03 : nt!ExAcquireResourceExclusiveLite+0x14f
    fffff880`068de080 fffff960`00216b40 : 00000000`000005bc fffff960`001543a9 00000000`00000d03 00000000`00000000 : nt!ExEnterCriticalRegionAndAcquireResourceExclusive+0x1b
    fffff880`068de0b0 fffff960`00241a12 : fffff900`c1008fd0 00000000`34010b53 fffff900`c0791010 fffff960`0014869f : win32k!GreAcquireSemaphore+0x1c
    fffff880`068de0e0 fffff960`001421b1 : fffff900`c290a420 fffff900`c0791010 00000000`00000001 ffffffff`b9040d03 : win32k!GreSelectVisRgnInternal+0x3e
    fffff880`068de160 fffff960`0014ec84 : fffff900`c290a420 00000000`59040bf0 fffff900`00000001 fffff900`c1008fd0 : win32k!GreSelectVisRgn+0x3d
    fffff880`068de1a0 fffff960`000d5601 : fffff900`c1008fd0 00000000`59040bf0 00000000`00000000 ffffffff`b8040d03 : win32k!GetDCEx+0x368
    fffff880`068de230 fffff960`0016d170 : 00000000`00000000 fffff880`068de3e0 00000000`00000000 00000000`02faf4a0 : win32k!xxxBeginPaint+0x199
    fffff880`068de290 fffff800`02ab9993 : fffffa80`044037e0 fffff800`02ac680a fffffa80`044037e0 00000000`00000113 : win32k!NtUserBeginPaint+0x8c
    fffff880`068de360 00000000`7752b3aa : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
    00000000`02faf448 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7752b3aa
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    win32k!GreAcquireSemaphore+1c
    fffff960`00216b40 4883c420        add     rsp,20h
    
    SYMBOL_STACK_INDEX:  8
    
    SYMBOL_NAME:  win32k!GreAcquireSemaphore+1c
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: win32k
    
    IMAGE_NAME:  win32k.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4cbe5d3e
    
