Windows 7 BSoD on brand new computer

Andrew Crichton

New Member
I got a new computer built a while ago (just over a month ago I think) and since I've had it, I've been getting a lot of blue screens of death. it became too much so I took it to a computer repair shop and they decided the only way to fix it was to reformat it, and I got it back today but since then I've had tonnes of BSoD

sorry if I'm not doing this right, this is my first post
 

Attachments

  • Seven Forums.zip
    269.8 KB · Views: 446
  • cpuzmem.png
    cpuzmem.png
    29.7 KB · Views: 469
  • cpuzspd.png
    cpuzspd.png
    32.6 KB · Views: 464
050811-31247-01.dmp
BugCheck 4E, {99, 11d61, 2, b7148}
Probably caused by : memory_corruption ( nt!MiBadShareCount+4c )

050811-21606-01.dmp
BugCheck 4E, {2, 2ec01, 137fff, 1}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+11718 )

050811-23228-01.dmp
BugCheck A, {0, 2, 0, fffff80002c97194}
Probably caused by : aswSP.SYS ( aswSP+15383 )


1. Disable Driver Verifier.

2. Uninstall Avast:

avast! Uninstall Utility

Link Removed due to 404 Error

3. Attach:

- cpuz C P U screenshot
- Passmark RAMMon HTML.zip





CRASH DUMPS

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\050811-31247-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c5f000 PsLoadedModuleList = 0xfffff800`02ea4e90
Debug session time: Sun May  8 07:24:29.725 2011 (UTC - 4:00)
System Uptime: 0 days 0:37:01.943
Loading Kernel Symbols
...............................................................
................................................................
............................
Loading User Symbols
Loading unloaded module list
.........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 4E, {99, 11d61, 2, b7148}

Unable to load image \??\C:\Windows\system32\drivers\aswMonFlt.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for aswMonFlt.sys
*** ERROR: Module load completed but symbols could not be loaded for aswMonFlt.sys
Probably caused by : memory_corruption ( nt!MiBadShareCount+4c )

Followup: MachineOwner
---------

3: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

PFN_LIST_CORRUPT (4e)
Typically caused by drivers passing bad memory descriptor lists (ie: calling
MmUnlockPages twice with the same list, etc).  If a kernel debugger is
available get the stack trace.
Arguments:
Arg1: 0000000000000099, A PTE or PFN is corrupt
Arg2: 0000000000011d61, page frame number
Arg3: 0000000000000002, current page state
Arg4: 00000000000b7148, 0

Debugging Details:
------------------


BUGCHECK_STR:  0x4E_99

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  AvastSvc.exe

CURRENT_IRQL:  2

LAST_CONTROL_TRANSFER:  from fffff80002d64f5c to fffff80002cdf640

STACK_TEXT:  
fffff880`03ad7098 fffff800`02d64f5c : 00000000`0000004e 00000000`00000099 00000000`00011d61 00000000`00000002 : nt!KeBugCheckEx
fffff880`03ad70a0 fffff800`02c94fe8 : 00000000`0017f000 fffffa80`00361230 00000000`00000000 fffff880`03ad7368 : nt!MiBadShareCount+0x4c
fffff880`03ad70e0 fffff800`02ff0139 : fffff980`4c400000 fffff8a0`039e9490 fffff8a0`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x2ca47
fffff880`03ad73c0 fffff800`02d02e9b : 00000000`00140000 fffffa80`078a4040 00000000`00000000 00000000`00200000 : nt!CcUnmapVacb+0x5d
fffff880`03ad7400 fffff800`02cf55f9 : fffff980`26a50001 00000000`00200000 fffffa80`04169d00 fffffa80`03b62ba0 : nt!CcUnmapVacbArray+0x1bb
fffff880`03ad7490 fffff800`02fc9312 : 00000000`00000000 00000000`00200000 fffff880`03ad7560 fffff880`03ad75f0 : nt!CcGetVirtualAddress+0x38a
fffff880`03ad7520 fffff880`010d9f08 : fffff880`00000000 00000000`00000005 fffffa80`046e5810 fffffa80`00010001 : nt!CcCopyRead+0x132
fffff880`03ad75e0 fffff880`00c0c098 : fffffa80`06effb20 fffffa80`046e57a8 00000000`00000000 00000000`00000001 : Ntfs!NtfsCopyReadA+0x1a8
fffff880`03ad77c0 fffff880`00c0f8ba : fffff880`03ad78b8 fffffa80`06554003 fffff880`03ad7a00 00000000`00000000 : fltmgr!FltpPerformFastIoCall+0x88
fffff880`03ad7820 fffff880`00c1d1a0 : 00000000`00000004 00000000`00000000 fffffa80`06effb20 00000000`00000000 : fltmgr!FltpPassThroughFastIo+0xda
fffff880`03ad7860 fffff880`010072ae : fffffa80`06c4e8d0 fffff800`00000000 00000014`00000001 fffffa80`0766fcb0 : fltmgr!FltReadFile+0x260
fffff880`03ad7940 fffffa80`06c4e8d0 : fffff800`00000000 00000014`00000001 fffffa80`0766fcb0 fffff880`09a72000 : aswMonFlt+0x72ae
fffff880`03ad7948 fffff800`00000000 : 00000014`00000001 fffffa80`0766fcb0 fffff880`09a72000 00000000`00000004 : 0xfffffa80`06c4e8d0
fffff880`03ad7950 00000014`00000001 : fffffa80`0766fcb0 fffff880`09a72000 00000000`00000004 fffff880`03ad7a08 : 0xfffff800`00000000
fffff880`03ad7958 fffffa80`0766fcb0 : fffff880`09a72000 00000000`00000004 fffff880`03ad7a08 00000000`00000000 : 0x14`00000001
fffff880`03ad7960 fffff880`09a72000 : 00000000`00000004 fffff880`03ad7a08 00000000`00000000 00000000`00000000 : 0xfffffa80`0766fcb0
fffff880`03ad7968 00000000`00000004 : fffff880`03ad7a08 00000000`00000000 00000000`00000000 fffffa80`0005a0c0 : 0xfffff880`09a72000
fffff880`03ad7970 fffff880`03ad7a08 : 00000000`00000000 00000000`00000000 fffffa80`0005a0c0 00000004`00010000 : 0x4
fffff880`03ad7978 00000000`00000000 : 00000000`00000000 fffffa80`0005a0c0 00000004`00010000 fffff800`02d0412f : 0xfffff880`03ad7a08


