Andrew Crichton
New Member
- Joined
- May 8, 2011
050811-31247-01.dmp
BugCheck 4E, {99, 11d61, 2, b7148}
Probably caused by : memory_corruption ( nt!MiBadShareCount+4c )
050811-21606-01.dmp
BugCheck 4E, {2, 2ec01, 137fff, 1}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+11718 )
050811-23228-01.dmp
BugCheck A, {0, 2, 0, fffff80002c97194}
Probably caused by : aswSP.SYS ( aswSP+15383 )
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\050811-31247-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c5f000 PsLoadedModuleList = 0xfffff800`02ea4e90
Debug session time: Sun May 8 07:24:29.725 2011 (UTC - 4:00)
System Uptime: 0 days 0:37:01.943
Loading Kernel Symbols
...............................................................
................................................................
............................
Loading User Symbols
Loading unloaded module list
.........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 4E, {99, 11d61, 2, b7148}
Unable to load image \??\C:\Windows\system32\drivers\aswMonFlt.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for aswMonFlt.sys
*** ERROR: Module load completed but symbols could not be loaded for aswMonFlt.sys
Probably caused by : memory_corruption ( nt!MiBadShareCount+4c )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PFN_LIST_CORRUPT (4e)
Typically caused by drivers passing bad memory descriptor lists (ie: calling
MmUnlockPages twice with the same list, etc). If a kernel debugger is
available get the stack trace.
Arguments:
Arg1: 0000000000000099, A PTE or PFN is corrupt
Arg2: 0000000000011d61, page frame number
Arg3: 0000000000000002, current page state
Arg4: 00000000000b7148, 0
Debugging Details:
------------------
BUGCHECK_STR: 0x4E_99
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: AvastSvc.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff80002d64f5c to fffff80002cdf640
STACK_TEXT:
fffff880`03ad7098 fffff800`02d64f5c : 00000000`0000004e 00000000`00000099 00000000`00011d61 00000000`00000002 : nt!KeBugCheckEx
fffff880`03ad70a0 fffff800`02c94fe8 : 00000000`0017f000 fffffa80`00361230 00000000`00000000 fffff880`03ad7368 : nt!MiBadShareCount+0x4c
fffff880`03ad70e0 fffff800`02ff0139 : fffff980`4c400000 fffff8a0`039e9490 fffff8a0`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x2ca47
fffff880`03ad73c0 fffff800`02d02e9b : 00000000`00140000 fffffa80`078a4040 00000000`00000000 00000000`00200000 : nt!CcUnmapVacb+0x5d
fffff880`03ad7400 fffff800`02cf55f9 : fffff980`26a50001 00000000`00200000 fffffa80`04169d00 fffffa80`03b62ba0 : nt!CcUnmapVacbArray+0x1bb
fffff880`03ad7490 fffff800`02fc9312 : 00000000`00000000 00000000`00200000 fffff880`03ad7560 fffff880`03ad75f0 : nt!CcGetVirtualAddress+0x38a
fffff880`03ad7520 fffff880`010d9f08 : fffff880`00000000 00000000`00000005 fffffa80`046e5810 fffffa80`00010001 : nt!CcCopyRead+0x132
fffff880`03ad75e0 fffff880`00c0c098 : fffffa80`06effb20 fffffa80`046e57a8 00000000`00000000 00000000`00000001 : Ntfs!NtfsCopyReadA+0x1a8
fffff880`03ad77c0 fffff880`00c0f8ba : fffff880`03ad78b8 fffffa80`06554003 fffff880`03ad7a00 00000000`00000000 : fltmgr!FltpPerformFastIoCall+0x88
fffff880`03ad7820 fffff880`00c1d1a0 : 00000000`00000004 00000000`00000000 fffffa80`06effb20 00000000`00000000 : fltmgr!FltpPassThroughFastIo+0xda
fffff880`03ad7860 fffff880`010072ae : fffffa80`06c4e8d0 fffff800`00000000 00000014`00000001 fffffa80`0766fcb0 : fltmgr!FltReadFile+0x260
fffff880`03ad7940 fffffa80`06c4e8d0 : fffff800`00000000 00000014`00000001 fffffa80`0766fcb0 fffff880`09a72000 : aswMonFlt+0x72ae
fffff880`03ad7948 fffff800`00000000 : 00000014`00000001 fffffa80`0766fcb0 fffff880`09a72000 00000000`00000004 : 0xfffffa80`06c4e8d0
fffff880`03ad7950 00000014`00000001 : fffffa80`0766fcb0 fffff880`09a72000 00000000`00000004 fffff880`03ad7a08 : 0xfffff800`00000000
fffff880`03ad7958 fffffa80`0766fcb0 : fffff880`09a72000 00000000`00000004 fffff880`03ad7a08 00000000`00000000 : 0x14`00000001
fffff880`03ad7960 fffff880`09a72000 : 00000000`00000004 fffff880`03ad7a08 00000000`00000000 00000000`00000000 : 0xfffffa80`0766fcb0
fffff880`03ad7968 00000000`00000004 : fffff880`03ad7a08 00000000`00000000 00000000`00000000 fffffa80`0005a0c0 : 0xfffff880`09a72000
fffff880`03ad7970 fffff880`03ad7a08 : 00000000`00000000 00000000`00000000 fffffa80`0005a0c0 00000004`00010000 : 0x4
fffff880`03ad7978 00000000`00000000 : 00000000`00000000 fffffa80`0005a0c0 00000004`00010000 fffff800`02d0412f : 0xfffff880`03ad7a08
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiBadShareCount+4c
fffff800`02d64f5c cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!MiBadShareCount+4c
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 4ce7951a
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0x4E_99_nt!MiBadShareCount+4c
BUCKET_ID: X64_0x4E_99_nt!MiBadShareCount+4c
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\050811-21606-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c1b000 PsLoadedModuleList = 0xfffff800`02e60e90
Debug session time: Sun May 8 06:46:34.035 2011 (UTC - 4:00)
System Uptime: 0 days 0:17:20.643
Loading Kernel Symbols
...............................................................