    FAILURE_BUCKET_ID:  X64_0xA_win32k!GreAcquireSemaphore+1c
    
    BUCKET_ID:  X64_0xA_win32k!GreAcquireSemaphore+1c
    
    Followup: MachineOwner
    ---------
    
    0: kd> lmtsmn
    start             end                 module name
    fffff880`00ef8000 fffff880`00f4f000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
    fffff880`02c7a000 fffff880`02d04000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
    fffff880`04210000 fffff880`04226000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
    fffff880`011bc000 fffff880`011c7000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
    fffff880`01189000 fffff880`01192000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`01192000 fffff880`011bc000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
    fffff880`08cea000 fffff880`094fb000   atikmdag atikmdag.sys Thu Nov 25 21:46:44 2010 (4CEF1F94)
    fffff880`06027000 fffff880`06073000   atikmpag atikmpag.sys Thu Nov 25 21:16:47 2010 (4CEF188F)
    fffff880`014bf000 fffff880`014c6000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
    fffff880`03ab3000 fffff880`03ac4000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
    fffff880`029a6000 fffff880`029c4000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
    fffff960`006c0000 fffff960`006e7000   cdd      cdd.dll      Wed May 19 15:48:26 2010 (4BF4408A)
    fffff880`01200000 fffff880`0122a000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`00c00000 fffff880`00cc0000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
    fffff880`01450000 fffff880`01480000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
    fffff880`00d4f000 fffff880`00dad000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`014d4000 fffff880`01547000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
    fffff880`04200000 fffff880`04210000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`04961000 fffff880`0496f000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
    fffff880`03a30000 fffff880`03ab3000   csc      csc.sys      Mon Jul 13 19:24:26 2009 (4A5BC22A)
    fffff880`02de4000 fffff880`02dff000   ctxusbm  ctxusbm.sys  Mon Sep 07 14:09:28 2009 (4AA54C58)
    fffff880`00fd9000 fffff880`00ff7000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
    fffff880`02c68000 fffff880`02c77000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
    fffff880`0143a000 fffff880`01450000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`04939000 fffff880`0495b000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
    fffff880`0497b000 fffff880`04984000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`0496f000 fffff880`0497b000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`04984000 fffff880`04997000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
    fffff880`04997000 fffff880`049a3000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
    fffff880`03b00000 fffff880`03bf4000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 21:00:14 2009 (4AC5509E)
    fffff880`04161000 fffff880`041a7000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:38:32 2009 (4A5BC578)
    fffff880`04390000 fffff880`0439d000   fdc      fdc.sys      Mon Jul 13 20:00:54 2009 (4A5BCAB6)
    fffff880`0104c000 fffff880`01060000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
    fffff880`04880000 fffff880`0488b000   flpydisk flpydisk.sys Mon Jul 13 20:00:54 2009 (4A5BCAB6)
    fffff880`01000000 fffff880`0104c000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
    fffff880`01558000 fffff880`01562000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
    fffff880`01400000 fffff880`0143a000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
    fffff880`017ab000 fffff880`017f5000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
    fffff880`0616e000 fffff880`06177000   gdrv     gdrv.sys     Thu Mar 12 23:22:29 2009 (49B9D175)
    fffff800`02a01000 fffff800`02a4a000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
    fffff880`041a7000 fffff880`041cb000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
    fffff880`048a0000 fffff880`048fc000   HdAudio  HdAudio.sys  Mon Jul 13 20:06:59 2009 (4A5BCC23)
    fffff880`049b1000 fffff880`049ca000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
    fffff880`049ca000 fffff880`049d2080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
    fffff880`049a3000 fffff880`049b1000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
    fffff880`028de000 fffff880`029a6000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
    fffff880`017f5000 fffff880`017fe000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
    fffff880`043c6000 fffff880`043e4000   i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`03aea000 fffff880`03b00000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
    fffff880`043e4000 fffff880`043f3000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff800`00b97000 fffff800`00ba1000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
    fffff880`00e00000 fffff880`00e43000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
    fffff880`013dd000 fffff880`013f7000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
    fffff880`01780000 fffff880`017ab000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
    fffff880`0495b000 fffff880`04960200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
    fffff880`03c21000 fffff880`03c36000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`04800000 fffff880`04823000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
    fffff880`00cf7000 fffff880`00d3b000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
    fffff880`094fb000 fffff880`09509000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
    fffff880`03c00000 fffff880`03c0f000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff880`049d5000 fffff880`049e2000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
    fffff880`0116f000 fffff880`01189000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`029c4000 fffff880`029dc000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
    fffff880`02800000 fffff880`0282d000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
    fffff880`0282d000 fffff880`0287b000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
    fffff880`0287b000 fffff880`0289e000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
    fffff880`010ec000 fffff880`010f7000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`00f58000 fffff880`00f62000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
    fffff880`01060000 fffff880`010be000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
    fffff880`02c5d000 fffff880`02c68000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
    fffff880`01618000 fffff880`0162a000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
    fffff880`0162e000 fffff880`01720000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
    fffff880`0424a000 fffff880`04256000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
    fffff880`04256000 fffff880`04285000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
    fffff880`0488b000 fffff880`048a0000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
    fffff880`02d78000 fffff880`02d87000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff880`02d04000 fffff880`02d49000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
    fffff880`01720000 fffff880`01780000   NETIO    NETIO.SYS    Mon Jul 13 19:21:46 2009 (4A5BC18A)
    fffff880`011c7000 fffff880`011d8000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`02c51000 fffff880`02c5d000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
    fffff800`02a4a000 fffff800`03026000   nt       ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9)
    fffff880`0123a000 fffff880`013dd000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
    fffff880`014b6000 fffff880`014bf000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
    fffff880`02d52000 fffff880`02d78000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
    fffff880`043a9000 fffff880`043c6000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`00fa2000 fffff880`00fb7000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
    fffff880`00f62000 fffff880`00f95000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`01158000 fffff880`0115f000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
    fffff880`0115f000 fffff880`0116f000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`01547000 fffff880`01558000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
    fffff880`03815000 fffff880`038bb000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
    fffff880`048fc000 fffff880`04939000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`00d3b000 fffff880`00d4f000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
    fffff880`04226000 fffff880`0424a000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
    fffff880`04285000 fffff880`042a0000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
    fffff880`042a0000 fffff880`042c1000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
    fffff880`041d8000 fffff880`041f2000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
    fffff880`02c00000 fffff880`02c51000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
    fffff880`042c1000 fffff880`042cc000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
    fffff880`0122a000 fffff880`01233000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`013f7000 fffff880`01400000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`010e3000 fffff880`010ec000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
    fffff880`015ae000 fffff880`015e8000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
    fffff880`01480000 fffff880`01498000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`0433e000 fffff880`04390000   Rt64win7 Rt64win7.sys Mon Feb 08 22:42:09 2010 (4B70D991)
    fffff880`02dd3000 fffff880`02de4000   SCDEmu   SCDEmu.SYS   Mon Apr 09 23:37:52 2007 (461B0690)
    fffff880`038bb000 fffff880`038c6000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
    fffff880`0439d000 fffff880`043a9000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`02d87000 fffff880`02da4000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`01610000 fffff880`01618000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
    fffff880`06177000 fffff880`061e8000   spsys    spsys.sys    Mon May 11 13:20:58 2009 (4A085E7A)
    fffff880`060d8000 fffff880`0616e000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
    fffff880`03905000 fffff880`0396c000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
    fffff880`038c6000 fffff880`038f3000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
    fffff880`042cc000 fffff880`042cd480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
    fffff880`01802000 fffff880`019ff000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
    fffff880`038f3000 fffff880`03905000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
    fffff880`00fcc000 fffff880`00fd9000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
    fffff880`011d8000 fffff880`011f6000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
    fffff880`02dbf000 fffff880`02dd3000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
    fffff960`00420000 fffff960`0042a000   TSDDD    TSDDD.dll    unavailable (00000000)
    fffff880`03ac4000 fffff880`03aea000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
    fffff880`03c0f000 fffff880`03c21000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
    fffff880`049d3000 fffff880`049d4f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
    fffff880`0432d000 fffff880`0433e000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
    fffff880`04826000 fffff880`04880000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
    fffff880`042d7000 fffff880`0432d000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
    fffff880`041cb000 fffff880`041d8000   usbuhci  usbuhci.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`00f95000 fffff880`00fa2000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
    fffff880`014c6000 fffff880`014d4000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
    fffff880`010be000 fffff880`010e3000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
    fffff880`01600000 fffff880`01610000   vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
    fffff880`00fb7000 fffff880`00fcc000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`010fc000 fffff880`01158000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
    fffff880`01562000 fffff880`015ae000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
    fffff880`02da4000 fffff880`02dbf000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
    fffff880`015e8000 fffff880`015f8000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
    fffff880`00e45000 fffff880`00ee9000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
    fffff880`00ee9000 fffff880`00ef8000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`02d49000 fffff880`02d52000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff960`00090000 fffff960`003a0000   win32k   win32k.sys   Tue Oct 19 23:08:46 2010 (4CBE5D3E)
    fffff880`00f4f000 fffff880`00f58000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`03a00000 fffff880`03a21000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
    
