BSOD while using Photoshop CS5 on Wacom Cintiq

soulnotsoldier4

New member
Local time
11:25 AM
Messages
4
New computer, built less than six months ago from a Newegg Package

Running Windows 7 Ultimate 64 bit
Processor: AMD FX-6100 Zambezi 3.3GHz Socket AM3+ 95W Six-Core Desktop Processor FD6100WMGUSBX
RAM: 16 GB of RAM (G.SKILL Ripjaw series)
Graphics Card: GIGABYTE GV-N560OC-1GI GeForce GTX 560 Ti (Fermi) 1GB 256-bit GDDR5 PCI Express 2.0 x16 HDCP Ready SLI Support Video Card
Motherboard: GIGABYTE GA-970A-D3 AM3+ AMD 970 SATA 6Gb/s USB 3.0 ATX AMD Motherboard
Main Hard Drive: Seagate Barracuda ST500DM002 500GB 7200 RPM SATA 6.0Gb/s 3.5" Internal Hard Drive -Bare Drive

I use a Mybook half terabyte external hard drive. I have updated every conceivable driver including uninstalling and reinstalling the Wacom Cintiq and all the drivers available on the website. Originally thought it might be a antivirus program problem so I removed Comodo. I didn't have problems for a week. I thought it might just be the program I was using and instead downloaded a free version of Avast. Within the hour I tried to run Photoshop on the Cintiq along with one Indesign window and hit another BSOD. Uninstalled Avast and an hour later attempted the same run. Photoshop came open but once I made changes to the file and attempted to save, another BSOD
 

My Computer My Computer

At a glance

Windows 7 Ultimate 64
OS
Windows 7 Ultimate 64
Hello, welcome to SevenForums!

Both of your BSODs point to win32k.sys, which was more than likely caused to crash by another driver. I've taken a look at your drivers list and your Wacom Tablet driver has a date of 2007, which is pretty old. I'm unsure if this is the last time Wacom has released a driver for your specific model, but it can be updated here Drivers | Wacom Americas or at the OEM support website if it came built in to your system.

Few things to note, since it's a custom built please STOP overclocking if you are. Update your nVidia drivers to the latest here.

After doing both of these, if you still get crashes, I'd like you to enable Driver Verifier. This will force a crash if it finds a driver at fault and hopefully help us diagnose your issue.

Please setup a backup / restore point before enabling it as sometimes Driver Verifier will break Windows in severe conditions. If you have trouble getting into Windows when enabling Driver Verifier, boot into Safe Mode and disable it.

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\Icarus\Downloads\Dumps\Windows_NT6_BSOD_jcgriff2\022612-78109-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17640.amd64fre.win7sp1_gdr.110622-1506
Machine Name:
Kernel base = 0xfffff800`0305f000 PsLoadedModuleList = 0xfffff800`032a4670
Debug session time: Sun Feb 26 18:12:10.130 2012 (UTC - 5:00)
System Uptime: 0 days 0:56:15.301
Loading Kernel Symbols
...............................................................
................................................................
............................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff9600015863e, fffff88007a48de0, 0}

Probably caused by : win32k.sys ( win32k!CalcVisRgnWorker+21e )

Followup: MachineOwner
---------

4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff9600015863e, Address of the instruction which caused the bugcheck
Arg3: fffff88007a48de0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
win32k!CalcVisRgnWorker+21e
fffff960`0015863e 4883b8c800000000 cmp     qword ptr [rax+0C8h],0

CONTEXT:  fffff88007a48de0 -- (.cxr 0xfffff88007a48de0)
rax=00001f8000120068 rbx=0000000000200000 rcx=fffff88007a49898
rdx=fffff88007a49878 rsi=fffff900c1000b90 rdi=0000000000000004
rip=fffff9600015863e rsp=fffff88007a497c0 rbp=0000000000000001
 r8=fffff900c6800040  r9=00000000001ffff3 r10=0000000069767355
r11=0000000000000000 r12=fffff88007a49830 r13=fffff900c6800000
r14=fffff88007a49ba0 r15=0000000000000009
iopl=0         nv up ei pl nz na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010206
win32k!CalcVisRgnWorker+0x21e:
fffff960`0015863e 4883b8c800000000 cmp     qword ptr [rax+0C8h],0 ds:002b:00001f80`00120130=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  Photoshop.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff9600015863e