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!MiBadShareCount+4c
fffff800`02d64f5c cc              int     3

SYMBOL_STACK_INDEX:  1

SYMBOL_NAME:  nt!MiBadShareCount+4c

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

DEBUG_FLR_IMAGE_TIMESTAMP:  4ce7951a

IMAGE_NAME:  memory_corruption

FAILURE_BUCKET_ID:  X64_0x4E_99_nt!MiBadShareCount+4c

BUCKET_ID:  X64_0x4E_99_nt!MiBadShareCount+4c

Followup: MachineOwner
---------




Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\050811-21606-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c1b000 PsLoadedModuleList = 0xfffff800`02e60e90
Debug session time: Sun May  8 06:46:34.035 2011 (UTC - 4:00)
System Uptime: 0 days 0:17:20.643
Loading Kernel Symbols
...............................................................
................................................................
...........................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 4E, {2, 2ec01, 137fff, 1}

Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+11718 )

Followup: MachineOwner
---------

3: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

PFN_LIST_CORRUPT (4e)
Typically caused by drivers passing bad memory descriptor lists (ie: calling
MmUnlockPages twice with the same list, etc).  If a kernel debugger is
available get the stack trace.
Arguments:
Arg1: 0000000000000002, A list entry was corrupt
Arg2: 000000000002ec01, entry in list being removed
Arg3: 0000000000137fff, highest physical page number
Arg4: 0000000000000001, reference count of entry being removed

Debugging Details:
------------------


BUGCHECK_STR:  0x4E_2

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  VSSVC.exe

CURRENT_IRQL:  2

LAST_CONTROL_TRANSFER:  from fffff80002c2fd38 to fffff80002c9b640

STACK_TEXT:  
fffff880`09d792a8 fffff800`02c2fd38 : 00000000`0000004e 00000000`00000002 00000000`0002ec01 00000000`00137fff : nt!KeBugCheckEx
fffff880`09d792b0 fffff800`02cdf1eb : 00000000`00000000 00000000`00000000 00000000`00000000 fffff8a0`03339c10 : nt! ?? ::FNODOBFM::`string'+0x11718
fffff880`09d79340 fffff800`02cddd38 : fffff8a0`03339010 fffff8a0`03339c10 fffffa80`06088590 fffffa80`06088590 : nt!MiFlushSectionInternal+0x6bb
fffff880`09d79570 fffff800`02cdd29c : 00000000`00000000 fffff980`0937f500 00000000`00000000 fffff880`012c21fa : nt!MmFlushSection+0x1f4
fffff880`09d79630 fffff880`012906d4 : fffffa80`06d8e778 00000000`00000000 fffff8a0`00000000 00000000`00000001 : nt!CcFlushCache+0x7bc
fffff880`09d79730 fffff880`012864e3 : 00000000`00000000 fffff8a0`02bdea80 00000000`00000000 00000000`00000001 : Ntfs!NtfsFlushUserStream+0xb4
fffff880`09d797b0 fffff880`0128efad : fffffa80`0491b640 fffffa80`04fd7180 00000000`00120101 00000000`00000000 : Ntfs!NtfsFlushVolume+0x2c7
fffff880`09d798e0 fffff880`0128f6b4 : fffffa80`0491b640 fffffa80`058c9c10 fffffa80`04268910 00000000`00000000 : Ntfs!NtfsCommonFlushBuffers+0x459
fffff880`09d799c0 fffff880`01098bcf : fffffa80`058c9fb0 fffffa80`058c9c10 fffffa80`0491b640 fffff880`09d799e8 : Ntfs!NtfsFsdFlushBuffers+0x104
fffff880`09d79a30 fffff880`010976df : fffffa80`04a6ea20 00000000`00000000 fffffa80`04a6ea00 fffffa80`058c9c10 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
fffff880`09d79ac0 fffff800`02fa371b : 00000000`00000002 fffffa80`04268910 00000000`00000000 fffffa80`058c9c10 : fltmgr!FltpDispatch+0xcf
fffff880`09d79b20 fffff800`02f3a871 : fffffa80`058c9c10 fffffa80`04022060 fffffa80`04268910 fffff880`009e9180 : nt!IopSynchronousServiceTail+0xfb
fffff880`09d79b90 fffff800`02c9a8d3 : fffffa80`04022060 00000000`ff932270 fffffa80`04a6ea20 fffffa80`04268910 : nt!NtFlushBuffersFile+0x171
fffff880`09d79c20 00000000`76e517ca : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`031cf288 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76e517ca


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt! ?? ::FNODOBFM::`string'+11718
fffff800`02c2fd38 cc              int     3