    Unloaded modules:
    fffff880`03c3f000 fffff880`04161000   atikmdag.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`049e2000 fffff880`049f0000   monitor.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`0601d000 fffff880`06027000   atdcm64a.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06013000 fffff880`0601d000   atdcm64a.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`061e8000 fffff880`061f4000   hiber_atapor
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`061f4000 fffff880`061fd000   hiber_atapi.
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06000000 fffff880`06013000   hiber_dumpfv
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`01480000 fffff880`0148e000   crashdmp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`0148e000 fffff880`0149a000   dump_ataport
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`0149a000 fffff880`014a3000   dump_atapi.s
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`014a3000 fffff880`014b6000   dump_dumpfve
        Timestamp: unavailable (00000000)
        Checksum:  00000000
      My Computer


  5. Posts : 10
    Windows 7 Enterprise x64
    Thread Starter
       #5

    Hi Carl,

    I was only able locate 1 of the outdated drivers in question so I decided to go with a clean install of Win7 Ent x64.

    I have installed the latest ATI Video Driver for my GFX card and the Latest Drivers from Gigabyte for the motherboard. 2 BSODs since clean install (1 before new drivers, 1 after) and 2 system freezes after the drivers. The last freeze happened right after the system came out of sleep and a freeze occured with in 5 mins of rebooting from the BSOD.

    As for the dumps attached the system did not have A/V or firewall installed/enabled. As of now Security Essentials and Windows Firewall are being used.
    Last edited by Jrob78; 04 Jan 2011 at 19:49.
      My Computer


  6. Posts : 10
    Windows 7 Enterprise x64
    Thread Starter
       #6

    And the dump from todays BSOD.
      My Computer


  7. Posts : 10
    Windows 7 Enterprise x64
    Thread Starter
       #7

    Any help on determining Hardware issues would be great.

    I've run Memtest+ for over a day and not been able to generate any errors.
      My Computer


  8. Posts : 11,990
    Windows 7 Ultimate 32 bit
       #8

    I looked at all three dumps and they blame or indicate memory corruption. All of your drivers appear to be up to date. Did you run Memtest from a cold boot after your computer had been off for an hour or so? Try enabling Driver Verifier following the instructions in this tutorial: Driver Verifier - Enable and Disable. Upload any and all dumps triggered by Verifier.