STACK_TEXT:  
fffff880`07a497c0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : win32k!CalcVisRgnWorker+0x21e


FOLLOWUP_IP: 
win32k!CalcVisRgnWorker+21e
fffff960`0015863e 4883b8c800000000 cmp     qword ptr [rax+0C8h],0

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  win32k!CalcVisRgnWorker+21e

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: win32k

IMAGE_NAME:  win32k.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4f10ff24

STACK_COMMAND:  .cxr 0xfffff88007a48de0 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_win32k!CalcVisRgnWorker+21e

BUCKET_ID:  X64_0x3B_win32k!CalcVisRgnWorker+21e

Followup: MachineOwner
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64i7-2600KCorsair Vengeance 8GB DDR3 @ 1600Mhz (9-9-9-24)Asus Radeon HD 5850 (Crossfire)
OS
Windows 7 Ultimate x64
CPU
i7-2600K
Motherboard
Asus P8P67 Pro B3 (Rev 3.1)
Memory
Corsair Vengeance 8GB DDR3 @ 1600Mhz (9-9-9-24)
Graphics Card(s)
Asus Radeon HD 5850 (Crossfire)
Sound Card
X-Fi Titanium Fata1ity Professional
Monitor(s) Displays
Acer Eyefinity
Screen Resolution
5040x1050
Hard Drives
Samsung Spinpoint F3 1TB
PSU
Corsair CMPSU-750TX 750W
Case
LIAN LI Lancool PC-K56
Cooling
Corsair H70
Keyboard
Ducky Shine / Das Ultimate Blank
Mouse
Razer Lachesis
Alright, I still had a BSOD after updating the drivers. I turned on the verifier and have had two BSODs one while just being on chrome and browsing with itunes on. The other while I was trying to turn on peer block. Each time the BSOD flashes for only about 5 seconds and the second one went so fast that I didn't even have time to write down what it was listing as the cause. The first BSOD since said MEMORY_MANAGEMENT at the top but again as I was trying to read it flashed and the computer restarted itself. How would you suggest I deal with this?
 

My Computer My Computer

At a glance

Windows 7 Ultimate 64
OS
Windows 7 Ultimate 64
Please upload the latest crash reports to see if the crashes are being recorded.
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64 BitIntel(R) Core(TM)2 Quad CPU Q9550 @ 2.83GHz6.00 GB Hundai HMT125U6BFR8C-H9ATI Radeon HD 4850
Computer Manufacturer/Model Number
HP Pavilion e9110t
OS
Windows 7 Home Premium 64 Bit
CPU
Intel(R) Core(TM)2 Quad CPU Q9550 @ 2.83GHz
Motherboard
Pegatron IPIEL-LA3
Memory
6.00 GB Hundai HMT125U6BFR8C-H9
Graphics Card(s)
ATI Radeon HD 4850
Sound Card
Realtek High Definition Audio/ATI High Definition Audio
Monitor(s) Displays
Acer AL2216W
Screen Resolution
1680x1050
Hard Drives
Hitachi HDP725050GLA360 ATA Device 500 GB
PSU
Unknown/installed by HP
Case
HP generic case
Cooling
Intel Stock Cooling
Keyboard
HP Keyboard
Mouse
HP Mouse
Internet Speed
Download: 19.15 Mbps Upload: 1.67 Mbps
Other Info
Network Adapter Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
Network Adapter 802.11n Wireless PCI Express Card LAN Adapter
Next Report

Thank you so much for all the help thus far. I'm so glad that at least something can be done in some form. My roommate is pretty great with computers, he helped me build this one and we've been having BSOD issues since about a month in of running it.

Just to add:

As I can't read the BSOD information because it restarts almost instantly, I will report that on the last restart it said my driver for the tablet monitor I run was no longer running? Of all the things I'm not highly familiar with on computers it is the nature of drivers. So if there could be a small amount of explanation as to what's going on there as well as what you might already be able to tell me I would really appreciate it. I know you're all probably quite busy with other problems.
 

My Computer My Computer

At a glance

Windows 7 Ultimate 64
OS
Windows 7 Ultimate 64
If I were to explain how device drivers work, I would be here a while, and unfortunately, I do not have the time. You are welcome to pose the question to the experts in Drivers - Windows 7 Forums who may be able to speak of drivers off the tops of their heads. I would have to do a bit of research into the history of drivers and how they function to adequately answer your question. Simply put: device drivers allow software (such as the operating system) to communicate with hardware or virtual hardware.


