Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02866000 PsLoadedModuleList = 0xfffff800`02aa3e50
Debug session time: Tue Dec 7 21:04:24.613 2010 (GMT-5)
System Uptime: 1 days 3:20:54.641
Loading Kernel Symbols
...............................................................
................................................................
......................
Loading User Symbols
Loading unloaded module list
..............
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {fffffe800415a0d0, 2, 0, fffff800028b2f97}
Probably caused by : ntkrnlmp.exe ( nt!KiDeliverApc+a7 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: fffffe800415a0d0, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff800028b2f97, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002b0e0e0
fffffe800415a0d0
CURRENT_IRQL: 2
FAULTING_IP:
nt!KiDeliverApc+a7
fffff800`028b2f97 498b4a30 mov rcx,qword ptr [r10+30h]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: SC2.exe
TRAP_FRAME: fffff88005dd98a0 -- (.trap 0xfffff88005dd98a0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000002 rbx=0000000000000000 rcx=0000000000000001
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800028b2f97 rsp=fffff88005dd9a30 rbp=0000000000000000
r8=fffffe800415a0b0 r9=0000000000000000 r10=fffffe800415a0a0
r11=00000000001f0003 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na po nc
nt!KiDeliverApc+0xa7:
fffff800`028b2f97 498b4a30 mov rcx,qword ptr [r10+30h] ds:fffffe80`0415a0d0=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800028d5ca9 to fffff800028d6740
STACK_TEXT:
fffff880`05dd9758 fffff800`028d5ca9 : 00000000`0000000a fffffe80`0415a0d0 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`05dd9760 fffff800`028d4920 : fffffa80`03c69000 fffffa80`0415a060 fffffa80`02e87000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`05dd98a0 fffff800`028b2f97 : 00000000`0019c8e0 00000000`00000000 fffffa80`0415a060 fffff880`009e7180 : nt!KiPageFault+0x260
fffff880`05dd9a30 fffff800`02889bb5 : 00000000`00000000 00000000`00000000 00000000`74962450 fffffa80`0415a168 : nt!KiDeliverApc+0xa7
fffff880`05dd9ab0 fffff800`02bcb016 : 00000000`00000000 fffffa80`0415a060 fffffa80`02141420 00000000`00000000 : nt!KiCheckForKernelApcDelivery+0x25
fffff880`05dd9ae0 fffff800`02bd1189 : fffff880`05dd9c00 fffffa80`00100000 00000000`00000000 fffff800`028d2301 : nt!ObReferenceObjectByHandleWithTag+0x3b6
fffff880`05dd9bb0 fffff800`028d5993 : fffffa80`0415a060 00000000`000004ec fffff880`05dd9bf8 fffffa80`02141420 : nt!NtWaitForSingleObject+0x69
fffff880`05dd9c20 00000000`74962dd9 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`1339f0f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x74962dd9
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiDeliverApc+a7
fffff800`028b2f97 498b4a30 mov rcx,qword ptr [r10+30h]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!KiDeliverApc+a7
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0xA_nt!KiDeliverApc+a7
BUCKET_ID: X64_0xA_nt!KiDeliverApc+a7
Followup: MachineOwner
---------
Debug session time: Tue Dec 7 22:25:05.994 2010 (GMT-5)
System Uptime: 0 days 0:00:15.038
Loading Kernel Symbols
...............................................................
......................
