New
#1
Random BSOD
- Windows x64 Ultimate Retail
- What is the age of system (hardware)? 2 years ago
- What is the age of OS installation? 2 days at least
Thanks :3
- Windows x64 Ultimate Retail
- What is the age of system (hardware)? 2 years ago
- What is the age of OS installation? 2 days at least
Thanks :3
Three of your dumps blame Windows system drivers and one blames hardware. Since no direct cause is given, you will have to troubleshoot.Bugcheck D1 (2X), DRIVER_IRQL_NOT_LESS_OR_EQUAL. Usual causes: Device driver, Memory.
Bugcheck 3B, SYSTEM_SERVICE_EXCEPTION. Usual causes: System service, Device driver, graphics driver, ?memory.
Bugcheck BE, ATTEMPTED_WRITE_TO_READONLY_MEMORY. Usual causes: Device driver.
To start, I recommend that you uninstall Avira. Avira is known to cause BSOD's on some Win 7 systems. Download and install Microsoft Security Essentials in its place while you are troubleshooting. Once you know your system is stable you can try Avira again.
You have two out of date drivers loaded on your system; they are quite obsolete. Outdated drivers can and do cause BSOD's. Update the following drivers or uninstall the hardware they are associated woth.
I also recommend that you run CheckDisk -Copy/paste the results into your next post.Run CHKDSK /R /F from an elevated (Run as adminstrator) Command Prompt. Please do this for each hard drive on your system.
When it tells you it can't do it right now - and asks you if you'd like to do it at the next reboot - answer Y (for Yes) and press Enter. Then reboot and let the test run. It may take a while for it to run, but keep an occasional eye on it to see if it generates any errors. See "CHKDSK LogFile" below in order to check the results of the test.
Elevated Command Prompt:
Go to Start and type in "cmd.exe" (without the quotes)
At the top of the Search Box, right click on Cmd.exe and select "Run as administrator"
CHKDSK LogFile:
Go to Start and type in "eventvwr.msc" (without the quotes) and press Enter
Expand the Windows logs heading, then select the Application log file entry.
Double click on the Source column header.
Scroll down the list until you find the Chkdsk entry (wininit for Windows 7).
Post back and let us know how your system is doing. If you get another BSOD, upload it and we will go from there.
Code:Windows 7 Kernel Version 7600 MP (4 procs) Free x64 Product: WinNt, suite: TerminalServer SingleUserTS Built by: 7600.16617.amd64fre.win7_gdr.100618-1621 Machine Name: Kernel base = 0xfffff800`0281f000 PsLoadedModuleList = 0xfffff800`02a5ce50 Debug session time: Wed Jan 26 17:27:54.649 2011 (GMT-5) System Uptime: 0 days 2:17:49.272 Loading Kernel Symbols ............................................................... ................................................................ ..................... Loading User Symbols Loading unloaded module list .......... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck D1, {47, 2, 0, fffff88004ef385c} Probably caused by : HIDCLASS.SYS ( HIDCLASS!HidpMajorHandler+44 ) Followup: MachineOwner --------- 1: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1) An attempt was made to access a pageable (or completely invalid) address at an interrupt request level (IRQL) that is too high. This is usually caused by drivers using improper addresses. If kernel debugger is available get stack backtrace. Arguments: Arg1: 0000000000000047, memory referenced Arg2: 0000000000000002, IRQL Arg3: 0000000000000000, value 0 = read operation, 1 = write operation Arg4: fffff88004ef385c, address which referenced memory Debugging Details: ------------------ READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ac70e0 0000000000000047 CURRENT_IRQL: 2 FAULTING_IP: HIDCLASS!HidpMajorHandler+44 fffff880`04ef385c 488b87b8000000 mov rax,qword ptr [rdi+0B8h] CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0xD1 PROCESS_NAME: main.exe TRAP_FRAME: fffff88002f227a0 -- (.trap 0xfffff88002f227a0) NOTE: The trap frame does not contain all registers. Some register values may be zeroed or incorrect. rax=0000000000000000 rbx=0000000000000000 rcx=fffffa8004bf7954 rdx=000000000000524c rsi=0000000000000000 rdi=0000000000000000 rip=fffff88004ef385c rsp=fffff88002f22930 rbp=fffffa800460a8a0 r8=fffffa8004bf7970 r9=fffff88004efe3a8 r10=000000000000001c r11=fffffa8004bf7000 r12=0000000000000000 r13=0000000000000000 r14=0000000000000000 r15=0000000000000000 iopl=0 nv up ei ng nz na pe nc HIDCLASS!HidpMajorHandler+0x44: fffff880`04ef385c 488b87b8000000 mov rax,qword ptr [rdi+0B8h] ds:18c0:00000000`000000b8=???????????????? Resetting default scope LAST_CONTROL_TRANSFER: from fffff8000288eca9 to fffff8000288f740 STACK_TEXT: fffff880`02f22658 fffff800`0288eca9 : 00000000`0000000a 00000000`00000047 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx fffff880`02f22660 fffff800`0288d920 : 00000000`00000000 fffffa80`04662b40 fffffa80`05d04718 fffff800`0286ee05 : nt!KiBugCheckDispatch+0x69 fffff880`02f227a0 fffff880`04ef385c : fffffa80`04662b40 fffffa80`05247c10 fffffa80`04ca4140 00000000`00000800 : nt!KiPageFault+0x260 fffff880`02f22930 fffff880`04f15e19 : 00000000`00000000 00000000`00000000 fffffa80`0460a8a0 fffffa80`052d0de0 : HIDCLASS!HidpMajorHandler+0x44 fffff880`02f229a0 fffff880`04f15cd1 : 00000000`00000000 00000000`00000800 fffffa80`05247c10 fffffa80`052d0de0 : mouhid!MouHid_StartRead+0xd1 fffff880`02f229f0 fffff800`02891d26 : fffffa80`0460abb3 fffff880`00000000 fffffa80`00000001 00000000`00000000 : mouhid!MouHid_ReadComplete+0x6f5 fffff880`02f22a70 fffff880`04ef5acc : fffffa80`04d33020 fffffa80`04d33006 fffffa80`04bf5100 00000000`00000000 : nt!IopfCompleteRequest+0x3a6 fffff880`02f22b50 fffff880`04ef5d35 : fffffa80`05238902 fffffa80`05238910 fffffa80`04bf51d0 00000000`00000006 : HIDCLASS!HidpDistributeInterruptReport+0x130 fffff880`02f22be0 fffff800`02891d26 : fffffa80`0480dee3 00000000`00000000 fffffa80`04bf5001 fffffa80`0480dc60 : HIDCLASS!HidpInterruptReadComplete+0x235 fffff880`02f22c70 fffff880`040135d9 : fffffa80`04f1e050 fffffa80`04417b00 00000000`00000000 00000000`00000000 : nt!IopfCompleteRequest+0x3a6 fffff880`02f22d50 fffff880`04013ab7 : fffffa80`0604b602 fffffa80`0480dc60 00000000`ffffffff fffffa80`04f1eea8 : USBPORT!USBPORT_Core_iCompleteDoneTransfer+0xa15 fffff880`02f22e30 fffff880`0401164f : fffffa80`04f1eea8 fffffa80`04f1e1a0 