    Code:
    Windows 7 Kernel Version 7600 MP (2 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7600.16385.amd64fre.win7_rtm.090713-1255
    Machine Name:
    Kernel base = 0xfffff800`0264a000 PsLoadedModuleList = 0xfffff800`02887e50
    Debug session time: Mon Jan  3 21:35:45.274 2011 (GMT-5)
    System Uptime: 0 days 3:36:58.070
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .................
    Loading User Symbols
    Loading unloaded module list
    .......
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck A, {20, 2, 0, fffff800026c72d2}
    
    Probably caused by : ntkrnlmp.exe ( nt!KiProcessExpiredTimerList+72 )
    
    Followup: MachineOwner
    ---------
    
    0: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 0000000000000020, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000000, bitfield :
        bit 0 : value 0 = read operation, 1 = write operation
        bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff800026c72d2, address which referenced memory
    
    Debugging Details:
    ------------------
    
    
    READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800028f20e0
     0000000000000020 
    
    CURRENT_IRQL:  2
    
    FAULTING_IP: 
    nt!KiProcessExpiredTimerList+72
    fffff800`026c72d2 803818          cmp     byte ptr [rax],18h
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    BUGCHECK_STR:  0xA
    
    PROCESS_NAME:  svchost.exe
    
    TRAP_FRAME:  fffff80003bea680 -- (.trap 0xfffff80003bea680)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000000000000020 rbx=0000000000000000 rcx=fffffa80050f5100
    rdx=0000000000000001 rsi=0000000000000000 rdi=0000000000000000
    rip=fffff800026c72d2 rsp=fffff80003bea810 rbp=00000000000cbbb6
     r8=fffff80002837001  r9=0000000000000002 r10=00000000000000b6
    r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei pl nz na pe nc
    nt!KiProcessExpiredTimerList+0x72:
    fffff800`026c72d2 803818          cmp     byte ptr [rax],18h ds:1200:00000000`00000020=??
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from fffff800026bb469 to fffff800026bbf00
    
    STACK_TEXT:  
    fffff800`03bea538 fffff800`026bb469 : 00000000`0000000a 00000000`00000020 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
    fffff800`03bea540 fffff800`026ba0e0 : 00000000`00000001 fffffa80`050e6340 00000000`00000000 00000000`00000001 : nt!KiBugCheckDispatch+0x69
    fffff800`03bea680 fffff800`026c72d2 : fffffa80`050e6340 fffff880`023aaad0 00000000`00000000 00000000`00000001 : nt!KiPageFault+0x260
    fffff800`03bea810 fffff800`026c7e7e : 0000001e`4f5fdfa1 fffff800`03beae88 00000000`000cbbb6 fffff800`02838948 : nt!KiProcessExpiredTimerList+0x72
    fffff800`03beae60 fffff800`026c7697 : fffff800`02834ec1 fffffa80`000cbbb6 fffffa80`03654050 00000000`000000b6 : nt!KiTimerExpiration+0x1be
    fffff800`03beaf00 fffff800`026c2065 : 00000000`00000000 fffffa80`05716060 00000000`00000000 fffff880`01062f44 : nt!KiRetireDpcList+0x277
    fffff800`03beafb0 fffff800`026c1e7c : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KxRetireDpcList+0x5
    fffff880`05f8fbe0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDispatchInterruptContinue
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    nt!KiProcessExpiredTimerList+72
    fffff800`026c72d2 803818          cmp     byte ptr [rax],18h
    
    SYMBOL_STACK_INDEX:  3
    
    SYMBOL_NAME:  nt!KiProcessExpiredTimerList+72
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bc600
    
    FAILURE_BUCKET_ID:  X64_0xA_nt!KiProcessExpiredTimerList+72
    
    BUCKET_ID:  X64_0xA_nt!KiProcessExpiredTimerList+72
    
    Followup: MachineOwner
    ---------
    
    Debug session time: Tue Jan  4 12:28:29.648 2011 (GMT-5)
    System Uptime: 0 days 3:30:48.318
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .................
    Loading User Symbols
    Loading unloaded module list
    .......
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 3B, {c0000005, fffff960000ef7ec, fffff8800850a020, 0}
    
    Unable to load image \SystemRoot\System32\win32k.sys, Win32 error 0n2
    *** WARNING: Unable to verify timestamp for win32k.sys
    *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
    Probably caused by : win32k.sys ( win32k+1f7ec )
    
    Followup: MachineOwner
    ---------
    
    1: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    SYSTEM_SERVICE_EXCEPTION (3b)
    An exception happened while executing a system service routine.
    Arguments:
    Arg1: 00000000c0000005, Exception code that caused the bugcheck
    Arg2: fffff960000ef7ec, Address of the exception record for the exception that caused the bugcheck
    Arg3: fffff8800850a020, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    
    Debugging Details:
    ------------------
    
    
    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
    
    FAULTING_IP: 
    win32k+1f7ec
    fffff960`000ef7ec 488b5150        mov     rdx,qword ptr [rcx+50h]
    
