Windows 7 Forums
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: Need BSOD Dumps looked over

07 Mar 2011   #1
mgorman87

Microsoft Community Contributor Award Recipient

Windows 7 Home Premium 64bit
 
 
Need BSOD Dumps looked over

Hello,

I am currently working on a friends computer and have run into BSOD's that i can't resolve. He is running windows 7 home premium 64 bit. It is a fresh install and there is nothing installed except the windows updates. There is nothing hooked up (built in sound, video, network). THe only thing connected is internet, usb mouse and video ( The computer will run fine after you install windows. Once you shut down the computer and let it sit overnight, the next time you turn it on you get BSOD and you cant boot into windows. I can't get into safe mode and the windows repair doesn't work. I've tried running disc checks and they all pass. I ran memtest and it passed (only did one test). I have 5 dump files that I would like one of experts to look at and tell me what my problem is. I am unable to run that program from the first post because I can't get on his computer. I was able to extract the dump from his harddrive and load them on my computer.Thanks much


My System SpecsSystem Spec
.
07 Mar 2011   #2
Maguscreed

Microsoft Community Contributor Award Recipient

Windows 7 x64
 
 

Code:
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80002a05f8c, Address of the instruction which caused the bugcheck
Arg3: fffff88002e18e40, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!ExDeferredFreePool+100
fffff800`02a05f8c 4c8b02          mov     r8,qword ptr [rdx]

CONTEXT:  fffff88002e18e40 -- (.cxr 0xfffff88002e18e40)
rax=fffffa8001530330 rbx=0000000000000001 rcx=fffffa8001530330
rdx=fffbf8a0024aeb00 rsi=0000000000000000 rdi=fffff8a0025a7a80
rip=fffff80002a05f8c rsp=fffff88002e19810 rbp=0000000000000000
 r8=fffbf8a0024aeb00  r9=0000000000000000 r10=fffff8a00259ea50
r11=0000000000000000 r12=fffffa8001530140 r13=0000000000000000
r14=000000000000001b r15=0000000000000001
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
nt!ExDeferredFreePool+0x100:
fffff800`02a05f8c 4c8b02          mov     r8,qword ptr [rdx] ds:002b:fffbf8a0`024aeb00=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  services.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff80002a05f8c

STACK_TEXT:  
fffff880`02e19810 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExDeferredFreePool+0x100


FOLLOWUP_IP: 
nt!ExDeferredFreePool+100
fffff800`02a05f8c 4c8b02          mov     r8,qword ptr [rdx]

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!ExDeferredFreePool+100

FOLLOWUP_NAME:  Pool_corruption

IMAGE_NAME:  Pool_Corruption

DEBUG_FLR_IMAGE_TIMESTAMP:  0

MODULE_NAME: Pool_Corruption

STACK_COMMAND:  .cxr 0xfffff88002e18e40 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_nt!ExDeferredFreePool+100

BUCKET_ID:  X64_0x3B_nt!ExDeferredFreePool+100

Followup: Pool_corruption
---------
Code:
NTFS_FILE_SYSTEM (24)
    If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
    parameters are the exception record and context record. Do a .cxr
    on the 3rd parameter and then kb to obtain a more informative stack
    trace.
Arguments:
Arg1: 00000000001904fb
Arg2: fffff880033bd9f8
Arg3: fffff880033bd260
Arg4: fffff8800126113b

Debugging Details:
------------------


EXCEPTION_RECORD:  fffff880033bd9f8 -- (.exr 0xfffff880033bd9f8)
ExceptionAddress: fffff8800126113b (Ntfs!NtfsCommonWrite+0x0000000000000f9b)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 0000000000000000
   Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff

CONTEXT:  fffff880033bd260 -- (.cxr 0xfffff880033bd260)
rax=fffbfa80030472b0 rbx=fffbfa80025f5180 rcx=0000000000040000
rdx=0000000000000000 rsi=fffffa800253fc10 rdi=fffff8a003f7a4a0
rip=fffff8800126113b rsp=fffff880033bdc30 rbp=fffff880033bde20
 r8=0000000000000000  r9=0000000000000000 r10=0000000000000001
r11=fffffa80024a5970 r12=fffffa8002f756a0 r13=000000000000006c
r14=0000000000000000 r15=0000000000000026
iopl=0         nv up ei pl nz na po nc
cs=0010  ss=0000  ds=002b  es=002b  fs=0053  gs=002b             efl=00010206
Ntfs!NtfsCommonWrite+0xf9b:
fffff880`0126113b 48894868        mov     qword ptr [rax+68h],rcx ds:002b:fffbfa80`03047318=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  System

CURRENT_IRQL:  0

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_PARAMETER1:  0000000000000000

EXCEPTION_PARAMETER2:  ffffffffffffffff

READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002af40e0
 ffffffffffffffff 

FOLLOWUP_IP: 
Ntfs!NtfsCommonWrite+f9b
fffff880`0126113b 48894868        mov     qword ptr [rax+68h],rcx

FAULTING_IP: 
Ntfs!NtfsCommonWrite+f9b
fffff880`0126113b 48894868        mov     qword ptr [rax+68h],rcx

BUGCHECK_STR:  0x24

LAST_CONTROL_TRANSFER:  from fffff88001265413 to fffff8800126113b

STACK_TEXT:  
fffff880`033bdc30 fffff880`01265413 : fffffa80`02f756a0 fffffa80`0253fc10 fffbf880`033bde01 fffff880`033bde00 : Ntfs!NtfsCommonWrite+0xf9b
fffff880`033bddf0 fffff880`00e0323f : fffffa80`0253ffb0 fffffa80`0253fc10 fffbfa80`02cae010 00000000`00000000 : Ntfs!NtfsFsdWrite+0x1c3
fffff880`033bdeb0 fffff880`00e016df : fffffa80`024eede0 00000000`00000001 fffffa80`024eed00 fffffa80`0253fc10 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
fffff880`033bdf40 fffff800`02bd0ae9 : 00000000`00000001 fffffa80`030472b0 00000000`00000001 fffffa80`0253fc10 : fltmgr!FltpDispatch+0xcf
fffff880`033bdfa0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!IopSynchronousServiceTail+0xf9


SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  Ntfs!NtfsCommonWrite+f9b

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: Ntfs

IMAGE_NAME:  Ntfs.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bc14f

STACK_COMMAND:  .cxr 0xfffff880033bd260 ; kb

FAILURE_BUCKET_ID:  X64_0x24_Ntfs!NtfsCommonWrite+f9b

BUCKET_ID:  X64_0x24_Ntfs!NtfsCommonWrite+f9b

Followup: MachineOwner
---------
seeing errors all over the place in these dumps.
Really sounds like the disc is going bad

1 pass with memtest isn't really definitive either, we usually recommend running it over night for 5-7 passes.

Hold old is this machine?
Is it possible his cmos battery is dead?
My System SpecsSystem Spec
07 Mar 2011   #3
mgorman87

Microsoft Community Contributor Award Recipient

Windows 7 Home Premium 64bit
 
 

Everything is brand new (< 8months). He built it himself with a friend and has never been able to get it running. I ran a hard drive test over night and it came back with a pass and it says the SMART status is pass. I also am able to run the ultimate boot disc ok.
My System SpecsSystem Spec
.

07 Mar 2011   #4
cybercore

Windows 7 x64
 
 

Update Asus ATK0110 ACPI Utility
ASACPI.sys Sun Mar 27 22:30:36 2005
ASUSTeK Computer Inc.-Support-





Crash Dumps:

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\030711-20061-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`0280e000 PsLoadedModuleList = 0xfffff800`02a4be50
Debug session time: Mon Mar  7 15:43:39.845 2011 (UTC - 5:00)
System Uptime: 0 days 0:00:30.515
Loading Kernel Symbols
...............................................................
................................................................
....................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff800029b290d, fffff88006d2ca80, 0}