fffffa80`04f1f040 00000000`00000000 : USBPORT!USBPORT_Core_iIrpCsqCompleteDoneTransfer+0x3a7 fffff880`02f22e90 fffff880`04002f89 : fffffa80`04f1e050 00000000`00000000 fffffa80`04f1ee02 fffffa80`04f1eea8 : USBPORT!USBPORT_Core_UsbIocDpc_Worker+0xf3 fffff880`02f22ed0 fffff800`0289abfc : fffff880`009e7180 fffffa80`04f1eea8 fffffa80`04f1eec0 00000000`00000000 : USBPORT!USBPORT_Xdpc_Worker+0x1d9 fffff880`02f22f00 fffff800`02895865 : 00000598`00000000 fffffa80`05961060 00000000`00000000 fffff880`04002db0 : nt!KiRetireDpcList+0x1bc fffff880`02f22fb0 fffff800`0289567c : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KxRetireDpcList+0x5 fffff880`09da4be0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDispatchInterruptContinue STACK_COMMAND: kb FOLLOWUP_IP: HIDCLASS!HidpMajorHandler+44 fffff880`04ef385c 488b87b8000000 mov rax,qword ptr [rdi+0B8h] SYMBOL_STACK_INDEX: 3 SYMBOL_NAME: HIDCLASS!HidpMajorHandler+44 FOLLOWUP_NAME: MachineOwner MODULE_NAME: HIDCLASS IMAGE_NAME: HIDCLASS.SYS DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bcbfd FAILURE_BUCKET_ID: X64_0xD1_HIDCLASS!HidpMajorHandler+44 BUCKET_ID: X64_0xD1_HIDCLASS!HidpMajorHandler+44 Followup: MachineOwner --------- Debug session time: Wed Jan 26 17:29:45.039 2011 (GMT-5) System Uptime: 0 days 0:01:07.663 Loading Kernel Symbols ............................................................... ................................................................ ..................... Loading User Symbols Loading unloaded module list ...... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 3B, {c0000005, fffff9600024ec62, fffff880068be640, 0} Probably caused by : hardware ( win32k!GreDrawStream+892 ) Followup: MachineOwner --------- 0: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* SYSTEM_SERVICE_EXCEPTION (3b) An exception happened while executing a system service routine. Arguments: Arg1: 00000000c0000005, Exception code that caused the bugcheck Arg2: fffff9600024ec62, Address of the exception record for the exception that caused the bugcheck Arg3: fffff880068be640, Address of the context record for the exception that caused the bugcheck Arg4: 0000000000000000, zero. Debugging Details: ------------------ EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s. FAULTING_IP: win32k!GreDrawStream+892 fffff960`0024ec62 0000 add byte ptr [rax],al CONTEXT: fffff880068be640 -- (.cxr 0xfffff880068be640) rax=0000000000000000 rbx=fffff900c2a45270 rcx=0000000000000000 rdx=fffff900c0000750 rsi=0000000000000000 rdi=fffff900c29955a0 rip=fffff9600024ec62 rsp=fffff880068bf010 rbp=fffff900c0000de0 r8=fffff900c074d510 r9=0000000000000000 r10=00000000000000ff r11=fffff880068befe0 r12=fffff900c30cf660 r13=fffff900c074d510 r14=fffff900c0000de0 r15=fffff900c0000750 iopl=0 nv up ei pl zr na po nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246 win32k!GreDrawStream+0x892: fffff960`0024ec62 0000 add byte ptr [rax],al ds:002b:00000000`00000000=?? Resetting default scope CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0x3B PROCESS_NAME: explorer.exe CURRENT_IRQL: 0 MISALIGNED_IP: win32k!GreDrawStream+892 fffff960`0024ec62 0000 add byte ptr [rax],al LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff9600024ec62 STACK_TEXT: fffff880`068bf010 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!GreDrawStream+0x892 FOLLOWUP_IP: win32k!GreDrawStream+892 fffff960`0024ec62 0000 add byte ptr [rax],al SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: win32k!GreDrawStream+892 FOLLOWUP_NAME: MachineOwner IMAGE_NAME: hardware DEBUG_FLR_IMAGE_TIMESTAMP: 0 STACK_COMMAND: .cxr 0xfffff880068be640 ; kb MODULE_NAME: hardware FAILURE_BUCKET_ID: X64_IP_MISALIGNED BUCKET_ID: X64_IP_MISALIGNED Followup: MachineOwner --------- Debug session time: Wed Jan 26 18:12:51.014 2011 (GMT-5) System Uptime: 0 days 0:21:57.011 Loading Kernel Symbols ............................................................... ................................................................ ......................... Loading User Symbols Loading unloaded module list ....... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck BE, {fffff88001058380, 80000000033eb121, fffff88006c7f360, b} Probably caused by : fileinfo.sys ( fileinfo!FIPreCreateCallback+1a7 ) Followup: MachineOwner --------- 2: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* ATTEMPTED_WRITE_TO_READONLY_MEMORY (be) An attempt was made to write to readonly memory. The guilty driver is on the stack trace (and is typically the current instruction pointer). When possible, the guilty driver's name (Unicode string) is printed on the bugcheck screen and saved in KiBugCheckDriver. Arguments: Arg1: fffff88001058380, Virtual address for the attempted write. Arg2: 80000000033eb121, PTE contents. Arg3: fffff88006c7f360, (reserved) Arg4: 000000000000000b, (reserved) Debugging Details: ------------------ CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0xBE PROCESS_NAME: WmiPrvSE.exe CURRENT_IRQL: 0 TRAP_FRAME: fffff88006c7f360 -- (.trap 0xfffff88006c7f360) NOTE: The trap frame does not contain all registers. Some register values may be zeroed or incorrect. rax=0000000000000026 rbx=0000000000000000 rcx=fffff8800105aa40 rdx=fffff8800105a2e0 rsi=0000000000000000 rdi=0000000000000000 rip=fffff8800105c95f rsp=fffff88006c7f4f0 rbp=00000000000000f0 r8=fffff88006c7f5b0 r9=0000000000000000 r10=000000000000005a r11=0000000000000011 r12=0000000000000000 r13=0000000000000000 r14=0000000000000000 r15=0000000000000000 iopl=0 nv up ei pl zr na po nc fileinfo!FIPreCreateCallback+0x1a7: fffff880`0105c95f ff151bbaffff call qword ptr [fileinfo!