SYMBOL_STACK_INDEX:  1

SYMBOL_NAME:  nt! ?? ::FNODOBFM::`string'+11718

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4ce7951a

FAILURE_BUCKET_ID:  X64_0x4E_2_nt!_??_::FNODOBFM::_string_+11718

BUCKET_ID:  X64_0x4E_2_nt!_??_::FNODOBFM::_string_+11718

Followup: MachineOwner
---------



Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\050811-23228-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c01000 PsLoadedModuleList = 0xfffff800`02e46e90
Debug session time: Sun May  8 09:10:46.508 2011 (UTC - 4:00)
System Uptime: 0 days 0:00:54.116
Loading Kernel Symbols
...............................................................
......................
Loading User Symbols
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck A, {0, 2, 0, fffff80002c97194}

Unable to load image \SystemRoot\System32\Drivers\aswSP.SYS, Win32 error 0n2
*** WARNING: Unable to verify timestamp for aswSP.SYS
*** ERROR: Module load completed but symbols could not be loaded for aswSP.SYS
Probably caused by : aswSP.SYS ( aswSP+15383 )

Followup: MachineOwner
---------

3: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000000000000, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
	bit 0 : value 0 = read operation, 1 = write operation
	bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80002c97194, address which referenced memory

Debugging Details:
------------------


READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002eb20e8
 0000000000000000 

CURRENT_IRQL:  2

FAULTING_IP: 
nt!IopCompleteRequest+c64
fffff800`02c97194 488b09          mov     rcx,qword ptr [rcx]

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VERIFIER_ENABLED_VISTA_MINIDUMP

BUGCHECK_STR:  0xA

PROCESS_NAME:  System

IRP_ADDRESS:  ffffffffffffff88

TRAP_FRAME:  fffff880031ae8d0 -- (.trap 0xfffff880031ae8d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffff8a0002414f0
rdx=fffff88003f9e198 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800030b6fff rsp=fffff880031aea60 rbp=fffff8a0002414f0
 r8=fffff88003f9edb0  r9=0000000000000000 r10=0000000000000100
r11=fffff880031aea90 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl zr na po nc
nt!CmSetCallbackObjectContext+0x6f:
fffff800`030b6fff 740c            je      nt!CmSetCallbackObjectContext+0x7d (fffff800`030b700d) [br=1]
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff80002c80be9 to fffff80002c81640

STACK_TEXT:  
fffff880`031ae318 fffff800`02c80be9 : 00000000`0000000a 00000000`00000000 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`031ae320 fffff800`02c7f860 : 00000000`00000004 fffffa80`03afb200 fffff880`031ae1a0 fffff980`04a74ee0 : nt!KiBugCheckDispatch+0x69
fffff880`031ae460 fffff800`02c97194 : 00200000`030b7121 00000000`00000000 00000000`00000000 00001f80`00cb00f6 : nt!KiPageFault+0x260
fffff880`031ae5f0 fffff800`02c74cf7 : 00000000`00000000 fffff880`031ae910 fffff880`031ae600 fffff800`00000000 : nt!IopCompleteRequest+0xc64
fffff880`031ae6c0 fffff800`02c2e7d5 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDeliverApc+0x1c7
fffff880`031ae740 fffff800`02c9005c : fffff800`02e05ec0 fffff800`02e05ec0 fffffa80`03b8f1a0 00000000`00000001 : nt!KiCheckForKernelApcDelivery+0x25
fffff880`031ae770 fffff800`02c7f76e : 00000000`00000008 fffff800`030b7000 00000000`00000000 00000000`00000000 : nt!MmAccessFault+0x1a3c
fffff880`031ae8d0 fffff800`030b6fff : fffff880`031aea50 00000000`0000001d 00000000`00000010 fffff800`030b6f90 : nt!KiPageFault+0x16e
fffff880`031aea60 fffff880`03f72383 : 00000000`00000000 00000000`0000001d fffff880`031aec50 00000000`00000000 : nt!CmSetCallbackObjectContext+0x6f
fffff880`031aeab0 00000000`00000000 : 00000000`0000001d fffff880`031aec50 00000000`00000000 fffff8a0`00000000 : aswSP+0x15383


STACK_COMMAND:  kb

FOLLOWUP_IP: 
aswSP+15383
fffff880`03f72383 ??              ???

