Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [I:\101010-13962-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c1d000 PsLoadedModuleList = 0xfffff800`02e5ae50
Debug session time: Sun Oct 10 23:23:03.436 2010 (UTC - 5:00)
System Uptime: 0 days 0:00:46.716
Loading Kernel Symbols
...............................................................
................................................................
................................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 51, {1, fffff8a000023360, e53000, 374}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::NNGAKEGL::`string'+9b6a )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
REGISTRY_ERROR (51)
Something has gone badly wrong with the registry. If a kernel debugger
is available, get a stack trace. It can also indicate that the registry got
an I/O error while trying to read one of its files, so it can be caused by
hardware problems or filesystem corruption.
It may occur due to a failure in a refresh operation, which is used only
in by the security system, and then only when resource limits are encountered.
Arguments:
Arg1: 0000000000000001, (reserved)
Arg2: fffff8a000023360, (reserved)
Arg3: 0000000000e53000, depends on where Windows bugchecked, may be pointer to hive
Arg4: 0000000000000374, depends on where Windows bugchecked, may be return code of
HvCheckHive if the hive is corrupt.
Debugging Details:
------------------
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x51
PROCESS_NAME: services.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002fbbf78 to fffff80002c8d740
STACK_TEXT:
fffff880`056622a8 fffff800`02fbbf78 : 00000000`00000051 00000000`00000001 fffff8a0`00023360 00000000`00e53000 : nt!KeBugCheckEx
fffff880`056622b0 fffff800`02f2b1c4 : 00000000`002fcf97 00000000`00007297 00000000`00a63001 fffff8a0`00000004 : nt! ?? ::NNGAKEGL::`string'+0x9b6a
fffff880`05662310 fffff800`02f2a3db : fffff8a0`00023360 fffff8a0`00023360 fffff8a0`00040cc0 00000000`00a664d0 : nt!HvMarkDirty+0x125
fffff880`05662370 fffff800`02f03e8a : 00000000`00a664d0 00000000`00000a63 00000000`00000000 fffff8a0`00023360 : nt!HvMarkCellDirty+0x13b
fffff880`056623c0 fffff800`02f03d34 : 00000000`00000000 00000000`00a63000 00000000`00004000 00000000`00000000 : nt!HvpFindFreeCellInBin+0xda
fffff880`05662400 fffff800`02f039e7 : 00000000`00000000 00000000`00000017 00000000`00000608 00000000`00000000 : nt!HvpScanForFreeCellInViewWindow+0x210
fffff880`05662480 fffff800`02f03a91 : 00000000`00000000 fffff8a0`00023360 00000000`00000608 00000000`00a63000 : nt!HvpFindFreeCellInThisViewWindow+0x117
fffff880`056624e0 fffff800`02f03702 : fffff8a0`00023360 00000000`00000608 fffffa80`06a35f60 fffff8a0`00023360 : nt!HvpFindFreeCell+0x81
fffff880`05662540 fffff800`02f16bc7 : fffff8a0`00023360 fffff8a0`00000003 00000000`00000608 00000000`0065d020 : nt!HvpDoAllocateCell+0x72
fffff880`056625a0 fffff800`02f0488f : 00000000`0000011d fffff8a0`044b5478 fffff8a0`00023360 00000000`00a45b10 : nt!HvReallocateCell+0xbf
fffff880`056625e0 fffff800`02eec456 : fffff8a0`00023360 00000000`0000011c fffff8a0`044b5454 fffff8a0`00023360 : nt!CmpAddValueToList+0x4b
fffff880`05662620 fffff800`02eebed8 : fffff8a0`00023360 00000000`000006f8 fffff8a0`044b5454 00000000`00648450 : nt!CmpSyncKeyValues+0x326
fffff880`05662700 fffff800`02eee79e : fffff8a0`08792000 00000000`003fa3b8 fffffa80`00000000 00000000`00000000 : nt!CmpCopySyncTree2+0x2a8
fffff880`056627b0 fffff800`02eee6b7 : 00000000`00000000 00000000`00000002 fffff8a0`083ffd10 fffff8a0`0859eca0 : nt!CmpCopySyncTree+0x6e
fffff880`05662800 fffff800`02eee286 : fffff8a0`02b834b0 00000000`00000000 00000000`00000001 00000000`00000000 : nt!CmpSaveBootControlSet+0x307
fffff880`056629e0 fffff800`02c8c993 : fffffa80`094c4b60 00000000`014d6930 fffff880`05662ab0 00000000`00000001 : nt!NtInitializeRegistry+0xc6
fffff880`05662a30 fffff800`02c88f30 : fffff800`02eee22f 00000000`00000220 00000000`000af378 00000000`000af6a8 : nt!KiSystemServiceCopyEnd+0x13
fffff880`05662bc8 fffff800`02eee22f : 00000000`00000220 00000000`000af378 00000000`000af6a8 00000000`000a001f : nt!KiServiceLinkage
fffff880`05662bd0 fffff800`02c8c993 : fffffa80`094c4b60 fffff880`05662ca0 fffff880`05662ca0 00000000`00000002 : nt!NtInitializeRegistry+0x6f
fffff880`05662c20 00000000`77110afa : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`000af628 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77110afa
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::NNGAKEGL::`string'+9b6a
fffff800`02fbbf78 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::NNGAKEGL::`string'+9b6a
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x51_nt!_??_::NNGAKEGL::_string_+9b6a
BUCKET_ID: X64_0x51_nt!_??_::NNGAKEGL::_string_+9b6a
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [I:\100510-14476-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c66000 PsLoadedModuleList = 0xfffff800`02ea3e50
Debug session time: Wed Oct 6 00:00:20.850 2010 (UTC - 5:00)
System Uptime: 0 days 0:12:55.130
Loading Kernel Symbols
...............................................................