Loading User Symbols
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1000007E, {ffffffffc0000005, fffff8000286f634, fffff88002fb98b8, fffff88002fb9120}
Unable to load image \SystemRoot\system32\DRIVERS\nvlddmkm.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for nvlddmkm.sys
*** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys
Probably caused by : nvlddmkm.sys ( nvlddmkm+91f54 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff8000286f634, The address that the exception occurred at
Arg3: fffff88002fb98b8, Exception Record Address
Arg4: fffff88002fb9120, Context Record Address
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!memmove+204
fffff800`0286f634 488b040a mov rax,qword ptr [rdx+rcx]
EXCEPTION_RECORD: fffff88002fb98b8 -- (.exr 0xfffff88002fb98b8)
ExceptionAddress: fffff8000286f634 (nt!memmove+0x0000000000000204)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: 0000000104f5e018
Attempt to read from address 0000000104f5e018
CONTEXT: fffff88002fb9120 -- (.cxr 0xfffff88002fb9120)
rax=fffff8a0004d4270 rbx=0000000000000008 rcx=fffff8a0004d4270
rdx=0000076104a89da8 rsi=fffff8a0004d4270 rdi=0000000000000008
rip=fffff8000286f634 rsp=fffff88002fb9af8 rbp=fffff88002fb9ec0
r8=0000000000000008 r9=0000000000000001 r10=fffffa8001853148
r11=fffff8a0004d4270 r12=000000000000000a r13=fffff88002fb9c38
r14=0000000104f5e018 r15=0000000000000000
iopl=0 nv up ei ng nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282
nt!memmove+0x204:
fffff800`0286f634 488b040a mov rax,qword ptr [rdx+rcx] ds:002b:00000001`04f5e018=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VERIFIER_ENABLED_VISTA_MINIDUMP
PROCESS_NAME: System
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: 0000000104f5e018
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ab00e0
0000000104f5e018
FOLLOWUP_IP:
nvlddmkm+91f54
fffff880`048a8f54 ?? ???
BUGCHECK_STR: 0x7E
LAST_CONTROL_TRANSFER: from fffff80002b71552 to fffff8000286f634
STACK_TEXT:
fffff880`02fb9af8 fffff800`02b71552 : fffffa80`00000001 00000000`00000008 00000000`00000000 00000000`000007ff : nt!memmove+0x204
fffff880`02fb9b00 fffff800`02b7140b : fffffa80`03981aa0 fffff880`02fb9f70 00000000`00000001 fffff880`02fb9f00 : nt!ObpCaptureObjectName+0x102
fffff880`02fb9b80 fffff800`02b74555 : fffffa80`0185fde0 fffffa80`0190f200 00000000`0000006c 00000000`00000000 : nt!ObpCaptureObjectCreateInformation+0x279
fffff880`02fb9c00 fffff800`02b0f262 : fffffa80`018f8040 fffff880`02fb9d80 fffff880`02fb9f00 00000000`00000000 : nt!ObCreateObject+0x75
fffff880`02fb9c70 fffff800`02877993 : fffffa80`018f8040 fffffa80`03977e70 00000000`00000000 00000000`00000001 : nt!NtCreateSymbolicLinkObject+0xbe
fffff880`02fb9d00 fffff800`02873f30 : fffff800`02bebdf6 00000000`000090de fffffa80`03977e70 fffff980`01486fa0 : nt!KiSystemServiceCopyEnd+0x13
fffff880`02fb9e98 fffff800`02bebdf6 : 00000000`000090de fffffa80`03977e70 fffff980`01486fa0 00000000`00000008 : nt!KiServiceLinkage
fffff880`02fb9ea0 fffff880`048a8f54 : 00000000`00000000 fffffa80`03817000 fffffa80`03977e70 00000000`000007ff : nt!IoCreateSymbolicLink+0x46
fffff880`02fb9f00 00000000`00000000 : fffffa80`03817000 fffffa80`03977e70 00000000`000007ff 00000000`00000100 : nvlddmkm+0x91f54
SYMBOL_STACK_INDEX: 8
SYMBOL_NAME: nvlddmkm+91f54
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nvlddmkm
IMAGE_NAME: nvlddmkm.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4cb9dd0e
STACK_COMMAND: .cxr 0xfffff88002fb9120 ; kb
FAILURE_BUCKET_ID: X64_0x7E_VRF_nvlddmkm+91f54
BUCKET_ID: X64_0x7E_VRF_nvlddmkm+91f54
Followup: MachineOwner
---------
Debug session time: Wed Dec 8 20:07:51.134 2010 (GMT-5)
System Uptime: 0 days 5:42:06.038
Loading Kernel Symbols
...............................................................
