Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\Mike\AppData\Local\Temp\Rar$DI00.456\032311-30841-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02a50000 PsLoadedModuleList = 0xfffff800`02c8de50
Debug session time: Wed Mar 23 15:54:50.246 2011 (UTC - 4:00)
System Uptime: 0 days 0:44:33.604
Loading Kernel Symbols
...............................................................
................................................................
................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1E, {ffffffffc0000005, fffff80002ac3905, 0, ffffffffffffffff}
Probably caused by : ntkrnlmp.exe ( nt!ExpInterlockedPopEntrySListFault16+0 )
Followup: MachineOwner
---------
4: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff80002ac3905, The address that the exception occurred at
Arg3: 0000000000000000, Parameter 0 of the exception
Arg4: ffffffffffffffff, Parameter 1 of the exception
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!ExpInterlockedPopEntrySListFault16+0
fffff800`02ac3905 498b08 mov rcx,qword ptr [r8]
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002cf80e0
ffffffffffffffff
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
BUGCHECK_STR: 0x1E_c0000005
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VERIFIER_ENABLED_VISTA_MINIDUMP
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
EXCEPTION_RECORD: fffff88008781c58 -- (.exr 0xfffff88008781c58)
ExceptionAddress: fffff80002ac3905 (nt!ExpInterlockedPopEntrySListFault16)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff
TRAP_FRAME: fffff88008781d00 -- (.trap 0xfffff88008781d00)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000e47cf0000 rbx=0000000000000000 rcx=fffff880009b3720
rdx=0040000000000001 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002ac3905 rsp=fffff88008781e90 rbp=fffffa800c99f000
r8=0040000000000000 r9=fffff80002a50000 r10=fffff880009b3720
r11=0000000000000011 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na po nc
nt!ExpInterlockedPopEntrySListFault16:
fffff800`02ac3905 498b08 mov rcx,qword ptr [r8] ds:cb40:00400000`00000000=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002afaa39 to fffff80002ac0740
STACK_TEXT:
fffff880`08781488 fffff800`02afaa39 : 00000000`0000001e ffffffff`c0000005 fffff800`02ac3905 00000000`00000000 : nt!KeBugCheckEx
fffff880`08781490 fffff800`02abfd82 : fffff880`08781c58 00000000`00000000 fffff880`08781d00 fffff880`009b3720 : nt!KiDispatchException+0x1b9
fffff880`08781b20 fffff800`02abe68a : 00000000`00000000 00000000`00000000 00000000`00000000 fffff880`0877d000 : nt!KiExceptionDispatch+0xc2
fffff880`08781d00 fffff800`02ac3905 : 00000000`00000000 fffff800`02bf4646 fffffa80`00323bb0 00000000`00000000 : nt!KiGeneralProtectionFault+0x10a
fffff880`08781e90 fffff800`02bf4646 : fffffa80`00323bb0 00000000`00000000 96600000`10be9963 fffff880`0877d000 : nt!ExpInterlockedPopEntrySListFault16
fffff880`08781ea0 fffff800`02e7222e : 00000000`00000000 00000000`00000000 00000000`00000000 fffff8a0`038917c0 : nt!ExAllocatePoolWithTag+0x276
fffff880`08781f90 fffff800`02e024eb : 00000000`0000001a fffff880`087821c0 fffffa80`0ec32701 00000000`0000001b : nt!CmpCallCallBacks+0xbe
fffff880`08782060 fffff800`02db7b84 : fffff800`02d979b0 00000000`00000000 fffffa80`0ec2c550 fffff880`08782500 : nt! ?? ::NNGAKEGL::`string'+0x2bc34
fffff880`08782330 fffff800`02dbcb4d : fffffa80`0ec2c550 fffff880`08782490 00000000`00000240 fffffa80`0cac83c0 : nt!ObpLookupObjectName+0x585
fffff880`08782430 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ObOpenObjectByName+0x1cd
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!ExpInterlockedPopEntrySListFault16+0
fffff800`02ac3905 498b08 mov rcx,qword ptr [r8]
SYMBOL_STACK_INDEX: 4
SYMBOL_NAME: nt!ExpInterlockedPopEntrySListFault16+0
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4cc791bd
FAILURE_BUCKET_ID: X64_0x1E_c0000005_VRF_nt!ExpInterlockedPopEntrySListFault16+0
BUCKET_ID: X64_0x1E_c0000005_VRF_nt!ExpInterlockedPopEntrySListFault16+0
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\Mike\AppData\Local\Temp\Rar$DI00.272\032311-42557-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`02a4e000 PsLoadedModuleList = 0xfffff800`02c8be50
Debug session time: Wed Mar 23 05:25:27.099 2011 (UTC - 4:00)
System Uptime: 0 days 4:00:04.014
Loading Kernel Symbols
...............................................................