................................................................
..................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {48, 2, 1, fffff80002d88b1f}
Probably caused by : memory_corruption ( nt!MiIdentifyPfn+26f )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000000000048, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80002d88b1f, address which referenced memory
Debugging Details:
------------------
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002f0e0e0
0000000000000048
CURRENT_IRQL: 2
FAULTING_IP:
nt!MiIdentifyPfn+26f
fffff800`02d88b1f f0410fba6e481f lock bts dword ptr [r14+48h],1Fh
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: svchost.exe
TRAP_FRAME: fffff88006b014f0 -- (.trap 0xfffff88006b014f0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000001 rbx=0000000000000000 rcx=0a00000000000060
rdx=000000000012132d rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002d88b1f rsp=fffff88006b01680 rbp=fffffa8009bab1d0
r8=000000000002fcea r9=0000000000000001 r10=0000000000000046
r11=0000058000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na po nc
nt!MiIdentifyPfn+0x26f:
fffff800`02d88b1f f0410fba6e481f lock bts dword ptr [r14+48h],1Fh ds:00000000`00000048=????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002cd5ca9 to fffff80002cd6740
STACK_TEXT:
fffff880`06b013a8 fffff800`02cd5ca9 : 00000000`0000000a 00000000`00000048 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`06b013b0 fffff800`02cd4920 : 00000000`42506650 02000000`001af56e 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`06b014f0 fffff800`02d88b1f : fffffa80`06d7b000 00000000`00000000 00000000`000018c0 fffff800`02f9d35b : nt!KiPageFault+0x260
fffff880`06b01680 fffff800`02d897cb : 00000000`00000000 00000000`00000020 fffffa80`06d7c3d8 fffffa80`06d7b000 : nt!MiIdentifyPfn+0x26f
fffff880`06b01720 fffff800`030e8595 : fffffa80`06d7b000 fffff880`06b01ca0 fffff880`06b017f8 00000000`00000000 : nt!MmQueryPfnList+0xbb
fffff880`06b01760 fffff800`0302d8b8 : 00000000`00000006 00000000`00000000 fffffa80`06d7b000 fffff800`02c66001 : nt!PfpPfnPrioRequest+0x115
fffff880`06b017b0 fffff800`02fd43c3 : 00000000`00000000 fffff800`02c66000 00000000`00000000 00000000`00000001 : nt! ?? ::NNGAKEGL::`string'+0x472ad
fffff880`06b01840 fffff800`02fd51e5 : 00000000`01abb828 fffff800`02ce3618 00000000`01abb880 00000000`049d0c00 : nt!ExpQuerySystemInformation+0x11c2
fffff880`06b01be0 fffff800`02cd5993 : 00000000`03bc3d40 fffff880`06b01ca0 00000000`00109e9d 00000000`01abb880 : nt!NtQuerySystemInformation+0x4d
fffff880`06b01c20 00000000`770c00ba : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`01abb778 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x770c00ba
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiIdentifyPfn+26f
fffff800`02d88b1f f0410fba6e481f lock bts dword ptr [r14+48h],1Fh
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!MiIdentifyPfn+26f
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0xA_nt!MiIdentifyPfn+26f
BUCKET_ID: X64_0xA_nt!MiIdentifyPfn+26f
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [I:\101710-13790-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c64000 PsLoadedModuleList = 0xfffff800`02ea1e50
Debug session time: Sun Oct 17 23:43:12.085 2010 (UTC - 5:00)
System Uptime: 0 days 0:01:09.349
Loading Kernel Symbols
...............................................................
................................................................
................................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 51, {1, fffff8a000023420, e77000, 374}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::NNGAKEGL::`string'+9b6a )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
REGISTRY_ERROR (51)
Something has gone badly wrong with the registry. If a kernel debugger
is available, get a stack trace. It can also indicate that the registry got
an I/O error while trying to read one of its files, so it can be caused by
hardware problems or filesystem corruption.