SYMBOL_STACK_INDEX:  9

SYMBOL_NAME:  aswSP+15383

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: aswSP

IMAGE_NAME:  aswSP.SYS

DEBUG_FLR_IMAGE_TIMESTAMP:  4dac7244

FAILURE_BUCKET_ID:  X64_0xA_VRF_aswSP+15383

BUCKET_ID:  X64_0xA_VRF_aswSP+15383

Followup: MachineOwner
---------





DRIVERS

Code:
start             end                 module name
fffff880`00ef0000 fffff880`00f47000   ACPI     ACPI.sys     Sat Nov 20 04:19:16 2010 (4CE79294)
fffff880`01000000 fffff880`01089000   afd      afd.sys      Sat Nov 20 04:23:27 2010 (4CE7938F)
fffff880`03fd0000 fffff880`03fe5000   amdppm   amdppm.sys   Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00ec0000 fffff880`00ecb000   amdxata  amdxata.sys  Fri Mar 19 12:18:18 2010 (4BA3A3CA)
fffff880`0457f000 fffff880`04589000   aswRdr   aswRdr.SYS   Mon Apr 18 13:13:23 2011 (4DAC7133)
fffff880`0441e000 fffff880`044b6000   aswSnx   aswSnx.SYS   Mon Apr 18 13:17:58 2011 (4DAC7246)
fffff880`03f5d000 fffff880`03faa000   aswSP    aswSP.SYS    Mon Apr 18 13:17:56 2011 (4DAC7244)
fffff880`0456f000 fffff880`0457f000   aswTdi   aswTdi.SYS   Mon Apr 18 13:16:21 2011 (4DAC71E5)
fffff880`00e8d000 fffff880`00e96000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00e96000 fffff880`00ec0000   ataport  ataport.SYS  Sat Nov 20 04:19:15 2010 (4CE79293)
fffff880`044bf000 fffff880`044c6000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03f4c000 fffff880`03f5d000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`01600000 fffff880`0162a000   cdrom    cdrom.sys    Sat Nov 20 04:19:20 2010 (4CE79298)
fffff880`00d2d000 fffff880`00ded000   CI       CI.dll       Sat Nov 20 08:12:36 2010 (4CE7C944)
fffff880`0198b000 fffff880`019bb000   CLASSPNP CLASSPNP.SYS Sat Nov 20 04:19:23 2010 (4CE7929B)
fffff880`00ccf000 fffff880`00d2d000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01148000 fffff880`011ba000   cng      cng.sys      Sat Nov 20 05:08:45 2010 (4CE79E2D)
fffff880`019bb000 fffff880`019c9000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03f2e000 fffff880`03f4c000   dfsc     dfsc.sys     Sat Nov 20 04:26:31 2010 (4CE79447)
fffff880`03f1f000 fffff880`03f2e000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`01975000 fffff880`0198b000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`019d5000 fffff880`019de000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`019c9000 fffff880`019d5000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`019de000 fffff880`019f1000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`0486d000 fffff880`04961000   dxgkrnl  dxgkrnl.sys  Sat Nov 20 04:50:50 2010 (4CE799FA)
fffff880`04961000 fffff880`049a7000   dxgmms1  dxgmms1.sys  Sat Nov 20 04:49:53 2010 (4CE799C1)
fffff880`010d6000 fffff880`010ea000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`0108a000 fffff880`010d6000   fltmgr   fltmgr.sys   Sat Nov 20 04:19:24 2010 (4CE7929C)
fffff880`013f2000 fffff880`013fc000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`0193b000 fffff880`01975000   fvevol   fvevol.sys   Sat Nov 20 04:24:06 2010 (4CE793B6)
fffff880`01848000 fffff880`01892000   fwpkclnt fwpkclnt.sys Sat Nov 20 04:21:37 2010 (4CE79321)
fffff800`031eb000 fffff800`03234000   hal      hal.dll      Sat Nov 20 08:00:25 2010 (4CE7C669)
fffff880`01932000 fffff880`0193b000   hwpolicy hwpolicy.sys Sat Nov 20 04:18:54 2010 (4CE7927E)
fffff800`00bac000 fffff800`00bb6000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`013c6000 fffff880`013e1000   ksecdd   ksecdd.sys   Sat Nov 20 04:21:15 2010 (4CE7930B)
fffff880`01400000 fffff880`0142b000   ksecpkg  ksecpkg.sys  Sat Nov 20 05:10:34 2010 (4CE79E9A)
fffff880`00cae000 fffff880`00cbb000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`00e73000 fffff880`00e8d000   mountmgr mountmgr.sys Sat Nov 20 04:19:21 2010 (4CE79299)
fffff880`04524000 fffff880`0452f000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00f50000 fffff880`00f5a000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`010ea000 fffff880`01148000   msrpc    msrpc.sys    Sat Nov 20 04:21:56 2010 (4CE79334)
fffff880`03f14000 fffff880`03f1f000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`01920000 fffff880`01932000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`01486000 fffff880`01579000   ndis     ndis.sys     Sat Nov 20 04:23:30 2010 (4CE79392)
fffff880`0162a000 fffff880`01639000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`04589000 fffff880`045ce000   netbt    netbt.sys    Sat Nov 20 04:23:18 2010 (4CE79386)
fffff880`01579000 fffff880`015d9000   NETIO    NETIO.SYS    Sat Nov 20 04:23:13 2010 (4CE79381)
fffff880`0452f000 fffff880`04540000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`03f08000 fffff880`03f14000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c01000 fffff800`031eb000   nt       ntkrnlmp.exe Sat Nov 20 04:30:02 2010 (4CE7951A)
fffff880`01223000 fffff880`013c6000   Ntfs     Ntfs.sys     Sat Nov 20 04:20:57 2010 (4CE792F9)
fffff880`044b6000 fffff880`044bf000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`13d9e000 fffff880`13d9f180   nvBridge nvBridge.kmd Tue Mar 16 03:26:37 2010 (4B9F32AD)
fffff880`13074000 fffff880`13d9d700   nvlddmkm nvlddmkm.sys Tue Mar 16 03:57:48 2010 (4B9F39FC)
fffff880`045d7000 fffff880`045fd000   pacer    pacer.sys    Sat Nov 20 05:52:18 2010 (4CE7A862)
fffff880`00f9a000 fffff880`00faf000   partmgr  partmgr.sys  Sat Nov 20 04:20:00 2010 (4CE792C0)
fffff880`00f5a000 fffff880`00f8d000   pci      pci.sys      Sat Nov 20 04:19:11 2010 (4CE7928F)
fffff880`00e5c000 fffff880`00e63000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00e63000 fffff880`00e73000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013e1000 fffff880`013f2000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`00cbb000 fffff880`00ccf000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`03eb7000 fffff880`03f08000   rdbss    rdbss.sys    Sat Nov 20 04:27:51 2010 (4CE79497)
fffff880`04509000 fffff880`04512000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`04512000 fffff880`0451b000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0451b000 fffff880`04524000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`018e6000 fffff880`01920000   rdyboost rdyboost.sys Sat Nov 20 04:43:10 2010 (4CE7982E)
fffff880`0142b000 fffff880`01448000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`018de000 fffff880`018e6000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`01644000 fffff880`01848000   tcpip    tcpip.sys    Sat Nov 20 04:25:52 2010 (4CE79420)
fffff880`04562000 fffff880`0456f000   TDI      TDI.SYS      Sat Nov 20 04:22:06 2010 (4CE7933E)
fffff880`04540000 fffff880`04562000   tdx      tdx.sys      Sat Nov 20 04:21:54 2010 (4CE79332)
fffff880`01463000 fffff880`01477000   termdd   termdd.sys   Sat Nov 20 06:03:40 2010 (4CE7AB0C)
fffff880`03faa000 fffff880`03fd0000   tunnel   tunnel.sys   Sat Nov 20 05:51:50 2010 (4CE7A846)
fffff880`00f8d000 fffff880`00f9a000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`044c6000 fffff880`044d4000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`044d4000 fffff880`044f9000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00faf000 fffff880`00fc4000   volmgr   volmgr.sys   Sat Nov 20 04:19:28 2010 (4CE792A0)
fffff880`00e00000 fffff880`00e5c000   volmgrx  volmgrx.sys  Sat Nov 20 04:20:43 2010 (4CE792EB)
fffff880`01892000 fffff880`018de000   volsnap  volsnap.sys  Sat Nov 20 04:20:08 2010 (4CE792C8)
fffff880`04400000 fffff880`04416000   vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
fffff880`01448000 fffff880`01463000   wanarp   wanarp.sys   Sat Nov 20 05:52:36 2010 (4CE7A874)
fffff880`044f9000 fffff880`04509000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00c00000 fffff880`00ca4000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00ded000 fffff880`00dfc000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`045ce000 fffff880`045d7000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`00f47000 fffff880`00f50000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
 
