Code:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02c1b000 PsLoadedModuleList = 0xfffff800`02e58e50
Debug session time: Tue Apr 12 14:45:01.024 2011 (GMT-4)
System Uptime: 0 days 20:33:00.678
Loading Kernel Symbols
...............................................................
................................................................
.........................................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff880046ee817, fffff880081ed900, 0}
Probably caused by : atikmdag.sys ( atikmdag+90817 )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff880046ee817, Address of the exception record for the exception that caused the bugcheck
Arg3: fffff880081ed900, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
atikmdag+90817
fffff880`046ee817 8b4820 mov ecx,dword ptr [rax+20h]
CONTEXT: fffff880081ed900 -- (.cxr 0xfffff880081ed900)
rax=0000000000000000 rbx=fffffa8004e403d0 rcx=fffffa8005620d90
rdx=0000000000000000 rsi=0000000000000015 rdi=fffffa8004e4f340
rip=fffff880046ee817 rsp=fffff880081ee2d0 rbp=fffffa8005620d90
r8=0000000000000015 r9=fffff88004ab0970 r10=0000000000000000
r11=fffff880081ee420 r12=0000000000000000 r13=fffffa8003adf010
r14=0000000000000001 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0000 ds=002b es=002b fs=0053 gs=002b efl=00010246
atikmdag+0x90817:
fffff880`046ee817 8b4820 mov ecx,dword ptr [rax+20h] ds:002b:00000000`00000020=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: dwm.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff880046ee817
STACK_TEXT:
fffff880`081ee2d0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : atikmdag+0x90817
FOLLOWUP_IP:
atikmdag+90817
fffff880`046ee817 8b4820 mov ecx,dword ptr [rax+20h]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: atikmdag+90817
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: atikmdag
IMAGE_NAME: atikmdag.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4cef1f94
STACK_COMMAND: .cxr 0xfffff880081ed900 ; kb
FAILURE_BUCKET_ID: X64_0x3B_atikmdag+90817
BUCKET_ID: X64_0x3B_atikmdag+90817
Followup: MachineOwner
---------
Debug session time: Wed Apr 13 15:29:33.326 2011 (GMT-4)
System Uptime: 0 days 9:07:17.981
Loading Kernel Symbols
...............................................................
................................................................
.........................................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1E, {0, 0, 0, 0}
Probably caused by : ntkrnlmp.exe ( nt!KiKernelCalloutExceptionHandler+e )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: 0000000000000000, The exception code that was not handled
Arg2: 0000000000000000, The address that the exception occurred at
Arg3: 0000000000000000, Parameter 0 of the exception
Arg4: 0000000000000000, Parameter 1 of the exception
Debugging Details:
------------------
EXCEPTION_CODE: (Win32) 0 (0) - The operation completed successfully.
FAULTING_IP:
+614d952f00dad860
00000000`00000000 ?? ???
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: 0000000000000000
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x1E
PROCESS_NAME: System
CURRENT_IRQL: 2
EXCEPTION_RECORD: fffff88002f1b328 -- (.exr 0xfffff88002f1b328)
ExceptionAddress: fffff80002c934de (nt!KiDeferredReadyThread+0x00000000000005fe)
ExceptionCode: c000001d (Illegal instruction)
ExceptionFlags: 00000000
NumberParameters: 0
TRAP_FRAME: fffff88002f1b3d0 -- (.trap 0xfffff88002f1b3d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffffa800455daa0
rdx=ffffffffffffffff rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002c934de rsp=fffff88002f1b560 rbp=0000000000000000
r8=0000000000000006 r9=0000000000000006 r10=fffff80002c1e000
r11=fffff88002f1b5b0 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na po nc
nt!KiDeferredReadyThread+0x5fe:
fffff800`02c934de 0fbe417b movsx eax,byte ptr [rcx+7Bh] ds:3180:fffffa80`0455db1b=??