................................................................
................................
Loading User Symbols
Loading unloaded module list
...........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 24, {1904fb, fffff88003161888, fffff880031610f0, fffff880012615c5}
Probably caused by : Ntfs.sys ( Ntfs!NtfsAcquireExclusiveFcb+65 )
Followup: MachineOwner
---------
4: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
NTFS_FILE_SYSTEM (24)
If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
parameters are the exception record and context record. Do a .cxr
on the 3rd parameter and then kb to obtain a more informative stack
trace.
Arguments:
Arg1: 00000000001904fb
Arg2: fffff88003161888
Arg3: fffff880031610f0
Arg4: fffff880012615c5
Debugging Details:
------------------
EXCEPTION_RECORD: fffff88003161888 -- (.exr 0xfffff88003161888)
ExceptionAddress: fffff880012615c5 (Ntfs!NtfsAcquireExclusiveFcb+0x0000000000000065)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff
CONTEXT: fffff880031610f0 -- (.cxr 0xfffff880031610f0)
rax=0000000000000001 rbx=fffff8a00b9fb3d0 rcx=01cbe93b86095c38
rdx=fffff8a00b9fb301 rsi=0000000000000000 rdi=0000000000000009
rip=fffff880012615c5 rsp=fffff88003161ac0 rbp=fffffa800fd5ea10
r8=0000000000000000 r9=0000000000000009 r10=0000000000000004
r11=fffffa800da2a850 r12=0000000000000000 r13=00000000c00000d8
r14=0000000000000702 r15=fffff8a00b9fb500
iopl=0 nv up ei pl nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206
Ntfs!NtfsAcquireExclusiveFcb+0x65:
fffff880`012615c5 488b4958 mov rcx,qword ptr [rcx+58h] ds:002b:01cbe93b`86095c90=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002cf60e0
ffffffffffffffff
FOLLOWUP_IP:
Ntfs!NtfsAcquireExclusiveFcb+65
fffff880`012615c5 488b4958 mov rcx,qword ptr [rcx+58h]
FAULTING_IP:
Ntfs!NtfsAcquireExclusiveFcb+65
fffff880`012615c5 488b4958 mov rcx,qword ptr [rcx+58h]
BUGCHECK_STR: 0x24
LAST_CONTROL_TRANSFER: from fffff880012fd560 to fffff880012615c5
STACK_TEXT:
fffff880`03161ac0 fffff880`012fd560 : fffffa80`0fd5ea10 fffff800`02c635a0 fffff8a0`0b9fb3d0 00000000`00000009 : Ntfs!NtfsAcquireExclusiveFcb+0x65
fffff880`03161b10 fffff880`012d738f : fffffa80`0fd5ea10 fffff8a0`0b9fb500 fffff8a0`0b9fb3d0 fffffa80`0dc33180 : Ntfs!NtfsCommonClose+0xa0
fffff880`03161be0 fffff800`02acb961 : 00000000`00000000 fffff800`02db8900 fffffa80`0caad001 fffffa80`00000003 : Ntfs!NtfsFspClose+0x15f
fffff880`03161cb0 fffff800`02d617c6 : 00000000`00000000 fffffa80`0caad040 00000000`00000080 fffffa80`0ca98040 : nt!ExpWorkerThread+0x111
fffff880`03161d40 fffff800`02a9cc26 : fffff880`03088180 fffffa80`0caad040 fffff880`03093040 00000000`00000000 : nt!PspSystemThreadStartup+0x5a
fffff880`03161d80 00000000`00000000 : fffff880`03162000 fffff880`0315c000 fffff880`031619f0 00000000`00000000 : nt!KxStartSystemThread+0x16
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: Ntfs!NtfsAcquireExclusiveFcb+65
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Ntfs
IMAGE_NAME: Ntfs.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc14f
STACK_COMMAND: .cxr 0xfffff880031610f0 ; kb
FAILURE_BUCKET_ID: X64_0x24_Ntfs!NtfsAcquireExclusiveFcb+65
BUCKET_ID: X64_0x24_Ntfs!NtfsAcquireExclusiveFcb+65
Followup: MachineOwner
---------
4: kd> lmntsm
start end module name
fffff880`041a0000 fffff880`041de000 1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f98000 fffff880`00fef000 ACPI ACPI.sys Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`03ef7000 fffff880`03f81000 afd afd.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`0478b000 fffff880`047a1000 AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`054a8000 fffff880`054bc000 amdiox64 amdiox64.sys Thu Feb 18 10:17:53 2010 (4B7D5A21)
fffff880`0418b000 fffff880`041a0000 amdppm amdppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00da1000 fffff880`00dac000 amdxata amdxata.sys Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`04800000 fffff880`04808000 ASACPI ASACPI.sys Wed Jul 15 23:31:29 2009 (4A5E9F11)
fffff880`0415f000 fffff880`04165000 AsIO AsIO.sys Mon Aug 03 03:03:16 2009 (4A768BB4)
fffff880`00ed7000 fffff880`00ee0000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00d77000 fffff880`00da1000 ataport ataport.SYS Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`05555000 fffff880`05575000 AtihdW76 AtihdW76.sys Wed Nov 17 07:02:04 2010 (4CE3C43C)
fffff880`04826000 fffff880`05122000 atikmdag atikmdag.sys Wed Jan 26 17:48:28 2011 (4D40A4BC)
fffff880`04621000 fffff880`0466f000 atikmpag atikmpag.sys Wed Jan 26 17:13:33 2011 (4D409C8D)