oops, forgot to mention that I used driver verifier to find out if it was drivers causing the problem, sorry

thanks so much for the help, I had a hunch that it was avast, but I was hoping I wouldn't have to uninstall it
 

Attachments

  • cpuzcpu.png
    cpuzcpu.png
    41.9 KB · Views: 417
  • RAMMon - SPD Info.zip
    2.8 KB · Views: 257
You needn't have mentioned about the driver verifier since I can spot it in your crash dumps. Once you enable it, the crashes become persistent.

~~~~~~~~

2 x VS2GB1333D4 1333 9-9-9-24 1.5v. Your settings look right but make sure it's 1.5v in the bios.
CPU - enable AMD Cool and Quiet,. load bios setup defaults.
 
:( Unfortunately you got yet another Memory Management 1a:

051011-18330-01.dmp
MEMORY_MANAGEMENT (1a)
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+6061 )


1. Update Broadcom 802.11 USB Network Adapter
Broadcom 802.11 USB Network Adapter


2. Load bios setup defaults


3. Run 10 passes of Memtest86+ - Advanced Memory Diagnostic Tool

Sometimes bad motherboard is the problem, and that's why it is recommended to test sticks by one in different slots.




CRASH DUMPS

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\051011-18330-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c5f000 PsLoadedModuleList = 0xfffff800`02ea4e90
Debug session time: Tue May 10 03:44:48.574 2011 (UTC - 4:00)
System Uptime: 0 days 2:20:26.792
Loading Kernel Symbols
...............................................................
................................................................
.........................
Loading User Symbols
Loading unloaded module list
.................
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1A, {411, fffff68000022038, ccd000003ed61886, fffff68000022019}

Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+6061 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

MEMORY_MANAGEMENT (1a)
    # Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000000411, The subtype of the bugcheck.
Arg2: fffff68000022038
Arg3: ccd000003ed61886
Arg4: fffff68000022019

Debugging Details:
------------------


BUGCHECK_STR:  0x1a_411

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  SearchIndexer.

CURRENT_IRQL:  2

LAST_CONTROL_TRANSFER:  from fffff80002cbc2dd to fffff80002cdf640

STACK_TEXT:  
fffff880`097f8628 fffff800`02cbc2dd : 00000000`0000001a 00000000`00000411 fffff680`00022038 ccd00000`3ed61886 : nt!KeBugCheckEx
fffff880`097f8630 fffff800`02d12502 : ccd00000`3ed61886 0000000f`ffffffff fffff680`00022038 c6800000`3f860886 : nt! ?? ::FNODOBFM::`string'+0x6061
fffff880`097f8680 fffff800`02d11627 : 00000000`00000000 fffff680`00022038 fffffa80`07275b30 00000000`00000000 : nt!MiDeletePteRun+0x618
fffff880`097f8830 fffff800`02d12fd9 : 00000000`00000000 00000000`0440ffff 00000000`00000000 fffff880`097f8b10 : nt!MiDeleteVirtualAddresses+0x41f
fffff880`097f89f0 fffff800`02ff6731 : fffffa80`06f93ae0 00000000`00000000 fffffa80`06f7a270 fffffa80`06f7a270 : nt!MiRemoveMappedView+0xd9
fffff880`097f8b10 fffff800`02ff6b33 : fffff880`00000000 00000000`04400000 fffffa80`00000001 fffff800`02e51e01 : nt!MiUnmapViewOfSection+0x1b1
fffff880`097f8bd0 fffff800`02cde8d3 : fffffa80`0750d660 00000000`00000000 fffffa80`07275b30 fffffa80`074bf460 : nt!NtUnmapViewOfSection+0x5f
fffff880`097f8c20 00000000`770d15ba : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`05949888 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x770d15ba


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt! ?? ::FNODOBFM::`string'+6061
fffff800`02cbc2dd cc              int     3

SYMBOL_STACK_INDEX:  1

SYMBOL_NAME:  nt! ?? ::FNODOBFM::`string'+6061

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4ce7951a

FAILURE_BUCKET_ID:  X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6061

BUCKET_ID:  X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6061

Followup: MachineOwner
---------





DRIVERS

Code:
start             end                 module name
fffff880`00eec000 fffff880`00f43000   ACPI     ACPI.sys     Sat Nov 20 04:19:16 2010 (4CE79294)
fffff880`0100d000 fffff880`01096000   afd      afd.sys      Sat Nov 20 04:23:27 2010 (4CE7938F)
fffff880`13000000 fffff880`13016000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`0406f000 fffff880`04084000   amdppm   amdppm.sys   Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00e2a000 fffff880`00e35000   amdxata  amdxata.sys  Fri Mar 19 12:18:18 2010 (4BA3A3CA)
fffff880`13dc5000 fffff880`13dcd000   ASACPI   ASACPI.sys   Wed Jul 15 23:31:29 2009 (4A5E9F11)
fffff880`089ea000 fffff880`089f5000   asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00ff1000 fffff880`00ffa000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00e00000 fffff880`00e2a000   ataport  ataport.SYS  Sat Nov 20 04:19:15 2010 (4CE79293)
fffff960`00860000 fffff960`008c1000   ATMFD    ATMFD.DLL    Sat Feb 19 04:00:32 2011 (4D5F86B0)
