BSOD Windows 7 64-bit - 3 BSODs after six months stable operation

Discussion in 'Windows 7 Blue Screen of Death (BSOD)' started by Puluke, Mar 7, 2011.

  1. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    All drivers updated to latest versions, memory and HDD tests run for many hours with no errors.

    However, 4 more BSODs since last report, three of them just this afternoon.

    Wondering whether starting over with new HDD with new Windows 7 install would help, or whether root cause may be undetected issue in memory or other hardware components.

    Very frustrating! BTW, can't see how to delete files previously uploaded in FILE UPLOAD MANAGER...
    This is preventing uploading the latest SF Diags zip file... thanks in advance for any help.

    View attachment 12386View attachment 12387View attachment 12388View attachment 12389
     
    #21 Puluke, Mar 20, 2011
    Last edited: Mar 20, 2011
  2. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    The "root" cause is OVERCLOCKING ---> Core i5 M540 @2,53, and yours is 2,93Ghz at the moment.


    SET ALL CLOCKS, VOLTAGES, TIMINGS, MULTIPLIERS EXACTLY AS RECOMMENDED BY THE MANUFACTURER.


    [​IMG]
     
  3. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    I've done nothing (explicitly) to "over-clock" my processor. Maybe there's some power management or related setting that should be adjusted downwards??
     
  4. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321

    Yeah, it's probably the Turbo Boost feature in your bios, so disable it.
     
  5. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    OK, I updated the BIOS Power --> Adaptive Thermal Management --> Scheme for AC setting from "Maximize Performance" (which "Reduces CPU throttling") to "Balanced", and also updated the ThinkPad Power Manager --> System Settings --> AC: Maximum CPU Speed from "Highest" to "Low". "Adaptive" may be OK, too, but I'll wait to see whether this may alleviate the BSOD problems. Perhaps the whole problem was related to Thermal overload when the Core i5 went into its Turbo Boost mode.

    Thanks.
     
  6. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321

    You're doing it the right way, thanks for updating. Check your CPU-Z CPU tab to see how you're doing. The frequency is definitely supposed to go down at idle. For now, it must not exceed the stock value of 2,53.
     
  7. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    As previously noted, I changed BIOS and Power Management settings to limit Max CPU performance Turbo Boost which may have been causing thermal issues when Core i5 540 was using its standard operation turbo boost functionality.

    Two days of relatively stable operation, followed by another BSOD today (System Service Exception in nPfs.sys). :(

    Thanks in advance for any further suggestions.

    View attachment 2011-03-24 Seven Forums.zipView attachment 2011-03-24 DriverView output.pdf 2011-03-24 CPU-Z CPU tab.
     
  8. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    Analysis of your latest crash dump shows that you have both Eset and MSE. Uninstall either one of them.

    MpFilter.sys Tue Sep 14 20:19:28 2010
    eamonm.sys Wed Mar 24 15:18:28 2010

    ~~~~~~~~~~~~~


    Uninstall Intel Turbo Boost
    TurboB.sys Tue Sep 29 20:25:28 2009


    ~~~~~~~~~~~~~


    Update drivers:

    Intel Management Engine Interface
    HECIx64.sys Thu Sep 17 15:54:16 2009
    Intel® Driver Update Utility

    Intel Matrix Storage Manager
    iaStor.sys Fri Nov 20 18:09:41 2009
    Intel® Driver Update Utility

    Lenovo ThinkPad Power Management
    ibmpmdrv.sys Tue Nov 17 22:13:20 2009

    Fingerprint
    smihlp.sys Fri Mar 13 08:47:32 2009

    Lenovo SMBUS Driver
    Tvti2c.sys Thu Sep 24 07:56:38 2009





    CRASH DUMPS

    Code:
    
    Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [F:\DMP\032411-21793-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
    Machine Name:
    Kernel base = 0xfffff800`02e15000 PsLoadedModuleList = 0xfffff800`0305ae90
    Debug session time: Thu Mar 24 10:01:58.550 2011 (UTC - 4:00)
    System Uptime: 0 days 0:37:11.252
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ................................................
    Loading User Symbols
    Loading unloaded module list
    .........
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 3B, {c0000005, fffff880043b68a3, fffff88002840f90, 0}
    
    Probably caused by : Npfs.SYS ( Npfs!NpSetClosingPipeState+1b3 )
    
    Followup: MachineOwner
    ---------
    
    2: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    SYSTEM_SERVICE_EXCEPTION (3b)
    An exception happened while executing a system service routine.
    Arguments:
    Arg1: 00000000c0000005, Exception code that caused the bugcheck
    Arg2: fffff880043b68a3, Address of the instruction which caused the bugcheck
    Arg3: fffff88002840f90, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    
    Debugging Details:
    ------------------
    
    
    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
    
    FAULTING_IP: 
    Npfs!NpSetClosingPipeState+1b3
    fffff880`043b68a3 48895008        mov     qword ptr [rax+8],rdx
    
    CONTEXT:  fffff88002840f90 -- (.cxr 0xfffff88002840f90)
    rax=0000000000001000 rbx=fffff8a00da0a120 rcx=fffff8a00da0a1b8
    rdx=fffff8a00da0a1c8 rsi=fffff880028419d0 rdi=fffffa80094ebc10
    rip=fffff880043b68a3 rsp=fffff88002841970 rbp=fffff88002841a08
     r8=0000000000000002  r9=fffff88002841a08 r10=fffffa8003b87c70
    r11=fffff880028419a8 r12=0000000000000001 r13=fffffa8006f85530
    r14=000000000280ee00 r15=fffff8a0062f3610
    iopl=0         nv up ei ng nz na po cy
    cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010287
    Npfs!NpSetClosingPipeState+0x1b3:
    fffff880`043b68a3 48895008        mov     qword ptr [rax+8],rdx ds:002b:00000000`00001008=????????????????
    Resetting default scope
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    BUGCHECK_STR:  0x3B
    
    PROCESS_NAME:  chrome.exe
    
    CURRENT_IRQL:  0
    
    LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff880043b68a3
    
    STACK_TEXT:  
    fffff880`02841970 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : Npfs!NpSetClosingPipeState+0x1b3
    
    
    FOLLOWUP_IP: 
    Npfs!NpSetClosingPipeState+1b3
    fffff880`043b68a3 48895008        mov     qword ptr [rax+8],rdx
    
    SYMBOL_STACK_INDEX:  0
    
    SYMBOL_NAME:  Npfs!NpSetClosingPipeState+1b3
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: Npfs
    
    IMAGE_NAME:  Npfs.SYS
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bc114
    
    STACK_COMMAND:  .cxr 0xfffff88002840f90 ; kb
    
    FAILURE_BUCKET_ID:  X64_0x3B_Npfs!NpSetClosingPipeState+1b3
    
    BUCKET_ID:  X64_0x3B_Npfs!NpSetClosingPipeState+1b3
    
    Followup: MachineOwner
    ---------
    
    
    
    