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002c8646e to fffff80002c8e710
STACK_TEXT:
fffff880`02f1a418 fffff800`02c8646e : fffffa80`08984740 00000000`00000578 fffff880`02f1ab90 fffff800`02cbb668 : nt!KeBugCheck
fffff880`02f1a420 fffff800`02cb440d : fffff800`02e9cb7c fffff800`02dd6ea4 fffff800`02c1e000 fffff880`02f1b328 : nt!KiKernelCalloutExceptionHandler+0xe
fffff880`02f1a450 fffff800`02cbba90 : fffff800`02dddb34 fffff880`02f1a4c8 fffff880`02f1b328 fffff800`02c1e000 : nt!RtlpExecuteHandlerForException+0xd
fffff880`02f1a480 fffff800`02cc89ef : fffff880`02f1b328 fffff880`02f1ab90 fffff880`00000000 fffffa80`0652db60 : nt!RtlDispatchException+0x410
fffff880`02f1ab60 fffff800`02c8dd82 : fffff880`02f1b328 fffff800`02e08e80 fffff880`02f1b3d0 fffff880`009e8180 : nt!KiDispatchException+0x16f
fffff880`02f1b1f0 fffff800`02c8bedf : fffff880`02f1b3d0 fffff800`02e08e02 fffffa80`0826e300 00001f80`00000000 : nt!KiExceptionDispatch+0xc2
fffff880`02f1b3d0 fffff800`02c934de : fffff800`02e08e80 fffffa80`05519b60 fffffa80`082a53e8 fffff800`02c6de05 : nt!KiInvalidOpcodeFault+0x11f
fffff880`02f1b560 fffff800`02c99e67 : fffffa80`0703e5a0 fffffa80`0652dc68 fffffa80`0652dc68 00000000`00000000 : nt!KiDeferredReadyThread+0x5fe
fffff880`02f1b5e0 fffff800`02c9a4be : 0000004c`74f646c8 fffff880`02f1bc58 00000000`00201e99 fffff880`009eb8a8 : nt!KiProcessExpiredTimerList+0x157
fffff880`02f1bc30 fffff800`02c99cb7 : 0000001d`b3b29dc9 0000001d`00201e99 0000001d`b3b29d13 00000000`00000099 : nt!KiTimerExpiration+0x1be
fffff880`02f1bcd0 fffff800`02c96eea : fffff880`009e8180 fffff880`009f2fc0 00000000`00000000 fffff880`050d6588 : nt!KiRetireDpcList+0x277
fffff880`02f1bd80 00000000`00000000 : fffff880`02f1c000 fffff880`02f16000 fffff880`02f1bd40 00000000`00000000 : nt!KiIdleLoop+0x5a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiKernelCalloutExceptionHandler+e
fffff800`02c8646e 90 nop
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!KiKernelCalloutExceptionHandler+e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4cc791bd
FAILURE_BUCKET_ID: X64_0x1E_nt!KiKernelCalloutExceptionHandler+e
BUCKET_ID: X64_0x1E_nt!KiKernelCalloutExceptionHandler+e
Followup: MachineOwner
---------
Kernel base = 0xfffff800`02c0a000 PsLoadedModuleList = 0xfffff800`02e47e50
Debug session time: Wed Apr 13 06:20:46.467 2011 (GMT-4)
System Uptime: 0 days 15:34:15.122
Loading Kernel Symbols
...............................................................
................................................................