_imp_ExpInterlockedPopEntrySList (fffff880`01058380)] ds:fffff880`01058380={nt!ExpInterlockedPopEntrySList (fffff800`028748e0)} Resetting default scope LAST_CONTROL_TRANSFER: from fffff800028f1ae2 to fffff80002871740 STACK_TEXT: fffff880`06c7f1f8 fffff800`028f1ae2 : 00000000`000000be fffff880`01058380 80000000`033eb121 fffff880`06c7f360 : nt!KeBugCheckEx fffff880`06c7f200 fffff800`0286f82e : 00000000`00000001 00000000`00000024 00000000`00000000 00000000`00000801 : nt! ?? ::FNODOBFM::`string'+0x4237e fffff880`06c7f360 fffff880`0105c95f : fffffa80`04c66bb0 00000000`00000000 fffff8a0`00000000 fffffa80`04c6b800 : nt!KiPageFault+0x16e fffff880`06c7f4f0 fffff880`0100b027 : 00000000`00000000 fffffa80`04c6b860 fffffa80`0471a980 fffffa80`04c66dd0 : fileinfo!FIPreCreateCallback+0x1a7 fffff880`06c7f560 fffff880`0100d8ca : fffffa80`04754200 fffffa80`04754200 fffffa80`04632900 fffffa80`04817000 : fltmgr!FltpPerformPreCallbacks+0x2f7 fffff880`06c7f660 fffff880`0102b2a3 : fffffa80`03bc9010 fffffa80`03bc9010 fffffa80`03bc9010 fffffa80`6d4e6f49 : fltmgr!FltpPassThroughInternal+0x4a fffff880`06c7f690 fffff800`02b74807 : 00000000`00000005 fffff800`02b74260 fffffa80`04293b10 00000000`00000000 : fltmgr!FltpCreate+0x293 fffff880`06c7f740 fffff800`02b6ae84 : fffffa80`045cfcd0 00000000`00000000 fffffa80`0415d450 fffff8a0`014cd101 : nt!IopParseDevice+0x5a7 fffff880`06c7f8d0 fffff800`02b6fe4d : fffffa80`0415d450 fffff880`06c7fa30 00000000`00000040 fffffa80`036f3f30 : nt!ObpLookupObjectName+0x585 fffff880`06c7f9d0 fffff800`02b76917 : fffff8a0`09047060 00000000`00000001 00000001`00418701 00000000`00000000 : nt!ObOpenObjectByName+0x1cd fffff880`06c7fa80 fffff800`02b8f608 : 00000000`02cdd0f0 fffff8a0`00100001 fffff8a0`0791f790 00000000`02cdd168 : nt!IopCreateFile+0x2b7 fffff880`06c7fb20 fffff800`02870993 : fffffa80`03ce4b30 00000000`00000001 fffffa80`04146b60 fffff800`02b87414 : nt!NtOpenFile+0x58 fffff880`06c7fbb0 00000000`77b9008a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13 00000000`02cdd068 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77b9008a STACK_COMMAND: kb FOLLOWUP_IP: fileinfo!FIPreCreateCallback+1a7 fffff880`0105c95f ff151bbaffff call qword ptr [fileinfo!_imp_ExpInterlockedPopEntrySList (fffff880`01058380)] SYMBOL_STACK_INDEX: 3 SYMBOL_NAME: fileinfo!FIPreCreateCallback+1a7 FOLLOWUP_NAME: MachineOwner MODULE_NAME: fileinfo IMAGE_NAME: fileinfo.sys DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc481 FAILURE_BUCKET_ID: X64_0xBE_fileinfo!FIPreCreateCallback+1a7 BUCKET_ID: X64_0xBE_fileinfo!FIPreCreateCallback+1a7 Followup: MachineOwner --------- 2: kd> lmtsmn start end module name fffff880`00f87000 fffff880`00fde000 ACPI ACPI.sys Mon Jul 13 19:19:34 2009 (4A5BC106) fffff880`02cdd000 fffff880`02d67000 afd afd.sys Mon Jul 13 19:21:40 2009 (4A5BC184) fffff880`01877000 fffff880`0188d000 AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0) fffff880`00dcb000 fffff880`00dd6000 amdxata amdxata.sys Tue May 19 13:56:59 2009 (4A12F2EB) fffff880`00eba000 fffff880`00ec3000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`00c86000 fffff880`00cb0000 ataport ataport.SYS Mon Jul 13 19:19:52 2009 (4A5BC118) fffff880`04fc1000 fffff880`04fde000 avgntflt avgntflt.sys Fri May 07 12:05:34 2010 (4BE43A4E) fffff880`03b71000 fffff880`03b93000 avipbb avipbb.sys Mon Feb 22 05:08:50 2010 (4B8257B2) fffff880`019ab000 fffff880`019b2000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D) fffff880`03b60000 fffff880`03b71000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF) fffff880`01ec8000 fffff880`01ee6000 bowser bowser.sys Mon Jul 13 19:23:50 2009 (4A5BC206) fffff960`00750000 fffff960`00777000 cdd cdd.dll unavailable (00000000) fffff880`06e54000 fffff880`06e71000 cdfs cdfs.sys Mon Jul 13 19:19:46 2009 (4A5BC112) fffff880`01978000 fffff880`019a2000 cdrom cdrom.sys Mon Jul 13 19:19:54 2009 (4A5BC11A) fffff880`00ec7000 fffff880`00f87000 CI CI.dll Mon Jul 13 21:32:13 2009 (4A5BE01D) fffff880`01912000 fffff880`01942000 CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E) fffff880`00d10000 fffff880`00d6e000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`010c7000 fffff880`0113a000 cng cng.sys Mon Jul 13 19:49:40 2009 (4A5BC814) fffff880`02dea000 fffff880`02dfa000 CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1) fffff880`040da000 fffff880`040e8000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD) fffff880`03abf000 fffff880`03b42000 csc csc.sys Mon Jul 13 19:24:26 2009 (4A5BC22A) fffff880`03b42000 fffff880`03b60000 dfsc dfsc.sys Mon Jul 13 19:23:44 2009 (4A5BC200) fffff880`02cb4000 fffff880`02cc3000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E) fffff880`018fc000 fffff880`01912000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`040a6000 fffff880`040c8000 drmk drmk.sys Mon Jul 13 21:01:25 2009 (4A5BD8E5) fffff880`04000000 fffff880`04009000 dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`040e8000 fffff880`040f4000 dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`01942000 fffff880`01955000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F) fffff880`040ce000 fffff880`040da000 Dxapi Dxapi.sys Mon Jul 13 19:38:28 2009 (4A5BC574) fffff880`10a5e000 fffff880`10b52000 dxgkrnl dxgkrnl.sys Thu Oct 01 21:00:14 2009 (4AC5509E) fffff880`10b52000 fffff880`10b98000 dxgmms1 dxgmms1.sys Mon Jul 13 19:38:32 2009 (4A5BC578) fffff880`04f68000 fffff880`04f9e000 fastfat fastfat.SYS Mon Jul 13 19:23:28 2009 (4A5BC1F0) fffff880`03a8b000 fffff880`03a98000 fdc fdc.sys Mon Jul 13 20:00:54 2009 (4A5BCAB6) fffff880`01055000 fffff880`01069000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481) fffff880`041e0000 fffff880`041eb000 flpydisk flpydisk.sys Mon Jul 13 20:00:54 2009 (4A5BCAB6) fffff880`01009000 fffff880`01055000 fltmgr fltmgr.sys Mon Jul 13 19:19:59 2009 (4A5BC11F) fffff880`013d8000 fffff880`013e2000 Fs_Rec Fs_Rec.sys Mon Jul 13 19:19:45 2009 (4A5BC111) fffff880`018c2000 fffff880`018fc000 fvevol fvevol.sys Fri Sep 25 22:34:26 2009 (4ABD7DB2) fffff880`0113a000 fffff880`01184000 fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164) fffff880`02cc3000 fffff880`02cd0000 GEARAspiWDM GEARAspiWDM.sys Mon May 18 08:17:04 2009 (4A1151C0) fffff800`02ddd000 fffff800`02e26000 hal hal.dll Mon Jul 13 21:27:36 2009 (4A5BDF08) fffff880`03a00000 fffff880`03a24000 HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5) fffff880`0400d000 fffff880`04069000 HdAudio HdAudio.sys Mon Jul 13 20:06:59 2009 (4A5BCC23) fffff880`01ef7000 fffff880`01f10000 HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD) fffff880`01f10000 fffff880`01f18080 HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9) fffff880`018b1000 fffff880`018bf000 hidusb hidusb.sys Mon Jul 13 20:06:22 2009 (4A5BCBFE) fffff880`01e00000 fffff880`01ec8000 HTTP HTTP.sys Mon Jul 13 19:22:16 2009 (4A5BC1A8) fffff880`014b5000 fffff880`014be000 hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA) fffff880`01859000 fffff880`01877000 i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`03bb9000 fffff880`03bcf000 intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD) fffff880`03aa4000 