    DRIVERS

    Code:
    start             end                 module name
    fffff880`00f8a000 fffff880`00fe1000   ACPI     ACPI.sys     Sat Nov 20 04:19:16 2010 (4CE79294)
    fffff880`0401b000 fffff880`040a4000   afd      afd.sys      Sat Nov 20 04:23:27 2010 (4CE7938F)
    fffff880`04600000 fffff880`04616000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
    fffff880`01227000 fffff880`01232000   amdxata  amdxata.sys  Fri Mar 19 12:18:18 2010 (4BA3A3CA)
    fffff880`01ac2000 fffff880`01acc000   ApsHM64  ApsHM64.sys  Sun Jun 13 22:32:19 2010 (4C1594B3)
    fffff880`01b0e000 fffff880`01b33000   Apsx64   Apsx64.sys   Sun Jun 13 22:40:09 2010 (4C159689)
    fffff960`00920000 fffff960`00981000   ATMFD    ATMFD.DLL    Fri Jan 07 04:20:44 2011 (4D26DAEC)
    fffff880`00ff4000 fffff880`01000000   BATTC    BATTC.SYS    Mon Jul 13 19:31:01 2009 (4A5BC3B5)
    fffff880`0433b000 fffff880`04342000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
    fffff880`04529000 fffff880`0453a000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
    fffff880`03b8f000 fffff880`03bad000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
    fffff880`06298000 fffff880`062cf000   bpenum   bpenum.sys   Tue Sep 15 15:44:56 2009 (4AAFEEB8)
    fffff880`07c7b000 fffff880`07cad000   bpmp     bpmp.sys     Tue Sep 15 15:45:06 2009 (4AAFEEC2)
    fffff880`07c61000 fffff880`07c7b000   bpusb    bpusb.sys    Tue Sep 15 15:44:59 2009 (4AAFEEBB)
    fffff880`07d0a000 fffff880`07dd5000   CAX_CNXT CAX_CNXT.sys Tue Jun 30 15:59:52 2009 (4A4A6EB8)
    fffff880`07a1d000 fffff880`07b91000   CAX_DPV  CAX_DPV.sys  Tue Jun 30 16:05:11 2009 (4A4A6FF7)
    fffff880`07cb8000 fffff880`07d0a000   CAXHWAZL CAXHWAZL.sys Tue Jun 30 16:01:14 2009 (4A4A6F0A)
    fffff960`007b0000 fffff960`007d7000   cdd      cdd.dll      Sat Nov 20 07:55:34 2010 (4CE7C546)
    fffff880`0633e000 fffff880`063e8000   CHDRT64  CHDRT64.sys  Thu Aug 26 04:45:24 2010 (4C7629A4)
    fffff880`00eca000 fffff880`00f8a000   CI       CI.dll       Sat Nov 20 08:12:36 2010 (4CE7C944)
    fffff880`01b9e000 fffff880`01bce000   CLASSPNP CLASSPNP.SYS Sat Nov 20 04:19:23 2010 (4CE7929B)
    fffff880`00ce6000 fffff880`00d44000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`047a8000 fffff880`047ac500   CmBatt   CmBatt.sys   Mon Jul 13 19:31:03 2009 (4A5BC3B7)
    fffff880`012fd000 fffff880`0136f000   cng      cng.sys      Sat Nov 20 05:08:45 2010 (4CE79E2D)
    fffff880`00ec0000 fffff880`00ec9000   compbatt compbatt.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6)
    fffff880`047e9000 fffff880`047f9000   CompositeBus CompositeBus.sys Sat Nov 20 05:33:17 2010 (4CE7A3ED)
    fffff880`0a351000 fffff880`0a35a000   cpuz135_x64 cpuz135_x64.sys Wed Jan 19 11:42:06 2011 (4D37145E)
    fffff880`07c1f000 fffff880`07c2d000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
    fffff880`04488000 fffff880`0450b000   csc      csc.sys      Sat Nov 20 04:27:12 2010 (4CE79470)
    fffff880`0450b000 fffff880`04529000   dfsc     dfsc.sys     Sat Nov 20 04:26:31 2010 (4CE79447)
    fffff880`01441000 fffff880`01450000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
    fffff880`01b88000 fffff880`01b9e000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`0444a000 fffff880`0446c000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
    fffff880`07c2d000 fffff880`07c40000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
    fffff880`040bb000 fffff880`042c3000   dump_iaStor dump_iaStor.sys Fri Nov 20 18:09:41 2009 (4B0721B5)
    fffff880`07dee000 fffff880`07dfa000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
    fffff880`02e8f000 fffff880`02f83000   dxgkrnl  dxgkrnl.sys  Sat Nov 20 04:50:50 2010 (4CE799FA)
    fffff880`02f83000 fffff880`02fc9000   dxgmms1  dxgmms1.sys  Sat Nov 20 04:49:53 2010 (4CE799C1)
    fffff880`0142c000 fffff880`01437000   DzHDD64  DzHDD64.sys  Thu Oct 14 20:32:33 2010 (4CB7A121)
    fffff880`02e00000 fffff880`02e4a000   e1k62x64 e1k62x64.sys Thu Jul 22 13:39:07 2010 (4C48823B)
    fffff880`02472000 fffff880`0255a000   eamonm   eamonm.sys   Wed Mar 24 15:18:28 2010 (4BAA6584)
    fffff880`0127e000 fffff880`01292000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
    fffff880`01232000 fffff880`0127e000   fltmgr   fltmgr.sys   Sat Nov 20 04:19:24 2010 (4CE7929C)
    fffff880`01437000 fffff880`01441000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
    fffff880`01b4e000 fffff880`01b88000   fvevol   fvevol.sys   Sat Nov 20 04:24:06 2010 (4CE793B6)
    fffff880`01a1c000 fffff880`01a66000   fwpkclnt fwpkclnt.sys Sat Nov 20 04:21:37 2010 (4CE79321)
    fffff800`033ff000 fffff800`03448000   hal      hal.dll      Sat Nov 20 08:00:25 2010 (4CE7C669)
    fffff880`02e5b000 fffff880`02e7f000   HDAudBus HDAudBus.sys Sat Nov 20 05:43:42 2010 (4CE7A65E)
    fffff880`02fc9000 fffff880`02fda000   HECIx64  HECIx64.sys  Thu Sep 17 15:54:16 2009 (4AB293E8)
    fffff880`07dd5000 fffff880`07dee000   HIDCLASS HIDCLASS.SYS Sat Nov 20 05:43:49 2010 (4CE7A665)
    fffff880`07a0e000 fffff880`07a16080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
    fffff880`07a00000 fffff880`07a0e000   hidusb   hidusb.sys   Sat Nov 20 05:43:49 2010 (4CE7A665)
    fffff880`03ac6000 fffff880`03b8f000   HTTP     HTTP.sys     Sat Nov 20 04:24:30 2010 (4CE793CE)
    fffff880`01b45000 fffff880`01b4e000   hwpolicy hwpolicy.sys Sat Nov 20 04:18:54 2010 (4CE7927E)
    fffff880`055b8000 fffff880`055d6000   i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`0101f000 fffff880`01227000   iaStor   iaStor.sys   Fri Nov 20 18:09:41 2009 (4B0721B5)
    fffff880`047ad000 fffff880`047b9000   ibmpmdrv ibmpmdrv.sys Tue Nov 17 22:13:20 2009 (4B036650)
    fffff880`04a08000 fffff880`055b7420   igdkmd64 igdkmd64.sys Mon Nov 29 00:23:11 2010 (4CF338BF)
    fffff880`047b9000 fffff880`047dfd00   Impcd    Impcd.sys    Fri Feb 26 18:32:11 2010 (4B8859FB)
    fffff880`07ba0000 fffff880`07bf3000   IntcDAud IntcDAud.sys Fri Oct 15 04:28:17 2010 (4CB810A1)
    fffff880`04560000 fffff880`04576000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
    fffff880`061ef000 fffff880`061fe000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff800`00bcd000 fffff800`00bd7000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
    fffff880`06243000 fffff880`06286000   ks       ks.sys       Sat Nov 20 05:33:23 2010 (4CE7A3F3)
    fffff880`01400000 fffff880`0141b000   ksecdd   ksecdd.sys   Sat Nov 20 04:21:15 2010 (4CE7930B)
    fffff880`01660000 fffff880`0168b000   ksecpkg  ksecpkg.sys  Sat Nov 20 05:10:34 2010 (4CE79E9A)
    fffff880`0623d000 fffff880`06242200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
    fffff880`025c4000 fffff880`025d9000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`013db000 fffff880`013fe000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
    fffff880`00c83000 fffff880`00cd2000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Sat Nov 20 08:03:51 2010 (4CE7C737)
    fffff880`03a7b000 fffff880`03a7f280   mdmxsdk  mdmxsdk.sys  Mon Jun 19 17:27:26 2006 (449716BE)
    fffff880`07b91000 fffff880`07ba0000   modem    modem.sys    Mon Jul 13 20:10:48 2009 (4A5BCD08)
    fffff880`07c11000 fffff880`07c1f000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
    fffff880`0478a000 fffff880`04799000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff880`07bf3000 fffff880`07c00000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
    fffff880`00c00000 fffff880`00c1a000   mountmgr mountmgr.sys Sat Nov 20 04:19:21 2010 (4CE79299)
    fffff880`04301000 fffff880`04332000   MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
    fffff880`03a80000 fffff880`03a90000   MpNWMon  MpNWMon.sys  Tue Sep 14 20:19:30 2010 (4C901112)
    fffff880`03bad000 fffff880`03bc5000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
    fffff880`03bc5000 fffff880`03bf2000   mrxsmb   mrxsmb.sys   Sat Nov 20 04:27:41 2010 (4CE7948D)
    fffff880`03a00000 fffff880`03a4d000   mrxsmb10 mrxsmb10.sys Sat Nov 20 04:26:53 2010 (4CE7945D)
    fffff880`03a4d000 fffff880`03a71000   mrxsmb20 mrxsmb20.sys Sat Nov 20 04:26:47 2010 (4CE79457)
    fffff880`043a0000 fffff880`043ab000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`00fea000 fffff880`00ff4000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
    fffff880`0129f000 fffff880`012fd000   msrpc    msrpc.sys    Sat Nov 20 04:21:56 2010 (4CE79334)
    fffff880`017e8000 fffff880`017f3000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
    fffff880`01b33000 fffff880`01b45000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