................................................................
......................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 50, {fffffca00763e018, 0, fffff800029b68ed, 7}
Could not read faulting driver name
Probably caused by : ntkrnlmp.exe ( nt!ExAllocatePoolWithTag+51d )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffffca00763e018, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff800029b68ed, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000007, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002aba0e0
fffffca00763e018
FAULTING_IP:
nt!ExAllocatePoolWithTag+51d
fffff800`029b68ed 4c8b4908 mov r9,qword ptr [rcx+8]
MM_INTERNAL_CODE: 7
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
TRAP_FRAME: fffff88006310630 -- (.trap 0xfffff88006310630)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffffa8001ae2490 rbx=0000000000000000 rcx=fffffca00763e010
rdx=0000000000000003 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800029b68ed rsp=fffff880063107c0 rbp=fffffa80018383c0
r8=0000000000000001 r9=fffff80002812000 r10=fffffa80018383c8
r11=0000000000000003 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!ExAllocatePoolWithTag+0x51d:
fffff800`029b68ed 4c8b4908 mov r9,qword ptr [rcx+8] ds:0400:fffffca0`0763e018=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002901849 to fffff80002882740
STACK_TEXT:
fffff880`063104c8 fffff800`02901849 : 00000000`00000050 fffffca0`0763e018 00000000`00000000 fffff880`06310630 : nt!KeBugCheckEx
fffff880`063104d0 fffff800`0288082e : 00000000`00000000 fffffa80`01839030 00000000`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x40e0b
fffff880`06310630 fffff800`029b68ed : fffffa80`01843d00 00000000`00000000 fffff880`06310840 fffff800`02b7357a : nt!KiPageFault+0x16e
fffff880`063107c0 fffff800`02b7b754 : 00000000`00000003 fffffa80`01843d00 00000000`00000000 00000000`00000000 : nt!ExAllocatePoolWithTag+0x51d
fffff880`063108b0 fffff800`02b7e5bb : 00000000`00000000 fffffa80`018d4e00 00000000`00000000 fffff880`06310948 : nt!ObpAllocateObject+0xc4
fffff880`06310910 fffff800`02b56b54 : fffff880`06310a68 00000000`00000002 fffff8a0`0739e0b0 fffff8a0`00f0c060 : nt!ObCreateObject+0xdb
fffff880`06310980 fffff800`02b6ff83 : fffff880`06310ae8 fffffa80`043e0070 fffff8a0`00f0c060 00000000`02fdebc8 : nt!SepDuplicateToken+0xf4
fffff880`06310a20 fffff800`02b52157 : fffff8a0`02341100 fffffa80`04110b00 fffff8a0`023410e0 fffffa80`04110b30 : nt!SeCopyClientToken+0x5f
fffff880`06310ab0 fffff800`02b6fbcb : 00000000`00000000 fffff880`06310b28 ffffffff`ffffffff fffffa80`04110b30 : nt!SepCreateClientSecurity+0xb7
fffff880`06310ae0 fffff800`02b1e8ed : 00000000`02fded20 fffff8a0`00000001 fffff880`06310bc8 fffff880`06310c38 : nt!AlpcpCreateSecurityContext+0xe7
fffff880`06310b80 fffff800`02881993 : fffffa80`01ae2490 00000000`00000000 00000000`04043130 00000000`00000000 : nt!NtAlpcCreateSecurityContext+0x130
fffff880`06310c20 00000000`773604ea : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`02fdeb88 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x773604ea
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!ExAllocatePoolWithTag+51d
fffff800`029b68ed 4c8b4908 mov r9,qword ptr [rcx+8]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!ExAllocatePoolWithTag+51d
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x50_nt!ExAllocatePoolWithTag+51d
BUCKET_ID: X64_0x50_nt!ExAllocatePoolWithTag+51d
Followup: MachineOwner
---------
0: kd> lmtsmn
start end module name
fffff880`02cc0000 fffff880`02cfe000 1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f7f000 fffff880`00fd6000 ACPI ACPI.sys Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`03a8b000 fffff880`03b15000 afd afd.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`02d9e000 fffff880`02db4000 AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`010a2000 fffff880`010ad000 amdxata amdxata.sys Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`02d86000 fffff880`02d8e000 ASACPI ASACPI.sys Sun Mar 27 22:30:36 2005 (42476C4C)
fffff880`05588000 fffff880`05593000 asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00da5000 fffff880`00dae000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00dae000 fffff880`00dd8000 ataport ataport.SYS Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`01860000 fffff880`01867000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03cff000 fffff880`03d10000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`040f6000 fffff880`04114000 bowser bowser.sys Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`00790000 fffff960`007b7000 cdd cdd.dll unavailable (00000000)