fffff880`07b6d000 fffff880`07ba1000 AVGIDSDriver AVGIDSDriver.Sys Tue Aug 03 18:24:45 2010 (4C58972D)
fffff880`0103a000 fffff880`01044000 AVGIDSEH AVGIDSEH.Sys Mon Sep 13 18:46:38 2010 (4C8EA9CE)
fffff880`04400000 fffff880`0440c000 AVGIDSFilter AVGIDSFilter.Sys Tue Aug 03 18:23:21 2010 (4C5896D9)
fffff880`0410f000 fffff880`0415f000 avgldx64 avgldx64.sys Tue Dec 07 21:01:55 2010 (4CFEE713)
fffff880`02a92000 fffff880`02aa1000 avgmfx64 avgmfx64.sys Mon Sep 06 20:49:14 2010 (4C858C0A)
fffff880`01030000 fffff880`0103a000 avgrkx64 avgrkx64.sys Mon Sep 06 20:49:37 2010 (4C858C21)
fffff880`02b56000 fffff880`02bb7000 avgtdia avgtdia.sys Fri Nov 12 06:08:42 2010 (4CDD203A)
fffff880`01c8e000 fffff880`01d5e000 bcmwlhigh664 bcmwlhigh664.sys Thu Nov 05 19:27:07 2009 (4AF36D5B)
fffff880`02aaa000 fffff880`02ab1000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`040fe000 fffff880`0410f000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`0452c000 fffff880`0454a000 bowser bowser.sys Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`006a0000 fffff960`006c7000 cdd cdd.dll unavailable (00000000)
fffff880`02a68000 fffff880`02a92000 cdrom cdrom.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00c00000 fffff880`00cc0000 CI CI.dll Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01000000 fffff880`01030000 CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00d19000 fffff880`00d77000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`010ca000 fffff880`0113d000 cng cng.sys Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`0477b000 fffff880`0478b000 CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`01da8000 fffff880`01db6000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`0405d000 fffff880`040e0000 csc csc.sys Mon Jul 13 19:24:26 2009 (4A5BC22A)
fffff880`040e0000 fffff880`040fe000 dfsc dfsc.sys Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`03e7c000 fffff880`03e8b000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01224000 fffff880`0123a000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`055b2000 fffff880`055d4000 drmk drmk.sys Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`01dc2000 fffff880`01dcb000 dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01db6000 fffff880`01dc2000 dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01dcb000 fffff880`01dde000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`01dde000 fffff880`01dea000 Dxapi Dxapi.sys Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`0466f000 fffff880`04763000 dxgkrnl dxgkrnl.sys Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`05122000 fffff880`05168000 dxgmms1 dxgmms1.sys Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`01058000 fffff880`0106c000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`00dac000 fffff880`00df8000 fltmgr fltmgr.sys Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`01211000 fffff880`0121b000 Fs_Rec Fs_Rec.sys Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`011c3000 fffff880`011fd000 fvevol fvevol.sys Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`0148b000 fffff880`014d5000 fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`02a07000 fffff800`02a50000 hal hal.dll Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`05168000 fffff880`0518c000 HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`05400000 fffff880`0545c000 HdAudio HdAudio.sys Mon Jul 13 20:06:59 2009 (4A5BCC23)
fffff880`01d79000 fffff880`01d92000 HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`01d92000 fffff880`01d9a080 HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`01d6b000 fffff880`01d79000 hidusb hidusb.sys Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`04464000 fffff880`0452c000 HTTP HTTP.sys Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`0121b000 fffff880`01224000 hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`04808000 fffff880`04826000 i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`04763000 fffff880`04772000 kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff800`00ba9000 fffff800`00bb3000 kdcom kdcom.dll Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`05465000 fffff880`054a8000 ks ks.sys Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`013e1000 fffff880`013fb000 ksecdd ksecdd.sys Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01460000 fffff880`0148b000 ksecpkg ksecpkg.sys Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`055d4000 fffff880`055d9200 ksthunk ksthunk.sys Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`01c44000 fffff880`01c59000 lltdio lltdio.