    fffff880`016f5000 fffff880`017e8000   ndis     ndis.sys     Sat Nov 20 04:23:30 2010 (4CE79392)
    fffff880`04616000 fffff880`04622000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
    fffff880`02453000 fffff880`02466000   ndisuio  ndisuio.sys  Sat Nov 20 05:50:08 2010 (4CE7A7E0)
    fffff880`045cc000 fffff880`045fb000   ndiswan  ndiswan.sys  Sat Nov 20 05:52:32 2010 (4CE7A870)
    fffff880`06329000 fffff880`0633e000   NDProxy  NDProxy.SYS  Sat Nov 20 05:52:20 2010 (4CE7A864)
    fffff880`04000000 fffff880`0401b000   NEOFLTR_700_17289 NEOFLTR_700_17289.SYS Thu Dec 16 14:39:48 2010 (4D0A6B04)
    fffff880`043eb000 fffff880`043fa000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff880`0168b000 fffff880`016d0000   netbt    netbt.sys    Sat Nov 20 04:23:18 2010 (4CE79386)
    fffff880`01600000 fffff880`01660000   NETIO    NETIO.SYS    Sat Nov 20 04:23:13 2010 (4CE79381)
    fffff880`05a0f000 fffff880`061e2000   NETwNs64 NETwNs64.sys Mon Oct 18 05:21:28 2010 (4CBC1198)
    fffff880`0a33c000 fffff880`0a351000   NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149)
    fffff880`043ab000 fffff880`043bc000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`01bf2000 fffff880`01bfe000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
    fffff800`02e15000 fffff800`033ff000   nt       ntkrnlmp.exe Sat Nov 20 04:30:02 2010 (4CE7951A)
    fffff880`01457000 fffff880`015fa000   Ntfs     Ntfs.sys     Sat Nov 20 04:20:57 2010 (4CE792F9)
    fffff880`04332000 fffff880`0433b000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
    fffff880`02400000 fffff880`02453000   nwifi    nwifi.sys    Mon Jul 13 20:07:23 2009 (4A5BCC3B)
    fffff880`042d7000 fffff880`042fd000   pacer    pacer.sys    Sat Nov 20 05:52:18 2010 (4CE7A862)
    fffff880`00d77000 fffff880`00d8c000   partmgr  partmgr.sys  Sat Nov 20 04:20:00 2010 (4CE792C0)
    fffff880`00d44000 fffff880`00d77000   pci      pci.sys      Sat Nov 20 04:19:11 2010 (4CE7928F)
    fffff880`0141b000 fffff880`0142c000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
    fffff880`08ef9000 fffff880`08f9f000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
    fffff880`06200000 fffff880`0623d000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`02e7f000 fffff880`02e8d000   psadd    psadd.sys    Wed Jul 01 22:17:26 2009 (4A4C18B6)
    fffff880`00cd2000 fffff880`00ce6000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
    fffff880`01292000 fffff880`0129e040   PxHlpa64 PxHlpa64.sys Tue Oct 20 14:08:42 2009 (4ADDFCAA)
    fffff880`055d6000 fffff880`055fa000   rasl2tp  rasl2tp.sys  Sat Nov 20 05:52:34 2010 (4CE7A872)
    fffff880`04400000 fffff880`0441b000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
    fffff880`0441b000 fffff880`0443c000   raspptp  raspptp.sys  Sat Nov 20 05:52:31 2010 (4CE7A86F)
    fffff880`02fe6000 fffff880`03000000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
    fffff880`0138a000 fffff880`013db000   rdbss    rdbss.sys    Sat Nov 20 04:27:51 2010 (4CE79497)
    fffff880`05a00000 fffff880`05a0b000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
    fffff880`04385000 fffff880`0438e000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`0438e000 fffff880`04397000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`04397000 fffff880`043a0000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
    fffff880`01ad4000 fffff880`01b0e000   rdyboost rdyboost.sys Sat Nov 20 04:43:10 2010 (4CE7982E)
    fffff880`025d9000 fffff880`025f1000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`08f9f000 fffff880`08faa000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
    fffff880`02fda000 fffff880`02fe6000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`016d0000 fffff880`016ed000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`0255a000 fffff880`02561000   smihlp   smihlp.sys   Fri Mar 13 08:47:32 2009 (49BA55E4)
    fffff880`040b4000 fffff880`040bb000   smiifx64 smiifx64.sys Tue Sep 07 00:38:27 2010 (4C85C1C3)
    fffff880`01acc000 fffff880`01ad4000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
    fffff880`0a2a3000 fffff880`0a33c000   srv      srv.sys      Sat Nov 20 04:28:05 2010 (4CE794A5)
    fffff880`08e00000 fffff880`08e6b000   srv2     srv2.sys     Sat Nov 20 04:27:43 2010 (4CE7948F)
    fffff880`08faa000 fffff880`08fdb000   srvnet   srvnet.sys   Sat Nov 20 04:27:20 2010 (4CE79478)
    fffff880`04622000 fffff880`04623480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
    fffff880`04627000 fffff880`04788000   SynTP    SynTP.sys    Thu Feb 17 21:24:33 2011 (4D5DD861)
    fffff880`01818000 fffff880`01a1c000   tcpip    tcpip.sys    Sat Nov 20 04:25:52 2010 (4CE79420)
    fffff880`08fdb000 fffff880`08fed000   tcpipreg tcpipreg.sys Sat Nov 20 05:51:48 2010 (4CE7A844)
    fffff880`043de000 fffff880`043eb000   TDI      TDI.SYS      Sat Nov 20 04:22:06 2010 (4CE7933E)
    fffff880`043bc000 fffff880`043de000   tdx      tdx.sys      Sat Nov 20 04:21:54 2010 (4CE79332)
    fffff880`01800000 fffff880`01814000   termdd   termdd.sys   Sat Nov 20 06:03:40 2010 (4CE7AB0C)
    fffff880`04799000 fffff880`047a8000   tpm      tpm.sys      Mon Jul 13 19:21:48 2009 (4A5BC18C)
    fffff880`040ad000 fffff880`040b4000   Tppwr64v Tppwr64v.sys Thu Nov 18 22:36:29 2010 (4CE5F0BD)
    fffff960`00560000 fffff960`0056a000   TSDDD    TSDDD.dll    unavailable (00000000)
    fffff880`0453a000 fffff880`04560000   tunnel   tunnel.sys   Sat Nov 20 05:51:50 2010 (4CE7A846)
    fffff880`025f1000 fffff880`025f8000   TurboB   TurboB.sys   Tue Sep 29 20:25:28 2009 (4AC2A578)
    fffff880`0443c000 fffff880`0444a000   Tvti2c   Tvti2c.sys   Thu Sep 24 07:56:38 2009 (4ABB5E76)
    fffff880`06286000 fffff880`06298000   umbus    umbus.sys    Sat Nov 20 05:44:37 2010 (4CE7A695)
    fffff880`07c00000 fffff880`07c11000   usbaapl64 usbaapl64.sys Fri Feb 11 13:13:08 2011 (4D557C34)
    fffff880`04788000 fffff880`04789f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
    fffff880`02e4a000 fffff880`02e5b000   usbehci  usbehci.sys  Sat Nov 20 05:43:54 2010 (4CE7A66A)
    fffff880`062cf000 fffff880`06329000   usbhub   usbhub.sys   Sat Nov 20 05:44:30 2010 (4CE7A68E)
    fffff880`04576000 fffff880`045cc000   USBPORT  USBPORT.SYS  Sat Nov 20 05:44:00 2010 (4CE7A670)
    fffff880`00eb3000 fffff880`00ec0000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
    fffff880`04342000 fffff880`04350000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
    fffff880`04350000 fffff880`04375000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
    fffff880`00c1a000 fffff880`00c56000   vmbus    vmbus.sys    Sat Nov 20 04:57:29 2010 (4CE79B89)
    fffff880`01a66000 fffff880`01a76000   vmstorfl vmstorfl.sys Sat Nov 20 04:57:30 2010 (4CE79B8A)
    fffff880`00d8c000 fffff880`00da1000   volmgr   volmgr.sys   Sat Nov 20 04:19:28 2010 (4CE792A0)
    fffff880`00da1000 fffff880`00dfd000   volmgrx  volmgrx.sys  Sat Nov 20 04:20:43 2010 (4CE792EB)
    fffff880`01a76000 fffff880`01ac2000   volsnap  volsnap.sys  Sat Nov 20 04:20:08 2010 (4CE792C8)
    fffff880`061e2000 fffff880`061ef000   vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
    fffff880`01bdc000 fffff880`01bf2000   vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
    fffff880`03a71000 fffff880`03a7b000   vwifimp  vwifimp.sys  Mon Jul 13 20:07:28 2009 (4A5BCC40)
    fffff880`0136f000 fffff880`0138a000   wanarp   wanarp.sys   Sat Nov 20 05:52:36 2010 (4CE7A874)
    fffff880`04375000 fffff880`04385000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
    fffff880`00e00000 fffff880`00ea4000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
    fffff880`00ea4000 fffff880`00eb3000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`040a4000 fffff880`040ad000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff960`00070000 fffff960`00381000   win32k   win32k.sys   Wed Jan 05 01:55:38 2011 (4D2415EA)
    fffff880`00c56000 fffff880`00c6a000   winhv    winhv.sys    Sat Nov 20 04:20:02 2010 (4CE792C2)
    fffff880`02582000 fffff880`02593000   WinUSB   WinUSB.sys   Sat Nov 20 05:43:56 2010 (4CE7A66C)
    fffff880`047e0000 fffff880`047e9000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:31:02 2009 (4A5BC3B6)
    fffff880`00fe1000 fffff880`00fea000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`02561000 fffff880`02582000   WudfPf   WudfPf.sys   Sat Nov 20 05:42:44 2010 (4CE7A624)
    fffff880`02593000 fffff880`025c4000   WUDFRd   WUDFRd.sys   Sat Nov 20 05:43:32 2010 (4CE7A654)
    fffff880`08fed000 fffff880`08ff5000   XAudio64 XAudio64.sys Wed Apr 29 14:21:07 2009 (49F89A93)
    