fffff880`03ab3000 kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116) fffff800`00bca000 fffff800`00bd4000 kdcom kdcom.dll Mon Jul 13 21:31:07 2009 (4A5BDFDB) fffff880`04131000 fffff880`04174000 ks ks.sys Wed Mar 03 23:32:25 2010 (4B8F37D9) fffff880`013ad000 fffff880`013c7000 ksecdd ksecdd.sys Mon Jul 13 19:20:54 2009 (4A5BC156) fffff880`01460000 fffff880`0148b000 ksecpkg ksecpkg.sys Fri Dec 11 01:03:32 2009 (4B21E0B4) fffff880`040c8000 fffff880`040cd200 ksthunk ksthunk.sys Mon Jul 13 20:00:19 2009 (4A5BCA93) fffff880`01f31000 fffff880`01f46000 lltdio lltdio.sys Mon Jul 13 20:08:50 2009 (4A5BCC92) fffff880`04f9e000 fffff880`04fc1000 luafv luafv.sys Mon Jul 13 19:26:13 2009 (4A5BC295) fffff880`04e12000 fffff880`04f23880 LV302V64 LV302V64.SYS Thu May 10 00:22:39 2007 (46429E0F) fffff880`01f26000 fffff880`01f30900 LVUSBS64 LVUSBS64.sys Thu May 10 00:21:07 2007 (46429DB3) fffff880`00cb8000 fffff880`00cfc000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66) fffff880`04f3f000 fffff880`04f4d000 monitor monitor.sys Mon Jul 13 19:38:52 2009 (4A5BC58C) fffff880`04120000 fffff880`0412f000 mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116) fffff880`01f19000 fffff880`01f26000 mouhid mouhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94) fffff880`00c6c000 fffff880`00c86000 mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A) fffff880`01f5e000 fffff880`01f76000 mpsdrv mpsdrv.sys Mon Jul 13 20:08:25 2009 (4A5BCC79) fffff880`01f76000 fffff880`01fa3000 mrxsmb mrxsmb.sys Sat Feb 27 02:52:19 2010 (4B88CF33) fffff880`01fa3000 fffff880`01ff1000 mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C) fffff880`05a6f000 fffff880`05a92000 mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A) fffff880`01812000 fffff880`0181d000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113) fffff880`00fe7000 fffff880`00ff1000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE) fffff880`06e73000 fffff880`06e75b80 MSKSSRV MSKSSRV.sys Mon Jul 13 20:00:18 2009 (4A5BCA92) fffff880`01069000 fffff880`010c7000 msrpc msrpc.sys Mon Jul 13 19:21:32 2009 (4A5BC17C) fffff880`02ca9000 fffff880`02cb4000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE) fffff880`06e71000 fffff880`06e72f80 MSTEE MSTEE.sys Mon Jul 13 20:00:17 2009 (4A5BCA91) fffff880`014a3000 fffff880`014b5000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201) fffff880`014c5000 fffff880`015b7000 ndis ndis.sys Mon Jul 13 19:21:40 2009 (4A5BC184) fffff880`03ab3000 fffff880`03abf000 ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8) fffff880`011d0000 fffff880`011ff000 ndiswan ndiswan.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3) fffff880`041eb000 fffff880`04200000 NDProxy NDProxy.SYS Mon Jul 13 20:10:05 2009 (4A5BCCDD) fffff880`02ddb000 fffff880`02dea000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6) fffff880`02d67000 fffff880`02dac000 netbt netbt.sys Mon Jul 13 19:21:28 2009 (4A5BC178) fffff880`01400000 fffff880`01460000 NETIO NETIO.SYS Mon Jul 13 19:21:46 2009 (4A5BC18A) fffff880`0181d000 fffff880`0182e000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114) fffff880`02c9d000 fffff880`02ca9000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E) fffff800`02801000 fffff800`02ddd000 nt ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9) fffff880`0120a000 fffff880`013ad000 Ntfs Ntfs.sys Mon Jul 13 19:20:47 2009 (4A5BC14F) fffff880`019a2000 fffff880`019ab000 Null Null.SYS Mon Jul 13 19:19:37 2009 (4A5BC109) fffff880`10a5c000 fffff880`10a5d180 nvBridge nvBridge.kmd Fri Jan 07 20:57:22 2011 (4D27C482) fffff880`0fe01000 fffff880`10a5bd00 nvlddmkm nvlddmkm.sys Fri Jan 07 21:07:22 2011 (4D27C6DA) fffff880`02db5000 fffff880`02ddb000 pacer pacer.sys Mon Jul 13 20:09:41 2009 (4A5BCCC5) fffff880`03be0000 fffff880`03bfd000 parport parport.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8) fffff880`00da1000 fffff880`00db6000 partmgr partmgr.sys Mon Jul 13 19:19:58 2009 (4A5BC11E) fffff880`00d6e000 fffff880`00da1000 pci pci.sys Mon Jul 13 19:19:51 2009 (4A5BC117) fffff880`00eb3000 fffff880`00eba000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115) fffff880`00c5c000 fffff880`00c6c000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114) fffff880`013c7000 fffff880`013d8000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF) fffff880`05a92000 fffff880`05b38000 peauth peauth.sys Mon Jul 13 21:01:19 2009 (4A5BD8DF) fffff880`04069000 fffff880`040a6000 portcls portcls.sys Mon Jul 13 20:06:27 2009 (4A5BCC03) fffff880`00cfc000 fffff880`00d10000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027) fffff880`0188d000 fffff880`018b1000 rasl2tp rasl2tp.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3) fffff880`013e2000 fffff880`013fd000 raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9) fffff880`00dd6000 fffff880`00df7000 raspptp raspptp.sys Mon Jul 13 20:10:18 2009 (4A5BCCEA) fffff880`040fb000 fffff880`04115000 rassstp rassstp.sys Mon Jul 13 20:10:25 2009 (4A5BCCF1) fffff880`02c4c000 fffff880`02c9d000 rdbss rdbss.sys Mon Jul 13 19:24:09 2009 (4A5BC219) fffff880`04115000 fffff880`04120000 rdpbus rdpbus.sys Mon Jul 13 20:17:46 2009 (4A5BCEAA) fffff880`019f5000 fffff880`019fe000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62) fffff880`01800000 fffff880`01809000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62) fffff880`01809000 fffff880`01812000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63) fffff880`015b7000 fffff880`015f1000 rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A) fffff880`01f46000 fffff880`01f5e000 rspndr rspndr.sys Mon Jul 13 20:08:50 2009 (4A5BCC92) fffff880`03a24000 fffff880`03a8b000 Rt64win7 Rt64win7.sys Wed Dec 29 06:44:36 2010 (4D1B1F24) fffff880`05b38000 fffff880`05b43000 secdrv secdrv.SYS Wed Sep 13 09:18:38 2006 (4508052E) fffff880`03a98000 fffff880`03aa4000 serenum serenum.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1) fffff880`02c00000 fffff880`02c1d000 serial serial.