ntoskrnl.exe BSOD


  1. Posts : 19
    Microsoft Windows 7 Professional 64-bit 7601 Multiprocessor Free Service Pack 1
       #1

    ntoskrnl.exe BSOD


    I have beenn having several BSOD's a daY. It happens when my computer is idiling. I ran chkdsk and did a memory test for about an hour with no problems. I have attached the dump file. I would be grateful if you could
    look at it. For the record this is a computer I built about a year ago.
      My Computer


  2. Arc
    Posts : 35,373
    Microsoft Windows 10 Pro Insider Preview 64-bit
       #2

    Hello t41310.

    The crash is caused by Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC driver.
    Code:
    Irp is active with 3 stacks 2 is current (= 0xfffffa8008e52128)
     No Mdl: No System Buffer: Thread 00000000:  Irp stack trace.  
         cmd  flg cl Device   File     Completion-Context
     [  0, 0]   0  0 00000000 00000000 00000000-00000000    
    
                Args: 00000000 00000000 00000000 00000000
    >[ 16, 2]   0 e1 fffffa800834d050 00000000 fffff800032da200-fffffa8008518120 Success Error Cancel pending
              Unable to load image \SystemRoot\system32\DRIVERS\Rt64win7.sys, Win32 error 0n2
    *** WARNING: Unable to verify timestamp for Rt64win7.sys
    *** ERROR: Module load completed but symbols could not be loaded for Rt64win7.sys
     \Driver\RTL8167    nt!PopSystemIrpCompletion
                Args: 00012200 00000000 00000002 00000002
     [  0, 0]   0  0 00000000 00000000 00000000-fffffa8008518120    
    
                Args: 00000000 00000000 00000000 00000000
    And the driver is old.
    Code:
    fffff880`0446a000 fffff880`044d4000   Rt64win7 T (no symbols)           
        Loaded symbol image file: Rt64win7.sys
        Image path: \SystemRoot\system32\DRIVERS\Rt64win7.sys
        Image name: Rt64win7.sys
        Timestamp:        Wed Jan 26 19:04:03 2011 (4D4022CB)
        CheckSum:         0006AFBB
        ImageSize:        0006A000
        Translations:     0000.04b0 0000.04e4 0409.04b0 0409.04e4
    Update it from Realtek

    There are reasons to suspect a malware.
    Code:
    fffff800`00b9c4f8  fffff880`00dc2830 ataport!IdePortTickHandler
    fffff800`00b9c510  fffff880`00dc2830 ataport!IdePortTickHandler
    Scan the system for possible virus infection.


    On a serious note, hibernate or sleep is not needed for a desktop PCat all, as it runs on the external source of power and not on the battery. Dont worry to disable hibernate and sleep.
    Hibernate - Enable or Disable

    Free up the startup.

    1. Click on the Start button
    2. Type “msconfig (without quotes), click the resulting link. It will open the System Configuration window.
    3. Select the “Startup” tab.
    4. Deselect all items other than the antivirus.
    5. Apply > OK
    6. Accept then restart.

    If possible, Plan to update the BIOS. Here's your current one .... what they calls Initial BIOS.
    Code:
    BiosVersion = 4.6.4
    BiosReleaseDate = 09/07/2011
    Take the update from BIOSTAR, dated 2012-09-17.


    Let us know the results.
      My Computer


  3. Posts : 19
    Microsoft Windows 7 Professional 64-bit 7601 Multiprocessor Free Service Pack 1
    Thread Starter
       #3

    Thank you for yourkind assistance. I downloaded an uodated Realtek driver from Biostar and ran Anti-rootkit utility TDSSKiller
    and I have had no BSODs in 36 hours. I did not replace the BIOS as Biostar discourages that on their website. If the BSODs occur again I will do so at that time.
    Thanks again and God Bless
      My Computer


  4. Arc
    Posts : 35,373
    Microsoft Windows 10 Pro Insider Preview 64-bit
       #4

    Very good to know the situation :)

    For any further issue, let us know.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 05:16.
Find Us