.........................................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck D1, {fffff8800132ac7c, 2, 8, fffff8800132ac7c}
Unable to load image \SystemRoot\system32\DRIVERS\AVGIDSFilter.Sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for AVGIDSFilter.Sys
*** ERROR: Module load completed but symbols could not be loaded for AVGIDSFilter.Sys
Probably caused by : AVGIDSFilter.Sys ( AVGIDSFilter+128e )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: fffff8800132ac7c, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000008, value 0 = read operation, 1 = write operation
Arg4: fffff8800132ac7c, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002eb20e0
fffff8800132ac7c
CURRENT_IRQL: 2
FAULTING_IP:
Ntfs! ?? ::NNGAKEGL::`string'+2ad0
fffff880`0132ac7c 55 push rbp
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xD1
PROCESS_NAME: Wow.exe
TRAP_FRAME: fffff8800a5eb2e0 -- (.trap 0xfffff8800a5eb2e0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000008 rbx=0000000000000000 rcx=ffffffffffffffff
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002c97479 rsp=fffff8800a5eb470 rbp=fffff8800a5eb4c0
r8=0000000fffffffff r9=fffffa8001194090 r10=fffffa80022647f0
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
nt!MmCheckCachedPageStates+0x1d9:
fffff800`02c97479 480fbae30b bt rbx,0Bh
Resetting default scope
EXCEPTION_RECORD: fffff8800a5eb238 -- (.exr 0xfffff8800a5eb238)
ExceptionAddress: fffff80002c97479 (nt!MmCheckCachedPageStates+0x00000000000001d9)
ExceptionCode: c000001d (Illegal instruction)
ExceptionFlags: 00000000
NumberParameters: 0
LAST_CONTROL_TRANSFER: from fffff80002c79ca9 to fffff80002c7a740
FAILED_INSTRUCTION_ADDRESS:
Ntfs! ?? ::NNGAKEGL::`string'+2ad0
fffff880`0132ac7c 55 push rbp
STACK_TEXT:
fffff880`0a5ea008 fffff800`02c79ca9 : 00000000`0000000a fffff880`0132ac7c 00000000`00000002 00000000`00000008 : nt!KeBugCheckEx
fffff880`0a5ea010 fffff800`02c78920 : 9ed447ed`821e943b fffff880`0128a544 9aa2154d`70021c0a 397b4d56`d1f5db44 : nt!KiBugCheckDispatch+0x69
fffff880`0a5ea150 fffff880`0132ac7c : fffff800`02ca8d1c 88ba08bf`67c262a2 4c29139a`98728d09 568425b3`f8c5c45b : nt!KiPageFault+0x260
fffff880`0a5ea2e8 fffff800`02ca8d1c : 88ba08bf`67c262a2 4c29139a`98728d09 568425b3`f8c5c45b 85c0842a`166595b2 : Ntfs! ?? ::NNGAKEGL::`string'+0x2ad0
fffff880`0a5ea2f0 fffff800`02ca040d : fffff880`0128a538 fffff880`0a5eb740 00000000`00000000 fffff880`01239000 : nt!_C_specific_handler+0x8c
fffff880`0a5ea360 fffff800`02ca7a90 : fffff880`0128a538 fffff880`0a5ea3d8 fffff880`0a5eb238 fffff880`01239000 : nt!RtlpExecuteHandlerForException+0xd
fffff880`0a5ea390 fffff800`02cb49ef : fffff880`0a5eb238 fffff880`0a5eaaa0 fffff880`00000000 00000000`00000000 : nt!RtlDispatchException+0x410
fffff880`0a5eaa70 fffff800`02c79d82 : fffff880`0a5eb238 00000000`431f38c0 fffff880`0a5eb2e0 fffff6fc`c0295e28 : nt!KiDispatchException+0x16f
fffff880`0a5eb100 fffff800`02c77edf : fffff880`0a5eb2e0 fffff880`0a5eb502 00000000`00013000 fffff800`00000000 : nt!KiExceptionDispatch+0xc2
fffff880`0a5eb2e0 fffff800`02c97479 : fffff6fc`c016bba8 00000000`00000000 fffff880`c016bba8 fffff880`0a5eb4c0 : nt!KiInvalidOpcodeFault+0x11f
fffff880`0a5eb470 fffff800`02cbecae : fffff980`52bc0000 00000000`000ea000 00000000`00000000 fffffa80`0774cb00 : nt!MmCheckCachedPageStates+0x1d9