Antivirus Software? Recommend either or the

Possible out of date drivers:
Code:
wacommousefilter	fffff880`05673000	fffff880`0567b000	Fri Feb 16 11:12:17 2007 (45d5f401)	00005ace		wacommousefilter.sys
PxHlpa64	fffff880`010c5000	fffff880`010d0ae0	Mon Dec 10 16:49:01 2007 (475dd06d)	0000fd49		PxHlpa64.sys
gdrv	fffff880`081f5000	fffff880`081fe000	Thu Mar 12 21:22:29 2009 (49b9d175)	000105ce	None	gdrv.sys
GEARAspiWDM	fffff880`04296000	fffff880`042a3000	Mon May 18 06:17:04 2009 (4a1151c0)	000159b4		GEARAspiWDM.sys
wacommousefilter.sys
PxHlpa64.sys
gdrv.sys
GEARAspiWDM.sys



Code:
[list=1]
[*]
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [D:\Kingston\BSODDmpFiles\soulnotsoldier4\Windows_NT6_BSOD_jcgriff2\030612-25116-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17640.amd64fre.win7sp1_gdr.110622-1506
Machine Name:
Kernel base = 0xfffff800`03265000 PsLoadedModuleList = 0xfffff800`034aa670
Debug session time: Tue Mar  6 11:10:44.576 2012 (UTC - 7:00)
System Uptime: 0 days 18:54:57.418
Loading Kernel Symbols
...............................................................
................................................................
.............................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck C1, {fffff980267e6ff0, fffff980267e6ffc, 87000c, 24}

Unable to load image \??\C:\Windows\gdrv.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for gdrv.sys
*** ERROR: Module load completed but symbols could not be loaded for gdrv.sys
Probably caused by : gdrv.sys ( gdrv+30c7 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SPECIAL_POOL_DETECTED_MEMORY_CORRUPTION (c1)
Special pool has detected memory corruption.  Typically the current thread's
stack backtrace will reveal the guilty party.
Arguments:
Arg1: fffff980267e6ff0, address trying to free
Arg2: fffff980267e6ffc, address where bits are corrupted
Arg3: 000000000087000c, (reserved)
Arg4: 0000000000000024, caller is freeing an address where bytes after the end of the allocation have been overwritten

Debugging Details:
------------------


BUGCHECK_STR:  0xC1_24

SPECIAL_POOL_CORRUPTION_TYPE:  24

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VERIFIER_ENABLED_VISTA_MINIDUMP

PROCESS_NAME:  essvr.exe

CURRENT_IRQL:  1

IRP_ADDRESS:  fffff98028e6ef3b

LAST_CONTROL_TRANSFER:  from fffff800033e3b54 to fffff800032e1c40

STACK_TEXT:  
fffff880`07eb2398 fffff800`033e3b54 : 00000000`000000c1 fffff980`267e6ff0 fffff980`267e6ffc 00000000`0087000c : nt!KeBugCheckEx
fffff880`07eb23a0 fffff800`0340f93b : fffff800`03265000 00000000`20206f49 00000000`015d6bdc fffffa80`106badb0 : nt!MmFreeSpecialPool+0x374
fffff880`07eb24e0 fffff800`032f709e : 00000000`00000000 fffff980`28e6efb0 fffff980`0356ece0 fffffa80`0f56e740 : nt!ExDeferredFreePool+0xf33
fffff880`07eb2590 fffff800`032e534a : fffff980`28e6efb3 00000000`00000001 00000000`00000001 fffff800`0339e803 : nt!IopCompleteRequest+0x5ce
fffff880`07eb2660 fffff800`0378119f : fffff980`28e6eee0 fffffa80`109bda00 fffff980`28e6ef00 00000000`00000000 : nt!IopfCompleteRequest+0x66a
fffff880`07eb2750 fffff880`081f80c7 : fffff880`081f8a50 00000000`00000008 00000000`00000000 fffff980`28e6efb0 : nt!IovCompleteRequest+0x19f
fffff880`07eb2820 fffff880`081f8a50 : 00000000`00000008 00000000`00000000 fffff980`28e6efb0 00000000`00000001 : gdrv+0x30c7
fffff880`07eb2828 00000000`00000008 : 00000000`00000000 fffff980`28e6efb0 00000000`00000001 00000000`00000000 : gdrv+0x3a50
fffff880`07eb2830 00000000`00000000 : fffff980`28e6efb0 00000000`00000001 00000000`00000000 00000000`00000001 : 0x8


STACK_COMMAND:  kb

FOLLOWUP_IP: 
gdrv+30c7
fffff880`081f80c7 ??              ???