Probably caused by : ntkrnlmp.exe ( nt!ExAllocatePoolWithTag+53d )

Followup: MachineOwner
---------

2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800029b290d, Address of the instruction which caused the bugcheck
Arg3: fffff88006d2ca80, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!ExAllocatePoolWithTag+53d
fffff800`029b290d 48895808        mov     qword ptr [rax+8],rbx

CONTEXT:  fffff88006d2ca80 -- (.cxr 0xfffff88006d2ca80)
rax=fffbf8a00291efd0 rbx=fffffa80015302b0 rcx=fffff8a00288d580
rdx=0000000000000028 rsi=0000000000001000 rdi=0000000000000001
rip=fffff800029b290d rsp=fffff88006d2d450 rbp=fffffa8001530140
 r8=0000000000000001  r9=fffffa80015302b0 r10=fffffa8001530148
r11=0000000000000001 r12=0000000000000004 r13=0000000000000000
r14=fffffa8004829060 r15=0000000069634d43
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
nt!ExAllocatePoolWithTag+0x53d:
fffff800`029b290d 48895808        mov     qword ptr [rax+8],rbx ds:002b:fffbf8a0`0291efd8=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  MOM.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff800029b290d

STACK_TEXT:  
fffff880`06d2d450 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExAllocatePoolWithTag+0x53d


FOLLOWUP_IP: 
nt!ExAllocatePoolWithTag+53d
fffff800`029b290d 48895808        mov     qword ptr [rax+8],rbx

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!ExAllocatePoolWithTag+53d

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4cc791bd

STACK_COMMAND:  .cxr 0xfffff88006d2ca80 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_nt!ExAllocatePoolWithTag+53d

BUCKET_ID:  X64_0x3B_nt!ExAllocatePoolWithTag+53d

Followup: MachineOwner
---------

























Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\030711-19250-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02862000 PsLoadedModuleList = 0xfffff800`02a9fe50
Debug session time: Mon Mar  7 16:13:57.631 2011 (UTC - 5:00)
System Uptime: 0 days 0:00:26.301
Loading Kernel Symbols
...............................................................
................................................................
...................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff80002a05f8c, fffff88002e18e40, 0}

Probably caused by : Pool_Corruption ( nt!ExDeferredFreePool+100 )

Followup: Pool_corruption
---------

2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80002a05f8c, Address of the instruction which caused the bugcheck
Arg3: fffff88002e18e40, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!ExDeferredFreePool+100
fffff800`02a05f8c 4c8b02          mov     r8,qword ptr [rdx]

CONTEXT:  fffff88002e18e40 -- (.cxr 0xfffff88002e18e40)
rax=fffffa8001530330 rbx=0000000000000001 rcx=fffffa8001530330
rdx=fffbf8a0024aeb00 rsi=0000000000000000 rdi=fffff8a0025a7a80
rip=fffff80002a05f8c rsp=fffff88002e19810 rbp=0000000000000000
 r8=fffbf8a0024aeb00  r9=0000000000000000 r10=fffff8a00259ea50
r11=0000000000000000 r12=fffffa8001530140 r13=0000000000000000
r14=000000000000001b r15=0000000000000001
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
nt!ExDeferredFreePool+0x100:
fffff800`02a05f8c 4c8b02          mov     r8,qword ptr [rdx] ds:002b:fffbf8a0`024aeb00=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  services.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff80002a05f8c

STACK_TEXT:  
fffff880`02e19810 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExDeferredFreePool+0x100


FOLLOWUP_IP: 
nt!ExDeferredFreePool+100
fffff800`02a05f8c 4c8b02          mov     r8,qword ptr [rdx]

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!ExDeferredFreePool+100

FOLLOWUP_NAME:  Pool_corruption

IMAGE_NAME:  Pool_Corruption

DEBUG_FLR_IMAGE_TIMESTAMP:  0

MODULE_NAME: Pool_Corruption

STACK_COMMAND:  .cxr 0xfffff88002e18e40 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_nt!ExDeferredFreePool+100