fffff880`01800000 fffff880`0182a000 cdrom cdrom.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00ccb000 fffff880`00d8b000 CI CI.dll Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01961000 fffff880`01991000 CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00c6d000 fffff880`00ccb000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`0116b000 fffff880`011de000 cng cng.sys Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`02d8e000 fffff880`02d9e000 CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`04228000 fffff880`04236000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03c5e000 fffff880`03ce1000 csc csc.sys Mon Jul 13 19:24:26 2009 (4A5BC22A)
fffff880`03ce1000 fffff880`03cff000 dfsc dfsc.sys Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`03bea000 fffff880`03bf9000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`0194b000 fffff880`01961000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`04200000 fffff880`04222000 drmk drmk.sys Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`04236000 fffff880`04240000 dump_diskdump dump_diskdump.sys Mon Jul 12 23:32:05 2010 (4C3BDE35)
fffff880`0426b000 fffff880`0427e000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`04240000 fffff880`0426b000 dump_nvstor dump_nvstor.sys Wed May 20 02:45:37 2009 (4A13A711)
fffff880`0427e000 fffff880`0428a000 Dxapi Dxapi.sys Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`03e66000 fffff880`03f5a000 dxgkrnl dxgkrnl.sys Thu Oct 01 21:00:14 2009 (4AC5509E)
fffff880`03f5a000 fffff880`03fa0000 dxgmms1 dxgmms1.sys Mon Jul 13 19:38:32 2009 (4A5BC578)
fffff880`03fa0000 fffff880`03fad000 fdc fdc.sys unavailable (00000000)
fffff880`010f9000 fffff880`0110d000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`03ff3000 fffff880`03ffe000 flpydisk flpydisk.sys unavailable (00000000)
fffff880`010ad000 fffff880`010f9000 fltmgr fltmgr.sys Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`01211000 fffff880`0121b000 Fs_Rec Fs_Rec.sys unavailable (00000000)
fffff880`01911000 fffff880`0194b000 fvevol fvevol.sys Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`0148b000 fffff880`014d5000 fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff880`03e58000 fffff880`03e65000 GEARAspiWDM GEARAspiWDM.sys Mon May 18 08:17:04 2009 (4A1151C0)
fffff800`02dee000 fffff800`02e37000 hal hal.dll Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`02cfe000 fffff880`02d22000 HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`04351000 fffff880`043ad000 HdAudio HdAudio.sys Mon Jul 13 20:06:59 2009 (4A5BCC23)
fffff880`0402e000 fffff880`040f6000 HTTP HTTP.sys Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`01908000 fffff880`01911000 hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`03e00000 fffff880`03e1e000 i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`03d36000 fffff880`03d4c000 intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`03e2d000 fffff880`03e3c000 kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff800`00bbf000 fffff800`00bc9000 kdcom kdcom.dll Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`03dbc000 fffff880`03dff000 ks ks.sys Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`013de000 fffff880`013f8000 ksecdd ksecdd.sys Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01460000 fffff880`0148b000 ksecpkg ksecpkg.sys Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`04222000 fffff880`04227200 ksthunk ksthunk.sys Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`043ea000 fffff880`043ff000 lltdio lltdio.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`042b5000 fffff880`042d8000 luafv luafv.sys Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00c15000 fffff880`00c59000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`042a7000 fffff880`042b5000 monitor monitor.sys Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`03e1e000 fffff880`03e2d000 mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`00d8b000 fffff880`00da5000 mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`0182a000 fffff880`01857000 MpFilter MpFilter.sys Sat Mar 20 01:58:08 2010 (4BA463F0)