    Unloaded modules:
    fffff880`0a35a000 fffff880`0a3cb000   spsys.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00071000
    fffff880`07c40000 fffff880`07c51000   WinUSB.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00011000
    fffff880`02232000 fffff880`02263000   WUDFRd.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00031000
    fffff880`07c1f000 fffff880`07c30000   WinUSB.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00011000
    fffff880`07c30000 fffff880`07c61000   WUDFRd.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00031000
    fffff880`01bce000 fffff880`01bdc000   crashdmp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  0000E000
    fffff880`040bc000 fffff880`042c4000   dump_iaStor.
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00208000
    fffff880`042c4000 fffff880`042d7000   dump_dumpfve
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00013000
    fffff880`042d7000 fffff880`04301000   cdrom.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  0002A000
    
    
     
  9. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    That's very strange, since I uninstalled ESET last September and installed MSE, at the suggestion of one of the great folks on this forum. Apparently the ESET uninstall didn't successfully remove everything. It would be nice to think that this may be the "smoking gun" which will resolve my intermittent BSODs after I somehow uninstall this driver? How best to do that?

    Regarding uninstalling the Intel Turbo Boost driver, isn't that likely to severely impact the Intel Core i5 built-in functionality -- as opposed to adjusting Power Management fan and CPU settings to prevent rather than totally cripple the Intel standard support?
     
  10. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321

    Then navigate to C:\Wiindows\system32\drivers and rename to .bak this driver, eamonm.sys.




    First of all this driver is old. Second, the idea is to prevent overclocking. At some point later when no more bsods, feel free to install latest version of Intel Turbo Utility. For now, just uninstall it.
     
  11. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    OK, I have removed the last traces of ESET (eamonm.sys). This really seems like a high-odds candidate for BSOD root cause, since it may very likely have been interfering with the latest updates to MSE anti-virus processing in some unpredictable way. Thanks for noticing it!

    I did a bit more research and discovered that TurboB.sys is simply a Windows 7 UI "gadget" display of the Core i5 processor status, and has no effect on limiting (or causing) over-clocking "Turbo Boost" processing, which is controlled solely by Power Management settings (which I've already changed to prevent over-clocking beyond the 2.53 GHz base rate. I did un-install the older TurboB 1.11 driver and installed the latest 2.0 version.

    Here's hoping that this ESET remnant may have been the culprit ;-)
     
  12. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    If your system crashes again, be sure to:

    1. Uninstasll Turbo Boost for now, not for good, only for the period of troubleshooting your blue screens.

    2. Update other drivers too:


     
  13. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
  14. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    Despite updates to current levels of all drivers, BSODs continue ... :(

    One recent behavioral change in my laptop is that the system hasn't come out of Standby mode the last few times I've tried, requiring forced power-off. I believe that the crash dumps include some of these abnormal Windows terminations, although they weren't displayed as BSODs.

    Although I obviously hate the thought of the huge amount of work involved, I'm beginning to think maybe I should bite the bullet, get a new HDD, and start over with a new Windows 7 install. I wish I had good reason to think we were near the end of the trail in search of the smoking gun. Sage advice?

    2011-03-29 1135 CPU-Z CPU. 2011-03-29 1135 CPU-Z SPD. 2011-03-29 1135 CPU-Z Memory.View attachment 2011-03-29 1135 Seven Forums.zipView attachment 2011-03-29 1135 DriverView output.pdf
     
  15. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    Update the Intel drivers too:
    HECIx64.sys Thu Sep 17 15:54:16 2009
    iaStor.sys Fri Nov 20 18:09:41 2009
    Intel® Driver Update Utility





    Test your hardware if the blue screens don't go away:

    RAM - Test with Memtest86+ - Windows 7 Forums

    CPU - Stress Test with Prime95 - Windows 7 Forums

    Video Card - Stress Test with Furmark - Windows 7 Forums

    HD Diagnostic


    Run everything at stock values.
     
  16. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
  17. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    1. Run 10 passes of Memtest86+ - Advanced Memory Diagnostic Tool overnight. Would be excellent if you could attach the photo shot of the result.

    2. In the command prompt, type chkdsk /f.

    3. Run HDDScan and attach the screenshot of the outcome.




    I've asked you like a million times to UNINSTALL Intel(R) Turbo Boost Technology,
    Impcd.sys Fri Feb 26 18:32:11 2010



    Should update these drivers too:

    Intel® Centrino® WiMAX
    bpusb.sys Tue Sep 15 15:44:59 2009
    Intel® Driver Update Utility

    Intel(R) Management Engine Interface
    HECIx64.sys Thu Sep 17 15:54:16 2009
    Intel® Driver Update Utility



    This time uninstall Speedfan:
    speedfan.sys Sun Sep 24 09:26:48 2006







    CRASH DUMPS

    Code:
    
    Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [F:\DMP\032911-22900-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
    Machine Name:
    Kernel base = 0xfffff800`02e00000 PsLoadedModuleList = 0xfffff800`03045e90
    Debug session time: Tue Mar 29 12:04:52.098 2011 (UTC - 4:00)
    System Uptime: 0 days 2:04:14.674
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ...............................................
    Loading User Symbols
    Loading unloaded module list
    .........
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 24, {1904fb, fffff8800b865a88, fffff8800b8652e0, fffff880016e1c73}
    
    Probably caused by : Ntfs.sys ( Ntfs!NtfsFcbTableCompare+3 )
    
    Followup: MachineOwner
    ---------
    
    0: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    NTFS_FILE_SYSTEM (24)
        If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
        parameters are the exception record and context record. Do a .cxr
        on the 3rd parameter and then kb to obtain a more informative stack
        trace.
    Arguments:
    Arg1: 00000000001904fb
    Arg2: fffff8800b865a88
    Arg3: fffff8800b8652e0
    Arg4: fffff880016e1c73
    
    Debugging Details:
    ------------------
    
    
    EXCEPTION_RECORD:  fffff8800b865a88 -- (.exr 0xfffff8800b865a88)
    ExceptionAddress: fffff880016e1c73 (Ntfs!NtfsFcbTableCompare+0x0000000000000003)
       ExceptionCode: c0000005 (Access violation)
      ExceptionFlags: 00000000
    NumberParameters: 2
       Parameter[0]: 0000000000000000
       Parameter[1]: ffffffffffffffff
    Attempt to read from address ffffffffffffffff
    
    CONTEXT:  fffff8800b8652e0 -- (.cxr 0xfffff8800b8652e0)
    rax=006a000000013ac8 rbx=6d4d6956031c0404 rcx=fffffa8006e3b640
    rdx=fffff8800b865dc0 rsi=fffff8800b865dc0 rdi=fffffa8006e3b640
    rip=fffff880016e1c73 rsp=fffff8800b865cc8 rbp=fffff8800b865d90
     r8=6d4d6956031c0424  r9=0000ffffffffffff r10=fffff8800168b180
    r11=fffff8800b865e08 r12=fffff8800b865e64 r13=0000000000000000
    r14=fffffa8006e3b180 r15=fffffa8006e3b180
    iopl=0         nv up ei pl nz na pe nc
    cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010202
    Ntfs!NtfsFcbTableCompare+0x3:
    fffff880`016e1c73 498b08          mov     rcx,qword ptr [r8] ds:002b:6d4d6956`031c0424=????????????????
    Resetting default scope
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    PROCESS_NAME:  wmpnetwk.exe
    