BUCKET_ID:  X64_0x3B_nt!ExDeferredFreePool+100

Followup: Pool_corruption
---------



Drivers:

Code:
start             end                 module name
fffff880`04800000 fffff880`0483e000   1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f7a000 fffff880`00fd1000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`03eb2000 fffff880`03f3c000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`0437a000 fffff880`04390000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`0445a000 fffff880`0446e000   amdiox64 amdiox64.sys Thu Feb 18 10:17:53 2010 (4B7D5A21)
fffff880`04317000 fffff880`0432c000   amdppm   amdppm.sys   Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00dbc000 fffff880`00dc7000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`04061000 fffff880`04069000   ASACPI   ASACPI.sys   Sun Mar 27 22:30:36 2005 (42476C4C)
fffff880`00d89000 fffff880`00d92000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00d92000 fffff880`00dbc000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`044ef000 fffff880`0450f000   AtihdW76 AtihdW76.sys Wed Nov 17 07:02:04 2010 (4CE3C43C)
fffff880`04854000 fffff880`05150000   atikmdag atikmdag.sys Wed Jan 26 17:48:28 2011 (4D40A4BC)
fffff880`0432c000 fffff880`0437a000   atikmpag atikmpag.sys Wed Jan 26 17:13:33 2011 (4D409C8D)
fffff880`0191d000 fffff880`01924000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`042e0000 fffff880`042f1000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`03912000 fffff880`03930000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`00760000 fffff960`00787000   cdd      cdd.dll      unavailable (00000000)
fffff880`019e2000 fffff880`019ff000   cdfs     cdfs.sys     Mon Jul 13 19:19:46 2009 (4A5BC112)
fffff880`018b9000 fffff880`018e3000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00caf000 fffff880`00d6f000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01853000 fffff880`01883000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00c51000 fffff880`00caf000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01161000 fffff880`011d4000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`051df000 fffff880`051ef000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`01883000 fffff880`01891000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`0423f000 fffff880`042c2000   csc      csc.sys      Mon Jul 13 19:24:26 2009 (4A5BC22A)
fffff880`042c2000 fffff880`042e0000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`03e7c000 fffff880`03e8b000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`0183d000 fffff880`01853000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`0454c000 fffff880`0456e000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`03ea7000 fffff880`03eb0000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01891000 fffff880`0189d000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`0189d000 fffff880`018b0000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`0120a000 fffff880`01216000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`0406f000 fffff880`04163000   dxgkrnl  dxgkrnl.sys  Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`04163000 fffff880`041a9000   dxgmms1  dxgmms1.sys  Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`010ef000 fffff880`01103000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`010a3000 fffff880`010ef000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`01200000 fffff880`0120a000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`01803000 fffff880`0183d000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`01400000 fffff880`0144a000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`02819000 fffff800`02862000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`041a9000 fffff880`041cd000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`04574000 fffff880`045d0000   HdAudio  HdAudio.sys  Mon Jul 13 20:06:59 2009 (4A5BCC23)
fffff880`019c9000 fffff880`019e2000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`04400000 fffff880`04408080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`045ef000 fffff880`045fd000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`0384a000 fffff880`03912000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`0144a000 fffff880`01453000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`051a6000 fffff880`051c4000   i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`051c4000 fffff880`051d3000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`04409000 fffff880`04417000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00bd3000 fffff800`00bdd000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`04417000 fffff880`0445a000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`013d4000 fffff880`013ee000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`015a8000 fffff880`015d3000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`0456e000 fffff880`04573200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`01086000 fffff880`0109b000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`011d4000 fffff880`011f7000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00c30000 fffff880`00c3d000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`01216000 fffff880`01224000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`03e8b000 fffff880`03e9a000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`03e9a000 fffff880`03ea7000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00d6f000 fffff880`00d89000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`018e3000 fffff880`01914000   MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
fffff880`03ab7000 fffff880`03ac7000   MpNWMon  MpNWMon.sys  Tue Sep 14 20:19:30 2010 (4C901112)