................................................................
...........................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 4E, {2, 2ec01, 137fff, 1}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+11718 )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PFN_LIST_CORRUPT (4e)
Typically caused by drivers passing bad memory descriptor lists (ie: calling
MmUnlockPages twice with the same list, etc). If a kernel debugger is
available get the stack trace.
Arguments:
Arg1: 0000000000000002, A list entry was corrupt
Arg2: 000000000002ec01, entry in list being removed
Arg3: 0000000000137fff, highest physical page number
Arg4: 0000000000000001, reference count of entry being removed
Debugging Details:
------------------
BUGCHECK_STR: 0x4E_2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: VSSVC.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff80002c2fd38 to fffff80002c9b640
STACK_TEXT:
fffff880`09d792a8 fffff800`02c2fd38 : 00000000`0000004e 00000000`00000002 00000000`0002ec01 00000000`00137fff : nt!KeBugCheckEx
fffff880`09d792b0 fffff800`02cdf1eb : 00000000`00000000 00000000`00000000 00000000`00000000 fffff8a0`03339c10 : nt! ?? ::FNODOBFM::`string'+0x11718
fffff880`09d79340 fffff800`02cddd38 : fffff8a0`03339010 fffff8a0`03339c10 fffffa80`06088590 fffffa80`06088590 : nt!MiFlushSectionInternal+0x6bb
fffff880`09d79570 fffff800`02cdd29c : 00000000`00000000 fffff980`0937f500 00000000`00000000 fffff880`012c21fa : nt!MmFlushSection+0x1f4
fffff880`09d79630 fffff880`012906d4 : fffffa80`06d8e778 00000000`00000000 fffff8a0`00000000 00000000`00000001 : nt!CcFlushCache+0x7bc
fffff880`09d79730 fffff880`012864e3 : 00000000`00000000 fffff8a0`02bdea80 00000000`00000000 00000000`00000001 : Ntfs!NtfsFlushUserStream+0xb4
fffff880`09d797b0 fffff880`0128efad : fffffa80`0491b640 fffffa80`04fd7180 00000000`00120101 00000000`00000000 : Ntfs!NtfsFlushVolume+0x2c7
fffff880`09d798e0 fffff880`0128f6b4 : fffffa80`0491b640 fffffa80`058c9c10 fffffa80`04268910 00000000`00000000 : Ntfs!NtfsCommonFlushBuffers+0x459
fffff880`09d799c0 fffff880`01098bcf : fffffa80`058c9fb0 fffffa80`058c9c10 fffffa80`0491b640 fffff880`09d799e8 : Ntfs!NtfsFsdFlushBuffers+0x104
fffff880`09d79a30 fffff880`010976df : fffffa80`04a6ea20 00000000`00000000 fffffa80`04a6ea00 fffffa80`058c9c10 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
fffff880`09d79ac0 fffff800`02fa371b : 00000000`00000002 fffffa80`04268910 00000000`00000000 fffffa80`058c9c10 : fltmgr!FltpDispatch+0xcf
fffff880`09d79b20 fffff800`02f3a871 : fffffa80`058c9c10 fffffa80`04022060 fffffa80`04268910 fffff880`009e9180 : nt!IopSynchronousServiceTail+0xfb
fffff880`09d79b90 fffff800`02c9a8d3 : fffffa80`04022060 00000000`ff932270 fffffa80`04a6ea20 fffffa80`04268910 : nt!NtFlushBuffersFile+0x171
fffff880`09d79c20 00000000`76e517ca : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`031cf288 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76e517ca
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+11718
fffff800`02c2fd38 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+11718
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4ce7951a
FAILURE_BUCKET_ID: X64_0x4E_2_nt!_??_::FNODOBFM::_string_+11718
BUCKET_ID: X64_0x4E_2_nt!_??_::FNODOBFM::_string_+11718
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\050811-23228-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c01000 PsLoadedModuleList = 0xfffff800`02e46e90
Debug session time: Sun May 8 09:10:46.508 2011 (UTC - 4:00)
System Uptime: 0 days 0:00:54.116
Loading Kernel Symbols
...............................................................
......................