fffff880`0a5eb620 fffff800`02f9579b : 00000000`6d740000 00000000`6d740000 fffffa80`049e7870 00000000`204771f5 : nt!CcFetchDataForRead+0x10e
fffff880`0a5eb680 fffff880`012d4c48 : fffff880`00000000 00000000`00000005 fffffa80`00040000 fffffa80`00104a01 : nt!CcCopyRead+0x16b
fffff880`0a5eb740 fffff880`0109d0c8 : fffffa80`049e7870 fffffa80`0774ca98 fffff880`0a5eb9b0 fffffa80`049e7801 : Ntfs!NtfsCopyReadA+0x1a8
fffff880`0a5eb910 fffff880`010a0c2a : fffff880`0a5eb9e0 00000000`2045c003 00000000`2045c000 fffffa80`049e7800 : fltmgr!FltpPerformFastIoCall+0x88
fffff880`0a5eb970 fffff880`010be5f0 : fffffa80`049e7870 00000000`00000000 fffff880`0a5ebb40 00000000`00104ad2 : fltmgr!FltpPassThroughFastIo+0xda
fffff880`0a5eb9b0 fffff880`074fc28e : fffffa80`00d628a0 fffff700`01080000 fffffa80`042ee458 fffffa80`049e7870 : fltmgr!FltpFastIoRead+0x1d0
fffff880`0a5eba50 fffffa80`00d628a0 : fffff700`01080000 fffffa80`042ee458 fffffa80`049e7870 00000000`00000000 : AVGIDSFilter+0x128e
fffff880`0a5eba58 fffff700`01080000 : fffffa80`042ee458 fffffa80`049e7870 00000000`00000000 00000000`2045c08f : 0xfffffa80`00d628a0
fffff880`0a5eba60 fffffa80`042ee458 : fffffa80`049e7870 00000000`00000000 00000000`2045c08f fffff880`0a5ebb40 : 0xfffff700`01080000
fffff880`0a5eba68 fffffa80`049e7870 : 00000000`00000000 00000000`2045c08f fffff880`0a5ebb40 fffffa80`054af8e0 : 0xfffffa80`042ee458
fffff880`0a5eba70 00000000`00000000 : 00000000`2045c08f fffff880`0a5ebb40 fffffa80`054af8e0 00000000`00000000 : 0xfffffa80`049e7870
STACK_COMMAND: kb
FOLLOWUP_IP:
AVGIDSFilter+128e
fffff880`074fc28e ?? ???
SYMBOL_STACK_INDEX: 11
SYMBOL_NAME: AVGIDSFilter+128e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: AVGIDSFilter
IMAGE_NAME: AVGIDSFilter.Sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4c5896d9
FAILURE_BUCKET_ID: X64_0xD1_CODE_AV_BAD_IP_AVGIDSFilter+128e
BUCKET_ID: X64_0xD1_CODE_AV_BAD_IP_AVGIDSFilter+128e
Followup: MachineOwner
---------
Debug session time: Thu Apr 14 14:32:30.112 2011 (GMT-4)
System Uptime: 0 days 10:07:02.376
Loading Kernel Symbols
...............................................................
................................................................
.........................................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck D1, {e1, c, 8, e1}
Probably caused by : ntkrnlmp.exe ( nt!KiPageFault+260 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 00000000000000e1, memory referenced
Arg2: 000000000000000c, IRQL
Arg3: 0000000000000008, value 0 = read operation, 1 = write operation
Arg4: 00000000000000e1, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ec70e0
00000000000000e1
CURRENT_IRQL: c
FAULTING_IP:
+614d952f00bfd858
00000000`000000e1 ?? ???
PROCESS_NAME: svchost.exe
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xD1
TRAP_FRAME: fffff880037a3570 -- (.trap 0xfffff880037a3570)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000003 rbx=0000000000000000 rcx=0000000000000003
rdx=f880037a37a00006 rsi=0000000000000000 rdi=0000000000000000
rip=00000000000000e1 rsp=fffff880037a3700 rbp=0000000000000000
r8=0000000000004cc0 r9=0000000000000000 r10=0000000000000000
r11=fffff88002fd3180 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na pe nc
00000000`000000e1 ?? ???