It may occur due to a failure in a refresh operation, which is used only
in by the security system, and then only when resource limits are encountered.
Arguments:
Arg1: 0000000000000001, (reserved)
Arg2: fffff8a000023420, (reserved)
Arg3: 0000000000e77000, depends on where Windows bugchecked, may be pointer to hive
Arg4: 0000000000000374, depends on where Windows bugchecked, may be return code of
HvCheckHive if the hive is corrupt.
Debugging Details:
------------------
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x51
PROCESS_NAME: services.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80003002f78 to fffff80002cd4740
STACK_TEXT:
fffff880`03be5228 fffff800`03002f78 : 00000000`00000051 00000000`00000001 fffff8a0`00023420 00000000`00e77000 : nt!KeBugCheckEx
fffff880`03be5230 fffff800`02f721c4 : 00000000`00001cfd 00000000`000073b7 00000000`00a6b001 fffff8a0`00000004 : nt! ?? ::NNGAKEGL::`string'+0x9b6a
fffff880`03be5290 fffff800`02f713db : fffff8a0`00023420 fffff8a0`00023420 fffff8a0`00040dc0 00000000`00a6e270 : nt!HvMarkDirty+0x125
fffff880`03be52f0 fffff800`02f4ae8a : 00000000`00a6e270 00000000`00000a6b 00000000`00000000 fffff8a0`00023420 : nt!HvMarkCellDirty+0x13b
fffff880`03be5340 fffff800`02f4ad34 : 00000000`00000000 00000000`00a6b000 00000000`00004000 00000000`00000000 : nt!HvpFindFreeCellInBin+0xda
fffff880`03be5380 fffff800`02f4a9e7 : 00000000`00000000 fffff800`00000017 00000000`00000120 00000000`00000000 : nt!HvpScanForFreeCellInViewWindow+0x210
fffff880`03be5400 fffff800`02f4aa91 : 00000000`00000000 fffff8a0`00023420 00000000`00000120 00000000`00a6b000 : nt!HvpFindFreeCellInThisViewWindow+0x117
fffff880`03be5460 fffff800`02f4a702 : fffff8a0`00023420 00000000`00000120 fffffa80`06a35f60 fffff8a0`00023420 : nt!HvpFindFreeCell+0x81
fffff880`03be54c0 fffff800`02f4a685 : fffff8a0`00023420 00000000`00000001 00000000`00000000 fffff8a0`00023420 : nt!HvpDoAllocateCell+0x72
fffff880`03be5520 fffff800`02f339e7 : fffff8a0`00023420 fffff8a0`00023420 fffff8a0`00042260 00000000`ffffffff : nt!HvAllocateCell+0x55
fffff880`03be5550 fffff800`02f33826 : fffff8a0`00023420 00000000`0000011c 00000000`00a66d08 fffff800`02f4a685 : nt!CmpCopyCell+0x57
fffff880`03be5590 fffff800`02f33405 : fffff8a0`00b13b70 fffff8a0`00023420 fffff8a0`040c1214 fffff8a0`00000000 : nt!CmpCopyValue+0x1f6
fffff880`03be5620 fffff800`02f32ed8 : fffff8a0`00023420 00000000`00b0ca90 fffff8a0`040c1214 fffff8a0`00b68210 : nt!CmpSyncKeyValues+0x2d5
fffff880`03be5700 fffff800`02f3579e : fffff8a0`024ab000 00000000`003fa3b8 fffffa80`00000000 00000000`00000000 : nt!CmpCopySyncTree2+0x2a8
fffff880`03be57b0 fffff800`02f356b7 : 00000000`00000000 00000000`00000002 fffff8a0`01a26d00 fffff8a0`01a68710 : nt!CmpCopySyncTree+0x6e
fffff880`03be5800 fffff800`02f35286 : fffff8a0`02559300 00000000`00000000 00000000`00000001 00000000`00000000 : nt!CmpSaveBootControlSet+0x307
fffff880`03be59e0 fffff800`02cd3993 : fffffa80`0973eb60 00000000`02095d20 fffff880`03be5ab0 00000000`00000001 : nt!NtInitializeRegistry+0xc6
fffff880`03be5a30 fffff800`02ccff30 : fffff800`02f3522f 00000000`00000220 00000000`0012f718 00000000`0012fa48 : nt!KiSystemServiceCopyEnd+0x13