SYMBOL_STACK_INDEX:  6

SYMBOL_NAME:  gdrv+30c7

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: gdrv

IMAGE_NAME:  gdrv.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  49b9d175

FAILURE_BUCKET_ID:  X64_0xC1_24_VRF_gdrv+30c7

BUCKET_ID:  X64_0xC1_24_VRF_gdrv+30c7

Followup: MachineOwner
---------
[*]
Loading Dump File [D:\Kingston\BSODDmpFiles\soulnotsoldier4\Windows_NT6_BSOD_jcgriff2\030512-21808-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17640.amd64fre.win7sp1_gdr.110622-1506
Machine Name:
Kernel base = 0xfffff800`0324c000 PsLoadedModuleList = 0xfffff800`03491670
Debug session time: Mon Mar  5 16:14:48.655 2012 (UTC - 7:00)
System Uptime: 0 days 1:39:31.842
Loading Kernel Symbols
...............................................................
................................................................
..............................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck C9, {7, fffff88008402a10, fffff9801e162ee0, 0}

Unable to load image \??\C:\Program Files\PeerBlock\pbfilter.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for pbfilter.sys
*** ERROR: Module load completed but symbols could not be loaded for pbfilter.sys
Probably caused by : pbfilter.sys ( pbfilter+2a10 )

Followup: MachineOwner
---------

2: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

DRIVER_VERIFIER_IOMANAGER_VIOLATION (c9)
The IO manager has caught a misbehaving driver.
Arguments:
Arg1: 0000000000000007, IRP passed to IoCompleteRequest still has cancel routine set
Arg2: fffff88008402a10, the cancel routine pointer
Arg3: fffff9801e162ee0, the IRP
Arg4: 0000000000000000

Debugging Details:
------------------


BUGCHECK_STR:  0xc9_7

DRIVER_VERIFIER_IO_VIOLATION_TYPE:  7

IRP_CANCEL_ROUTINE: 
pbfilter+2a10
fffff880`08402a10 48895c2408      mov     qword ptr [rsp+8],rbx

FAULTING_IP: 
pbfilter+2a10
fffff880`08402a10 48895c2408      mov     qword ptr [rsp+8],rbx

FOLLOWUP_IP: 
pbfilter+2a10
fffff880`08402a10 48895c2408      mov     qword ptr [rsp+8],rbx

IRP_ADDRESS:  fffff9801e162ee0

DEVICE_OBJECT: fffffa800f663b60

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VERIFIER_ENABLED_VISTA_MINIDUMP

PROCESS_NAME:  svchost.exe

CURRENT_IRQL:  2

LAST_CONTROL_TRANSFER:  from fffff80003768072 to fffff800032c8c40

STACK_TEXT:  
fffff880`088d60e8 fffff800`03768072 : 00000000`000000c9 00000000`00000007 fffff880`08402a10 fffff980`1e162ee0 : nt!KeBugCheckEx
fffff880`088d60f0 fffff880`084029ea : 00000000`0000cde1 00000000`00000000 fffffa80`0f663cb0 fffff980`1e162ee0 : nt!IovCompleteRequest+0x72
fffff880`088d61c0 00000000`0000cde1 : 00000000`00000000 fffffa80`0f663cb0 fffff980`1e162ee0 00000000`00000011 : pbfilter+0x29ea
fffff880`088d61c8 00000000`00000000 : fffffa80`0f663cb0 fffff980`1e162ee0 00000000`00000011 00000000`faffffef : 0xcde1


STACK_COMMAND:  .bugcheck ; kb

SYMBOL_NAME:  pbfilter+2a10

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: pbfilter

IMAGE_NAME:  pbfilter.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4cd60dba

FAILURE_BUCKET_ID:  X64_0xc9_7_VRF_pbfilter+2a10

BUCKET_ID:  X64_0xc9_7_VRF_pbfilter+2a10

Followup: MachineOwner
---------


[/list]
  1. Caused by gdrv.sys
  2. Caused by pbfilter.sys
Remove Gigabyte Easy Saver - mobo power utility and Peerblocker to start. See if this helps resolve the problems.