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002c8eca9 to fffff80002c8f740
FAILED_INSTRUCTION_ADDRESS:
+614d952f00bfd858
00000000`000000e1 ?? ???
STACK_TEXT:
fffff880`037a3428 fffff800`02c8eca9 : 00000000`0000000a 00000000`000000e1 00000000`0000000c 00000000`00000008 : nt!KeBugCheckEx
fffff880`037a3430 fffff800`02c8d920 : 00000000`00000000 00000000`00000005 fffff880`02f63180 00000000`00000020 : nt!KiBugCheckDispatch+0x69
fffff880`037a3570 00000000`000000e1 : 00000000`00040001 00000000`00000005 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x260
fffff880`037a3700 00000000`00040001 : 00000000`00000005 00000000`00000000 00000000`00000000 00000000`00000000 : 0xe1
fffff880`037a3708 00000000`00000005 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x40001
fffff880`037a3710 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x5
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiPageFault+260
fffff800`02c8d920 440f20c0 mov rax,cr8
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: nt!KiPageFault+260
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4cc791bd
FAILURE_BUCKET_ID: X64_0xD1_CODE_AV_BAD_IP_nt!KiPageFault+260
BUCKET_ID: X64_0xD1_CODE_AV_BAD_IP_nt!KiPageFault+260
Followup: MachineOwner
---------
1: kd> lmtsmn
start end module name
fffff880`03f98000 fffff880`03fd6000 1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00e4a000 fffff880`00ea1000 ACPI ACPI.sys Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`02c51000 fffff880`02cdb000 afd afd.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`0438f000 fffff880`043a5000 AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`03f37000 fffff880`03f4c000 amdppm amdppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00fde000 fffff880`00fe9000 amdxata amdxata.sys Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`08533000 fffff880`08564000 AODDriver2 AODDriver2.sys Wed May 05 00:03:12 2010 (4BE0EE00)
fffff880`042af000 fffff880`042b7000 ASACPI ASACPI.sys Wed Jul 15 23:31:29 2009 (4A5E9F11)
fffff880`03f0b000 fffff880`03f11000 AsIO AsIO.sys Mon Aug 03 03:03:16 2009 (4A768BB4)
fffff880`096f9000 fffff880`09704000 asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00fab000 fffff880`00fb4000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fb4000 fffff880`00fde000 ataport ataport.SYS Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`05d13000 fffff880`05d33000 AtihdW76 AtihdW76.sys Wed Nov 17 07:02:04 2010 (4CE3C43C)
fffff880`0482e000 fffff880`0503f000 atikmdag atikmdag.sys Thu Nov 25 21:46:44 2010 (4CEF1F94)
fffff880`03f4c000 fffff880`03f98000 atikmpag atikmpag.sys Thu Nov 25 21:16:47 2010 (4CEF188F)
fffff960`00830000 fffff960`00891000 ATMFD ATMFD.DLL Fri Feb 18 23:13:38 2011 (4D5F4372)
fffff880`06dab000 fffff880`06ddf000 AVGIDSDriver AVGIDSDriver.Sys Tue Aug 03 18:24:45 2010 (4C58972D)
fffff880`018a0000 fffff880`018aa000 AVGIDSEH AVGIDSEH.Sys Mon Sep 13 18:46:38 2010 (4C8EA9CE)
fffff880`06d57000 fffff880`06d63000 AVGIDSFilter AVGIDSFilter.Sys Tue Aug 03 18:23:21 2010 (4C5896D9)
fffff880`03ebb000 fffff880`03f0b000 avgldx64 avgldx64.sys Tue Dec 07 21:01:55 2010 (4CFEE713)
fffff880`0190a000 fffff880`01919000 avgmfx64 avgmfx64.sys Mon Sep 06 20:49:14 2010 (4C858C0A)
fffff880`01896000 fffff880`018a0000 avgrkx64 avgrkx64.sys Mon Sep 06 20:49:37 2010 (4C858C21)
fffff880`01800000 fffff880`01861000 avgtdia avgtdia.sys Fri Nov 12 06:08:42 2010 (4CDD203A)
fffff880`01922000 fffff880`01929000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03eaa000 fffff880`03ebb000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`03b9e000 fffff880`03bbc000 bowser bowser.sys Wed Feb 23 00:15:06 2011 (4D6497DA)
fffff960`00760000 fffff960`00787000 cdd cdd.dll unavailable (00000000)
fffff880`018e0000 fffff880`0190a000 cdrom cdrom.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00d39000 fffff880`00df9000 CI CI.dll Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01866000 fffff880`01896000 CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00cdb000 fffff880`00d39000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01167000 fffff880`011da000 cng cng.sys Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`042cc000 fffff880`042dc000 CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`06d63000 fffff880`06d6c000 cpuz134_x64 cpuz134_x64.sys Fri Jul 09 07:16:58 2010 (4C37052A)