fffff880`03be5bc8 fffff800`02f3522f : 00000000`00000220 00000000`0012f718 00000000`0012fa48 00000000`000a001f : nt!KiServiceLinkage
fffff880`03be5bd0 fffff800`02cd3993 : fffffa80`0973eb60 fffff880`03be5ca0 fffff880`03be5ca0 00000000`00000002 : nt!NtInitializeRegistry+0x6f
fffff880`03be5c20 00000000`770b0afa : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0012f9c8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x770b0afa
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::NNGAKEGL::`string'+9b6a
fffff800`03002f78 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::NNGAKEGL::`string'+9b6a
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x51_nt!_??_::NNGAKEGL::_string_+9b6a
BUCKET_ID: X64_0x51_nt!_??_::NNGAKEGL::_string_+9b6a
fffff880`14ba3000 fffff880`14be1000 1394ohci 1394ohci.sys Tue Jul 14 03:07:12 2009 (4A5BCC30)
fffff880`00e2a000 fffff880`00e81000 ACPI ACPI.sys Tue Jul 14 02:19:34 2009 (4A5BC106)
fffff880`02ce1000 fffff880`02d6b000 afd afd.sys Tue Jul 14 02:21:40 2009 (4A5BC184)
fffff880`13e61000 fffff880`13e77000 AgileVpn AgileVpn.sys Tue Jul 14 03:10:24 2009 (4A5BCCF0)
fffff880`04129000 fffff880`0413e000 amdppm amdppm.sys Tue Jul 14 02:19:25 2009 (4A5BC0FD)
fffff880`00fe3000 fffff880`00fee000 amdxata amdxata.sys Tue May 19 20:56:59 2009 (4A12F2EB)
fffff880`00fda000 fffff880`00fe3000 atapi atapi.sys Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`00e00000 fffff880`00e2a000 ataport ataport.SYS Tue Jul 14 02:19:52 2009 (4A5BC118)
fffff880`019c9000 fffff880`019d0000 Beep Beep.SYS Tue Jul 14 03:00:13 2009 (4A5BCA8D)
fffff880`040f2000 fffff880`04103000 blbdrive blbdrive.sys Tue Jul 14 02:35:59 2009 (4A5BC4DF)
fffff880`07134000 fffff880`07152000 bowser bowser.sys Tue Jul 14 02:23:50 2009 (4A5BC206)
fffff960`00650000 fffff960`00677000 cdd cdd.dll unavailable (00000000)
fffff880`01996000 fffff880`019c0000 cdrom cdrom.sys Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`00c00000 fffff880`00cc0000 CI CI.dll Tue Jul 14 04:32:13 2009 (4A5BE01D)
fffff880`01930000 fffff880`01960000 CLASSPNP CLASSPNP.SYS Tue Jul 14 02:19:58 2009 (4A5BC11E)
fffff880`00cf6000 fffff880`00d54000 CLFS CLFS.SYS Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`01000000 fffff880`01073000 cng cng.sys Tue Jul 14 02:49:40 2009 (4A5BC814)
fffff880`13e51000 fffff880`13e61000 CompositeBus CompositeBus.sys Tue Jul 14 03:00:33 2009 (4A5BCAA1)
fffff880`04c1b000 fffff880`04c29000 crashdmp crashdmp.sys Tue Jul 14 03:01:01 2009 (4A5BCABD)
fffff880`04051000 fffff880`040d4000 csc csc.sys Tue Jul 14 02:24:26 2009 (4A5BC22A)
fffff880`040d4000 fffff880`040f2000 dfsc dfsc.sys Tue Jul 14 02:23:44 2009 (4A5BC200)
fffff880`02cb4000 fffff880`02cc3000 discache discache.sys Tue Jul 14 02:37:18 2009 (4A5BC52E)
fffff880`0191a000 fffff880`01930000 disk disk.sys Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`04d18000 fffff880`04d3a000 drmk drmk.sys Tue Jul 14 04:01:25 2009 (4A5BD8E5)
fffff880`04c35000 fffff880`04c3e000 dump_atapi dump_atapi.sys Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`04c29000 fffff880`04c35000 dump_dumpata dump_dumpata.sys Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`04c3e000 fffff880`04c51000 dump_dumpfve dump_dumpfve.sys Tue Jul 14 02:21:51 2009 (4A5BC18F)