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8) fffff880`0149b000 fffff880`014a3000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB) fffff880`06eb4000 fffff880`06f4a000 srv srv.sys Thu Aug 26 23:38:00 2010 (4C773318) fffff880`05b82000 fffff880`05be9000 srv2 srv2.sys Thu Aug 26 23:37:46 2010 (4C77330A) fffff880`05b43000 fffff880`05b70000 srvnet srvnet.sys Thu Aug 26 23:37:24 2010 (4C7732F4) fffff880`0412f000 fffff880`04130480 swenum swenum.sys Mon Jul 13 20:00:18 2009 (4A5BCA92) fffff880`01602000 fffff880`017ff000 tcpip tcpip.sys Sun Jun 13 23:39:04 2010 (4C15A458) fffff880`05b70000 fffff880`05b82000 tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD) fffff880`0184c000 fffff880`01859000 TDI TDI.SYS Mon Jul 13 19:21:18 2009 (4A5BC16E) fffff880`0182e000 fffff880`0184c000 tdx tdx.sys Mon Jul 13 19:21:15 2009 (4A5BC16B) fffff880`02c38000 fffff880`02c4c000 termdd termdd.sys Mon Jul 13 20:16:36 2009 (4A5BCE64) fffff960`00410000 fffff960`0041a000 TSDDD TSDDD.dll Mon Jul 13 20:16:34 2009 (4A5BCE62) fffff880`03b93000 fffff880`03bb9000 tunnel tunnel.sys Mon Jul 13 20:09:37 2009 (4A5BCCC1) fffff880`06e00000 fffff880`06e54000 udfs udfs.sys Mon Jul 13 19:23:37 2009 (4A5BC1F9) fffff880`04174000 fffff880`04186000 umbus umbus.sys Mon Jul 13 20:06:56 2009 (4A5BCC20) fffff880`04f24000 fffff880`04f3ec00 usbaudio usbaudio.sys Mon Jul 13 20:06:31 2009 (4A5BCC07) fffff880`01955000 fffff880`01972000 usbccgp usbccgp.sys Mon Jul 13 20:06:45 2009 (4A5BCC15) fffff880`04009000 fffff880`0400af00 USBD USBD.SYS Mon Jul 13 20:06:23 2009 (4A5BCBFF) fffff880`03bcf000 fffff880`03be0000 usbehci usbehci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06) fffff880`04186000 fffff880`041e0000 usbhub usbhub.sys Mon Jul 13 20:07:09 2009 (4A5BCC2D) fffff880`10ba5000 fffff880`10bfb000 USBPORT USBPORT.SYS Mon Jul 13 20:06:31 2009 (4A5BCC07) fffff880`04f4d000 fffff880`04f68000 USBSTOR USBSTOR.SYS Mon Jul 13 20:06:34 2009 (4A5BCC0A) fffff880`10b98000 fffff880`10ba5000 usbuhci usbuhci.sys Mon Jul 13 20:06:27 2009 (4A5BCC03) fffff880`00ff1000 fffff880`00ffe000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB) fffff880`019b2000 fffff880`019c0000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587) fffff880`019c0000 fffff880`019e5000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B) fffff880`0148b000 fffff880`0149b000 vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E) fffff880`00db6000 fffff880`00dcb000 volmgr volmgr.sys Mon Jul 13 19:19:57 2009 (4A5BC11D) fffff880`00c00000 fffff880`00c5c000 volmgrx volmgrx.sys Mon Jul 13 19:20:33 2009 (4A5BC141) fffff880`01184000 fffff880`011d0000 volsnap volsnap.sys Mon Jul 13 19:20:08 2009 (4A5BC128) fffff880`02c1d000 fffff880`02c38000 wanarp wanarp.sys Mon Jul 13 20:10:21 2009 (4A5BCCED) fffff880`019e5000 fffff880`019f5000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F) fffff880`00e00000 fffff880`00ea4000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F) fffff880`00ea4000 fffff880`00eb3000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A) fffff880`02dac000 fffff880`02db5000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6) fffff960`000a0000 fffff960`003af000 win32k win32k.sys Mon Jul 13 19:40:16 2009 (4A5BC5E0) fffff880`00fde000 fffff880`00fe7000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117) fffff880`04fde000 fffff880`04fff000 WudfPf WudfPf.sys Mon Jul 13 20:05:37 2009 (4A5BCBD1) fffff880`06f4a000 fffff880`06f7b000 WUDFRd WUDFRd.sys Mon Jul 13 20:06:06 2009 (4A5BCBEE) Unloaded modules: fffff880`06f7b000 fffff880`06fec000 spsys.sys Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`01942000 fffff880`01950000 crashdmp.sys Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`01950000 fffff880`0195c000 dump_ataport Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`0195c000 fffff880`01965000 dump_atapi.s Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`01965000 fffff880`01978000 dump_dumpfve Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`0400b000 fffff880`0400d000 USBD.SYS Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`04000000 fffff880`0400b000 LVUSBS64.sys Timestamp: unavailable (00000000) Checksum: 00000000
The chkdisk
And I had some BSOD's more...Code:Verifying the file system in C: The type of the file system is NTFS. A verification of the disc has been programmed. Windows will verify the disc now. CHKDSK is verifying archives (stage 1 of 3)… 60416 registries of archives process. Verification of archives completed. 38 registries of great archives process. 0 registries of archives nonvalid processings. 2 registries of EA process. 73 registries of analysis process. CHKDSK is verifying indices (stage 2 of 3)… 89128 processed entrances of index. Verification of indices completed. 0 indizados archives not examined. 0 indizados archives not recovered. CHKDSK is verifying security descriptors (stage 3 of 3)… 60416 SD/SID of file process. Releasing 167 entrances of index not used of the index $SII of the file 0x9. Releasing 167 entrances of index not used of the index $SDH of the file 0x9. Releasing 167 not used descriptors of security. Verification of descriptors of completed security. 14357 data files process. CHKDSK is verifying newspaper USN… 4747184 bytes of USN process. The verification of newspaper USN has been completed. Windows has verified the file system and it did not find problems. 488382463 KB of total space in disc. 15950412 KB in 45324 archives. 36592 KB in 14358 indices. 0 KB in defective sectors. 146171 KB in use by the system. The registry file has occupied 65536 kilobytes. 472249288 KB available in disc. 4096 bytes in each unit of allocation. 122095615 units of allocation in disc altogether. 118062322 units of allocation available in disc. Internal information: 00 ec 00 00 2d e9 00 00 8a e4 01 00 00 00 00 00….- ........... 35 00 00 00 49 00 00 00 00 00 00 00 00 00 00 00 5… Is ........... 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ Windows has finalized the verification of the disc. It waits for while the system is reinitiated.
Carl gave a good advice.
And for the checkdisk result seems good. It did not indicated any bad sector.
Update this driver:
Rt64win7.sys Thu Feb 26 01:04:13 2009 → Realtek PCI-e GBE Ethernet
If the problem persist then test your RAM for at least 7 passes.
RAM - Test with Memtest86+