If you have not yet done so, disable Verifier using an http://www.sevenforums.com/tutorials/783-elevated-command-prompt.html to run the command
verifier /reset​
and restart the computer.


I would also recommend that you check the Wacomm forums for problems regarding Adobe products. It seems to me that this is a common problem for these tablet devices... Illustrator crashes | Wacom tablet installed, Photoshop running | CS4, CS5 | Windows
 
Last edited:

My Computer My Computer

At a glance

Windows 7 Home Premium 64 BitIntel(R) Core(TM)2 Quad CPU Q9550 @ 2.83GHz6.00 GB Hundai HMT125U6BFR8C-H9ATI Radeon HD 4850
Computer Manufacturer/Model Number
HP Pavilion e9110t
OS
Windows 7 Home Premium 64 Bit
CPU
Intel(R) Core(TM)2 Quad CPU Q9550 @ 2.83GHz
Motherboard
Pegatron IPIEL-LA3
Memory
6.00 GB Hundai HMT125U6BFR8C-H9
Graphics Card(s)
ATI Radeon HD 4850
Sound Card
Realtek High Definition Audio/ATI High Definition Audio
Monitor(s) Displays
Acer AL2216W
Screen Resolution
1680x1050
Hard Drives
Hitachi HDP725050GLA360 ATA Device 500 GB
PSU
Unknown/installed by HP
Case
HP generic case
Cooling
Intel Stock Cooling
Keyboard
HP Keyboard
Mouse
HP Mouse
Internet Speed
Download: 19.15 Mbps Upload: 1.67 Mbps
Other Info
Network Adapter Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
Network Adapter 802.11n Wireless PCI Express Card LAN Adapter
Alright, in the last three days I have again had a number of BSODs. For the last few weeks things have been fine. The drivers you identified were disabled. The only small problem I ran into while this was going on is that in some way I think the Wacom's current driver is failing. I would notice that the settings for the brushes would suddenly crap out, so I would have a really complicated brush on photoshop, with a spongey pattern or something, only to have this reset and it's a regular black line. So I would run the wacom driver again, restart, and everything was fine again.

In the last three days I've had 5 or six BSODs. I have continually had them today. My fourth of the day occurred five minutes ago. I'm attaching the same information again. Thank you for the help. I hope we can figure out what is happening.
 

My Computer My Computer

At a glance

Windows 7 Ultimate 64
OS
Windows 7 Ultimate 64
Problem Devices:
Code:
TSSTcorp DVD+-RW TS-H653A ATA Device	IDE\CDROMTSSTCORP_DVD+-RW_TS-H653A_______________D500____\5&10CFBC0E&0&0.0.0	This device is disabled.


Security Software:
Code:
sdwinsec.exe	c:\program files (x86)\spybot - search & destroy\sdwinsec.exe	2444	8	200	1380	4/2/2012 4:28 PM	1.0.0.12	1.10 MB (1,153,368 bytes)	2/22/2012 2:45 AM
msmpeng.exe	c:\program files\microsoft security client\antimalware\msmpeng.exe	144	8	200	1380	4/2/2012 4:28 PM	3.0.8402.0	12.48 KB (12,784 bytes)	4/27/2011 5:21 PM
nissrv.exe	c:\program files\microsoft security client\antimalware\nissrv.exe	3012	8	200	1380	4/2/2012 4:28 PM	3.0.8402.0	281.52 KB (288,272 bytes)	4/27/2011 5:21 PM
msseces.exe	c:\program files\microsoft security client\msseces.exe	3352	8	200	1380	4/2/2012 4:31 PM	2.1.1116.0	1.37 MB (1,436,736 bytes)	6/15/2011 2:35 PM


Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [D:\Kingston\BSODDmpFiles\soulnotsoldier4\Windows_NT6_BSOD_jcgriff2\040212-21294-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*C:\SymCache*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17640.amd64fre.win7sp1_gdr.110622-1506
Machine Name:
Kernel base = 0xfffff800`0320f000 PsLoadedModuleList = 0xfffff800`03454670
Debug session time: Mon Apr  2 15:27:07.378 2012 (UTC - 6:00)
System Uptime: 0 days 0:23:54.533
Loading Kernel Symbols
...............................................................
................................................................
.........................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff800032b7d93, fffff88008a358e0, 0}