fffff880`01ea2000 fffff880`01f72000   bcmwlhigh664 bcmwlhigh664.sys Thu Nov 05 19:27:07 2009 (4AF36D5B)
fffff880`019e7000 fffff880`019ee000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`04038000 fffff880`04049000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`04778000 fffff880`04796000   bowser   bowser.sys   Tue Feb 22 23:55:04 2011 (4D649328)
fffff960`006d0000 fffff960`006f7000   cdd      cdd.dll      unavailable (00000000)
fffff880`0163e000 fffff880`0165b000   cdfs     cdfs.sys     Mon Jul 13 19:19:46 2009 (4A5BC112)
fffff880`01666000 fffff880`01690000   cdrom    cdrom.sys    Sat Nov 20 04:19:20 2010 (4CE79298)
fffff880`00ca5000 fffff880`00d65000   CI       CI.dll       Sat Nov 20 08:12:36 2010 (4CE7C944)
fffff880`01600000 fffff880`01630000   CLASSPNP CLASSPNP.SYS Sat Nov 20 04:19:23 2010 (4CE7929B)
fffff880`00c47000 fffff880`00ca5000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01166000 fffff880`011d8000   cng      cng.sys      Sat Nov 20 05:08:45 2010 (4CE79E2D)
fffff880`13de2000 fffff880`13df2000   CompositeBus CompositeBus.sys Sat Nov 20 05:33:17 2010 (4CE7A3ED)
fffff880`07cfb000 fffff880`07d04000   cpuz135_x64 cpuz135_x64.sys Tue Nov 09 08:33:36 2010 (4CD94DB0)
fffff880`01fab000 fffff880`01fb9000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`0401a000 fffff880`04038000   dfsc     dfsc.sys     Sat Nov 20 04:26:31 2010 (4CE79447)
fffff880`0400b000 fffff880`0401a000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`019c8000 fffff880`019de000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`03fc4000 fffff880`03fe6000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`01fc5000 fffff880`01fce000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01fb9000 fffff880`01fc5000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`01fce000 fffff880`01fe1000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`03fec000 fffff880`03ff8000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`02c72000 fffff880`02d66000   dxgkrnl  dxgkrnl.sys  Sat Nov 20 04:50:50 2010 (4CE799FA)
fffff880`02d66000 fffff880`02dac000   dxgmms1  dxgmms1.sys  Sat Nov 20 04:49:53 2010 (4CE799C1)
fffff880`010f4000 fffff880`01108000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`010a8000 fffff880`010f4000   fltmgr   fltmgr.sys   Sat Nov 20 04:19:24 2010 (4CE7929C)
fffff880`01200000 fffff880`0120a000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`0198e000 fffff880`019c8000   fvevol   fvevol.sys   Sat Nov 20 04:24:06 2010 (4CE793B6)
fffff880`0189b000 fffff880`018e5000   fwpkclnt fwpkclnt.sys Sat Nov 20 04:21:37 2010 (4CE79321)
fffff880`02c56000 fffff880`02c63000   GEARAspiWDM GEARAspiWDM.sys Mon May 18 08:17:04 2009 (4A1151C0)
fffff800`02c16000 fffff800`02c5f000   hal      hal.dll      Sat Nov 20 08:00:25 2010 (4CE7C669)
fffff880`02dac000 fffff880`02dd0000   HDAudBus HDAudBus.sys Sat Nov 20 05:43:42 2010 (4CE7A65E)
fffff880`03f2b000 fffff880`03f87000   HdAudio  HdAudio.sys  Sat Nov 20 05:44:23 2010 (4CE7A687)
fffff880`03e2d000 fffff880`03e46000   HIDCLASS HIDCLASS.SYS Sat Nov 20 05:43:49 2010 (4CE7A665)
fffff880`03e46000 fffff880`03e4e080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`03e1f000 fffff880`03e2d000   hidusb   hidusb.sys   Sat Nov 20 05:43:49 2010 (4CE7A665)
fffff880`046af000 fffff880`04778000   HTTP     HTTP.sys     Sat Nov 20 04:24:30 2010 (4CE793CE)
fffff880`01985000 fffff880`0198e000   hwpolicy hwpolicy.sys Sat Nov 20 04:18:54 2010 (4CE7927E)
fffff880`01096000 fffff880`010a5000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`01630000 fffff880`0163e000   kbdhid   kbdhid.sys   Sat Nov 20 05:33:25 2010 (4CE7A3F5)
fffff800`00bb4000 fffff800`00bbe000   kdcom    kdcom.dll    Sat Feb 05 11:52:49 2011 (4D4D8061)
fffff880`03e67000 fffff880`03eaa000   ks       ks.sys       Sat Nov 20 05:33:23 2010 (4CE7A3F3)
fffff880`013d1000 fffff880`013ec000   ksecdd   ksecdd.sys   Sat Nov 20 04:21:15 2010 (4CE7930B)
fffff880`01460000 fffff880`0148b000   ksecpkg  ksecpkg.sys  Sat Nov 20 05:10:34 2010 (4CE79E9A)
fffff880`03fe6000 fffff880`03feb200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`0461c000 fffff880`04631000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`01e00000 fffff880`01e23000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00c26000 fffff880`00c33000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`01f9d000 fffff880`01fab000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`03e56000 fffff880`03e65000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`01f90000 fffff880`01f9d000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00fd7000 fffff880`00ff1000   mountmgr mountmgr.sys Sat Nov 20 04:19:21 2010 (4CE79299)
fffff880`0148b000 fffff880`014bc000   MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
fffff880`04796000 fffff880`047ae000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`047ae000 fffff880`047db000   mrxsmb   mrxsmb.sys   Tue Feb 22 23:56:22 2011 (4D649376)
