New
#11
Thanks :)
Let us know how things fare.
2 fresh BSOD's, memtest went through 12 passes and came back with no errors. new logs attached.
bump
bump
I'm sorry for the slow reply, but please don't bump the thread.
Now for the dumps.
Both of them are 0xC5, DRIVER CORRUPTED EXPOOL.
In our earlier attempt of using Driver Verifier it indicated memory corruption and storageThe DRIVER_CORRUPTED_EXPOOL bug check has a value of 0x000000C5. This indicates that the
system attempted to access invalid memory at a process IRQL that was too high.
An attempt occurred to touch invalid memory at a process IRQL that is too high. This is almost always
caused by drivers that have corrupted the system pool. If you’ve recently installed any new software,
check to see if it’s properly installed; and check for updated drivers on the manufacturer’s web site.
issues I suggest to run it again using the same settings as in post #2 to see what it comes up with this time.
How old is the HDD and the PSU?
Can you correlate any change made to the PC, be it software or hardware, prior to the BSOD's started?
Before the issues began I ran windows update and updated my chipset and ethernet drivers. I rolled both of them back. the HDD and PSU are about 4 years old. New set of BSOD's attached.
Thanks for the update :) .
Going through the new dumps I noticed that the vast majority are showing file system activity,
I found that you're using a very old driver that does just that.
Code:lmvm iaStor start end module name fffff880`01002000 fffff880`0111e000 iaStor T (no symbols) Loaded symbol image file: iaStor.sys Image path: \SystemRoot\system32\DRIVERS\iaStor.sys Image name: iaStor.sys Timestamp: Fri Jun 05 04:53:40 2009
Please remove intel rapid storage technology.
Please remove the Sendori monitoring software.Arc said:
Scan for possible infection.Code:c:\program files (x86)\sendori\sndappv2.exe
- Download TDSS-Killer and scan for rootkits.
- Download Kaspersky Rescue CD and scan for other types of infections. (a how-to tutorial)
Keep us in the know :) .
good call on the TDSS, I did in fact have a rootkit virus, it has been dispatched. I uninstalled sendori and the rapid storage and removed the devices and rebooted as asked. I'll have to hunt down an cd to burn the iso onto then i'll run the rescue cd virus scan, I will let you know if any further problems persist, thank you very much.
Thanks for the feedback :) .
You can use a USB thubmdrive (1GB+) to create the Kaspersky Rescue CD, it will even be faster that way :) .
How to record Kaspersky Rescue Disk 10 to an USB device and boot my computer from it?
Alright, thanks for the link there, making a boot image on my usb drive now then running it, will post back with results.