fffff880`03930000 fffff880`03948000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`03948000 fffff880`03975000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`03975000 fffff880`039c3000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`039c3000 fffff880`039e6000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`01982000 fffff880`0198d000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fda000 fffff880`00fe4000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`01103000 fffff880`01161000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`03e71000 fffff880`03e7c000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`015eb000 fffff880`015fd000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`01456000 fffff880`01548000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`051ef000 fffff880`051fb000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`043b4000 fffff880`043e3000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`044da000 fffff880`044ef000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`03fb0000 fffff880`03fbf000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`03f3c000 fffff880`03f81000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01548000 fffff880`015a8000   NETIO    NETIO.SYS    Thu Apr 08 22:43:59 2010 (4BBE946F)
fffff880`0198d000 fffff880`0199e000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`03e65000 fffff880`03e71000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02862000 fffff800`02e3f000   nt       ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`01231000 fffff880`013d4000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`01914000 fffff880`0191d000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`03f8a000 fffff880`03fb0000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`041de000 fffff880`041fb000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00fe4000 fffff880`00feb000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00feb000 fffff880`00ffb000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013ee000 fffff880`013ff000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`03a11000 fffff880`03ab7000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`0450f000 fffff880`0454c000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c3d000 fffff880`00c51000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`04390000 fffff880`043b4000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`043e3000 fffff880`043fe000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`04200000 fffff880`04221000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`04221000 fffff880`0423b000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`03e14000 fffff880`03e65000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`04847000 fffff880`04852000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`01967000 fffff880`01970000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01970000 fffff880`01979000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01979000 fffff880`01982000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`0104c000 fffff880`01086000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`00de8000 fffff880`00e00000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`04000000 fffff880`04056000   Rt64win7 Rt64win7.sys Wed Jun 23 05:10:45 2010 (4C21CF95)
fffff880`03ac7000 fffff880`03ad2000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`051d3000 fffff880`051df000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`03fbf000 fffff880`03fdc000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`015e3000 fffff880`015eb000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`05e5d000 fffff880`05ef3000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`03b11000 fffff880`03b78000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`03ad2000 fffff880`03aff000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`04069000 fffff880`0406a480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01602000 fffff880`017ff000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`03aff000 fffff880`03b11000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`019bc000 fffff880`019c9000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`0199e000 fffff880`019bc000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`03e00000 fffff880`03e14000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`004e0000 fffff960`004ea000   TSDDD    TSDDD.dll    Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`042f1000 fffff880`04317000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`0446e000 fffff880`04480000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`045d0000 fffff880`045ed000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`045ed000 fffff880`045eef00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`041cd000 fffff880`041de000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04480000 fffff880`044da000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`04056000 fffff880`04061000   usbohci  usbohci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05150000 fffff880`051a6000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`01924000 fffff880`01932000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`01932000 fffff880`01957000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`015d3000 fffff880`015e3000   vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00e6a000 fffff880`00ec6000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01000000 fffff880`0104c000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`03fdc000 fffff880`03ff7000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`01957000 fffff880`01967000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00ec7000 fffff880`00f6b000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f6b000 fffff880`00f7a000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`03f81000 fffff880`03f8a000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`000b0000 fffff960`003c0000   win32k   win32k.sys   Tue Jan 04 22:59:44 2011 (4D23ECB0)
fffff880`0483e000 fffff880`04847000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00fd1000 fffff880`00fda000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00dc7000 fffff880`00de8000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)