Code:Windows 7 Kernel Version 7600 MP (4 procs) Free x64 Product: WinNt, suite: TerminalServer SingleUserTS Built by: 7600.16385.amd64fre.win7_rtm.090713-1255 Machine Name: Kernel base = 0xfffff800`02649000 PsLoadedModuleList = 0xfffff800`02886e50 Debug session time: Thu Jan 27 04:01:42.570 2011 (GMT-8) System Uptime: 0 days 0:11:38.155 Loading Kernel Symbols ............................................................... ................................................................ ................. Loading User Symbols Loading unloaded module list .... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck BE, {fffff880010a4380, 80000000033ca121, fffff880080ec340, b} Probably caused by : fileinfo.sys ( fileinfo!FIPreCreateCallback+1a7 ) Followup: MachineOwner --------- 2: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* ATTEMPTED_WRITE_TO_READONLY_MEMORY (be) An attempt was made to write to readonly memory. The guilty driver is on the stack trace (and is typically the current instruction pointer). When possible, the guilty driver's name (Unicode string) is printed on the bugcheck screen and saved in KiBugCheckDriver. Arguments: Arg1: fffff880010a4380, Virtual address for the attempted write. Arg2: 80000000033ca121, PTE contents. Arg3: fffff880080ec340, (reserved) Arg4: 000000000000000b, (reserved) Debugging Details: ------------------ CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0xBE PROCESS_NAME: svchost.exe CURRENT_IRQL: 0 TRAP_FRAME: fffff880080ec340 -- (.trap 0xfffff880080ec340) NOTE: The trap frame does not contain all registers. Some register values may be zeroed or incorrect. rax=00000000000000b0 rbx=0000000000000000 rcx=fffff880010a6a40 rdx=fffff880010a62e0 rsi=0000000000000000 rdi=0000000000000000 rip=fffff880010a895f rsp=fffff880080ec4d0 rbp=00000000000000f0 r8=fffff880080ec590 r9=0000000000000000 r10=fffffffffffffff0 r11=0000000000000011 r12=0000000000000000 r13=0000000000000000 r14=0000000000000000 r15=0000000000000000 iopl=0 nv up ei pl zr na po nc fileinfo!FIPreCreateCallback+0x1a7: fffff880`010a895f ff151bbaffff call qword ptr [fileinfo!_imp_ExpInterlockedPopEntrySList (fffff880`010a4380)] ds:fffff880`010a4380={nt!RtlpInterlockedPopEntrySList (fffff800`026be0e0)} Resetting default scope LAST_CONTROL_TRANSFER: from fffff80002739db2 to fffff800026baf00 STACK_TEXT: fffff880`080ec1d8 fffff800`02739db2 : 00000000`000000be fffff880`010a4380 80000000`033ca121 fffff880`080ec340 : nt!KeBugCheckEx fffff880`080ec1e0 fffff800`026b8fee : 00000000`00000001 00000000`000000ae 00000000`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x4244e fffff880`080ec340 fffff880`010a895f : fffffa80`045ffbb0 00000000`00000000 fffffa80`00000000 fffffa80`045fc900 : nt!KiPageFault+0x16e fffff880`080ec4d0 fffff880`01057027 : 00000000`00000000 fffffa80`045fc960 fffffa80`05989af0 fffffa80`045ffdd0 : fileinfo!FIPreCreateCallback+0x1a7 fffff880`080ec540 fffff880`010598ca : fffffa80`04df6700 fffffa80`04df6700 fffffa80`045d8800 fffffa80`0474e000 : fltmgr!FltpPerformPreCallbacks+0x2f7 fffff880`080ec640 fffff880`010772a3 : fffffa80`03ead370 fffffa80`03ead370 fffffa80`03ead370 fffffa80`6d4e6f49 : fltmgr!FltpPassThroughInternal+0x4a fffff880`080ec670 fffff800`029bb477 : 00000000`00000005 fffff800`029baed0 fffffa80`03f3e010 00000000`00000000 : fltmgr!FltpCreate+0x293 fffff880`080ec720 fffff800`029b1764 : fffffa80`045dccd0 00000000`00000000 fffffa80`03f87390 fffffa80`04755101 : nt!IopParseDevice+0x5a7 fffff880`080ec8b0 fffff800`029b6876 : fffffa80`03f87390 fffff880`080eca30 fffff8a0`00000040 fffffa80`036d9c90 : nt!ObpLookupObjectName+0x585 fffff880`080ec9b0 fffff800`029bd587 : 00000000`000007ff 00000000`00000001 fffffa80`04df6801 00000000`00000180 : nt!ObOpenObjectByName+0x306 fffff880`080eca80 fffff800`029d62a4 : 00000000`0788f180 fffff8a0`00100100 fffff8a0`017c4c10 00000000`0788f0f0 : nt!IopCreateFile+0x2b7 fffff880`080ecb20 fffff800`026ba153 : fffffa80`04177060 00000000`00000001 fffffa80`058f3950 fffff800`029ce094 : nt!NtOpenFile+0x58 fffff880`080ecbb0 00000000`773101ea : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13 00000000`0788f088 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x773101ea STACK_COMMAND: kb FOLLOWUP_IP: fileinfo!FIPreCreateCallback+1a7 fffff880`010a895f ff151bbaffff call qword ptr [fileinfo!_imp_ExpInterlockedPopEntrySList (fffff880`010a4380)] SYMBOL_STACK_INDEX: 3 SYMBOL_NAME: fileinfo!FIPreCreateCallback+1a7 FOLLOWUP_NAME: MachineOwner MODULE_NAME: fileinfo IMAGE_NAME: fileinfo.sys DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc481 FAILURE_BUCKET_ID: X64_0xBE_fileinfo!FIPreCreateCallback+1a7 BUCKET_ID: X64_0xBE_fileinfo!FIPreCreateCallback+1a7 Followup: MachineOwner --------- 2: kd> lmvm fileinfo start end module name fffff880`010a1000 fffff880`010b5000 fileinfo (pdb symbols) c:\windows\symbols\fileinfo.pdb\99DAA03EB2014EFE91E56C3EF9ADE0F01\fileinfo.pdb Loaded symbol image file: fileinfo.sys Mapped memory image file: C:\Windows\Symbols\fileinfo.sys\4A5BC48114000\fileinfo.sys Image path: \SystemRoot\system32\drivers\fileinfo.sys Image name: fileinfo.sys Timestamp: Mon Jul 13 16:34:25 2009 (4A5BC481) CheckSum: 00015644 ImageSize: 00014000 File version: 6.1.7600.16385 Product version: 6.1.7600.16385 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: FileInfo.sys OriginalFilename: FileInfo.sys ProductVersion: 6.1.7600.16385 FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255) FileDescription: FileInfo Filter Driver LegalCopyright: © Microsoft Corporation. All rights reserved. 2: kd> lmtsmn start end module name fffff880`00f18000 fffff880`00f6f000 ACPI ACPI.sys Mon Jul 13 16:19:34 2009 (4A5BC106) fffff880`02c2c000 fffff880`02cb6000 afd afd.sys Mon Jul 13 16:21:40 2009 (4A5BC184) fffff880`0488c000 fffff880`048a2000 AgileVpn AgileVpn.sys Mon Jul 13 17:10:24 2009 (4A5BCCF0) fffff880`00dd4000 fffff880`00ddf000 amdxata amdxata.sys Tue May 19 10:56:59 2009 (4A12F2EB) fffff880`079a2000 fffff880`079ad000 asyncmac asyncmac.sys Mon Jul 13 17:10:13 2009 (4A5BCCE5) fffff880`00da1000 fffff880`00daa000 atapi atapi.sys Mon Jul 13 16:19:47 2009 (4A5BC113) fffff880`00daa000 fffff880`00dd4000 ataport ataport.SYS Mon Jul 13 16:19:52 2009 (4A5BC118) fffff880`01900000 fffff880`01907000 Beep Beep.SYS Mon Jul 13 17:00:13 2009 (4A5BCA8D) fffff880`03b5a000 fffff880`03b6b000 blbdrive blbdrive.sys Mon Jul 13 16:35:59 2009 (4A5BC4DF) fffff880`047de000 fffff880`047fc000 bowser bowser.sys Mon Jul 13 16:23:50 2009 (4A5BC206) fffff960`00760000 fffff960`00787000 cdd cdd.dll unavailable (00000000) fffff880`018cd000 fffff880`018f7000 cdrom cdrom.sys Mon Jul 13 16:19:54 2009 (4A5BC11A) fffff880`00c00000 fffff880`00cc0000 CI CI.dll Mon Jul 13 18:32:13 2009 (4A5BE01D) fffff880`01867000 fffff880`01897000 CLASSPNP CLASSPNP.SYS Mon