    CURRENT_IRQL:  0
    
    ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
    
    EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
    
    EXCEPTION_PARAMETER1:  0000000000000000
    
    EXCEPTION_PARAMETER2:  ffffffffffffffff
    
    READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800030b10e8
     ffffffffffffffff 
    
    FOLLOWUP_IP: 
    Ntfs!NtfsFcbTableCompare+3
    fffff880`016e1c73 498b08          mov     rcx,qword ptr [r8]
    
    FAULTING_IP: 
    Ntfs!NtfsFcbTableCompare+3
    fffff880`016e1c73 498b08          mov     rcx,qword ptr [r8]
    
    BUGCHECK_STR:  0x24
    
    LAST_CONTROL_TRANSFER:  from fffff80002eaa5ed to fffff880016e1c73
    
    STACK_TEXT:  
    fffff880`0b865cc8 fffff800`02eaa5ed : fffff880`0b865e08 fffffa80`068e2890 00000000`00000001 fffffa80`08503690 : Ntfs!NtfsFcbTableCompare+0x3
    fffff880`0b865cd0 fffff800`02eaa665 : fffff880`0b865e40 fffffa80`09fd1b40 fffffa80`0a043e11 fffff880`0b865dc0 : nt!FindNodeOrParent+0x3d
    fffff880`0b865d00 fffff880`016e01a9 : 006a0000`00013ac8 00000000`00000000 fffff880`0b8662b0 00000000`00000000 : nt!RtlLookupElementGenericTableFullAvl+0x15
    fffff880`0b865d30 fffff880`016b1d8b : fffffa80`0a043e40 fffffa80`06e3b180 fffffa80`0a043e40 006a0000`00013ac8 : Ntfs!NtfsCreateFcb+0x79
    fffff880`0b865e10 fffff880`016d6179 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : Ntfs!NtfsOpenFile+0x1cb
    fffff880`0b866000 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : Ntfs!NtfsCommonCreate+0xc49
    
    
    SYMBOL_STACK_INDEX:  0
    
    SYMBOL_NAME:  Ntfs!NtfsFcbTableCompare+3
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: Ntfs
    
    IMAGE_NAME:  Ntfs.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4ce792f9
    
    STACK_COMMAND:  .cxr 0xfffff8800b8652e0 ; kb
    
    FAILURE_BUCKET_ID:  X64_0x24_Ntfs!NtfsFcbTableCompare+3
    
    BUCKET_ID:  X64_0x24_Ntfs!NtfsFcbTableCompare+3
    
    Followup: MachineOwner
    ---------
    
    
    
    Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [F:\DMP\032911-23478-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
    Machine Name:
    Kernel base = 0xfffff800`02e58000 PsLoadedModuleList = 0xfffff800`0309de90
    Debug session time: Tue Mar 29 20:09:29.509 2011 (UTC - 4:00)
    System Uptime: 0 days 4:13:00.086
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ............................................
    Loading User Symbols
    Loading unloaded module list
    ............
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 1A, {411, fffff6fcc008ae00, 558000001ea7a900, fffff8a0042f8011}
    
    Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+6061 )
    
    Followup: MachineOwner
    ---------
    
    0: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    MEMORY_MANAGEMENT (1a)
        # Any other values for parameter 1 must be individually examined.
    Arguments:
    Arg1: 0000000000000411, The subtype of the bugcheck.
    Arg2: fffff6fcc008ae00
    Arg3: 558000001ea7a900
    Arg4: fffff8a0042f8011
    
    Debugging Details:
    ------------------
    
    
    BUGCHECK_STR:  0x1a_411
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    PROCESS_NAME:  explorer.exe
    
    CURRENT_IRQL:  2
    
    TRAP_FRAME:  fffff8800ac0ccb0 -- (.trap 0xfffff8800ac0ccb0)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=fffffa8003b31730 rbx=0000000000000000 rcx=0000000000000000
    rdx=fffff980115c0000 rsi=0000000000000000 rdi=0000000000000000
    rip=fffff800031d4b87 rsp=fffff8800ac0ce40 rbp=fffff8a0042f5140
     r8=000000000000000f  r9=fffff8800ac0cf00 r10=0000000000000000
    r11=0000000000000001 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei ng nz ac po cy
    nt!CcMapData+0x117:
    fffff800`031d4b87 0fb602          movzx   eax,byte ptr [rdx] ds:fffff980`115c0000=??
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from fffff80002eb52dd to fffff80002ed8640
    
    STACK_TEXT:  
    fffff880`0ac0c958 fffff800`02eb52dd : 00000000`0000001a 00000000`00000411 fffff6fc`c008ae00 55800000`1ea7a900 : nt!KeBugCheckEx
    fffff880`0ac0c960 fffff800`02f09a71 : 55800000`1ea7a900 fffff6fc`c008ae00 0000007f`fffffff8 fffff800`031cc8c0 : nt! ?? ::FNODOBFM::`string'+0x6061
    fffff880`0ac0c9b0 fffff800`02ef625f : 00000000`00000000 00000000`00000000 00000000`00000000 fffff800`0305cdc0 : nt!MiResolveTransitionFault+0x381
    fffff880`0ac0ca40 fffff800`02ee643b : fffff8a0`065ff010 fffff880`0149fddc 00000000`04000100 00000000`0000f000 : nt!MiDispatchFault+0x95f
    fffff880`0ac0cb50 fffff800`02ed676e : 00000000`00000000 fffff980`115c0000 fffffa80`040fae00 00000000`0000000e : nt!MmAccessFault+0xe1b
    fffff880`0ac0ccb0 fffff800`031d4b87 : fffffa80`00000001 00000000`00000000 fffff880`0ac0cf08 fffff880`0ac0cf00 : nt!KiPageFault+0x16e
    fffff880`0ac0ce40 fffff880`014b4c85 : fffffa80`00040000 fffffa80`03b31730 fffff8a0`042f5140 fffff8a0`0000000e : nt!CcMapData+0x117
    fffff880`0ac0cf00 fffff880`014b8db1 : fffff8a0`042f5140 00000000`00000000 fffff8a0`03e71750 fffffa80`040fae40 : Ntfs!FindFirstIndexEntry+0x1fa
    fffff880`0ac0cf90 fffff880`014accf5 : fffffa80`040fae40 fffffa80`040fae40 fffff8a0`0234cd01 00000000`00000000 : Ntfs!NtfsFindIndexEntry+0x5d
    fffff880`0ac0d000 fffff880`01415a3d : fffffa80`040fae40 fffffa80`08915010 fffff880`0ac0d3b0 fffff800`031e6f00 : Ntfs!NtfsCommonCreate+0x7c5
    fffff880`0ac0d1e0 fffff800`02ee5078 : fffff880`0ac0d320 00000000`000007ff 00000000`00000001 fffff8a0`06581d00 : Ntfs!NtfsCommonCreateCallout+0x1d
    fffff880`0ac0d210 fffff880`014161bf : fffff880`01415a20 fffff880`01415020 fffff880`0ac0d300 fffff880`014b6f00 : nt!KeExpandKernelStackAndCalloutEx+0xd8
    fffff880`0ac0d2f0 fffff880`014af99c : 00000000`00000000 00000000`00000000 fffff880`0ac0d540 fffffa80`08915010 : Ntfs!NtfsCommonCreateOnNewStack+0x4f
    fffff880`0ac0d350 fffff880`01394bcf : fffffa80`04e0e030 fffffa80`08915010 00000000`00000000 fffffa80`04b14910 : Ntfs!NtfsFsdCreate+0x1ac
    fffff880`0ac0d500 fffff880`013b42b9 : fffffa80`08915010 fffffa80`04cb3010 fffffa80`08915000 fffffa80`04b14910 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
    fffff880`0ac0d590 fffff800`031d6495 : 00000000`00000045 fffffa80`085c17f8 fffff880`0ac0d9e0 00000000`00000000 : fltmgr!FltpCreate+0x2a9
    fffff880`0ac0d640 fffff800`031d2d38 : fffffa80`04aba920 fffff800`00000000 fffffa80`085c1640 fffffa80`00000001 : nt!IopParseDevice+0x5a5
    fffff880`0ac0d7d0 fffff800`031d3f56 : 00000000`00000000 fffffa80`085c1640 fffff880`0ac0d8d0 fffffa80`03b60f30 : nt!ObpLookupObjectName+0x588
    fffff880`0ac0d8c0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ObOpenObjectByName+0x306
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    nt! ?? ::FNODOBFM::`string'+6061
    fffff800`02eb52dd cc              int     3
    