fffff880`05c1b000 fffff880`05c29000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03e09000 fffff880`03e8c000 csc csc.sys Mon Jul 13 19:24:26 2009 (4A5BC22A)
fffff880`03e8c000 fffff880`03eaa000 dfsc dfsc.sys Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`02dcd000 fffff880`02ddc000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01086000 fffff880`0109c000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`04324000 fffff880`04346000 drmk drmk.sys Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`05c35000 fffff880`05c3e000 dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`05c29000 fffff880`05c35000 dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`05c3e000 fffff880`05c51000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`05c51000 fffff880`05c5d000 Dxapi Dxapi.sys Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`0503f000 fffff880`05133000 dxgkrnl dxgkrnl.sys Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`05133000 fffff880`05179000 dxgmms1 dxgmms1.sys Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`05c5d000 fffff880`05c93000 fastfat fastfat.SYS Mon Jul 13 19:23:28 2009 (4A5BC1F0)
fffff880`010f5000 fffff880`01109000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`010a9000 fffff880`010f5000 fltmgr fltmgr.sys Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`013df000 fffff880`013e9000 Fs_Rec Fs_Rec.sys Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`00e00000 fffff880`00e3a000 fvevol fvevol.sys Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`015b5000 fffff880`015ff000 fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff880`051f3000 fffff880`05200000 GEARAspiWDM GEARAspiWDM.sys Mon May 18 08:17:04 2009 (4A1151C0)
fffff800`031fc000 fffff800`03245000 hal hal.dll Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`05179000 fffff880`0519d000 HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`05d33000 fffff880`05d4c000 HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`067e8000 fffff880`067f0080 HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`0661f000 fffff880`0662d000 hidusb hidusb.sys Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`03a00000 fffff880`03ac8000 HTTP HTTP.sys Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`013e9000 fffff880`013f2000 hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`0422f000 fffff880`0423e000 kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`067f1000 fffff880`067ff000 kbdhid kbdhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00ba0000 fffff800`00baa000 kdcom kdcom.dll Sat Feb 05 07:21:45 2011 (4D4D40D9)
fffff880`04346000 fffff880`04389000 ks ks.sys Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`013b4000 fffff880`013ce000 ksecdd ksecdd.sys Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01460000 fffff880`0148b000 ksecpkg ksecpkg.sys Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`04389000 fffff880`0438e200 ksthunk ksthunk.sys Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`05deb000 fffff880`05e00000 lltdio lltdio.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`018aa000 fffff880`018cd000 luafv luafv.sys Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00cba000 fffff880`00cc7000 mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`05c93000 fffff880`05ca1000 monitor monitor.sys Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`03ff0000 fffff880`03fff000 mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05db8000 fffff880`05dc5000 mouhid mouhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00f91000 fffff880`00fab000 mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`03bbc000 fffff880`03bd4000 mpsdrv mpsdrv.sys Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`06cb9000 fffff880`06ce6000 mrxsmb mrxsmb.sys Wed Feb 23 00:15:23 2011 (4D6497EB)
fffff880`06ce6000 fffff880`06d34000 mrxsmb10 mrxsmb10.sys Wed Feb 23 00:15:14 2011 (4D6497E2)
fffff880`06d34000 fffff880`06d57000 mrxsmb20 mrxsmb20.sys Wed Feb 23 00:15:13 2011 (4D6497E1)