Jul 13 16:19:58 2009 (4A5BC11E) fffff880`00d29000 fffff880`00d87000 CLFS CLFS.SYS Mon Jul 13 16:19:57 2009 (4A5BC11D) fffff880`01113000 fffff880`01186000 cng cng.sys Mon Jul 13 16:49:40 2009 (4A5BC814) fffff880`0487c000 fffff880`0488c000 CompositeBus CompositeBus.sys Mon Jul 13 17:00:33 2009 (4A5BCAA1) fffff880`03a8b000 fffff880`03a99000 crashdmp crashdmp.sys Mon Jul 13 17:01:01 2009 (4A5BCABD) fffff880`03ab9000 fffff880`03b3c000 csc csc.sys Mon Jul 13 16:24:26 2009 (4A5BC22A) fffff880`03b3c000 fffff880`03b5a000 dfsc dfsc.sys Mon Jul 13 16:23:44 2009 (4A5BC200) fffff880`02ded000 fffff880`02dfc000 discache discache.sys Mon Jul 13 16:37:18 2009 (4A5BC52E) fffff880`01851000 fffff880`01867000 disk disk.sys Mon Jul 13 16:19:57 2009 (4A5BC11D) fffff880`04547000 fffff880`04569000 drmk drmk.sys Mon Jul 13 18:01:25 2009 (4A5BD8E5) fffff880`053f7000 fffff880`05400000 dump_atapi dump_atapi.sys Mon Jul 13 16:19:47 2009 (4A5BC113) fffff880`03a99000 fffff880`03aa5000 dump_dumpata dump_dumpata.sys Mon Jul 13 16:19:47 2009 (4A5BC113) fffff880`03aa5000 fffff880`03ab8000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 16:21:51 2009 (4A5BC18F) fffff880`02c00000 fffff880`02c0c000 Dxapi Dxapi.sys Mon Jul 13 16:38:28 2009 (4A5BC574) fffff880`040bb000 fffff880`041af000 dxgkrnl dxgkrnl.sys Mon Jul 13 16:38:56 2009 (4A5BC590) fffff880`041af000 fffff880`041f5000 dxgmms1 dxgmms1.sys Mon Jul 13 16:38:32 2009 (4A5BC578) fffff880`019ac000 fffff880`019e2000 fastfat fastfat.SYS Mon Jul 13 16:23:28 2009 (4A5BC1F0) fffff880`04098000 fffff880`040a5000 fdc fdc.sys Mon Jul 13 17:00:54 2009 (4A5BCAB6) fffff880`010a1000 fffff880`010b5000 fileinfo fileinfo.sys Mon Jul 13 16:34:25 2009 (4A5BC481) fffff880`0448e000 fffff880`04499000 flpydisk flpydisk.sys Mon Jul 13 17:00:54 2009 (4A5BCAB6) fffff880`01055000 fffff880`010a1000 fltmgr fltmgr.sys Mon Jul 13 16:19:59 2009 (4A5BC11F) fffff880`013eb000 fffff880`013f5000 Fs_Rec Fs_Rec.sys Mon Jul 13 16:19:45 2009 (4A5BC111) fffff880`01817000 fffff880`01851000 fvevol fvevol.sys Mon Jul 13 16:22:15 2009 (4A5BC1A7) fffff880`015b6000 fffff880`01600000 fwpkclnt fwpkclnt.sys Mon Jul 13 16:21:08 2009 (4A5BC164) fffff800`02600000 fffff800`02649000 hal hal.dll Mon Jul 13 18:27:36 2009 (4A5BDF08) fffff880`04074000 fffff880`04098000 HDAudBus HDAudBus.sys Mon Jul 13 17:06:13 2009 (4A5BCBF5) fffff880`044ae000 fffff880`0450a000 HdAudio HdAudio.sys Mon Jul 13 17:06:59 2009 (4A5BCC23) fffff880`0440e000 fffff880`04427000 HIDCLASS HIDCLASS.SYS Mon Jul 13 17:06:21 2009 (4A5BCBFD) fffff880`04427000 fffff880`0442f080 HIDPARSE HIDPARSE.SYS Mon Jul 13 17:06:17 2009 (4A5BCBF9) fffff880`04400000 fffff880`0440e000 hidusb hidusb.sys Mon Jul 13 17:06:22 2009 (4A5BCBFE) fffff880`04716000 fffff880`047de000 HTTP HTTP.sys Mon Jul 13 16:22:16 2009 (4A5BC1A8) fffff880`0142a000 fffff880`01433000 hwpolicy hwpolicy.sys Mon Jul 13 16:19:22 2009 (4A5BC0FA) fffff880`0484f000 fffff880`0486d000 i8042prt i8042prt.sys Mon Jul 13 16:19:57 2009 (4A5BC11D) fffff880`03b91000 fffff880`03ba7000 intelppm intelppm.sys Mon Jul 13 16:19:25 2009 (4A5BC0FD) fffff880`0486d000 fffff880`0487c000 kbdclass kbdclass.sys Mon Jul 13 16:19:50 2009 (4A5BC116) fffff800`00ba4000 fffff800`00bae000 kdcom kdcom.dll Mon Jul 13 18:31:07 2009 (4A5BDFDB) fffff880`03a29000 fffff880`03a6c000 ks ks.sys Mon Jul 13 17:00:31 2009 (4A5BCA9F) fffff880`013c0000 fffff880`013da000 ksecdd ksecdd.sys Mon Jul 13 16:20:54 2009 (4A5BC156) fffff880`0158b000 fffff880`015b6000 ksecpkg ksecpkg.sys Mon Jul 13 16:50:34 2009 (4A5BC84A) fffff880`04569000 fffff880`0456e200 ksthunk ksthunk.sys Mon Jul 13 17:00:19 2009 (4A5BCA93) fffff880`046e9000 fffff880`046fe000 lltdio lltdio.sys Mon Jul 13 17:08:50 2009 (4A5BCC92) fffff880`046a5000 fffff880`046c8000 luafv luafv.sys Mon Jul 13 16:26:13 2009 (4A5BC295) fffff880`00cd1000 fffff880`00d15000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 18:29:10 2009 (4A5BDF66) fffff880`02c0c000 fffff880`02c1a000 monitor monitor.sys Mon Jul 13 16:38:52 2009 (4A5BC58C) fffff880`03a1a000 fffff880`03a29000 mouclass mouclass.sys Mon Jul 13 16:19:50 2009 (4A5BC116) fffff880`03a7e000 fffff880`03a8b000 mouhid mouhid.sys Mon Jul 13 17:00:20 2009 (4A5BCA94) fffff880`00d87000 fffff880`00da1000 mountmgr mountmgr.sys Mon Jul 13 16:19:54 2009 (4A5BC11A) fffff880`04600000 fffff880`04618000 mpsdrv mpsdrv.sys Mon Jul 13 17:08:25 2009 (4A5BCC79) fffff880`01897000 fffff880`018c3000 mrxsmb mrxsmb.sys Mon Jul 13 16:23:59 2009 (4A5BC20F) fffff880`074db000 fffff880`07528000 mrxsmb10 mrxsmb10.sys Mon Jul 13 16:24:08 2009 (4A5BC218) fffff880`07528000 fffff880`0754b000 mrxsmb20 mrxsmb20.sys Mon Jul 13 16:24:05 2009 (4A5BC215) fffff880`01965000 fffff880`01970000 Msfs Msfs.SYS Mon Jul 13 16:19:47 2009 (4A5BC113) fffff880`00f78000 fffff880`00f82000 msisadrv msisadrv.sys Mon Jul 13 16:19:26 2009 (4A5BC0FE) fffff880`010b5000 fffff880`01113000 msrpc msrpc.sys Mon Jul 13 16:21:32 2009 (4A5BC17C) fffff880`02de2000 fffff880`02ded000 mssmbios mssmbios.sys Mon Jul 13 16:31:10 2009 (4A5BC3BE) fffff880`01418000 fffff880`0142a000 mup mup.sys Mon Jul 13 16:23:45 2009 (4A5BC201) fffff880`01439000 fffff880`0152b000 ndis ndis.sys Mon Jul 13 16:21:40 2009 (4A5BC184) fffff880`048c6000 fffff880`048d2000 ndistapi ndistapi.sys Mon Jul 13 17:10:00 2009 (4A5BCCD8) fffff880`03ba7000 fffff880`03bd6000 ndiswan ndiswan.sys Mon Jul 13 17:10:11 2009 (4A5BCCE3) fffff880`04499000 fffff880`044ae000 NDProxy NDProxy.SYS Mon Jul 13 17:10:05 2009 (4A5BCCDD) fffff880`02d2a000 fffff880`02d39000 netbios netbios.sys Mon Jul 13 17:09:26 2009 (4A5BCCB6) fffff880`02cb6000 fffff880`02cfb000 netbt netbt.sys Mon Jul 13 16:21:28 2009 (4A5BC178) fffff880`0152b000 fffff880`0158b000 NETIO NETIO.SYS Mon Jul 13 16:21:46 2009 (4A5BC18A) fffff880`01970000 fffff880`01981000 Npfs Npfs.SYS Mon Jul 13 16:19:48 2009 (4A5BC114) fffff880`02dd6000 fffff880`02de2000 nsiproxy nsiproxy.sys Mon Jul 13 16:21:02 2009 (4A5BC15E) fffff800`02649000 fffff800`02c26000 nt ntkrnlmp.exe Mon Jul 13 16:40:48 2009 (4A5BC600) fffff880`0121d000 fffff880`013c0000 Ntfs Ntfs.sys Mon Jul 13 16:20:47 2009 (4A5BC14F) fffff880`018f7000 fffff880`01900000 Null Null.SYS Mon Jul 13 16:19:37 2009 (4A5BC109) fffff880`048d4000 fffff880`053dbb00 nvlddmkm nvlddmkm.sys Thu May 14 13:48:07 2009 (4A0C8387) fffff880`02d04000 fffff880`02d2a000 pacer pacer.sys Mon Jul 13 17:09:41 2009 (4A5BCCC5) fffff880`04832000 