fffff880`05507000 fffff880`05517000 MpNWMon MpNWMon.sys Sat Mar 20 01:58:00 2010 (4BA463E8)
fffff880`04114000 fffff880`0412c000 mpsdrv mpsdrv.sys Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`0412c000 fffff880`04159000 mrxsmb mrxsmb.sys Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`04159000 fffff880`041a7000 mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`041a7000 fffff880`041ca000 mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`01097000 fffff880`010a2000 msahci msahci.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`01224000 fffff880`0122f000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fdf000 fffff880`00fe9000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`0110d000 fffff880`0116b000 msrpc msrpc.sys unavailable (00000000)
fffff880`03bdf000 fffff880`03bea000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`018f6000 fffff880`01908000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`014ed000 fffff880`015df000 ndis ndis.sys Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`02dd8000 fffff880`02de4000 ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`03c33000 fffff880`03c46000 ndisuio ndisuio.sys Mon Jul 13 20:09:25 2009 (4A5BCCB5)
fffff880`02c00000 fffff880`02c2f000 ndiswan ndiswan.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`0433c000 fffff880`04351000 NDProxy NDProxy.SYS Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`03b44000 fffff880`03b53000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`03a46000 fffff880`03a8b000 netbt netbt.sys Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01400000 fffff880`01460000 NETIO NETIO.SYS Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`011de000 fffff880`011ef000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`03bd3000 fffff880`03bdf000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02812000 fffff800`02dee000 nt ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9)
fffff880`0123b000 fffff880`013de000 Ntfs Ntfs.sys Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`01857000 fffff880`01860000 Null Null.SYS unavailable (00000000)
fffff880`053dc000 fffff880`053dd180 nvBridge nvBridge.kmd Sat Oct 16 13:06:16 2010 (4CB9DB88)
fffff880`04802000 fffff880`053dba80 nvlddmkm nvlddmkm.sys Sat Oct 16 13:12:46 2010 (4CB9DD0E)
fffff880`02d22000 fffff880`02d85d80 nvm62x64 nvm62x64.sys Fri Oct 17 17:01:06 2008 (48F8FD12)
fffff880`0100a000 fffff880`01035000 nvstor nvstor.sys Wed May 20 02:45:37 2009 (4A13A711)
fffff880`01991000 fffff880`019e4000 nwifi nwifi.sys Mon Jul 13 20:07:23 2009 (4A5BCC3B)
fffff880`03b1e000 fffff880`03b44000 pacer pacer.sys Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`03fd6000 fffff880`03ff3000 parport parport.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00e40000 fffff880`00e55000 partmgr partmgr.sys Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00e00000 fffff880`00e33000 pci pci.sys Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00fe9000 fffff880`00ff0000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00ff0000 fffff880`01000000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`01200000 fffff880`01211000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`02685000 fffff880`0272b000 peauth peauth.sys Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`043ad000 fffff880`043ea000 portcls portcls.sys Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c59000 fffff880`00c6d000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`02db4000 fffff880`02dd8000 rasl2tp rasl2tp.sys Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`02de4000 fffff880`02dff000 raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`053de000 fffff880`053ff000 raspptp raspptp.sys Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`03da2000 fffff880`03dbc000 rassstp rassstp.sys Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`03b82000 fffff880`03bd3000 rdbss rdbss.sys Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`02c2f000 fffff880`02c3a000 rdpbus rdpbus.sys Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`019f5000 fffff880`019fe000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`015ef000 fffff880`015f8000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0121b000 fffff880`01224000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`018bc000 fffff880`018f6000 rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`03c46000 fffff880`03c5e000 rspndr rspndr.