fffff880`057eb000 fffff880`057f7000 Dxapi Dxapi.sys Tue Jul 14 02:38:28 2009 (4A5BC574)
fffff880`042b5000 fffff880`043a9000 dxgkrnl dxgkrnl.sys Fri Oct 02 04:00:14 2009 (4AC5509E)
fffff880`043a9000 fffff880`043ef000 dxgmms1 dxgmms1.sys Tue Jul 14 02:38:32 2009 (4A5BC578)
fffff880`072f4000 fffff880`073ca000 eamonm eamonm.sys Wed Jun 16 17:39:33 2010 (4C18E225)
fffff880`019d0000 fffff880`019f5000 ehdrv ehdrv.sys Mon Apr 19 09:47:01 2010 (4BCBFC65)
fffff880`06a23000 fffff880`06a44000 epfwwfpr epfwwfpr.sys Mon Apr 19 09:43:18 2010 (4BCBFB86)
fffff880`01141000 fffff880`01155000 fileinfo fileinfo.sys Tue Jul 14 02:34:25 2009 (4A5BC481)
fffff880`010f5000 fffff880`01141000 fltmgr fltmgr.sys Tue Jul 14 02:19:59 2009 (4A5BC11F)
fffff880`013d4000 fffff880`013de000 Fs_Rec Fs_Rec.sys Tue Jul 14 02:19:45 2009 (4A5BC111)
fffff880`018e0000 fffff880`0191a000 fvevol fvevol.sys Sat Sep 26 05:34:26 2009 (4ABD7DB2)
fffff880`015b3000 fffff880`015fd000 fwpkclnt fwpkclnt.sys Tue Jul 14 02:21:08 2009 (4A5BC164)
fffff880`04264000 fffff880`04271000 GEARAspiWDM GEARAspiWDM.sys Mon May 18 15:17:04 2009 (4A1151C0)
fffff800`02c1b000 fffff800`02c64000 hal hal.dll Tue Jul 14 04:27:36 2009 (4A5BDF08)
fffff880`0428d000 fffff880`042b1000 HDAudBus HDAudBus.sys Tue Jul 14 03:06:13 2009 (4A5BCBF5)
fffff880`04db9000 fffff880`04dd2000 HIDCLASS HIDCLASS.SYS Tue Jul 14 03:06:21 2009 (4A5BCBFD)
fffff880`04dd2000 fffff880`04dda080 HIDPARSE HIDPARSE.SYS Tue Jul 14 03:06:17 2009 (4A5BCBF9)
fffff880`04dab000 fffff880`04db9000 hidusb hidusb.sys Tue Jul 14 03:06:22 2009 (4A5BCBFE)
fffff880`07218000 fffff880`072e0000 HTTP HTTP.sys Tue Jul 14 02:22:16 2009 (4A5BC1A8)
fffff880`018d7000 fffff880`018e0000 hwpolicy hwpolicy.sys Tue Jul 14 02:19:22 2009 (4A5BC0FA)
fffff880`00f71000 fffff880`00f91000 jraid jraid.sys Wed Oct 07 14:26:03 2009 (4ACC7ACB)
fffff880`041cc000 fffff880`041db000 kbdclass kbdclass.sys Tue Jul 14 02:19:50 2009 (4A5BC116)
fffff880`04ddb000 fffff880`04de9000 kbdhid kbdhid.sys Tue Jul 14 03:00:20 2009 (4A5BCA94)
fffff800`00bba000 fffff800`00bc4000 kdcom kdcom.dll Tue Jul 14 04:31:07 2009 (4A5BDFDB)
fffff880`13e0e000 fffff880`13e51000 ks ks.sys Thu Mar 04 06:32:25 2010 (4B8F37D9)
fffff880`013a9000 fffff880`013c3000 ksecdd ksecdd.sys Tue Jul 14 02:20:54 2009 (4A5BC156)
fffff880`01460000 fffff880`0148b000 ksecpkg ksecpkg.sys Fri Dec 11 08:03:32 2009 (4B21E0B4)
fffff880`13e08000 fffff880`13e0d200 ksthunk ksthunk.sys Tue Jul 14 03:00:19 2009 (4A5BCA93)
fffff880`01155000 fffff880`0116a000 Lbd Lbd.sys Tue May 25 10:45:36 2010 (4BFB8020)
fffff880`073eb000 fffff880`07400000 lltdio lltdio.sys Tue Jul 14 03:08:50 2009 (4A5BCC92)
fffff880`07111000 fffff880`07134000 luafv luafv.sys Tue Jul 14 02:26:13 2009 (4A5BC295)
fffff880`08127000 fffff880`08131000 LVPr2M64 LVPr2M64.sys Sat May 08 04:38:16 2010 (4BE4C088)
fffff880`070b1000 fffff880`07102200 lvrs64 lvrs64.sys Wed Jul 07 17:40:32 2010 (4C3491E0)
fffff880`06a88000 fffff880`070b0e00 lvuvc64 lvuvc64.sys Wed Jul 07 17:41:13 2010 (4C349209)
fffff880`057f7000 fffff880`057fb980 Lycosa Lycosa.sys Fri Jan 18 10:51:42 2008 (4790689E)