Loading User Symbols
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {0, 2, 0, fffff80002c97194}
Unable to load image \SystemRoot\System32\Drivers\aswSP.SYS, Win32 error 0n2
*** WARNING: Unable to verify timestamp for aswSP.SYS
*** ERROR: Module load completed but symbols could not be loaded for aswSP.SYS
Probably caused by : aswSP.SYS ( aswSP+15383 )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000000000000, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80002c97194, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002eb20e8
0000000000000000
CURRENT_IRQL: 2
FAULTING_IP:
nt!IopCompleteRequest+c64
fffff800`02c97194 488b09 mov rcx,qword ptr [rcx]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VERIFIER_ENABLED_VISTA_MINIDUMP
BUGCHECK_STR: 0xA
PROCESS_NAME: System
IRP_ADDRESS: ffffffffffffff88
TRAP_FRAME: fffff880031ae8d0 -- (.trap 0xfffff880031ae8d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffff8a0002414f0
rdx=fffff88003f9e198 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800030b6fff rsp=fffff880031aea60 rbp=fffff8a0002414f0
r8=fffff88003f9edb0 r9=0000000000000000 r10=0000000000000100
r11=fffff880031aea90 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
nt!CmSetCallbackObjectContext+0x6f:
fffff800`030b6fff 740c je nt!CmSetCallbackObjectContext+0x7d (fffff800`030b700d) [br=1]
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002c80be9 to fffff80002c81640
STACK_TEXT:
fffff880`031ae318 fffff800`02c80be9 : 00000000`0000000a 00000000`00000000 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`031ae320 fffff800`02c7f860 : 00000000`00000004 fffffa80`03afb200 fffff880`031ae1a0 fffff980`04a74ee0 : nt!KiBugCheckDispatch+0x69
fffff880`031ae460 fffff800`02c97194 : 00200000`030b7121 00000000`00000000 00000000`00000000 00001f80`00cb00f6 : nt!KiPageFault+0x260
fffff880`031ae5f0 fffff800`02c74cf7 : 00000000`00000000 fffff880`031ae910 fffff880`031ae600 fffff800`00000000 : nt!IopCompleteRequest+0xc64
fffff880`031ae6c0 fffff800`02c2e7d5 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDeliverApc+0x1c7
fffff880`031ae740 fffff800`02c9005c : fffff800`02e05ec0 fffff800`02e05ec0 fffffa80`03b8f1a0 00000000`00000001 : nt!KiCheckForKernelApcDelivery+0x25
fffff880`031ae770 fffff800`02c7f76e : 00000000`00000008 fffff800`030b7000 00000000`00000000 00000000`00000000 : nt!MmAccessFault+0x1a3c
fffff880`031ae8d0 fffff800`030b6fff : fffff880`031aea50 00000000`0000001d 00000000`00000010 fffff800`030b6f90 : nt!KiPageFault+0x16e
fffff880`031aea60 fffff880`03f72383 : 00000000`00000000 00000000`0000001d fffff880`031aec50 00000000`00000000 : nt!CmSetCallbackObjectContext+0x6f
fffff880`031aeab0 00000000`00000000 : 00000000`0000001d fffff880`031aec50 00000000`00000000 fffff8a0`00000000 : aswSP+0x15383
STACK_COMMAND: kb
FOLLOWUP_IP:
aswSP+15383
fffff880`03f72383 ?? ???
SYMBOL_STACK_INDEX: 9
SYMBOL_NAME: aswSP+15383
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: aswSP
IMAGE_NAME: aswSP.SYS
DEBUG_FLR_IMAGE_TIMESTAMP: 4dac7244
FAILURE_BUCKET_ID: X64_0xA_VRF_aswSP+15383
BUCKET_ID: X64_0xA_VRF_aswSP+15383
Followup: MachineOwner
---------
start end module name
fffff880`00ef0000 fffff880`00f47000 ACPI ACPI.sys Sat Nov 20 04:19:16 2010 (4CE79294)
fffff880`01000000 fffff880`01089000 afd afd.sys Sat Nov 20 04:23:27 2010 (4CE7938F)
fffff880`03fd0000 fffff880`03fe5000 amdppm amdppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00ec0000 fffff880`00ecb000 amdxata amdxata.sys Fri Mar 19 12:18:18 2010 (4BA3A3CA)
fffff880`0457f000 fffff880`04589000 aswRdr aswRdr.SYS Mon Apr 18 13:13:23 2011 (4DAC7133)
fffff880`0441e000 fffff880`044b6000 aswSnx aswSnx.SYS Mon Apr 18 13:17:58 2011 (4DAC7246)
fffff880`03f5d000 fffff880`03faa000 aswSP aswSP.SYS Mon Apr 18 13:17:56 2011 (4DAC7244)
fffff880`0456f000 fffff880`0457f000 aswTdi aswTdi.SYS Mon Apr 18 13:16:21 2011 (4DAC71E5)
fffff880`00e8d000 fffff880`00e96000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00e96000 fffff880`00ec0000 ataport ataport.SYS Sat Nov 20 04:19:15 2010 (4CE79293)
fffff880`044bf000 fffff880`044c6000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03f4c000 fffff880`03f5d000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`01600000 fffff880`0162a000 cdrom cdrom.sys Sat Nov 20 04:19:20 2010 (4CE79298)
fffff880`00d2d000 fffff880`00ded000 CI CI.dll Sat Nov 20 08:12:36 2010 (4CE7C944)
fffff880`0198b000 fffff880`019bb000 CLASSPNP CLASSPNP.SYS Sat Nov 20 04:19:23 2010 (4CE7929B)
fffff880`00ccf000 fffff880`00d2d000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01148000 fffff880`011ba000 cng cng.sys Sat Nov 20 05:08:45 2010 (4CE79E2D)
fffff880`019bb000 fffff880`019c9000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03f2e000 fffff880`03f4c000 dfsc dfsc.sys Sat Nov 20 04:26:31 2010 (4CE79447)
fffff880`03f1f000 fffff880`03f2e000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01975000 fffff880`0198b000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`019d5000 fffff880`019de000 dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`019c9000 fffff880`019d5000 dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`019de000 fffff880`019f1000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`0486d000 fffff880`04961000 dxgkrnl dxgkrnl.sys Sat Nov 20 04:50:50 2010 (4CE799FA)
fffff880`04961000 fffff880`049a7000 dxgmms1 dxgmms1.sys Sat Nov 20 04:49:53 2010 (4CE799C1)
fffff880`010d6000 fffff880`010ea000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`0108a000 fffff880`010d6000 fltmgr fltmgr.sys Sat Nov 20 04:19:24 2010 (4CE7929C)