    CONTEXT:  fffff8800850a020 -- (.cxr 0xfffff8800850a020)
    rax=fffff900c262c690 rbx=0000000000000000 rcx=fffff900c2fb8010
    rdx=fffff900c2fb83c0 rsi=0000000000000000 rdi=0000000000ffffff
    rip=fffff960000ef7ec rsp=fffff8800850aa00 rbp=0000000000ffffff
     r8=fffff900c1fa82f0  r9=fffff900c0000de0 r10=0000000000ffffff
    r11=0000000000000165 r12=fffff8800850ab20 r13=0000000000000001
    r14=fffff900c2fb8618 r15=fffff8800850ab30
    iopl=0         nv up ei pl zr na po nc
    cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
    win32k+0x1f7ec:
    fffff960`000ef7ec 488b5150        mov     rdx,qword ptr [rcx+50h] ds:002b:fffff900`c2fb8060=????????????????
    Resetting default scope
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    BUGCHECK_STR:  0x3B
    
    PROCESS_NAME:  mstsc.exe
    
    CURRENT_IRQL:  0
    
    LAST_CONTROL_TRANSFER:  from fffff900c1fa82f0 to fffff960000ef7ec
    
    STACK_TEXT:  
    fffff880`0850aa00 fffff900`c1fa82f0 : 00000000`0000f0f0 00000000`0000f0f0 fffff900`c1fa82f0 fffff900`c262c690 : win32k+0x1f7ec
    fffff880`0850aa08 00000000`0000f0f0 : 00000000`0000f0f0 fffff900`c1fa82f0 fffff900`c262c690 fffff900`c1fa82f0 : 0xfffff900`c1fa82f0
    fffff880`0850aa10 00000000`0000f0f0 : fffff900`c1fa82f0 fffff900`c262c690 fffff900`c1fa82f0 fffff900`00000001 : 0xf0f0
    fffff880`0850aa18 fffff900`c1fa82f0 : fffff900`c262c690 fffff900`c1fa82f0 fffff900`00000001 fffff960`00197718 : 0xf0f0
    fffff880`0850aa20 fffff900`c262c690 : fffff900`c1fa82f0 fffff900`00000001 fffff960`00197718 fffff900`c2fb8010 : 0xfffff900`c1fa82f0
    fffff880`0850aa28 fffff900`c1fa82f0 : fffff900`00000001 fffff960`00197718 fffff900`c2fb8010 00000000`0290001c : 0xfffff900`c262c690
    fffff880`0850aa30 fffff900`00000001 : fffff960`00197718 fffff900`c2fb8010 00000000`0290001c 00000000`0290001c : 0xfffff900`c1fa82f0
    fffff880`0850aa38 fffff960`00197718 : fffff900`c2fb8010 00000000`0290001c 00000000`0290001c fffff960`00156265 : 0xfffff900`00000001
    fffff880`0850aa40 fffff900`c2fb8010 : 00000000`0290001c 00000000`0290001c fffff960`00156265 00000000`00000000 : win32k+0xc7718
    fffff880`0850aa48 00000000`0290001c : 00000000`0290001c fffff960`00156265 00000000`00000000 fffff960`00156aeb : 0xfffff900`c2fb8010
    fffff880`0850aa50 00000000`0290001c : fffff960`00156265 00000000`00000000 fffff960`00156aeb fffff900`c0082250 : 0x290001c
    fffff880`0850aa58 fffff960`00156265 : 00000000`00000000 fffff960`00156aeb fffff900`c0082250 fffff880`0850ab30 : 0x290001c
    fffff880`0850aa60 00000000`00000000 : fffff960`00156aeb fffff900`c0082250 fffff880`0850ab30 00000000`00000149 : win32k+0x86265
    
    
    FOLLOWUP_IP: 
    win32k+1f7ec
    fffff960`000ef7ec 488b5150        mov     rdx,qword ptr [rcx+50h]
    
    SYMBOL_STACK_INDEX:  0
    
    SYMBOL_NAME:  win32k+1f7ec
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: win32k
    
    IMAGE_NAME:  win32k.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  0
    
    STACK_COMMAND:  .cxr 0xfffff8800850a020 ; kb
    
    FAILURE_BUCKET_ID:  X64_0x3B_win32k+1f7ec
    
    BUCKET_ID:  X64_0x3B_win32k+1f7ec
    
    Followup: MachineOwner
    ---------
    
    Debug session time: Wed Jan  5 18:15:30.961 2011 (GMT-5)
    System Uptime: 1 days 3:38:41.631
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    .................
    Loading User Symbols
    Loading unloaded module list
    ..................
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 3B, {c000001d, fffff80002d5c414, fffff88006b53f70, 0}
    