Probably caused by : memory_corruption ( nt!MmCopyToCachedPage+223 )

Followup: MachineOwner
---------

3: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800032b7d93, Address of the instruction which caused the bugcheck
Arg3: fffff88008a358e0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!MmCopyToCachedPage+223
fffff800`032b7d93 8b7838          mov     edi,dword ptr [rax+38h]

CONTEXT:  fffff88008a358e0 -- (.cxr 0xfffff88008a358e0)
rax=0000000000000000 rbx=0000000000000000 rcx=0000000fffffffff
rdx=fffff8000320f000 rsi=ffffffffffffffff rdi=fffffa800fe84810
rip=fffff800032b7d93 rsp=fffff88008a362c0 rbp=fffff88008a36300
 r8=0000098000000000  r9=0000000002157040 r10=0000058000000000
r11=fffff88008a36248 r12=fffff6fcc00b5e38 r13=0000000000000000
r14=0000000000001000 r15=0000000000000000
iopl=0         nv up ei ng nz ac pe nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010292
nt!MmCopyToCachedPage+0x223:
fffff800`032b7d93 8b7838          mov     edi,dword ptr [rax+38h] ds:002b:00000000`00000038=????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  WerFault.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff800032b7d93

STACK_TEXT:  
fffff880`08a362c0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MmCopyToCachedPage+0x223


FOLLOWUP_IP: 
nt!MmCopyToCachedPage+223
fffff800`032b7d93 8b7838          mov     edi,dword ptr [rax+38h]

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  nt!MmCopyToCachedPage+223

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

DEBUG_FLR_IMAGE_TIMESTAMP:  4e02aaa3

STACK_COMMAND:  .cxr 0xfffff88008a358e0 ; kb

IMAGE_NAME:  memory_corruption

FAILURE_BUCKET_ID:  X64_0x3B_nt!MmCopyToCachedPage+223

BUCKET_ID:  X64_0x3B_nt!MmCopyToCachedPage+223

Followup: MachineOwner
---------

First, did you go through the steps in Illustrator crashes | Wacom tablet installed ?


Check your memory for errors:
  • Run the boot version of Memtest86+ paying close attention to Parts 2 and 3 of the tutorial. Also, in case Memtest86+ misses anything and comes up with no errors, run the extended version of the Windows Memory Diagnostics Tool for at least five passes. These you may want to run overnight since they take a long time to complete (run them an hour before bed each of the next two nights and check before going to sleep that they are still running).

    If you swap any memory components, follow these steps for ESD safety:
    1. Shut down and turn off your computer.
    2. Unplug all power supplies to the computer (AC Power then battery for laptops, AC power for desktops)
    3. Hold down the power button for 30 seconds to close the circuit and ensure all power drains from components.
    4. Make sure you are grounded by using proper grounding techniques, i.e. work on an anti-static workbench, anti-static desk, or an anti-static pad. Hold something metallic while touching it to the anti-static surface, or use an anti-static wristband to attach to the anti-static material while working.
    Once these steps have been followed, it is safe to remove and replace components within your computer.
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64 BitIntel(R) Core(TM)2 Quad CPU Q9550 @ 2.83GHz6.00 GB Hundai HMT125U6BFR8C-H9ATI Radeon HD 4850
Computer Manufacturer/Model Number
HP Pavilion e9110t
OS
Windows 7 Home Premium 64 Bit
CPU
Intel(R) Core(TM)2 Quad CPU Q9550 @ 2.83GHz
Motherboard
Pegatron IPIEL-LA3
Memory
6.00 GB Hundai HMT125U6BFR8C-H9
Graphics Card(s)
ATI Radeon HD 4850
Sound Card
Realtek High Definition Audio/ATI High Definition Audio
Monitor(s) Displays
Acer AL2216W
Screen Resolution
1680x1050
Hard Drives
Hitachi HDP725050GLA360 ATA Device 500 GB
PSU
Unknown/installed by HP
Case
HP generic case
Cooling
Intel Stock Cooling
Keyboard
HP Keyboard
Mouse
HP Mouse
Internet Speed
Download: 19.15 Mbps Upload: 1.67 Mbps
Other Info
Network Adapter Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
Network Adapter 802.11n Wireless PCI Express Card LAN Adapter
Back
Top