fffff880`013f2000 fffff880`013fc000 Fs_Rec Fs_Rec.sys Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`0193b000 fffff880`01975000 fvevol fvevol.sys Sat Nov 20 04:24:06 2010 (4CE793B6)
fffff880`01848000 fffff880`01892000 fwpkclnt fwpkclnt.sys Sat Nov 20 04:21:37 2010 (4CE79321)
fffff800`031eb000 fffff800`03234000 hal hal.dll Sat Nov 20 08:00:25 2010 (4CE7C669)
fffff880`01932000 fffff880`0193b000 hwpolicy hwpolicy.sys Sat Nov 20 04:18:54 2010 (4CE7927E)
fffff800`00bac000 fffff800`00bb6000 kdcom kdcom.dll Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`013c6000 fffff880`013e1000 ksecdd ksecdd.sys Sat Nov 20 04:21:15 2010 (4CE7930B)
fffff880`01400000 fffff880`0142b000 ksecpkg ksecpkg.sys Sat Nov 20 05:10:34 2010 (4CE79E9A)
fffff880`00cae000 fffff880`00cbb000 mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`00e73000 fffff880`00e8d000 mountmgr mountmgr.sys Sat Nov 20 04:19:21 2010 (4CE79299)
fffff880`04524000 fffff880`0452f000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00f50000 fffff880`00f5a000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`010ea000 fffff880`01148000 msrpc msrpc.sys Sat Nov 20 04:21:56 2010 (4CE79334)
fffff880`03f14000 fffff880`03f1f000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`01920000 fffff880`01932000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`01486000 fffff880`01579000 ndis ndis.sys Sat Nov 20 04:23:30 2010 (4CE79392)
fffff880`0162a000 fffff880`01639000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`04589000 fffff880`045ce000 netbt netbt.sys Sat Nov 20 04:23:18 2010 (4CE79386)
fffff880`01579000 fffff880`015d9000 NETIO NETIO.SYS Sat Nov 20 04:23:13 2010 (4CE79381)
fffff880`0452f000 fffff880`04540000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`03f08000 fffff880`03f14000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c01000 fffff800`031eb000 nt ntkrnlmp.exe Sat Nov 20 04:30:02 2010 (4CE7951A)
fffff880`01223000 fffff880`013c6000 Ntfs Ntfs.sys Sat Nov 20 04:20:57 2010 (4CE792F9)
fffff880`044b6000 fffff880`044bf000 Null Null.SYS Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`13d9e000 fffff880`13d9f180 nvBridge nvBridge.kmd Tue Mar 16 03:26:37 2010 (4B9F32AD)
fffff880`13074000 fffff880`13d9d700 nvlddmkm nvlddmkm.sys Tue Mar 16 03:57:48 2010 (4B9F39FC)
fffff880`045d7000 fffff880`045fd000 pacer pacer.sys Sat Nov 20 05:52:18 2010 (4CE7A862)
fffff880`00f9a000 fffff880`00faf000 partmgr partmgr.sys Sat Nov 20 04:20:00 2010 (4CE792C0)
fffff880`00f5a000 fffff880`00f8d000 pci pci.sys Sat Nov 20 04:19:11 2010 (4CE7928F)
fffff880`00e5c000 fffff880`00e63000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00e63000 fffff880`00e73000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013e1000 fffff880`013f2000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`00cbb000 fffff880`00ccf000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`03eb7000 fffff880`03f08000 rdbss rdbss.sys Sat Nov 20 04:27:51 2010 (4CE79497)
fffff880`04509000 fffff880`04512000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`04512000 fffff880`0451b000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0451b000 fffff880`04524000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`018e6000 fffff880`01920000 rdyboost rdyboost.sys Sat Nov 20 04:43:10 2010 (4CE7982E)
fffff880`0142b000 fffff880`01448000 serial serial.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`018de000 fffff880`018e6000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`01644000 fffff880`01848000 tcpip tcpip.sys Sat Nov 20 04:25:52 2010 (4CE79420)
fffff880`04562000 fffff880`0456f000 TDI TDI.SYS Sat Nov 20 04:22:06 2010 (4CE7933E)
fffff880`04540000 fffff880`04562000 tdx tdx.sys Sat Nov 20 04:21:54 2010 (4CE79332)
fffff880`01463000 fffff880`01477000 termdd termdd.sys Sat Nov 20 06:03:40 2010 (4CE7AB0C)
fffff880`03faa000 fffff880`03fd0000 tunnel tunnel.sys Sat Nov 20 05:51:50 2010 (4CE7A846)
fffff880`00f8d000 fffff880`00f9a000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`044c6000 fffff880`044d4000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`044d4000 fffff880`044f9000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00faf000 fffff880`00fc4000 volmgr volmgr.sys Sat Nov 20 04:19:28 2010 (4CE792A0)
fffff880`00e00000 fffff880`00e5c000 volmgrx volmgrx.sys Sat Nov 20 04:20:43 2010 (4CE792EB)
fffff880`01892000 fffff880`018de000 volsnap volsnap.sys Sat Nov 20 04:20:08 2010 (4CE792C8)
fffff880`04400000 fffff880`04416000 vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
fffff880`01448000 fffff880`01463000 wanarp wanarp.sys Sat Nov 20 05:52:36 2010 (4CE7A874)
fffff880`044f9000 fffff880`04509000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00c00000 fffff880`00ca4000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00ded000 fffff880`00dfc000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`045ce000 fffff880`045d7000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`00f47000 fffff880`00f50000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117)
051011-18330-01.dmp
MEMORY_MANAGEMENT (1a)
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+6061 )
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\051011-18330-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c5f000 PsLoadedModuleList = 0xfffff800`02ea4e90
Debug session time: Tue May 10 03:44:48.574 2011 (UTC - 4:00)
System Uptime: 0 days 2:20:26.792
Loading Kernel Symbols
...............................................................