    *** WARNING: Unable to verify timestamp for win32k.sys
    *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
    Probably caused by : memory_corruption
    
    Followup: memory_corruption
    ---------
    
    1: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    SYSTEM_SERVICE_EXCEPTION (3b)
    An exception happened while executing a system service routine.
    Arguments:
    Arg1: 00000000c000001d, Exception code that caused the bugcheck
    Arg2: fffff80002d5c414, Address of the exception record for the exception that caused the bugcheck
    Arg3: fffff88006b53f70, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    
    Debugging Details:
    ------------------
    
    
    EXCEPTION_CODE: (NTSTATUS) 0xc000001d - {EXCEPTION}  Illegal Instruction  An attempt was made to execute an illegal instruction.
    
    FAULTING_IP: 
    nt!CmQueryValueKey+3a4
    fffff800`02d5c414 ff              ???
    
    CONTEXT:  fffff88006b53f70 -- (.cxr 0xfffff88006b53f70)
    rax=0000000000000002 rbx=0000000000000000 rcx=fffff8a000023010
    rdx=00000000ffffffff rsi=fffff8a008847470 rdi=fffff8a00d9ada70
    rip=fffff80002d5c414 rsp=fffff88006b54940 rbp=fffff88006b54ca0
     r8=fffff88006b549a0  r9=fffff88006b549a8 r10=0000000000000008
    r11=0000000000000011 r12=00000000ffffffff r13=00000000002f99bc
    r14=00000000002f9900 r15=fffff88006b54b60
    iopl=0         nv up ei pl nz na pe nc
    cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010202
    nt!CmQueryValueKey+0x3a4:
    fffff800`02d5c414 ff              ???
    Resetting default scope
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  CODE_CORRUPTION
    
    BUGCHECK_STR:  0x3B
    
    PROCESS_NAME:  mscorsvw.exe
    
    CURRENT_IRQL:  0
    
    MISALIGNED_IP: 
    nt!CmQueryValueKey+3a4
    fffff800`02d5c414 ff              ???
    
    LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff80002d5c414
    
    STACK_TEXT:  
    fffff880`06b54940 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!CmQueryValueKey+0x3a4
    
    
    CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
        fffff80002d5c3fe - nt!CmQueryValueKey+38e
        [ e9:eb ]
    1 error : !nt (fffff80002d5c3fe)
    
    MODULE_NAME: memory_corruption
    
    IMAGE_NAME:  memory_corruption
    
    FOLLOWUP_NAME:  memory_corruption
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  0
    