Unloaded modules:
fffff880`01883000 fffff880`01891000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`01891000 fffff880`0189d000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000C000
fffff880`0189d000 fffff880`018a6000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00009000
fffff880`018a6000 fffff880`018b9000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00013000
My System SpecsSystem Spec
07 Mar 2011   #5
Maguscreed

Microsoft Community Contributor Award Recipient

Windows 7 x64
 
 

^^ can't believe I missed that cybercore

that file is a known problem causer, he needs to get rid of it for sure.
My System SpecsSystem Spec
07 Mar 2011   #6
mgorman87

Microsoft Community Contributor Award Recipient

Windows 7 Home Premium 64bit
 
 

Quote   Quote: Originally Posted by Maguscreed View Post
^^ can't believe I missed that cybercore

that file is a known problem causer, he needs to get rid of it for sure.
Can you elaborate some more? What is this file? How do I get rid of it.
My System SpecsSystem Spec
07 Mar 2011   #7
Maguscreed

Microsoft Community Contributor Award Recipient

Windows 7 x64
 
 

it's part of the asus software suite, they're still including it with new boards even though a stable vista version was never released let alone a proper win 7 version.

I would look for any asus software installed on his machine and remove it.
Quote:
Asus ATK0110 ACPI Utility (a known BSOD maker in Win7). Also a part of the Asus PCProbe and AISuite Utilities
is the info on it from the driver database.
My System SpecsSystem Spec
07 Mar 2011   #8
mgorman87

Microsoft Community Contributor Award Recipient

Windows 7 Home Premium 64bit
 
 

There shouldn't be anything installed on the computer. I did a complete wipe and reinstalled 7.
My System SpecsSystem Spec
07 Mar 2011   #9
Maguscreed

Microsoft Community Contributor Award Recipient

Windows 7 x64
 
 

If the driver appears in the driver dump it was loaded at the time the system crashed.
My System SpecsSystem Spec
07 Mar 2011   #10
mgorman87

Microsoft Community Contributor Award Recipient

Windows 7 Home Premium 64bit
 
 

Quote   Quote: Originally Posted by Maguscreed View Post
If the driver appears in the driver dump it was loaded at the time the system crashed.
Now that I think about it. I believe I saw an optional update for it during the windows updates. I will try re-installing windows again.


Is it safe to say that these BSOD are not caused by faulty memory? Or can that still be a possibility?
My System SpecsSystem Spec
Reply

 Need BSOD Dumps looked over




Thread Tools




Similar help and support threads
Thread Forum
HDD Thrashing, Looked everywhere for solution, Have found none
Hello All, My Computer's HDD is thrashing, not for the entire usage time, but at random times. It lasts from 5-10 minutes, in that time I can do pretty much nothing. I have disabled ReadyBoost, SuperFetch, Indexing, everything in the startup. I almost always have Resource Monitor open, just in...
Performance & Maintenance
Task Scheduler not working (I HAVE looked!)
Many questions about this, but I found none that matched my problem, which were resolved. Win 7 Home Prem 32 I had set up daily scheduled restore creation points, only to find that none had actually been created, when I tried to restore. I now have a non-working microphone :( The schedules...
General Discussion
I've looked and looked
...and seems like I have quite a unique problem as far as descriptions go. I built my PC last weekend using a Gigabyte 770T-USB3 motherboard, EVGA GeForce video card, 500gig hard drive (can't think of the brand right now and not at home with it), AMD Athlon II quad-core processor, and Windows 7...
Sound & Audio
Bsod/Dumps
Everything was working find but lately ive been having crashes .
BSOD Help and Support
W7 x64 BSOD Dumps.. Plz Help
My issues have been ongoing for over a year, so I will give you the cliffs notes :) I fresh installed W7 x64 Retail after formatting C: in January. My computer had a Gigabyte GA-P35-DQ6 mobo. It ran stable for a little while then started BSOD. Memtest showed a bad DIMM. Crucial replaced all...
BSOD Help and Support
Can't extend my W7 Partition(I Looked at the tutorial)
Hello to all, So I have 30Gigs on my W7 Partition, which was fine for a while, but I want to use W7 more extensively now so I wanted to extend my partition. I have looked at the tutorial posted in the tutorials, and its as simple as right-clicking the partition and clicking 'Extend Volume'. Well...
General Discussion


Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 14:51.
Twitter Facebook Google+ Seven Forums iOS App Seven Forums Android App