fffff880`07c8a000 fffff880`07cd7000   mrxsmb10 mrxsmb10.sys Tue Feb 22 23:55:12 2011 (4D649330)
fffff880`07cd7000 fffff880`07cfb000   mrxsmb20 mrxsmb20.sys Tue Feb 22 23:55:12 2011 (4D649330)
fffff880`0120a000 fffff880`01215000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00f4c000 fffff880`00f56000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`01108000 fffff880`01166000   msrpc    msrpc.sys    Sat Nov 20 04:21:56 2010 (4CE79334)
fffff880`04000000 fffff880`0400b000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`01973000 fffff880`01985000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`014bc000 fffff880`015af000   ndis     ndis.sys     Sat Nov 20 04:23:30 2010 (4CE79392)
fffff880`13df2000 fffff880`13dfe000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`04684000 fffff880`04697000   ndisuio  ndisuio.sys  Sat Nov 20 05:50:08 2010 (4CE7A7E0)
fffff880`04084000 fffff880`040b3000   ndiswan  ndiswan.sys  Sat Nov 20 05:52:32 2010 (4CE7A870)
fffff880`03f16000 fffff880`03f2b000   NDProxy  NDProxy.SYS  Sat Nov 20 05:52:20 2010 (4CE7A864)
fffff880`04145000 fffff880`04154000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`040bb000 fffff880`04100000   netbt    netbt.sys    Sat Nov 20 04:23:18 2010 (4CE79386)
fffff880`01400000 fffff880`01460000   NETIO    NETIO.SYS    Sat Nov 20 04:23:13 2010 (4CE79381)
fffff880`08964000 fffff880`08979000   NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149)
fffff880`01215000 fffff880`01226000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`041f1000 fffff880`041fd000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c5f000 fffff800`03249000   nt       ntkrnlmp.exe Sat Nov 20 04:30:02 2010 (4CE7951A)
fffff880`0122e000 fffff880`013d1000   Ntfs     Ntfs.sys     Sat Nov 20 04:20:57 2010 (4CE792F9)
fffff880`019de000 fffff880`019e7000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`13d6d000 fffff880`13d6e180   nvBridge nvBridge.kmd Tue Mar 16 03:26:37 2010 (4B9F32AD)
fffff880`13043000 fffff880`13d6c700   nvlddmkm nvlddmkm.sys Tue Mar 16 03:57:48 2010 (4B9F39FC)
fffff880`04631000 fffff880`04684000   nwifi    nwifi.sys    Mon Jul 13 20:07:23 2009 (4A5BCC3B)
fffff880`04109000 fffff880`0412f000   pacer    pacer.sys    Sat Nov 20 05:52:18 2010 (4CE7A862)
fffff880`02de1000 fffff880`02dfe000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00f96000 fffff880`00fab000   partmgr  partmgr.sys  Sat Nov 20 04:20:00 2010 (4CE792C0)
fffff880`00f56000 fffff880`00f89000   pci      pci.sys      Sat Nov 20 04:19:11 2010 (4CE7928F)
fffff880`00fc0000 fffff880`00fc7000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00fc7000 fffff880`00fd7000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013ec000 fffff880`013fd000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`07d04000 fffff880`07daa000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`03f87000 fffff880`03fc4000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c33000 fffff880`00c47000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`13016000 fffff880`1303a000   rasl2tp  rasl2tp.sys  Sat Nov 20 05:52:34 2010 (4CE7A872)
fffff880`00dc1000 fffff880`00ddc000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`00ddc000 fffff880`00dfd000   raspptp  raspptp.sys  Sat Nov 20 05:52:31 2010 (4CE7A86F)
fffff880`00c00000 fffff880`00c1a000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`041a0000 fffff880`041f1000   rdbss    rdbss.sys    Sat Nov 20 04:27:51 2010 (4CE79497)
fffff880`015e4000 fffff880`015ed000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`015ed000 fffff880`015f6000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`015f6000 fffff880`015ff000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`01939000 fffff880`01973000   rdyboost rdyboost.sys Sat Nov 20 04:43:10 2010 (4CE7982E)
fffff880`04697000 fffff880`046af000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`02c00000 fffff880`02c56000   Rt64win7 Rt64win7.sys Wed Jun 23 05:10:45 2010 (4C21CF95)
fffff880`07daa000 fffff880`07db5000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`13dcd000 fffff880`13dd9000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`04154000 fffff880`04171000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`01931000 fffff880`01939000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`088cc000 fffff880`08964000   srv      srv.sys      Tue Feb 22 23:56:21 2011 (4D649375)
fffff880`07c00000 fffff880`07c6a000   srv2     srv2.sys     Tue Feb 22 23:56:00 2011 (4D649360)
fffff880`07db5000 fffff880`07de6000   srvnet   srvnet.sys   Tue Feb 22 23:55:44 2011 (4D649350)
fffff880`03e65000 fffff880`03e66480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01697000 fffff880`0189b000   tcpip    tcpip.sys    Sat Nov 20 04:25:52 2010 (4CE79420)
fffff880`07de6000 fffff880`07df8000   tcpipreg tcpipreg.sys Sat Nov 20 05:51:48 2010 (4CE7A844)