    SYMBOL_STACK_INDEX:  1
    
    SYMBOL_NAME:  nt! ?? ::FNODOBFM::`string'+6061
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4ce7951a
    
    FAILURE_BUCKET_ID:  X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6061
    
    BUCKET_ID:  X64_0x1a_411_nt!_??_::FNODOBFM::_string_+6061
    
    Followup: MachineOwner
    ---------
    
    
    
    Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [F:\DMP\032911-24788-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
    Machine Name:
    Kernel base = 0xfffff800`02e62000 PsLoadedModuleList = 0xfffff800`030a7e90
    Debug session time: Tue Mar 29 13:31:05.764 2011 (UTC - 4:00)
    System Uptime: 0 days 1:25:05.966
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ................................................
    Loading User Symbols
    Loading unloaded module list
    ........
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 1A, {3452, 6a818000, fffff700010833f0, ded0000069df9000}
    
    Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+36103 )
    
    Followup: MachineOwner
    ---------
    
    3: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    MEMORY_MANAGEMENT (1a)
        # Any other values for parameter 1 must be individually examined.
    Arguments:
    Arg1: 0000000000003452, The subtype of the bugcheck.
    Arg2: 000000006a818000
    Arg3: fffff700010833f0
    Arg4: ded0000069df9000
    
    Debugging Details:
    ------------------
    
    
    BUGCHECK_STR:  0x1a_3452
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    PROCESS_NAME:  chrome.exe
    
    CURRENT_IRQL:  0
    
    LAST_CONTROL_TRANSFER:  from fffff80002f500b3 to fffff80002ee2640
    
    STACK_TEXT:  
    fffff880`0b2bc028 fffff800`02f500b3 : 00000000`0000001a 00000000`00003452 00000000`6a818000 fffff700`010833f0 : nt!KeBugCheckEx
    fffff880`0b2bc030 fffff800`02eb3f16 : fffffa80`07be4b30 fffffa80`00000000 fffff880`0000012e fffff800`00000000 : nt! ?? ::FNODOBFM::`string'+0x36103
    fffff880`0b2bc8e0 fffff800`031b809a : fffff8a0`0fa2ba30 fffff880`0b2bcc20 00000000`00000000 fffffa80`09626b60 : nt!MmCleanProcessAddressSpace+0x96
    fffff880`0b2bc930 fffff800`0319d37d : 00000000`00000000 00000000`00000001 00000000`7efdb000 00000000`00000000 : nt!PspExitThread+0x56a
    fffff880`0b2bca30 fffff800`02ed5dfa : 00000000`00000100 fffffa80`09626c20 00000000`00000001 fffff800`02ee7b9d : nt!PsExitSpecialApc+0x1d
    fffff880`0b2bca60 fffff800`02ed6140 : 00000000`00000246 fffff880`0b2bcae0 fffff800`0319d2f0 00000000`00000001 : nt!KiDeliverApc+0x2ca
    fffff880`0b2bcae0 fffff800`02ee1977 : fffffa80`09626b60 00000000`00000168 fffff880`0b2bcbf8 fffffa80`07b74870 : nt!KiInitiateUserApc+0x70
    fffff880`0b2bcc20 00000000`74a22e09 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit+0x9c
    00000000`0016e988 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x74a22e09
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    nt! ?? ::FNODOBFM::`string'+36103
    fffff800`02f500b3 cc              int     3
    
    SYMBOL_STACK_INDEX:  1
    
    SYMBOL_NAME:  nt! ?? ::FNODOBFM::`string'+36103
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4ce7951a
    
    FAILURE_BUCKET_ID:  X64_0x1a_3452_nt!_??_::FNODOBFM::_string_+36103
    
    BUCKET_ID:  X64_0x1a_3452_nt!_??_::FNODOBFM::_string_+36103
    
    Followup: MachineOwner
    ---------
    
    
    
    Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [F:\DMP\033011-21231-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
    Machine Name:
    Kernel base = 0xfffff800`02e58000 PsLoadedModuleList = 0xfffff800`0309de90
    Debug session time: Wed Mar 30 10:28:13.690 2011 (UTC - 4:00)
    System Uptime: 0 days 2:07:09.001
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ...............................................
    Loading User Symbols
    Loading unloaded module list
    ..........
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 7F, {8, 80050031, 6f8, fffff80002ed6610}
    
    Probably caused by : ntkrnlmp.exe ( nt!KiDoubleFaultAbort+b2 )
    
    Followup: MachineOwner
    ---------
    
    2: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    UNEXPECTED_KERNEL_MODE_TRAP (7f)
    This means a trap occurred in kernel mode, and it's a trap of a kind
    that the kernel isn't allowed to have/catch (bound trap) or that
    is always instant death (double fault).  The first number in the
    bugcheck params is the number of the trap (8 = double fault, etc)
    Consult an Intel x86 family manual to learn more about what these
    traps are. Here is a *portion* of those codes:
    If kv shows a taskGate
            use .tss on the part before the colon, then kv.
    Else if kv shows a trapframe
            use .trap on that value
    Else
            .trap on the appropriate frame will show where the trap was taken
            (on x86, this will be the ebp that goes with the procedure KiTrap)
    Endif
    kb will then show the corrected stack.
    Arguments:
    Arg1: 0000000000000008, EXCEPTION_DOUBLE_FAULT
    Arg2: 0000000080050031
    Arg3: 00000000000006f8
    Arg4: fffff80002ed6610
    
    Debugging Details:
    ------------------
    
    
    BUGCHECK_STR:  0x7f_8
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT
    
    PROCESS_NAME:  cssauth.exe
    
    CURRENT_IRQL:  0
    
    TRAP_FRAME:  fffff88003510fa0 -- (.trap 0xfffff88003510fa0)
    Unable to read trap frame at fffff880`03510fa0
    
    LAST_CONTROL_TRANSFER:  from fffff80002ed7be9 to fffff80002ed8640
    
    STACK_TEXT:  
    fffff880`03169ce8 fffff800`02ed7be9 : 00000000`0000007f 00000000`00000008 00000000`80050031 00000000`000006f8 : nt!KeBugCheckEx
    fffff880`03169cf0 fffff800`02ed60b2 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
    fffff880`03169e30 fffff800`02ed6610 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDoubleFaultAbort+0xb2
    fffff880`03510fa0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x10
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    nt!KiDoubleFaultAbort+b2
    fffff800`02ed60b2 90              nop
    
    SYMBOL_STACK_INDEX:  2
    
    SYMBOL_NAME:  nt!KiDoubleFaultAbort+b2
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4ce7951a
    
    FAILURE_BUCKET_ID:  X64_0x7f_8_nt!KiDoubleFaultAbort+b2
    
    BUCKET_ID:  X64_0x7f_8_nt!KiDoubleFaultAbort+b2
    
    Followup: MachineOwner
    ---------
    
    
    