    MEMORY_CORRUPTOR:  ONE_BIT
    
    STACK_COMMAND:  .cxr 0xfffff88006b53f70 ; kb
    
    FAILURE_BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT
    
    BUCKET_ID:  X64_MEMORY_CORRUPTION_ONE_BIT
    
    Followup: memory_corruption
    ---------
    
    1: kd> LMtsmn
    start             end                 module name
    fffff880`00f81000 fffff880`00fd8000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
    fffff880`02c4d000 fffff880`02cd7000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
    fffff880`04912000 fffff880`04928000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
    fffff880`00dcb000 fffff880`00dd6000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
    fffff880`06dc2000 fffff880`06dcd000   asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
    fffff880`00cda000 fffff880`00ce3000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`00da1000 fffff880`00dcb000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
    fffff880`03cb7000 fffff880`044c8000   atikmdag atikmdag.sys Thu Nov 25 21:46:44 2010 (4CEF1F94)
    fffff880`03a00000 fffff880`03a4c000   atikmpag atikmpag.sys Thu Nov 25 21:16:47 2010 (4CEF188F)
    fffff880`0195d000 fffff880`01964000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
    fffff880`03b6f000 fffff880`03b80000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
    fffff880`04767000 fffff880`04785000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
    fffff960`00700000 fffff960`00727000   cdd      cdd.dll      unavailable (00000000)
    fffff880`018f9000 fffff880`01923000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`00c00000 fffff880`00cc0000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
    fffff880`01893000 fffff880`018c3000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
    fffff880`00d43000 fffff880`00da1000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`01117000 fffff880`0118a000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
    fffff880`04902000 fffff880`04912000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`066e2000 fffff880`066f0000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
    fffff880`03ace000 fffff880`03b51000   csc      csc.sys      Mon Jul 13 19:24:26 2009 (4A5BC22A)
    fffff880`03b51000 fffff880`03b6f000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
    fffff880`02c17000 fffff880`02c26000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
    fffff880`0187d000 fffff880`01893000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`04d28000 fffff880`04d4a000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
    fffff880`066fc000 fffff880`06705000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`066f0000 fffff880`066fc000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`06705000 fffff880`06718000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
    fffff880`06718000 fffff880`06724000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
    fffff880`044c8000 fffff880`045bc000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 21:00:14 2009 (4AC5509E)
    fffff880`03c00000 fffff880`03c46000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:38:32 2009 (4A5BC578)
    fffff880`0489f000 fffff880`048ac000   fdc      fdc.sys      Mon Jul 13 20:00:54 2009 (4A5BCAB6)
    fffff880`010a5000 fffff880`010b9000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
    fffff880`04c6f000 fffff880`04c7a000   flpydisk flpydisk.sys Mon Jul 13 20:00:54 2009 (4A5BCAB6)
    fffff880`01059000 fffff880`010a5000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
    fffff880`01211000 fffff880`0121b000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
    fffff880`01843000 fffff880`0187d000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
    fffff880`0158a000 fffff880`015d4000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
    fffff800`02fec000 fffff800`03035000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
    fffff880`03c46000 fffff880`03c6a000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
    fffff880`04c8f000 fffff880`04ceb000   HdAudio  HdAudio.sys  Mon Jul 13 20:06:59 2009 (4A5BCC23)
    fffff880`06732000 fffff880`0674b000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
    fffff880`0674b000 fffff880`06753080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
    fffff880`06724000 fffff880`06732000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
    fffff880`0469f000 fffff880`04767000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
    fffff880`01400000 fffff880`01409000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
    fffff880`048d5000 fffff880`048f3000   i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`03ba6000 fffff880`03bbc000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
    fffff880`048f3000 fffff880`04902000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff800`00bb7000 fffff800`00bc1000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
    fffff880`045bc000 fffff880`045ff000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
    fffff880`013e5000 fffff880`013ff000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
    fffff880`0155f000 fffff880`0158a000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
    fffff880`04d4a000 fffff880`04d4f200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
    fffff880`06400000 fffff880`06415000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`067ab000 fffff880`067ce000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
    fffff880`00ceb000 fffff880`00d2f000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
    fffff880`0679d000 fffff880`067ab000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
    fffff880`049e8000 fffff880`049f7000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff880`06756000 fffff880`06763000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
    fffff880`00cc0000 fffff880`00cda000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`01923000 fffff880`01954000   MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
    fffff880`06c00000 fffff880`06c10000   MpNWMon  MpNWMon.sys  Tue Sep 14 20:19:30 2010 (4C901112)
    fffff880`04785000 fffff880`0479d000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
    fffff880`0479d000 fffff880`047ca000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
    fffff880`04600000 fffff880`0464e000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
    fffff880`0464e000 fffff880`04671000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
    fffff880`019c2000 fffff880`019cd000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`00fe1000 fffff880`00feb000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
    fffff880`010b9000 fffff880`01117000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
    fffff880`02c0c000 fffff880`02c17000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
    fffff880`015ec000 fffff880`015fe000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
    fffff880`0140d000 fffff880`014ff000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
    fffff880`0494c000 fffff880`04958000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
    fffff880`04958000 fffff880`04987000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
    fffff880`04c7a000 fffff880`04c8f000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
    fffff880`02d4b000 fffff880`02d5a000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff880`02cd7000 fffff880`02d1c000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
    fffff880`014ff000 fffff880`0155f000   NETIO    NETIO.SYS    Thu Apr 08 22:43:59 2010 (4BBE946F)
    fffff880`06d3c000 fffff880`06d51000   NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149)
    fffff880`019cd000 fffff880`019de000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`02c00000 fffff880`02c0c000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
    fffff800`02a10000 fffff800`02fec000   nt       ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9)
    fffff880`01242000 fffff880`013e5000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
    fffff880`01954000 fffff880`0195d000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
    fffff880`02d25000 fffff880`02d4b000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
    fffff880`048b8000 fffff880`048d5000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
    fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`00ec6000 fffff880`00ecd000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
    fffff880`00feb000 fffff880`00ffb000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`01200000 fffff880`01211000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
    fffff880`04d50000 fffff880`04df6000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
    fffff880`04ceb000 fffff880`04d28000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`00d2f000 fffff880`00d43000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
    fffff880`04928000 fffff880`0494c000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
    fffff880`04987000 fffff880`049a2000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
    fffff880`049a2000 fffff880`049c3000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
    fffff880`049c3000 fffff880`049dd000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
    fffff880`02da6000 fffff880`02df7000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
    fffff880`049dd000 fffff880`049e8000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
    fffff880`019a7000 fffff880`019b0000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`019b0000 fffff880`019b9000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`019b9000 fffff880`019c2000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
    fffff880`01000000 fffff880`0103a000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
    fffff880`06415000 fffff880`0642d000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`04839000 fffff880`0489f000   Rt64win7 Rt64win7.sys Thu Nov 11 01:35:36 2010 (4CDB8EB8)
    fffff880`06486000 fffff880`066e1d80   RTKVHD64 RTKVHD64.sys Fri Sep 03 04:02:27 2010 (4C80AB93)
    fffff880`04671000 fffff880`0467c000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
    fffff880`048ac000 fffff880`048b8000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`02d5a000 fffff880`02d77000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`015e4000 fffff880`015ec000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
    fffff880`06d51000 fffff880`06dc2000   spsys    spsys.sys    Mon May 11 13:20:58 2009 (4A085E7A)
    fffff880`06ca6000 fffff880`06d3c000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
    fffff880`06c3f000 fffff880`06ca6000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
    fffff880`047ca000 fffff880`047f7000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
    fffff880`049f7000 fffff880`049f8480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
    fffff880`01602000 fffff880`017ff000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
    fffff880`0467c000 fffff880`0468e000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
    fffff880`01800000 fffff880`0180d000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
    fffff880`019de000 fffff880`019fc000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
    fffff880`02d92000 fffff880`02da6000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
    fffff960`004b0000 fffff960`004ba000   TSDDD    TSDDD.dll    unavailable (00000000)
    fffff880`03b80000 fffff880`03ba6000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
    fffff880`04800000 fffff880`04812000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
    fffff880`06754000 fffff880`06755f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
    fffff880`03c77000 fffff880`03c88000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
    fffff880`04c15000 fffff880`04c6f000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
    fffff880`03a4c000 fffff880`03aa2000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
    fffff880`03c6a000 fffff880`03c77000   usbuhci  usbuhci.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
    fffff880`01964000 fffff880`01972000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
    fffff880`01972000 fffff880`01997000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
    fffff880`015d4000 fffff880`015e4000   vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
    fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`00e6a000 fffff880`00ec6000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
    fffff880`0118a000 fffff880`011d6000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
    fffff880`02d77000 fffff880`02d92000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
    fffff880`01997000 fffff880`019a7000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
    fffff880`00ece000 fffff880`00f72000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
    fffff880`00f72000 fffff880`00f81000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`02d1c000 fffff880`02d25000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff960`00080000 fffff960`00390000   win32k   win32k.sys   unavailable (00000000)
    fffff880`00fd8000 fffff880`00fe1000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`067ce000 fffff880`067ef000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
    