fffff880`00cd5000 fffff880`00ce2000 mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Tue Jul 14 04:29:09 2009 (4A5BDF65)
fffff880`07103000 fffff880`07111000 monitor monitor.sys Tue Jul 14 02:38:52 2009 (4A5BC58C)
fffff880`041db000 fffff880`041ea000 mouclass mouclass.sys Tue Jul 14 02:19:50 2009 (4A5BC116)
fffff880`04c51000 fffff880`04c5e000 mouhid mouhid.sys Tue Jul 14 03:00:20 2009 (4A5BCA94)
fffff880`00fc0000 fffff880`00fda000 mountmgr mountmgr.sys Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`07152000 fffff880`0716a000 mpsdrv mpsdrv.sys Tue Jul 14 03:08:25 2009 (4A5BCC79)
fffff880`0716a000 fffff880`07197000 mrxsmb mrxsmb.sys Sat Feb 27 09:52:19 2010 (4B88CF33)
fffff880`07197000 fffff880`071e5000 mrxsmb10 mrxsmb10.sys Sat Feb 27 09:52:28 2010 (4B88CF3C)
fffff880`06a00000 fffff880`06a23000 mrxsmb20 mrxsmb20.sys Sat Feb 27 09:52:26 2010 (4B88CF3A)
fffff880`0185e000 fffff880`01869000 Msfs Msfs.SYS Tue Jul 14 02:19:47 2009 (4A5BC113)
fffff880`00e8a000 fffff880`00e94000 msisadrv msisadrv.sys Tue Jul 14 02:19:26 2009 (4A5BC0FE)
fffff880`0116a000 fffff880`011c8000 msrpc msrpc.sys Tue Jul 14 02:21:32 2009 (4A5BC17C)
fffff880`02ca9000 fffff880`02cb4000 mssmbios mssmbios.sys Tue Jul 14 02:31:10 2009 (4A5BC3BE)
fffff880`018c5000 fffff880`018d7000 mup mup.sys Tue Jul 14 02:23:45 2009 (4A5BC201)
fffff880`014c1000 fffff880`015b3000 ndis ndis.sys Tue Jul 14 02:21:40 2009 (4A5BC184)
fffff880`13e9b000 fffff880`13ea7000 ndistapi ndistapi.sys Tue Jul 14 03:10:00 2009 (4A5BCCD8)
fffff880`04147000 fffff880`04176000 ndiswan ndiswan.sys Tue Jul 14 03:10:11 2009 (4A5BCCE3)
fffff880`04cc6000 fffff880`04cdb000 NDProxy NDProxy.SYS Tue Jul 14 03:10:05 2009 (4A5BCCDD)
fffff880`02ddf000 fffff880`02dee000 netbios netbios.sys Tue Jul 14 03:09:26 2009 (4A5BCCB6)
fffff880`02d6b000 fffff880`02db0000 netbt netbt.sys Tue Jul 14 02:21:28 2009 (4A5BC178)
fffff880`01400000 fffff880`01460000 NETIO NETIO.SYS Tue Jul 14 02:21:46 2009 (4A5BC18A)
fffff880`01869000 fffff880`0187a000 Npfs Npfs.SYS Tue Jul 14 02:19:48 2009 (4A5BC114)
fffff880`02c9d000 fffff880`02ca9000 nsiproxy nsiproxy.sys Tue Jul 14 02:21:02 2009 (4A5BC15E)
fffff800`02c64000 fffff800`03240000 nt ntkrnlmp.exe Sat Jun 19 07:16:41 2010 (4C1C44A9)
fffff880`01206000 fffff880`013a9000 Ntfs Ntfs.sys Tue Jul 14 02:20:47 2009 (4A5BC14F)
fffff880`019c0000 fffff880`019c9000 Null Null.SYS Tue Jul 14 02:19:37 2009 (4A5BC109)
fffff880`04000000 fffff880`04016000 nusb3hub nusb3hub.sys Fri Sep 25 16:58:23 2009 (4ABCCC7F)
fffff880`04200000 fffff880`04230000 nusb3xhc nusb3xhc.sys Fri Sep 25 16:58:31 2009 (4ABCCC87)
fffff880`14b4b000 fffff880`14b4c180 nvBridge nvBridge.kmd Sat Jul 10 00:07:54 2010 (4C378FAA)
fffff880`13eb9000 fffff880`14b4ae00 nvlddmkm nvlddmkm.sys Sat Jul 10 00:15:58 2010 (4C37918E)
fffff880`02db9000 fffff880`02ddf000 pacer pacer.sys Tue Jul 14 03:09:41 2009 (4A5BCCC5)
fffff880`14be1000 fffff880`14bfe000 parport parport.sys Tue Jul 14 03:00:40 2009 (4A5BCAA8)
fffff880`00ed4000 fffff880`00ee9000 partmgr partmgr.sys Tue Jul 14 02:19:58 2009 (4A5BC11E)
fffff880`00e94000 fffff880`00ec7000 pci pci.sys Tue Jul 14 02:19:51 2009 (4A5BC117)