    DRIVERS

    Code:
    fffff880`00f8a000 fffff880`00fe1000   ACPI     ACPI.sys     Sat Nov 20 04:19:16 2010 (4CE79294)
    fffff880`040c2000 fffff880`0414b000   afd      afd.sys      Sat Nov 20 04:23:27 2010 (4CE7938F)
    fffff880`01441000 fffff880`01457000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
    fffff880`01366000 fffff880`01371000   amdxata  amdxata.sys  Fri Mar 19 12:18:18 2010 (4BA3A3CA)
    fffff880`01b25000 fffff880`01b2f000   ApsHM64  ApsHM64.sys  Sun Jun 13 22:32:19 2010 (4C1594B3)
    fffff880`01b78000 fffff880`01b9d000   Apsx64   Apsx64.sys   Sun Jun 13 22:40:09 2010 (4C159689)
    fffff960`00980000 fffff960`009e1000   ATMFD    ATMFD.DLL    Fri Jan 07 04:20:44 2011 (4D26DAEC)
    fffff880`00e5e000 fffff880`00e6a000   BATTC    BATTC.SYS    Mon Jul 13 19:31:01 2009 (4A5BC3B5)
    fffff880`0423a000 fffff880`04241000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
    fffff880`046ba000 fffff880`046cb000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
    fffff880`03b39000 fffff880`03b57000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
    fffff880`02ec4000 fffff880`02efb000   bpenum   bpenum.sys   Tue Sep 15 15:44:56 2009 (4AAFEEB8)
    fffff880`07e21000 fffff880`07e53000   bpmp     bpmp.sys     Tue Sep 15 15:45:06 2009 (4AAFEEC2)
    fffff880`07e63000 fffff880`07e7d000   bpusb    bpusb.sys    Tue Sep 15 15:44:59 2009 (4AAFEEBB)
    fffff880`07e8f000 fffff880`07f5a000   CAX_CNXT CAX_CNXT.sys Tue Jun 30 15:59:52 2009 (4A4A6EB8)
    fffff880`07874000 fffff880`079e8000   CAX_DPV  CAX_DPV.sys  Tue Jun 30 16:05:11 2009 (4A4A6FF7)
    fffff880`07b4b000 fffff880`07b9d000   CAXHWAZL CAXHWAZL.sys Tue Jun 30 16:01:14 2009 (4A4A6F0A)
    fffff960`007d0000 fffff960`007f7000   cdd      cdd.dll      Sat Nov 20 07:55:34 2010 (4CE7C546)
    fffff880`07a42000 fffff880`07aec000   CHDRT64  CHDRT64.sys  Thu Aug 26 04:45:24 2010 (4C7629A4)
    fffff880`00c00000 fffff880`00cc0000   CI       CI.dll       Sat Nov 20 08:12:36 2010 (4CE7C944)
    fffff880`01816000 fffff880`01846000   CLASSPNP CLASSPNP.SYS Sat Nov 20 04:19:23 2010 (4CE7929B)
    fffff880`00d47000 fffff880`00da5000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`061da000 fffff880`061de500   CmBatt   CmBatt.sys   Mon Jul 13 19:31:03 2009 (4A5BC3B7)
    fffff880`01000000 fffff880`01072000   cng      cng.sys      Sat Nov 20 05:08:45 2010 (4CE79E2D)
    fffff880`00e55000 fffff880`00e5e000   compbatt compbatt.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6)
    fffff880`06030000 fffff880`06040000   CompositeBus CompositeBus.sys Sat Nov 20 05:33:17 2010 (4CE7A3ED)
    fffff880`09671000 fffff880`0967a000   cpuz135_x64 cpuz135_x64.sys Wed Jan 19 11:42:06 2011 (4D37145E)
    fffff880`07e00000 fffff880`07e0e000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
    fffff880`04619000 fffff880`0469c000   csc      csc.sys      Sat Nov 20 04:27:12 2010 (4CE79470)
    fffff880`0469c000 fffff880`046ba000   dfsc     dfsc.sys     Sat Nov 20 04:26:31 2010 (4CE79447)
    fffff880`041e4000 fffff880`041f3000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
    fffff880`01800000 fffff880`01816000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`07b29000 fffff880`07b4b000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
    fffff880`07e0e000 fffff880`07e21000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
    fffff880`0424a000 fffff880`0439e000   dump_iaStor dump_iaStor.sys Sat Nov 06 03:44:52 2010 (4CD50774)
    fffff880`07e53000 fffff880`07e5f000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
    fffff880`04707000 fffff880`047fb000   dxgkrnl  dxgkrnl.sys  Sat Nov 20 04:50:50 2010 (4CE799FA)
    fffff880`055b8000 fffff880`055fe000   dxgmms1  dxgmms1.sys  Sat Nov 20 04:49:53 2010 (4CE799C1)
    fffff880`0142c000 fffff880`01437000   DzHDD64  DzHDD64.sys  Thu Oct 14 20:32:33 2010 (4CB7A121)
    fffff880`01199000 fffff880`011e3000   e1k62x64 e1k62x64.sys Thu Jul 22 13:39:07 2010 (4C48823B)
    fffff880`013bd000 fffff880`013d1000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
    fffff880`01371000 fffff880`013bd000   fltmgr   fltmgr.sys   Sat Nov 20 04:19:24 2010 (4CE7929C)
    fffff880`01437000 fffff880`01441000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
    fffff880`01bb8000 fffff880`01bf2000   fvevol   fvevol.sys   Sat Nov 20 04:24:06 2010 (4CE793B6)
    fffff880`01a7f000 fffff880`01ac9000   fwpkclnt fwpkclnt.sys Sat Nov 20 04:21:37 2010 (4CE79321)
    fffff800`02e0f000 fffff800`02e58000   hal      hal.dll      Sat Nov 20 08:00:25 2010 (4CE7C669)
    fffff880`017d9000 fffff880`017fd000   HDAudBus HDAudBus.sys Sat Nov 20 05:43:42 2010 (4CE7A65E)
    fffff880`04600000 fffff880`04611000   HECIx64  HECIx64.sys  Thu Sep 17 15:54:16 2009 (4AB293E8)
    fffff880`07fca000 fffff880`07fe3000   HIDCLASS HIDCLASS.SYS Sat Nov 20 05:43:49 2010 (4CE7A665)
    fffff880`07fe3000 fffff880`07feb080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
    fffff880`07fbc000 fffff880`07fca000   hidusb   hidusb.sys   Sat Nov 20 05:43:49 2010 (4CE7A665)
    fffff880`03a70000 fffff880`03b39000   HTTP     HTTP.sys     Sat Nov 20 04:24:30 2010 (4CE793CE)
    fffff880`01baf000 fffff880`01bb8000   hwpolicy hwpolicy.sys Sat Nov 20 04:18:54 2010 (4CE7927E)
    fffff880`013de000 fffff880`013fc000   i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
    fffff880`01212000 fffff880`01366000   iaStor   iaStor.sys   Sat Nov 06 03:44:52 2010 (4CD50774)
    fffff880`061df000 fffff880`061ec000   ibmpmdrv ibmpmdrv.sys Fri Nov 12 04:41:49 2010 (4CDD0BDD)
    fffff880`04a08000 fffff880`055b7420   igdkmd64 igdkmd64.sys Mon Nov 29 00:23:11 2010 (4CF338BF)
    fffff880`06000000 fffff880`06026d00   Impcd    Impcd.sys    Fri Feb 26 18:32:11 2010 (4B8859FB)
    fffff880`07f69000 fffff880`07fbc000   IntcDAud IntcDAud.sys Fri Oct 15 04:28:17 2010 (4CB810A1)
    fffff880`046f1000 fffff880`04707000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
    fffff880`05800000 fffff880`0580f000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff800`00b9c000 fffff800`00ba6000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
    fffff880`00da5000 fffff880`00de8000   ks       ks.sys       Sat Nov 20 05:33:23 2010 (4CE7A3F3)
    fffff880`01400000 fffff880`0141b000   ksecdd   ksecdd.sys   Sat Nov 20 04:21:15 2010 (4CE7930B)
    fffff880`01660000 fffff880`0168b000   ksecpkg  ksecpkg.sys  Sat Nov 20 05:10:34 2010 (4CE79E9A)
    fffff880`06048000 fffff880`0604d200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
    fffff880`07855000 fffff880`0786a000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`07800000 fffff880`07823000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
    fffff880`00ce4000 fffff880`00d33000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Sat Nov 20 08:03:51 2010 (4CE7C737)
    fffff880`03a2e000 fffff880`03a32280   mdmxsdk  mdmxsdk.sys  Mon Jun 19 17:27:26 2006 (449716BE)
    fffff880`07f5a000 fffff880`07f69000   modem    modem.sys    Mon Jul 13 20:10:48 2009 (4A5BCD08)
    fffff880`07e7d000 fffff880`07e8b000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
    fffff880`061bc000 fffff880`061cb000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
    fffff880`07fec000 fffff880`07ff9000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
    fffff880`010d1000 fffff880`010eb000   mountmgr mountmgr.sys Sat Nov 20 04:19:21 2010 (4CE79299)
    fffff880`04200000 fffff880`04231000   MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
    fffff880`09770000 fffff880`09780000   MpNWMon  MpNWMon.sys  Tue Sep 14 20:19:30 2010 (4C901112)
    fffff880`03b57000 fffff880`03b6f000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
    fffff880`03b6f000 fffff880`03b9c000   mrxsmb   mrxsmb.sys   Sat Nov 20 04:27:41 2010 (4CE7948D)