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`0272b000 fffff880`02736000 secdrv secdrv.SYS Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`03fca000 fffff880`03fd6000 serenum serenum.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`03fad000 fffff880`03fca000 serial serial.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`018b4000 fffff880`018bc000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`05440000 fffff880`054d6000 srv srv.sys Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`02775000 fffff880`027dc000 srv2 srv2.sys Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`02736000 fffff880`02763000 srvnet srvnet.sys Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`01035000 fffff880`01097000 storport storport.sys Mon Jul 13 20:01:18 2009 (4A5BCACE)
fffff880`02c3a000 fffff880`02c3b480 swenum swenum.sys Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01601000 fffff880`017fe000 tcpip tcpip.sys Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`02763000 fffff880`02775000 tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`03a39000 fffff880`03a46000 TDI TDI.SYS Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`03a1b000 fffff880`03a39000 tdx tdx.sys Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`03b6e000 fffff880`03b82000 termdd termdd.sys Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`005b0000 fffff960`005ba000 TSDDD TSDDD.dll unavailable (00000000)
fffff880`03d10000 fffff880`03d36000 tunnel tunnel.sys Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`03c00000 fffff880`03c12000 umbus umbus.sys Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`042a5000 fffff880`042a6f00 USBD USBD.SYS Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`03e47000 fffff880`03e58000 usbehci usbehci.sys Sat Oct 24 00:27:33 2009 (4AE28235)
fffff880`042e2000 fffff880`0433c000 usbhub usbhub.sys Sat Oct 24 00:28:24 2009 (4AE28268)
fffff880`03e3c000 fffff880`03e47000 usbohci usbohci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`03d4c000 fffff880`03da2000 USBPORT USBPORT.SYS Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`0428a000 fffff880`042a5000 USBSTOR USBSTOR.SYS Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`00e33000 fffff880`00e40000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`019e7000 fffff880`019f5000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`00dd8000 fffff880`00dfd000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`014d5000 fffff880`014e5000 vmstorfl vmstorfl.sys unavailable (00000000)
fffff880`00e55000 fffff880`00e6a000 volmgr volmgr.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00e6a000 fffff880`00ec6000 volmgrx volmgrx.sys unavailable (00000000)
fffff880`01868000 fffff880`018b4000 volsnap volsnap.sys Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02cb3000 fffff880`02cc0000 vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
fffff880`03b53000 fffff880`03b6e000 wanarp wanarp.sys Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`015df000 fffff880`015ef000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00ecc000 fffff880`00f70000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f70000 fffff880`00f7f000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`03b15000 fffff880`03b1e000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`00010000 fffff960`0031f000 win32k win32k.sys unavailable (00000000)
fffff880`00fd6000 fffff880`00fdf000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`02c40000 fffff880`02cb3000 WMP54Gv41x64 WMP54Gv41x64.sys Wed Apr 07 08:07:21 2010 (4BBC7579)
fffff880`03c12000 fffff880`03c33000 WudfPf WudfPf.sys Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`054d6000 fffff880`05507000 WUDFRd WUDFRd.sys Mon Jul 13 20:06:06 2009 (4A5BCBEE)
Unloaded modules:
fffff880`05517000 fffff880`05588000 spsys.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`01991000 fffff880`0199f000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`0199f000 fffff880`019a9000 dump_storpor
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`019a9000 fffff880`019d4000 dump_nvstor.
Timestamp: unavailable (00000000)
Checksum: 00000000
fffff880`019d4000 fffff880`019e7000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000