fffff880`00f5a000 fffff880`00f61000 pciide pciide.sys Tue Jul 14 02:19:49 2009 (4A5BC115)
fffff880`00f61000 fffff880`00f71000 PCIIDEX PCIIDEX.SYS Tue Jul 14 02:19:48 2009 (4A5BC114)
fffff880`013c3000 fffff880`013d4000 pcw pcw.sys Tue Jul 14 02:19:27 2009 (4A5BC0FF)
fffff880`07c83000 fffff880`07d29000 peauth peauth.sys Tue Jul 14 04:01:19 2009 (4A5BD8DF)
fffff880`04cdb000 fffff880`04d18000 portcls portcls.sys Tue Jul 14 03:06:27 2009 (4A5BCC03)
fffff880`00ce2000 fffff880`00cf6000 PSHED PSHED.dll Tue Jul 14 04:32:23 2009 (4A5BE027)
fffff880`13e77000 fffff880`13e9b000 rasl2tp rasl2tp.sys Tue Jul 14 03:10:11 2009 (4A5BCCE3)
fffff880`04176000 fffff880`04191000 raspppoe raspppoe.sys Tue Jul 14 03:10:17 2009 (4A5BCCE9)
fffff880`04191000 fffff880`041b2000 raspptp raspptp.sys Tue Jul 14 03:10:18 2009 (4A5BCCEA)
fffff880`041b2000 fffff880`041cc000 rassstp rassstp.sys Tue Jul 14 03:10:25 2009 (4A5BCCF1)
fffff880`02c4c000 fffff880`02c9d000 rdbss rdbss.sys Tue Jul 14 02:24:09 2009 (4A5BC219)
fffff880`13ea7000 fffff880`13eb2000 rdpbus rdpbus.sys Tue Jul 14 03:17:46 2009 (4A5BCEAA)
fffff880`01843000 fffff880`0184c000 RDPCDD RDPCDD.sys Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff880`08131000 fffff880`0815f000 rdpdr rdpdr.sys Tue Jul 14 03:18:02 2009 (4A5BCEBA)
fffff880`0184c000 fffff880`01855000 rdpencdd rdpencdd.sys Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff880`01855000 fffff880`0185e000 rdprefmp rdprefmp.sys Tue Jul 14 03:16:35 2009 (4A5BCE63)
fffff880`08179000 fffff880`081b1000 RDPWD RDPWD.SYS Tue Jul 14 03:16:47 2009 (4A5BCE6F)
fffff880`0188b000 fffff880`018c5000 rdyboost rdyboost.sys Tue Jul 14 02:34:34 2009 (4A5BC48A)
fffff880`07200000 fffff880`07218000 rspndr rspndr.sys Tue Jul 14 03:08:50 2009 (4A5BCC92)
fffff880`04232000 fffff880`04264000 Rt64win7 Rt64win7.sys Thu Feb 26 11:04:13 2009 (49A65B0D)
fffff880`05600000 fffff880`057ea080 RTKVHD64 RTKVHD64.sys Wed Oct 21 17:27:48 2009 (4ADF1A64)
fffff880`00f91000 fffff880`00fc0000 SCSIPORT SCSIPORT.SYS Tue Jul 14 03:01:04 2009 (4A5BCAC0)
fffff880`07d29000 fffff880`07d34000 secdrv secdrv.SYS Wed Sep 13 16:18:38 2006 (4508052E)
fffff880`043ef000 fffff880`043fb000 serenum serenum.sys Tue Jul 14 03:00:33 2009 (4A5BCAA1)
fffff880`02c00000 fffff880`02c1d000 serial serial.sys Tue Jul 14 03:00:40 2009 (4A5BCAA8)
fffff880`13e00000 fffff880`13e08000 serscan serscan.sys Tue Jul 14 03:35:32 2009 (4A5BD2D4)
fffff880`0149b000 fffff880`014a3000 spldr spldr.sys Mon May 11 19:56:27 2009 (4A0858BB)
fffff880`08091000 fffff880`08127000 srv srv.sys Fri Aug 27 06:38:00 2010 (4C773318)
fffff880`07d73000 fffff880`07dda000 srv2 srv2.sys Fri Aug 27 06:37:46 2010 (4C77330A)
fffff880`07d34000 fffff880`07d61000 srvnet srvnet.sys Fri Aug 27 06:37:24 2010 (4C7732F4)
fffff880`043fb000 fffff880`043fc480 swenum swenum.sys Tue Jul 14 03:00:18 2009 (4A5BCA92)
fffff880`01603000 fffff880`01800000 tcpip tcpip.sys Mon Jun 14 06:39:04 2010 (4C15A458)
fffff880`07d61000 fffff880`07d73000 tcpipreg tcpipreg.sys Tue Jul 14 03:09:49 2009 (4A5BCCCD)
fffff880`0187a000 fffff880`01887000 TDI TDI.SYS Tue Jul 14 02:21:18 2009 (4A5BC16E)
fffff880`0815f000 fffff880`0816a000 tdtcp tdtcp.sys Tue Jul 14 03:16:32 2009 (4A5BCE60)