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`01c00000 fffff880`01c23000 luafv luafv.sys Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00cf8000 fffff880`00d05000 mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`01dea000 fffff880`01df8000 monitor monitor.sys Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`02a00000 fffff880`02a0f000 mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`01d9b000 fffff880`01da8000 mouhid mouhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00cd0000 fffff880`00cea000 mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`0454a000 fffff880`04562000 mpsdrv mpsdrv.sys Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`04562000 fffff880`0458f000 mrxsmb mrxsmb.sys Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`0458f000 fffff880`045dd000 mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`045dd000 fffff880`04600000 mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`02b0f000 fffff880`02b1a000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00e00000 fffff880`00e0a000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`0106c000 fffff880`010ca000 msrpc msrpc.sys Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`03e71000 fffff880`03e7c000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`015ee000 fffff880`01600000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`014da000 fffff880`015cc000 ndis ndis.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`047c5000 fffff880`047d1000 ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`01c59000 fffff880`01c6c000 ndisuio ndisuio.sys Mon Jul 13 20:09:25 2009 (4A5BCCB5)
fffff880`047d1000 fffff880`04800000 ndiswan ndiswan.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`05540000 fffff880`05555000 NDProxy NDProxy.SYS Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`03fc6000 fffff880`03fd5000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02bb7000 fffff880`02bfc000 netbt netbt.sys Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01400000 fffff880`01460000 NETIO NETIO.SYS Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`02b1a000 fffff880`02b2b000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`03e65000 fffff880`03e71000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02a50000 fffff800`0302d000 nt ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`0123e000 fffff880`013e1000 Ntfs Ntfs.sys Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`02aa1000 fffff880`02aaa000 Null Null.SYS Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`054ce000 fffff880`054e6000 nusb3hub nusb3hub.sys Thu Jan 21 22:22:18 2010 (4B5919EA)
fffff880`04000000 fffff880`04031000 nusb3xhc nusb3xhc.sys Thu Feb 10 00:52:33 2011 (4D537D21)
fffff880`02a0f000 fffff880`02a62000 nwifi nwifi.sys Mon Jul 13 20:07:23 2009 (4A5BCC3B)
fffff880`03f8a000 fffff880`03fb0000 pacer pacer.sys Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`00e4a000 fffff880`00e5f000 partmgr partmgr.sys Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00e0a000 fffff880`00e3d000 pci pci.sys Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00ed0000 fffff880`00ed7000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00cc0000 fffff880`00cd0000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`01200000 fffff880`01211000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`07a7d000 fffff880`07b23000 peauth peauth.sys Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`05575000 fffff880`055b2000 portcls portcls.sys Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00d05000 fffff880`00d19000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`047a1000 fffff880`047c5000 rasl2tp rasl2tp.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`04600000 fffff880`0461b000 raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`041de000 fffff880`041ff000 raspptp raspptp.sys Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`04040000 fffff880`0405a000 rassstp rassstp.sys Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`03e14000 fffff880`03e65000 rdbss rdbss.sys Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`03ff0000 fffff880`03ffb000 rdpbus rdpbus.sys Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`02af4000 fffff880`02afd000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`08340000 fffff880`0836e000 rdpdr rdpdr.sys Mon Jul 13 20:18:02 2009 (4A5BCEBA)
fffff880`02afd000 fffff880`02b06000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`02b06000 fffff880`02b0f000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`08388000 fffff880`083c0000 RDPWD RDPWD.SYS Mon Jul 13 20:16:47 2009 (4A5BCE6F)