fffff880`01987000 fffff880`01992000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00eaa000 fffff880`00eb4000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`01109000 fffff880`01167000 msrpc msrpc.sys Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`02dc2000 fffff880`02dcd000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`014aa000 fffff880`014bc000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`014c3000 fffff880`015b5000 ndis ndis.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`043c9000 fffff880`043d5000 ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`03b1f000 fffff880`03b32000 ndisuio ndisuio.sys Mon Jul 13 20:09:25 2009 (4A5BCCB5)
fffff880`04200000 fffff880`0422f000 ndiswan ndiswan.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`05cfe000 fffff880`05d13000 NDProxy NDProxy.SYS Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`02d0a000 fffff880`02d19000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02c0c000 fffff880`02c51000 netbt netbt.sys Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01400000 fffff880`01460000 NETIO NETIO.SYS Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`01992000 fffff880`019a3000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`02db6000 fffff880`02dc2000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c1f000 fffff800`031fc000 nt ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`01211000 fffff880`013b4000 Ntfs Ntfs.sys Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`01919000 fffff880`01922000 Null Null.SYS Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`03acc000 fffff880`03b1f000 nwifi nwifi.sys Mon Jul 13 20:07:23 2009 (4A5BCC3B)
fffff880`02ce4000 fffff880`02d0a000 pacer pacer.sys Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`00ef4000 fffff880`00f09000 partmgr partmgr.sys Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00eb4000 fffff880`00ee7000 pci pci.sys Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00f7a000 fffff880`00f81000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00f81000 fffff880`00f91000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013ce000 fffff880`013df000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`06c00000 fffff880`06ca6000 peauth peauth.sys Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`042e7000 fffff880`04324000 portcls portcls.sys Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`042dc000 fffff880`042e7000 povrtdev povrtdev.sys Wed Feb 24 05:51:44 2010 (4B8504C0)
fffff880`00cc7000 fffff880`00cdb000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`043a5000 fffff880`043c9000 rasl2tp rasl2tp.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`043d5000 fffff880`043f0000 raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`0480b000 fffff880`0482c000 raspptp raspptp.sys Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`03fd6000 fffff880`03ff0000 rassstp rassstp.sys Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`02d65000 fffff880`02db6000 rdbss rdbss.sys Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`043f0000 fffff880`043fb000 rdpbus rdpbus.sys Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`0196c000 fffff880`01975000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`08564000 fffff880`08592000 rdpdr rdpdr.sys Mon Jul 13 20:18:02 2009 (4A5BCEBA)
fffff880`01975000 fffff880`0197e000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0197e000 fffff880`01987000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`085ac000 fffff880`085e4000 RDPWD RDPWD.SYS Mon Jul 13 20:16:47 2009 (4A5BCE6F)
fffff880`0104c000 fffff880`01086000 rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`03b32000 fffff880`03b4a000 rspndr rspndr.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`0519d000 fffff880`051f3000 Rt64win7 Rt64win7.sys Wed Jun 23 05:10:45 2010 (4C21CF95)
fffff880`05dc5000 fffff880`05deb000 RzSynapse RzSynapse.sys Wed Dec 15 05:32:19 2010 (4D089933)
fffff880`06ca6000 fffff880`06cb1000 secdrv secdrv.SYS Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`042b7000 fffff880`042c3000 serenum serenum.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`02d19000 fffff880`02d36000 serial serial.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`014a3000 fffff880`014aa000 speedfan speedfan.sys Sun Sep 24 09:26:48 2006 (45168798)
fffff880`0149b000 fffff880`014a3000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`0849e000 fffff880`08533000 srv srv.sys Wed Feb 23 00:16:24 2011 (4D649828)