fffff880`0484f000 parport parport.sys Mon Jul 13 17:00:40 2009 (4A5BCAA8) fffff880`00fc2000 fffff880`00fd7000 partmgr partmgr.sys Mon Jul 13 16:19:58 2009 (4A5BC11E) fffff880`00f82000 fffff880`00fb5000 pci pci.sys Mon Jul 13 16:19:51 2009 (4A5BC117) fffff880`00e5c000 fffff880`00e63000 pciide pciide.sys Mon Jul 13 16:19:49 2009 (4A5BC115) fffff880`00fec000 fffff880`00ffc000 PCIIDEX PCIIDEX.SYS Mon Jul 13 16:19:48 2009 (4A5BC114) fffff880`013da000 fffff880`013eb000 pcw pcw.sys Mon Jul 13 16:19:27 2009 (4A5BC0FF) fffff880`0754b000 fffff880`075f1000 peauth peauth.sys Mon Jul 13 18:01:19 2009 (4A5BD8DF) fffff880`0450a000 fffff880`04547000 portcls portcls.sys Mon Jul 13 17:06:27 2009 (4A5BCC03) fffff880`00d15000 fffff880`00d29000 PSHED PSHED.dll Mon Jul 13 18:32:23 2009 (4A5BE027) fffff880`048a2000 fffff880`048c6000 rasl2tp rasl2tp.sys Mon Jul 13 17:10:11 2009 (4A5BCCE3) fffff880`053dc000 fffff880`053f7000 raspppoe raspppoe.sys Mon Jul 13 17:10:17 2009 (4A5BCCE9) fffff880`03bd6000 fffff880`03bf7000 raspptp raspptp.sys Mon Jul 13 17:10:18 2009 (4A5BCCEA) fffff880`03a00000 fffff880`03a1a000 rassstp rassstp.sys Mon Jul 13 17:10:25 2009 (4A5BCCF1) fffff880`02d85000 fffff880`02dd6000 rdbss rdbss.sys Mon Jul 13 16:24:09 2009 (4A5BC219) fffff880`041f5000 fffff880`04200000 rdpbus rdpbus.sys Mon Jul 13 17:17:46 2009 (4A5BCEAA) fffff880`0194a000 fffff880`01953000 RDPCDD RDPCDD.sys Mon Jul 13 17:16:34 2009 (4A5BCE62) fffff880`01953000 fffff880`0195c000 rdpencdd rdpencdd.sys Mon Jul 13 17:16:34 2009 (4A5BCE62) fffff880`0195c000 fffff880`01965000 rdprefmp rdprefmp.sys Mon Jul 13 17:16:35 2009 (4A5BCE63) fffff880`01000000 fffff880`0103a000 rdyboost rdyboost.sys Mon Jul 13 16:34:34 2009 (4A5BC48A) fffff880`046fe000 fffff880`04716000 rspndr rspndr.sys Mon Jul 13 17:08:50 2009 (4A5BCC92) fffff880`04800000 fffff880`04832000 Rt64win7 Rt64win7.sys Thu Feb 26 01:04:13 2009 (49A65B0D) fffff880`075f1000 fffff880`075fc000 secdrv secdrv.SYS Wed Sep 13 06:18:38 2006 (4508052E) fffff880`040a5000 fffff880`040b1000 serenum serenum.sys Mon Jul 13 17:00:33 2009 (4A5BCAA1) fffff880`02d39000 fffff880`02d56000 serial serial.sys Mon Jul 13 17:00:40 2009 (4A5BCAA8) fffff880`01410000 fffff880`01418000 spldr spldr.sys Mon May 11 09:56:27 2009 (4A0858BB) fffff880`04634000 fffff880`046a5000 spsys spsys.sys Mon May 11 10:20:58 2009 (4A085E7A) fffff880`078d9000 fffff880`07971000 srv srv.sys Mon Jul 13 16:25:11 2009 (4A5BC257) fffff880`0743f000 fffff880`074a8000 srv2 srv2.sys Mon Jul 13 16:25:02 2009 (4A5BC24E) fffff880`07400000 fffff880`0742d000 srvnet srvnet.sys Mon Jul 13 16:24:58 2009 (4A5BC24A) fffff880`040b1000 fffff880`040b2480 swenum swenum.sys Mon Jul 13 17:00:18 2009 (4A5BCA92) fffff880`01600000 fffff880`017fd000 tcpip tcpip.sys Mon Jul 13 16:25:34 2009 (4A5BC26E) fffff880`0742d000 fffff880`0743f000 tcpipreg tcpipreg.sys Mon Jul 13 17:09:49 2009 (4A5BCCCD) fffff880`0199f000 fffff880`019ac000 TDI TDI.SYS Mon Jul 13 16:21:18 2009 (4A5BC16E) fffff880`01981000 fffff880`0199f000 tdx tdx.sys Mon Jul 13 16:21:15 2009 (4A5BC16B) fffff880`02d71000 fffff880`02d85000 termdd termdd.sys Mon Jul 13 17:16:36 2009 (4A5BCE64) fffff960`005c0000 fffff960`005ca000 TSDDD TSDDD.dll Mon Jul 13 17:16:34 2009 (4A5BCE62) fffff880`03b6b000 fffff880`03b91000 tunnel tunnel.sys Mon Jul 13 17:09:37 2009 (4A5BCCC1) fffff880`0456f000 fffff880`045c3000 udfs udfs.sys Mon Jul 13 16:23:37 2009 (4A5BC1F9) fffff880`03a6c000 fffff880`03a7e000 umbus umbus.sys Mon Jul 13 17:06:56 2009 (4A5BCC20) fffff880`045e0000 fffff880`045fd000 usbccgp usbccgp.sys Mon Jul 13 17:06:45 2009 (4A5BCC15) fffff880`045de000 fffff880`045dff00 USBD USBD.SYS Mon Jul 13 17:06:23 2009 (4A5BCBFF) fffff880`04063000 fffff880`04074000 usbehci usbehci.sys Mon Jul 13 17:06:30 2009 (4A5BCC06) fffff880`04434000 fffff880`0448e000 usbhub usbhub.sys Mon Jul 13 17:07:09 2009 (4A5BCC2D) fffff880`0400d000 fffff880`04063000 USBPORT USBPORT.SYS Mon Jul 13 17:06:31 2009 (4A5BCC07) fffff880`045c3000 fffff880`045de000 USBSTOR USBSTOR.SYS Mon Jul 13 17:06:34 2009 (4A5BCC0A) fffff880`04000000 fffff880`0400d000 usbuhci usbuhci.sys Mon Jul 13 17:06:27 2009 (4A5BCC03) fffff880`00fb5000 fffff880`00fc2000 vdrvroot vdrvroot.sys Mon Jul 13 17:01:31 2009 (4A5BCADB) fffff880`01907000 fffff880`01915000 vga vga.sys Mon Jul 13 16:38:47 2009 (4A5BC587) fffff880`01915000 fffff880`0193a000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 16:38:51 2009 (4A5BC58B) fffff880`01400000 fffff880`01410000 vmstorfl vmstorfl.sys Mon Jul 13 16:42:54 2009 (4A5BC67E) fffff880`00fd7000 fffff880`00fec000 volmgr volmgr.sys Mon Jul 13 16:19:57 2009 (4A5BC11D) fffff880`00e00000 fffff880`00e5c000 volmgrx volmgrx.sys Mon Jul 13 16:20:33 2009 (4A5BC141) fffff880`01186000 fffff880`011d2000 volsnap volsnap.sys Mon Jul 13 16:20:08 2009 (4A5BC128) fffff880`02d56000 fffff880`02d71000 wanarp wanarp.sys Mon Jul 13 17:10:21 2009 (4A5BCCED) fffff880`0193a000 fffff880`0194a000 watchdog watchdog.sys Mon Jul 13 16:37:35 2009 (4A5BC53F) fffff880`00e65000 fffff880`00f09000 Wdf01000 Wdf01000.sys Mon Jul 13 16:22:07 2009 (4A5BC19F) fffff880`00f09000 fffff880`00f18000 WDFLDR WDFLDR.SYS Mon Jul 13 16:19:54 2009 (4A5BC11A) fffff880`02cfb000 fffff880`02d04000 wfplwf wfplwf.sys Mon Jul 13 17:09:26 2009 (4A5BCCB6) fffff960`00000000 fffff960`0030f000 win32k win32k.sys Mon Jul 13 16:40:16 2009 (4A5BC5E0) fffff880`00f6f000 fffff880`00f78000 WMILIB WMILIB.SYS Mon Jul 13 16:19:51 2009 (4A5BC117) fffff880`046c8000 fffff880`046e9000 WudfPf WudfPf.sys Mon Jul 13 17:05:37 2009 (4A5BCBD1) fffff880`07971000 fffff880`079a2000 WUDFRd WUDFRd.sys Mon Jul 13 17:06:06 2009 (4A5BCBEE) Unloaded modules: fffff880`01897000 fffff880`018a5000 crashdmp.sys Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`018a5000 fffff880`018b1000 dump_ataport Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`018b1000 fffff880`018ba000 dump_atapi.s Timestamp: unavailable (00000000) Checksum: 00000000 fffff880`018ba000 fffff880`018cd000 dump_dumpfve Timestamp: unavailable (00000000) Checksum: 00000000
In over 15 minutes doing Memtest. I have 150 Errors.
My RAM dead.. xD
Wish is spot on. Test each stick of RAM one at a time in the same slot. Then test each slot with a good stick. You need to narrow down the cause of the failure.
I change the bad slot of RAM, but I just had some BSOD's more.. (I re-tested the RAM, without errors)