................................................................
.........................
Loading User Symbols
Loading unloaded module list
.................
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {411, fffff68000022038, ccd000003ed61886, fffff68000022019}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+6061 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000000411, The subtype of the bugcheck.
Arg2: fffff68000022038
Arg3: ccd000003ed61886
Arg4: fffff68000022019
Debugging Details:
------------------
BUGCHECK_STR: 0x1a_411
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: SearchIndexer.
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff80002cbc2dd to fffff80002cdf640
STACK_TEXT:
fffff880`097f8628 fffff800`02cbc2dd : 00000000`0000001a 00000000`00000411 fffff680`00022038 ccd00000`3ed61886 : nt!KeBugCheckEx
fffff880`097f8630 fffff800`02d12502 : ccd00000`3ed61886 0000000f`ffffffff fffff680`00022038 c6800000`3f860886 : nt! ?? ::FNODOBFM::`string'+0x6061
fffff880`097f8680 fffff800`02d11627 : 00000000`00000000 fffff680`00022038 fffffa80`07275b30 00000000`00000000 : nt!MiDeletePteRun+0x618
fffff880`097f8830 fffff800`02d12fd9 : 00000000`00000000 00000000`0440ffff 00000000`00000000 fffff880`097f8b10 : nt!MiDeleteVirtualAddresses+0x41f
fffff880`097f89f0 fffff800`02ff6731 : fffffa80`06f93ae0 00000000`00000000 fffffa80`06f7a270 fffffa80`06f7a270 : nt!MiRemoveMappedView+0xd9
fffff880`097f8b10 fffff800`02ff6b33 : fffff880`00000000 00000000`04400000 fffffa80`00000001 fffff800`02e51e01 : nt!MiUnmapViewOfSection+0x1b1
fffff880`097f8bd0 fffff800`02cde8d3 : fffffa80`0750d660 00000000`00000000 fffffa80`07275b30 fffffa80`074bf460 : nt!NtUnmapViewOfSection+0x5f
fffff880`097f8c20 00000000`770d15ba : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`05949888 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x770d15ba
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+6061
fffff800`02cbc2dd cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+6061
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4ce7951a
FAILURE_BUCKET_ID: X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6061
BUCKET_ID: X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6061
Followup: MachineOwner
---------
start end module name
fffff880`00eec000 fffff880`00f43000 ACPI ACPI.sys Sat Nov 20 04:19:16 2010 (4CE79294)
fffff880`0100d000 fffff880`01096000 afd afd.sys Sat Nov 20 04:23:27 2010 (4CE7938F)
fffff880`13000000 fffff880`13016000 AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`0406f000 fffff880`04084000 amdppm amdppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00e2a000 fffff880`00e35000 amdxata amdxata.sys Fri Mar 19 12:18:18 2010 (4BA3A3CA)
fffff880`13dc5000 fffff880`13dcd000 ASACPI ASACPI.sys Wed Jul 15 23:31:29 2009 (4A5E9F11)
fffff880`089ea000 fffff880`089f5000 asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00ff1000 fffff880`00ffa000 atapi atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00e00000 fffff880`00e2a000 ataport ataport.SYS Sat Nov 20 04:19:15 2010 (4CE79293)
fffff960`00860000 fffff960`008c1000 ATMFD ATMFD.DLL Sat Feb 19 04:00:32 2011 (4D5F86B0)
fffff880`01ea2000 fffff880`01f72000 bcmwlhigh664 bcmwlhigh664.sys Thu Nov 05 19:27:07 2009 (4AF36D5B)
fffff880`019e7000 fffff880`019ee000 Beep Beep.SYS Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`04038000 fffff880`04049000 blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`04778000 fffff880`04796000 bowser bowser.sys Tue Feb 22 23:55:04 2011 (4D649328)
fffff960`006d0000 fffff960`006f7000 cdd cdd.dll unavailable (00000000)
fffff880`0163e000 fffff880`0165b000 cdfs cdfs.sys Mon Jul 13 19:19:46 2009 (4A5BC112)
fffff880`01666000 fffff880`01690000 cdrom cdrom.sys Sat Nov 20 04:19:20 2010 (4CE79298)
fffff880`00ca5000 fffff880`00d65000 CI CI.dll Sat Nov 20 08:12:36 2010 (4CE7C944)
fffff880`01600000 fffff880`01630000 CLASSPNP CLASSPNP.SYS Sat Nov 20 04:19:23 2010 (4CE7929B)
fffff880`00c47000 fffff880`00ca5000 CLFS CLFS.SYS Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01166000 fffff880`011d8000 cng cng.sys Sat Nov 20 05:08:45 2010 (4CE79E2D)
fffff880`13de2000 fffff880`13df2000 CompositeBus CompositeBus.sys Sat Nov 20 05:33:17 2010 (4CE7A3ED)
fffff880`07cfb000 fffff880`07d04000 cpuz135_x64 cpuz135_x64.sys Tue Nov 09 08:33:36 2010 (4CD94DB0)
fffff880`01fab000 fffff880`01fb9000 crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`0401a000 fffff880`04038000 dfsc dfsc.sys Sat Nov 20 04:26:31 2010 (4CE79447)