fffff880`01000000 fffff880`0100d000   TDI      TDI.SYS      Sat Nov 20 04:22:06 2010 (4CE7933E)
fffff880`011d8000 fffff880`011fa000   tdx      tdx.sys      Sat Nov 20 04:21:54 2010 (4CE79332)
fffff880`0418c000 fffff880`041a0000   termdd   termdd.sys   Sat Nov 20 06:03:40 2010 (4CE7AB0C)
fffff960`00490000 fffff960`0049a000   TSDDD    TSDDD.dll    Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`04049000 fffff880`0406f000   tunnel   tunnel.sys   Sat Nov 20 05:51:50 2010 (4CE7A846)
fffff880`03eaa000 fffff880`03ebc000   umbus    umbus.sys    Sat Nov 20 05:44:37 2010 (4CE7A695)
fffff880`08860000 fffff880`08871000   usbaapl64 usbaapl64.sys Fri Feb 11 13:13:08 2011 (4D557C34)
fffff880`03e00000 fffff880`03e1d000   usbccgp  usbccgp.sys  Sat Nov 20 05:44:03 2010 (4CE7A673)
fffff880`03e1d000 fffff880`03e1ef00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`02dd0000 fffff880`02de1000   usbehci  usbehci.sys  Sat Nov 20 05:43:54 2010 (4CE7A66A)
fffff880`03ebc000 fffff880`03f16000   usbhub   usbhub.sys   Sat Nov 20 05:44:30 2010 (4CE7A68E)
fffff880`02c63000 fffff880`02c6e000   usbohci  usbohci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`13d6f000 fffff880`13dc5000   USBPORT  USBPORT.SYS  Sat Nov 20 05:44:00 2010 (4CE7A670)
fffff880`01e87000 fffff880`01ea2000   USBSTOR  USBSTOR.SYS  Sat Nov 20 05:44:05 2010 (4CE7A675)
fffff880`00f89000 fffff880`00f96000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`019ee000 fffff880`019fc000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`015af000 fffff880`015d4000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00fab000 fffff880`00fc0000   volmgr   volmgr.sys   Sat Nov 20 04:19:28 2010 (4CE792A0)
fffff880`00d65000 fffff880`00dc1000   volmgrx  volmgrx.sys  Sat Nov 20 04:20:43 2010 (4CE792EB)
fffff880`018e5000 fffff880`01931000   volsnap  volsnap.sys  Sat Nov 20 04:20:08 2010 (4CE792C8)
fffff880`08871000 fffff880`0887e000   vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
fffff880`0412f000 fffff880`04145000   vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
fffff880`04171000 fffff880`0418c000   wanarp   wanarp.sys   Sat Nov 20 05:52:36 2010 (4CE7A874)
fffff880`015d4000 fffff880`015e4000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00e39000 fffff880`00edd000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00edd000 fffff880`00eec000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`04100000 fffff880`04109000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`00050000 fffff960`00362000   win32k   win32k.sys   Wed Mar 02 22:51:40 2011 (4D6F104C)
fffff880`0887e000 fffff880`0888f000   WinUsb   WinUsb.sys   Sat Nov 20 05:43:56 2010 (4CE7A66C)
fffff880`13dd9000 fffff880`13de2000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00f43000 fffff880`00f4c000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`01e23000 fffff880`01e44000   WudfPf   WudfPf.sys   Sat Nov 20 05:42:44 2010 (4CE7A624)
fffff880`0888f000 fffff880`088c0000   WUDFRd   WUDFRd.sys   Sat Nov 20 05:43:32 2010 (4CE7A654)

Unloaded modules:
fffff880`08800000 fffff880`08811000   usbaapl64.sy
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00011000
fffff880`0882f000 fffff880`08860000   WUDFRd.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00031000
fffff880`0881e000 fffff880`0882f000   WinUsb.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00011000
fffff880`08811000 fffff880`0881e000   vwifibus.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000D000
fffff880`01ea2000 fffff880`01f72000   bcmwlhigh664
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  000D0000
fffff880`01f7f000 fffff880`01f90000   usbaapl64.sy
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00011000
fffff880`01e44000 fffff880`01e75000   WUDFRd.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00031000
fffff880`01fe1000 fffff880`01ff2000   WinUsb.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00011000
fffff880`01f72000 fffff880`01f7f000   vwifibus.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000D000
fffff880`01ea2000 fffff880`01f72000   bcmwlhigh664
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  000D0000
fffff880`08979000 fffff880`089ea000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00071000
fffff880`01e44000 fffff880`01e55000   WinUsb.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00011000
fffff880`01e55000 fffff880`01e86000   WUDFRd.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00031000
fffff880`01630000 fffff880`0163e000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`0163e000 fffff880`0164a000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000C000
fffff880`0164a000 fffff880`01653000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00009000
fffff880`01653000 fffff880`01666000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00013000
 
Back
Top