fffff880`01189000 fffff880`011c3000 rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`01c6c000 fffff880`01c84000 rspndr rspndr.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`015cc000 fffff880`015d6000 scmndisp scmndisp.sys Wed Jan 17 02:48:03 2007 (45ADD4B3)
fffff880`07b23000 fffff880`07b2e000 secdrv secdrv.SYS Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`015e6000 fffff880`015ee000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`082aa000 fffff880`08340000 srv srv.sys Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`07a00000 fffff880`07a67000 srv2 srv2.sys Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`07b2e000 fffff880`07b5b000 srvnet srvnet.sys Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`051fe000 fffff880`051ff480 swenum swenum.sys Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01600000 fffff880`017fd000 tcpip tcpip.sys Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`07b5b000 fffff880`07b6d000 tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`02b49000 fffff880`02b56000 TDI TDI.SYS Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`0836e000 fffff880`08379000 tdtcp tdtcp.sys Mon Jul 13 20:16:32 2009 (4A5BCE60)
fffff880`02b2b000 fffff880`02b49000 tdx tdx.sys Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`03e00000 fffff880`03e14000 termdd termdd.sys Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`004b0000 fffff960`004ba000 TSDDD TSDDD.dll Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`08379000 fffff880`08388000 tssecsrv tssecsrv.sys Mon Jul 13 20:16:41 2009 (4A5BCE69)
fffff880`04165000 fffff880`0418b000 tunnel tunnel.sys Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`054bc000 fffff880`054ce000 umbus umbus.sys Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`04031000 fffff880`04032f00 USBD USBD.SYS Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`051ed000 fffff880`051fe000 usbehci usbehci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04033000 fffff880`04040000 usbfilter usbfilter.sys Wed Oct 07 03:44:08 2009 (4ACC46C8)
fffff880`054e6000 fffff880`05540000 usbhub usbhub.sys Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`0518c000 fffff880`05197000 usbohci usbohci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05197000 fffff880`051ed000 USBPORT USBPORT.SYS Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`00e3d000 fffff880`00e4a000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`02ab1000 fffff880`02abf000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`02abf000 fffff880`02ae4000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`015d6000 fffff880`015e6000 vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
fffff880`00e5f000 fffff880`00e74000 volmgr volmgr.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00e74000 fffff880`00ed0000 volmgrx volmgrx.sys Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`0113d000 fffff880`01189000 volsnap volsnap.sys Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`01d5e000 fffff880`01d6b000 vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
fffff880`03fb0000 fffff880`03fc6000 vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
fffff880`03fd5000 fffff880`03ff0000 wanarp wanarp.sys Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`02ae4000 fffff880`02af4000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00ee5000 fffff880`00f89000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f89000 fffff880`00f98000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`03f81000 fffff880`03f8a000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`000f0000 fffff960`00400000 win32k win32k.sys Tue Jan 04 22:59:44 2011 (4D23ECB0)
fffff880`04772000 fffff880`0477b000 wmiacpi wmiacpi.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00fef000 fffff880`00ff8000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`01c23000 fffff880`01c44000 WudfPf WudfPf.sys Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`03e8b000 fffff880`03eee000 yk62x64 yk62x64.sys Wed Sep 15 10:31:29 2010 (4C90D8C1)
Unloaded modules:
fffff880`08200000 fffff880`08271000 spsys.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00071000
fffff880`01044000 fffff880`01052000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000E000
fffff880`00cea000 fffff880`00cf6000 dump_ataport
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000C000
fffff880`02a4c000 fffff880`02a55000 dump_atapi.s
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00009000
fffff880`02a55000 fffff880`02a68000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00013000