fffff880`0400b000 fffff880`0401a000 discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`019c8000 fffff880`019de000 disk disk.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`03fc4000 fffff880`03fe6000 drmk drmk.sys Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`01fc5000 fffff880`01fce000 dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01fb9000 fffff880`01fc5000 dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01fce000 fffff880`01fe1000 dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`03fec000 fffff880`03ff8000 Dxapi Dxapi.sys Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`02c72000 fffff880`02d66000 dxgkrnl dxgkrnl.sys Sat Nov 20 04:50:50 2010 (4CE799FA)
fffff880`02d66000 fffff880`02dac000 dxgmms1 dxgmms1.sys Sat Nov 20 04:49:53 2010 (4CE799C1)
fffff880`010f4000 fffff880`01108000 fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`010a8000 fffff880`010f4000 fltmgr fltmgr.sys Sat Nov 20 04:19:24 2010 (4CE7929C)
fffff880`01200000 fffff880`0120a000 Fs_Rec Fs_Rec.sys Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`0198e000 fffff880`019c8000 fvevol fvevol.sys Sat Nov 20 04:24:06 2010 (4CE793B6)
fffff880`0189b000 fffff880`018e5000 fwpkclnt fwpkclnt.sys Sat Nov 20 04:21:37 2010 (4CE79321)
fffff880`02c56000 fffff880`02c63000 GEARAspiWDM GEARAspiWDM.sys Mon May 18 08:17:04 2009 (4A1151C0)
fffff800`02c16000 fffff800`02c5f000 hal hal.dll Sat Nov 20 08:00:25 2010 (4CE7C669)
fffff880`02dac000 fffff880`02dd0000 HDAudBus HDAudBus.sys Sat Nov 20 05:43:42 2010 (4CE7A65E)
fffff880`03f2b000 fffff880`03f87000 HdAudio HdAudio.sys Sat Nov 20 05:44:23 2010 (4CE7A687)
fffff880`03e2d000 fffff880`03e46000 HIDCLASS HIDCLASS.SYS Sat Nov 20 05:43:49 2010 (4CE7A665)
fffff880`03e46000 fffff880`03e4e080 HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`03e1f000 fffff880`03e2d000 hidusb hidusb.sys Sat Nov 20 05:43:49 2010 (4CE7A665)
fffff880`046af000 fffff880`04778000 HTTP HTTP.sys Sat Nov 20 04:24:30 2010 (4CE793CE)
fffff880`01985000 fffff880`0198e000 hwpolicy hwpolicy.sys Sat Nov 20 04:18:54 2010 (4CE7927E)
fffff880`01096000 fffff880`010a5000 kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`01630000 fffff880`0163e000 kbdhid kbdhid.sys Sat Nov 20 05:33:25 2010 (4CE7A3F5)
fffff800`00bb4000 fffff800`00bbe000 kdcom kdcom.dll Sat Feb 05 11:52:49 2011 (4D4D8061)
fffff880`03e67000 fffff880`03eaa000 ks ks.sys Sat Nov 20 05:33:23 2010 (4CE7A3F3)
fffff880`013d1000 fffff880`013ec000 ksecdd ksecdd.sys Sat Nov 20 04:21:15 2010 (4CE7930B)
fffff880`01460000 fffff880`0148b000 ksecpkg ksecpkg.sys Sat Nov 20 05:10:34 2010 (4CE79E9A)
fffff880`03fe6000 fffff880`03feb200 ksthunk ksthunk.sys Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`0461c000 fffff880`04631000 lltdio lltdio.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`01e00000 fffff880`01e23000 luafv luafv.sys Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00c26000 fffff880`00c33000 mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`01f9d000 fffff880`01fab000 monitor monitor.sys Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`03e56000 fffff880`03e65000 mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`01f90000 fffff880`01f9d000 mouhid mouhid.sys Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00fd7000 fffff880`00ff1000 mountmgr mountmgr.sys Sat Nov 20 04:19:21 2010 (4CE79299)
fffff880`0148b000 fffff880`014bc000 MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
fffff880`04796000 fffff880`047ae000 mpsdrv mpsdrv.sys Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`047ae000 fffff880`047db000 mrxsmb mrxsmb.sys Tue Feb 22 23:56:22 2011 (4D649376)
fffff880`07c8a000 fffff880`07cd7000 mrxsmb10 mrxsmb10.sys Tue Feb 22 23:55:12 2011 (4D649330)
fffff880`07cd7000 fffff880`07cfb000 mrxsmb20 mrxsmb20.sys Tue Feb 22 23:55:12 2011 (4D649330)
fffff880`0120a000 fffff880`01215000 Msfs Msfs.SYS Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00f4c000 fffff880`00f56000 msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`01108000 fffff880`01166000 msrpc msrpc.sys Sat Nov 20 04:21:56 2010 (4CE79334)
fffff880`04000000 fffff880`0400b000 mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`01973000 fffff880`01985000 mup mup.sys Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`014bc000 fffff880`015af000 ndis ndis.sys Sat Nov 20 04:23:30 2010 (4CE79392)
fffff880`13df2000 fffff880`13dfe000 ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`04684000 fffff880`04697000 ndisuio ndisuio.sys Sat Nov 20 05:50:08 2010 (4CE7A7E0)