fffff880`08437000 fffff880`0849e000 srv2 srv2.sys Wed Feb 23 00:15:59 2011 (4D64980F)
fffff880`06d6c000 fffff880`06d99000 srvnet srvnet.sys Wed Feb 23 00:15:49 2011 (4D649805)
fffff880`0423e000 fffff880`0423f480 swenum swenum.sys Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01601000 fffff880`017fe000 tcpip tcpip.sys Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`06d99000 fffff880`06dab000 tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`019c1000 fffff880`019ce000 TDI TDI.SYS Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`08592000 fffff880`0859d000 tdtcp tdtcp.sys Mon Jul 13 20:16:32 2009 (4A5BCE60)
fffff880`019a3000 fffff880`019c1000 tdx tdx.sys Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`02d51000 fffff880`02d65000 termdd termdd.sys Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`005c0000 fffff960`005ca000 TSDDD TSDDD.dll Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0859d000 fffff880`085ac000 tssecsrv tssecsrv.sys Mon Jul 13 20:16:41 2009 (4A5BCE69)
fffff880`03f11000 fffff880`03f37000 tunnel tunnel.sys Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`03b4a000 fffff880`03b9e000 udfs udfs.sys Mon Jul 13 19:23:37 2009 (4A5BC1F9)
fffff880`02ddc000 fffff880`02dee000 umbus umbus.sys Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`05d9d000 fffff880`05db7c00 usbaudio usbaudio.sys Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`06600000 fffff880`0661d000 usbccgp usbccgp.sys Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`0661d000 fffff880`0661ef00 USBD USBD.SYS Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`0429e000 fffff880`042af000 usbehci usbehci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05ca4000 fffff880`05cfe000 usbhub usbhub.sys Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`04800000 fffff880`0480b000 usbohci usbohci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04248000 fffff880`0429e000 USBPORT USBPORT.SYS Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`05c00000 fffff880`05c1b000 USBSTOR USBSTOR.SYS Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`05d4c000 fffff880`05d9cd00 V0380Vid V0380Vid.sys Tue Jun 16 06:47:05 2009 (4A377829)
fffff880`00ee7000 fffff880`00ef4000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`01929000 fffff880`01937000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`06631000 fffff880`067e8000 viahduaa viahduaa.sys Sat May 15 06:22:39 2010 (4BEE75EF)
fffff880`01937000 fffff880`0195c000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`0148b000 fffff880`0149b000 vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
fffff880`00f09000 fffff880`00f1e000 volmgr volmgr.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00f1e000 fffff880`00f7a000 volmgrx volmgrx.sys Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01000000 fffff880`0104c000 volsnap volsnap.sys Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02d36000 fffff880`02d51000 wanarp wanarp.sys Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`0195c000 fffff880`0196c000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`0662d000 fffff880`06630880 wdcsam64 wdcsam64.sys Wed Apr 16 04:39:08 2008 (4805BB2C)
fffff880`00c00000 fffff880`00ca4000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00ca4000 fffff880`00cb3000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`02cdb000 fffff880`02ce4000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`000b0000 fffff960`003c2000 win32k win32k.sys Wed Mar 02 22:58:01 2011 (4D6F11C9)
fffff880`042c3000 fffff880`042cc000 wmiacpi wmiacpi.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00ea1000 fffff880`00eaa000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`019ce000 fffff880`019ef000 WudfPf WudfPf.sys Mon Jul 13 20:05:37 2009 (4A5BCBD1)
Unloaded modules:
fffff880`09704000 fffff880`0970a000 RTCore64.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`09688000 fffff880`096f9000 spsys.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`018aa000 fffff880`018b8000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`018b8000 fffff880`018c4000 dump_ataport
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`018c4000 fffff880`018cd000 dump_atapi.s
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`018cd000 fffff880`018e0000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000