    Unloaded modules:
    fffff880`06c00000 fffff880`06c31000   WUDFRd.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06791000 fffff880`0679d000   usbprint.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06763000 fffff880`06780000   usbccgp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06780000 fffff880`06791000   usbscan.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06dcd000 fffff880`06de8000   USBSTOR.SYS
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06c31000 fffff880`06c3d000   hiber_atapor
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06de8000 fffff880`06df1000   hiber_atapi.
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`0642d000 fffff880`06440000   hiber_dumpfv
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06c00000 fffff880`06c0c000   hiber_atapor
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06c0c000 fffff880`06c15000   hiber_atapi.
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06c15000 fffff880`06c28000   hiber_dumpfv
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06dcd000 fffff880`06dd9000   hiber_atapor
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06dd9000 fffff880`06de2000   hiber_atapi.
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`06de2000 fffff880`06df5000   hiber_dumpfv
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`018c3000 fffff880`018d1000   crashdmp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`018d1000 fffff880`018dd000   dump_ataport
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`018dd000 fffff880`018e6000   dump_atapi.s
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    fffff880`018e6000 fffff880`018f9000   dump_dumpfve
        Timestamp: unavailable (00000000)
        Checksum:  00000000
      My Computer


  9. Posts : 10
    Windows 7 Enterprise x64
    Thread Starter
       #9

    Hi Carl,

    I enabled verifier as per the instructions and no errors/BSODs to report. Since then I have started memtest from a cold boot as suggested and as of this morning 1 error has shown up. I will continue to let it run until the 24 hour mark and see what happens.

    I plan on removing any "bad" memory and running the cold boot test again. I will advise of the results.
      My Computer


  10. Posts : 11,990
    Windows 7 Ultimate 32 bit
       #10

    If Memtest showed an error, you can stop the test. Next pull all of your RAM sticks except the one in the first slot. Test that stick for at least seven passes. If it passes, pull it and put the next stick in that slot and test it. Repeat until you have tested all of your sticks. If you find a bad stick, set it aside. When you have tested each of your sticks, take a good stick and test each slot with it. Post back with your results.
      My Computer


 
Page 1 of 2 12 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 13:28.
Find Us