fffff880`04084000 fffff880`040b3000 ndiswan ndiswan.sys Sat Nov 20 05:52:32 2010 (4CE7A870)
fffff880`03f16000 fffff880`03f2b000 NDProxy NDProxy.SYS Sat Nov 20 05:52:20 2010 (4CE7A864)
fffff880`04145000 fffff880`04154000 netbios netbios.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`040bb000 fffff880`04100000 netbt netbt.sys Sat Nov 20 04:23:18 2010 (4CE79386)
fffff880`01400000 fffff880`01460000 NETIO NETIO.SYS Sat Nov 20 04:23:13 2010 (4CE79381)
fffff880`08964000 fffff880`08979000 NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149)
fffff880`01215000 fffff880`01226000 Npfs Npfs.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`041f1000 fffff880`041fd000 nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c5f000 fffff800`03249000 nt ntkrnlmp.exe Sat Nov 20 04:30:02 2010 (4CE7951A)
fffff880`0122e000 fffff880`013d1000 Ntfs Ntfs.sys Sat Nov 20 04:20:57 2010 (4CE792F9)
fffff880`019de000 fffff880`019e7000 Null Null.SYS Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`13d6d000 fffff880`13d6e180 nvBridge nvBridge.kmd Tue Mar 16 03:26:37 2010 (4B9F32AD)
fffff880`13043000 fffff880`13d6c700 nvlddmkm nvlddmkm.sys Tue Mar 16 03:57:48 2010 (4B9F39FC)
fffff880`04631000 fffff880`04684000 nwifi nwifi.sys Mon Jul 13 20:07:23 2009 (4A5BCC3B)
fffff880`04109000 fffff880`0412f000 pacer pacer.sys Sat Nov 20 05:52:18 2010 (4CE7A862)
fffff880`02de1000 fffff880`02dfe000 parport parport.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00f96000 fffff880`00fab000 partmgr partmgr.sys Sat Nov 20 04:20:00 2010 (4CE792C0)
fffff880`00f56000 fffff880`00f89000 pci pci.sys Sat Nov 20 04:19:11 2010 (4CE7928F)
fffff880`00fc0000 fffff880`00fc7000 pciide pciide.sys Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00fc7000 fffff880`00fd7000 PCIIDEX PCIIDEX.SYS Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013ec000 fffff880`013fd000 pcw pcw.sys Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`07d04000 fffff880`07daa000 peauth peauth.sys Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`03f87000 fffff880`03fc4000 portcls portcls.sys Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c33000 fffff880`00c47000 PSHED PSHED.dll Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`13016000 fffff880`1303a000 rasl2tp rasl2tp.sys Sat Nov 20 05:52:34 2010 (4CE7A872)
fffff880`00dc1000 fffff880`00ddc000 raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`00ddc000 fffff880`00dfd000 raspptp raspptp.sys Sat Nov 20 05:52:31 2010 (4CE7A86F)
fffff880`00c00000 fffff880`00c1a000 rassstp rassstp.sys Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`041a0000 fffff880`041f1000 rdbss rdbss.sys Sat Nov 20 04:27:51 2010 (4CE79497)
fffff880`015e4000 fffff880`015ed000 RDPCDD RDPCDD.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`015ed000 fffff880`015f6000 rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`015f6000 fffff880`015ff000 rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`01939000 fffff880`01973000 rdyboost rdyboost.sys Sat Nov 20 04:43:10 2010 (4CE7982E)
fffff880`04697000 fffff880`046af000 rspndr rspndr.sys Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`02c00000 fffff880`02c56000 Rt64win7 Rt64win7.sys Wed Jun 23 05:10:45 2010 (4C21CF95)
fffff880`07daa000 fffff880`07db5000 secdrv secdrv.SYS Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`13dcd000 fffff880`13dd9000 serenum serenum.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`04154000 fffff880`04171000 serial serial.sys Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`01931000 fffff880`01939000 spldr spldr.sys Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`088cc000 fffff880`08964000 srv srv.sys Tue Feb 22 23:56:21 2011 (4D649375)
fffff880`07c00000 fffff880`07c6a000 srv2 srv2.sys Tue Feb 22 23:56:00 2011 (4D649360)
fffff880`07db5000 fffff880`07de6000 srvnet srvnet.sys Tue Feb 22 23:55:44 2011 (4D649350)
fffff880`03e65000 fffff880`03e66480 swenum swenum.sys Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01697000 fffff880`0189b000 tcpip tcpip.sys Sat Nov 20 04:25:52 2010 (4CE79420)
fffff880`07de6000 fffff880`07df8000 tcpipreg tcpipreg.sys Sat Nov 20 05:51:48 2010 (4CE7A844)
fffff880`01000000 fffff880`0100d000 TDI TDI.SYS Sat Nov 20 04:22:06 2010 (4CE7933E)
fffff880`011d8000 fffff880`011fa000 tdx tdx.sys Sat Nov 20 04:21:54 2010 (4CE79332)
fffff880`0418c000 fffff880`041a0000 termdd termdd.sys Sat Nov 20 06:03:40 2010 (4CE7AB0C)
fffff960`00490000 fffff960`0049a000 TSDDD TSDDD.dll Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`04049000 fffff880`0406f000 tunnel tunnel.sys Sat Nov 20 05:51:50 2010 (4CE7A846)
