Not starting up properly?

Page 2 of 2 FirstFirst 12

  1. Posts : 12
    Windows 7 32 bit
    Thread Starter
       #11

    the thing is, if sptd.sys is uninstalled, the computer can't start properly, but if it is installed it does start up properly
      My Computer


  2. Posts : 6,668
    Windows 7 x64
       #12

    DuplexSecure - Downloads
    daemon tools themselves recommend using that to remove it.
      My Computer


  3. Posts : 12
    Windows 7 32 bit
    Thread Starter
       #13

    BSOD and Blackhole exploit kit report by AVG


    Is Windows 7 . . .
    - x86 (32-bit) or x64 ?
    32 bit
    - the original installed OS on the system?
    Yes
    - an OEM or full retail version?
    OEM

    - What is the age of system (hardware)?
    Around 11 months
    - What is the age of OS installation (have you re-installed the OS?)
    Around 11 months


    My computer just went into the BSOD, i don't know what happened, but before the BSOD, avg reported a Blackhole exploit kit. What is a blackhole exploit kit exactly? Is it dangerous? Please Help!
      My Computer


  4. Posts : 2,009
    Windows 7 Ultimate x86
       #14

    What is Blackhole exploit: Malware Intelligence Blog: Black Hole Exploits Kit. Another crimeware in addition to criminal supply. A division of MalwareIntelligence
    http://community.websense.com/blogs/...ploit-kit.aspx
    http://www.symantec.com/connect/blogs/blackhole-theory

    From the dump it looks like the crash was caused by AVG blocking/diverting the Exploit kit from accessing your RAM.
    But to be sure you're "in the clean" you should get a second opinion: load this and run a full scan

    Malwarebytes : Malwarebytes Anti-Malware is a free download that removes viruses and malware from your computer

    when that comes up cleand, read/install this:

    Learn how to install Windows 7 Service Pack 1 (SP1)

    Code:
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced.  This cannot be protected by try-except,
    it must be protected by a Probe.  Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: 8c6a0030, memory referenced.
    Arg2: 00000000, value 0 = read operation, 1 = write operation.
    Arg3: 82cdebb4, If non-zero, the instruction address which referenced the bad memory
    	address.
    Arg4: 00000001, (reserved)
    
    Debugging Details:
    ------------------
    
    
    READ_ADDRESS: GetPointerFromAddress: unable to read from 82db9718
    Unable to read MiSystemVaType memory at 82d99160
     8c6a0030 
    
    FAULTING_IP: 
    nt!MiAllocatePagedPoolPages+17c
    82cdebb4 8b7830          mov     edi,dword ptr [eax+30h]
    
    MM_INTERNAL_CODE:  1
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    BUGCHECK_STR:  0x50
    
    PROCESS_NAME:  firefox.exe
    
    CURRENT_IRQL:  0
    
    TRAP_FRAME:  b80ff9c4 -- (.trap 0xffffffffb80ff9c4)
    ErrCode = 00000000
    eax=8c6a0000 ebx=8c6abd38 ecx=82d99100 edx=00000000 esi=0000051e edi=0007c200
    eip=82cdebb4 esp=b80ffa38 ebp=b80ffa64 iopl=0         nv up ei pl nz ac pe nc
    cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010216
    nt!MiAllocatePagedPoolPages+0x17c:
    82cdebb4 8b7830          mov     edi,dword ptr [eax+30h] ds:0023:8c6a0030=????????
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from 82c975f8 to 82cd68e3
    
    STACK_TEXT:  
    b80ff9ac 82c975f8 00000000 8c6a0030 00000000 nt!MmAccessFault+0x106
    b80ff9ac 82cdebb4 00000000 8c6a0030 00000000 nt!KiTrap0E+0xdc
    b80ffa64 82d6f024 00000600 00000021 8c6abe00 nt!MiAllocatePagedPoolPages+0x17c
    b80ffac8 82ce578f 00000021 0051e000 00000ff0 nt!MiAllocatePoolPages+0x1f
    b80ffb20 82d70cd8 00000000 00000021 0051e000 nt!ExpAllocateBigPool+0xa6
    b80ffb80 9287b868 00000021 0051d74c 35316847 nt!ExAllocatePoolWithTag+0x12d
    b80ffb94 92859c37 0051d74c 35316847 00000000 win32k!Win32AllocPool+0x13
    b80ffba8 9286db3e 0051d74c 35316847 b80ffc58 win32k!PALLOCMEM+0x18
    b80ffbc4 92883047 0051d74c 00000005 00000001 win32k!AllocateObject+0x98
    b80ffc24 92857a97 00001900 00000000 00000000 win32k!SURFMEM::bCreateDIB+0x261
    b80ffc90 9285759d 00000000 00000006 01080030 win32k!hsurfCreateCompatibleSurface+0x2a8
    b80ffd0c 9285762f ffb91008 00000640 00000346 win32k!GreCreateCompatibleBitmap+0x1cd
    b80ffd20 82c9442a 4e010d76 00000640 00000346 win32k!NtGdiCreateCompatibleBitmap+0x19
    b80ffd20 76f464f4 4e010d76 00000640 00000346 nt!KiFastCallEntry+0x12a
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    0028eafc 00000000 00000000 00000000 00000000 0x76f464f4
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    win32k!Win32AllocPool+13
    9287b868 5d              pop     ebp
    
    SYMBOL_STACK_INDEX:  6
    
    SYMBOL_NAME:  win32k!Win32AllocPool+13
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: win32k
    
    IMAGE_NAME:  win32k.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bc2a2
    
    FAILURE_BUCKET_ID:  0x50_win32k!Win32AllocPool+13
    
    BUCKET_ID:  0x50_win32k!Win32AllocPool+13
    
    Followup: MachineOwner
    ---------
    If your computer crashes again, make sure to zip up and upload the new crash dumps
    https://www.sevenforums.com/crashes-d...tructions.html

    And if your Sims3 Launcher keeps crashing, delete the temp files under \Documents\Electronic Arts\The Sims 3: CASPartCache.package, compositorCache.package, scriptCache.package, simCompositorCache.package
    and start TS3.exe directly

    -DG
      My Computer


 
Page 2 of 2 FirstFirst 12

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 20:58.
Find Us