fffff880`014a3000 fffff880`014c1000 tdx tdx.sys Tue Jul 14 02:21:15 2009 (4A5BC16B)
fffff880`02c38000 fffff880`02c4c000 termdd termdd.sys Tue Jul 14 03:16:36 2009 (4A5BCE64)
fffff960`00420000 fffff960`0042a000 TSDDD TSDDD.dll Tue Jul 14 03:16:34 2009 (4A5BCE62)
fffff880`0816a000 fffff880`08179000 tssecsrv tssecsrv.sys Tue Jul 14 03:16:41 2009 (4A5BCE69)
fffff880`04103000 fffff880`04129000 tunnel tunnel.sys Tue Jul 14 03:09:37 2009 (4A5BCCC1)
fffff880`04d3a000 fffff880`04d8e000 udfs udfs.sys Tue Jul 14 02:23:37 2009 (4A5BC1F9)
fffff880`041ea000 fffff880`041fc000 umbus umbus.sys Tue Jul 14 03:06:56 2009 (4A5BCC20)
fffff880`04c00000 fffff880`04c1ac00 usbaudio usbaudio.sys Tue Jul 14 03:06:31 2009 (4A5BCC07)
fffff880`04d8e000 fffff880`04dab000 usbccgp usbccgp.sys Tue Jul 14 03:06:45 2009 (4A5BCC15)
fffff880`04230000 fffff880`04231f00 USBD USBD.SYS Tue Jul 14 03:06:23 2009 (4A5BCBFF)
fffff880`0427c000 fffff880`0428d000 usbehci usbehci.sys Tue Jul 14 03:06:30 2009 (4A5BCC06)
fffff880`04c6c000 fffff880`04cc6000 usbhub usbhub.sys Tue Jul 14 03:07:09 2009 (4A5BCC2D)
fffff880`04271000 fffff880`0427c000 usbohci usbohci.sys Tue Jul 14 03:06:30 2009 (4A5BCC06)
fffff880`14b4d000 fffff880`14ba3000 USBPORT USBPORT.SYS Tue Jul 14 03:06:31 2009 (4A5BCC07)
fffff880`00ec7000 fffff880`00ed4000 vdrvroot vdrvroot.sys Tue Jul 14 03:01:31 2009 (4A5BCADB)
fffff880`01800000 fffff880`0180e000 vga vga.sys Tue Jul 14 02:38:47 2009 (4A5BC587)
fffff880`0180e000 fffff880`01833000 VIDEOPRT VIDEOPRT.SYS Tue Jul 14 02:38:51 2009 (4A5BC58B)
fffff880`0148b000 fffff880`0149b000 vmstorfl vmstorfl.sys Tue Jul 14 02:42:54 2009 (4A5BC67E)
fffff880`00ee9000 fffff880`00efe000 volmgr volmgr.sys Tue Jul 14 02:19:57 2009 (4A5BC11D)
fffff880`00efe000 fffff880`00f5a000 volmgrx volmgrx.sys Tue Jul 14 02:20:33 2009 (4A5BC141)
fffff880`01073000 fffff880`010bf000 volsnap volsnap.sys Tue Jul 14 02:20:08 2009 (4A5BC128)
fffff880`02c1d000 fffff880`02c38000 wanarp wanarp.sys Tue Jul 14 03:10:21 2009 (4A5BCCED)
fffff880`01833000 fffff880`01843000 watchdog watchdog.sys Tue Jul 14 02:37:35 2009 (4A5BC53F)
fffff880`00d54000 fffff880`00df8000 Wdf01000 Wdf01000.sys Tue Jul 14 02:22:07 2009 (4A5BC19F)
fffff880`00cc0000 fffff880`00ccf000 WDFLDR WDFLDR.SYS Tue Jul 14 02:19:54 2009 (4A5BC11A)
fffff880`02db0000 fffff880`02db9000 wfplwf wfplwf.sys Tue Jul 14 03:09:26 2009 (4A5BCCB6)
fffff960`000a0000 fffff960`003af000 win32k win32k.sys Wed Sep 01 05:58:04 2010 (4C7DC13C)
fffff880`0413e000 fffff880`04147000 wmiacpi wmiacpi.sys Tue Jul 14 02:31:02 2009 (4A5BC3B6)
fffff880`00e81000 fffff880`00e8a000 WMILIB WMILIB.SYS Tue Jul 14 02:19:51 2009 (4A5BC117)
fffff880`073ca000 fffff880`073eb000 WudfPf WudfPf.sys Tue Jul 14 03:05:37 2009 (4A5BCBD1)
Unloaded modules:
fffff880`01960000 fffff880`0196e000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000E000
fffff880`0196e000 fffff880`0197a000 dump_ataport
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000C000
fffff880`0197a000 fffff880`01983000 dump_atapi.s
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00009000
fffff880`01983000 fffff880`01996000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00013000