fffff880`03eaa000 fffff880`03ebc000 umbus umbus.sys Sat Nov 20 05:44:37 2010 (4CE7A695)
fffff880`08860000 fffff880`08871000 usbaapl64 usbaapl64.sys Fri Feb 11 13:13:08 2011 (4D557C34)
fffff880`03e00000 fffff880`03e1d000 usbccgp usbccgp.sys Sat Nov 20 05:44:03 2010 (4CE7A673)
fffff880`03e1d000 fffff880`03e1ef00 USBD USBD.SYS Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`02dd0000 fffff880`02de1000 usbehci usbehci.sys Sat Nov 20 05:43:54 2010 (4CE7A66A)
fffff880`03ebc000 fffff880`03f16000 usbhub usbhub.sys Sat Nov 20 05:44:30 2010 (4CE7A68E)
fffff880`02c63000 fffff880`02c6e000 usbohci usbohci.sys Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`13d6f000 fffff880`13dc5000 USBPORT USBPORT.SYS Sat Nov 20 05:44:00 2010 (4CE7A670)
fffff880`01e87000 fffff880`01ea2000 USBSTOR USBSTOR.SYS Sat Nov 20 05:44:05 2010 (4CE7A675)
fffff880`00f89000 fffff880`00f96000 vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`019ee000 fffff880`019fc000 vga vga.sys Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`015af000 fffff880`015d4000 VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00fab000 fffff880`00fc0000 volmgr volmgr.sys Sat Nov 20 04:19:28 2010 (4CE792A0)
fffff880`00d65000 fffff880`00dc1000 volmgrx volmgrx.sys Sat Nov 20 04:20:43 2010 (4CE792EB)
fffff880`018e5000 fffff880`01931000 volsnap volsnap.sys Sat Nov 20 04:20:08 2010 (4CE792C8)
fffff880`08871000 fffff880`0887e000 vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
fffff880`0412f000 fffff880`04145000 vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
fffff880`04171000 fffff880`0418c000 wanarp wanarp.sys Sat Nov 20 05:52:36 2010 (4CE7A874)
fffff880`015d4000 fffff880`015e4000 watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00e39000 fffff880`00edd000 Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00edd000 fffff880`00eec000 WDFLDR WDFLDR.SYS Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`04100000 fffff880`04109000 wfplwf wfplwf.sys Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`00050000 fffff960`00362000 win32k win32k.sys Wed Mar 02 22:51:40 2011 (4D6F104C)
fffff880`0887e000 fffff880`0888f000 WinUsb WinUsb.sys Sat Nov 20 05:43:56 2010 (4CE7A66C)
fffff880`13dd9000 fffff880`13de2000 wmiacpi wmiacpi.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00f43000 fffff880`00f4c000 WMILIB WMILIB.SYS Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`01e23000 fffff880`01e44000 WudfPf WudfPf.sys Sat Nov 20 05:42:44 2010 (4CE7A624)
fffff880`0888f000 fffff880`088c0000 WUDFRd WUDFRd.sys Sat Nov 20 05:43:32 2010 (4CE7A654)
Unloaded modules:
fffff880`08800000 fffff880`08811000 usbaapl64.sy
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00011000
fffff880`0882f000 fffff880`08860000 WUDFRd.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00031000
fffff880`0881e000 fffff880`0882f000 WinUsb.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00011000
fffff880`08811000 fffff880`0881e000 vwifibus.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000D000
fffff880`01ea2000 fffff880`01f72000 bcmwlhigh664
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 000D0000
fffff880`01f7f000 fffff880`01f90000 usbaapl64.sy
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00011000
fffff880`01e44000 fffff880`01e75000 WUDFRd.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00031000
fffff880`01fe1000 fffff880`01ff2000 WinUsb.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00011000
fffff880`01f72000 fffff880`01f7f000 vwifibus.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000D000
fffff880`01ea2000 fffff880`01f72000 bcmwlhigh664
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 000D0000
fffff880`08979000 fffff880`089ea000 spsys.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00071000
fffff880`01e44000 fffff880`01e55000 WinUsb.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00011000
fffff880`01e55000 fffff880`01e86000 WUDFRd.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00031000
fffff880`01630000 fffff880`0163e000 crashdmp.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000E000
fffff880`0163e000 fffff880`0164a000 dump_ataport
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 0000C000
fffff880`0164a000 fffff880`01653000 dump_atapi.s
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00009000
fffff880`01653000 fffff880`01666000 dump_dumpfve
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00013000