    fffff880`03b9c000 fffff880`03be9000   mrxsmb10 mrxsmb10.sys Sat Nov 20 04:26:53 2010 (4CE7945D)
    fffff880`03a00000 fffff880`03a24000   mrxsmb20 mrxsmb20.sys Sat Nov 20 04:26:47 2010 (4CE79457)
    fffff880`0185d000 fffff880`01868000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
    fffff880`00fea000 fffff880`00ff4000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
    fffff880`0113b000 fffff880`01199000   msrpc    msrpc.sys    Sat Nov 20 04:21:56 2010 (4CE79334)
    fffff880`040b0000 fffff880`040bb000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
    fffff880`01b9d000 fffff880`01baf000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
    fffff880`016d5000 fffff880`017c8000   ndis     ndis.sys     Sat Nov 20 04:23:30 2010 (4CE79392)
    fffff880`061ec000 fffff880`061f8000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
    fffff880`079e8000 fffff880`079fb000   ndisuio  ndisuio.sys  Sat Nov 20 05:50:08 2010 (4CE7A7E0)
    fffff880`02e04000 fffff880`02e33000   ndiswan  ndiswan.sys  Sat Nov 20 05:52:32 2010 (4CE7A870)
    fffff880`02f55000 fffff880`02f6a000   NDProxy  NDProxy.SYS  Sat Nov 20 05:52:20 2010 (4CE7A864)
    fffff880`016ad000 fffff880`016c8000   NEOFLTR_700_17289 NEOFLTR_700_17289.SYS Thu Dec 16 14:39:48 2010 (4D0A6B04)
    fffff880`041d5000 fffff880`041e4000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff880`0414b000 fffff880`04190000   netbt    netbt.sys    Sat Nov 20 04:23:18 2010 (4CE79386)
    fffff880`01600000 fffff880`01660000   NETIO    NETIO.SYS    Sat Nov 20 04:23:13 2010 (4CE79381)
    fffff880`05816000 fffff880`05fe9000   NETwNs64 NETwNs64.sys Mon Oct 18 05:21:28 2010 (4CBC1198)
    fffff880`09780000 fffff880`09795000   NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149)
    fffff880`01868000 fffff880`01879000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
    fffff880`040a4000 fffff880`040b0000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
    fffff800`02e58000 fffff800`03442000   nt       ntkrnlmp.exe Sat Nov 20 04:30:02 2010 (4CE7951A)
    fffff880`0145a000 fffff880`015fd000   Ntfs     Ntfs.sys     Sat Nov 20 04:20:57 2010 (4CE792F9)
    fffff880`04231000 fffff880`0423a000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
    fffff880`02f6a000 fffff880`02fbd000   nwifi    nwifi.sys    Mon Jul 13 20:07:23 2009 (4A5BCC3B)
    fffff880`04199000 fffff880`041bf000   pacer    pacer.sys    Sat Nov 20 05:52:18 2010 (4CE7A862)
    fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Sat Nov 20 04:20:00 2010 (4CE792C0)
    fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Sat Nov 20 04:19:11 2010 (4CE7928F)
    fffff880`0141b000 fffff880`0142c000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
    fffff880`08eaf000 fffff880`08f55000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
    fffff880`07aec000 fffff880`07b29000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
    fffff880`02e94000 fffff880`02ea2000   psadd    psadd.sys    Wed Jul 01 22:17:26 2009 (4A4C18B6)
    fffff880`00d33000 fffff880`00d47000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
    fffff880`013d1000 fffff880`013dd040   PxHlpa64 PxHlpa64.sys Tue Oct 20 14:08:42 2009 (4ADDFCAA)
    fffff880`00cc0000 fffff880`00ce4000   rasl2tp  rasl2tp.sys  Sat Nov 20 05:52:34 2010 (4CE7A872)
    fffff880`02e33000 fffff880`02e4e000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
    fffff880`02e4e000 fffff880`02e6f000   raspptp  raspptp.sys  Sat Nov 20 05:52:31 2010 (4CE7A86F)
    fffff880`02e6f000 fffff880`02e89000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
    fffff880`04053000 fffff880`040a4000   rdbss    rdbss.sys    Sat Nov 20 04:27:51 2010 (4CE79497)
    fffff880`02e89000 fffff880`02e94000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
    fffff880`043f4000 fffff880`043fd000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`04241000 fffff880`0424a000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
    fffff880`01854000 fffff880`0185d000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
    fffff880`01b3e000 fffff880`01b78000   rdyboost rdyboost.sys Sat Nov 20 04:43:10 2010 (4CE7982E)
    fffff880`07bce000 fffff880`07be6000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
    fffff880`08f55000 fffff880`08f60000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
    fffff880`041f3000 fffff880`041ff000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
    fffff880`04000000 fffff880`0401d000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
    fffff880`07ff9000 fffff880`08000000   smihlp   smihlp.sys   Fri Mar 13 08:47:32 2009 (49BA55E4)
    fffff880`040bb000 fffff880`040c2000   smiifx64 smiifx64.sys Tue Sep 07 00:38:27 2010 (4C85C1C3)
    fffff880`01b37000 fffff880`01b3e000   speedfan speedfan.sys Sun Sep 24 09:26:48 2006 (45168798)
    fffff880`01b2f000 fffff880`01b37000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
    fffff880`096d7000 fffff880`09770000   srv      srv.sys      Sat Nov 20 04:28:05 2010 (4CE794A5)
    fffff880`08e00000 fffff880`08e6b000   srv2     srv2.sys     Sat Nov 20 04:27:43 2010 (4CE7948F)
    fffff880`08f60000 fffff880`08f91000   srvnet   srvnet.sys   Sat Nov 20 04:27:20 2010 (4CE79478)
    fffff880`02eb0000 fffff880`02eb1480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
    fffff880`06059000 fffff880`061ba000   SynTP    SynTP.sys    Thu Feb 17 21:24:33 2011 (4D5DD861)
    fffff880`0187b000 fffff880`01a7f000   tcpip    tcpip.sys    Sat Nov 20 04:25:52 2010 (4CE79420)
    fffff880`08f91000 fffff880`08fa3000   tcpipreg tcpipreg.sys Sat Nov 20 05:51:48 2010 (4CE7A844)
    fffff880`01bf2000 fffff880`01bff000   TDI      TDI.SYS      Sat Nov 20 04:22:06 2010 (4CE7933E)
    fffff880`0168b000 fffff880`016ad000   tdx      tdx.sys      Sat Nov 20 04:21:54 2010 (4CE79332)
    fffff880`0403f000 fffff880`04053000   termdd   termdd.sys   Sat Nov 20 06:03:40 2010 (4CE7AB0C)
    fffff880`061cb000 fffff880`061da000   tpm      tpm.sys      Mon Jul 13 19:21:48 2009 (4A5BC18C)
    fffff880`04038000 fffff880`0403f000   Tppwr64v Tppwr64v.sys Thu Nov 18 22:36:29 2010 (4CE5F0BD)
    fffff960`00440000 fffff960`0044a000   TSDDD    TSDDD.dll    unavailable (00000000)
    fffff880`046cb000 fffff880`046f1000   tunnel   tunnel.sys   Sat Nov 20 05:51:50 2010 (4CE7A846)
    fffff880`02ea2000 fffff880`02eb0000   Tvti2c   Tvti2c.sys   Thu Sep 24 07:56:38 2009 (4ABB5E76)
    fffff880`02eb2000 fffff880`02ec4000   umbus    umbus.sys    Sat Nov 20 05:44:37 2010 (4CE7A695)
    fffff880`0969c000 fffff880`096ad000   usbaapl64 usbaapl64.sys Fri Feb 11 13:13:08 2011 (4D557C34)
    fffff880`061ba000 fffff880`061bbf00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
    fffff880`017c8000 fffff880`017d9000   usbehci  usbehci.sys  Sat Nov 20 05:43:54 2010 (4CE7A66A)
    fffff880`02efb000 fffff880`02f55000   usbhub   usbhub.sys   Sat Nov 20 05:44:30 2010 (4CE7A68E)
    fffff880`00e7f000 fffff880`00ed5000   USBPORT  USBPORT.SYS  Sat Nov 20 05:44:00 2010 (4CE7A670)
    fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
    fffff880`043b1000 fffff880`043bf000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
    fffff880`043bf000 fffff880`043e4000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
    fffff880`010eb000 fffff880`01127000   vmbus    vmbus.sys    Sat Nov 20 04:57:29 2010 (4CE79B89)
    fffff880`01ac9000 fffff880`01ad9000   vmstorfl vmstorfl.sys Sat Nov 20 04:57:30 2010 (4CE79B8A)
    fffff880`00e6a000 fffff880`00e7f000   volmgr   volmgr.sys   Sat Nov 20 04:19:28 2010 (4CE792A0)
    fffff880`01075000 fffff880`010d1000   volmgrx  volmgrx.sys  Sat Nov 20 04:20:43 2010 (4CE792EB)
    fffff880`01ad9000 fffff880`01b25000   volsnap  volsnap.sys  Sat Nov 20 04:20:08 2010 (4CE792C8)
    fffff880`05fe9000 fffff880`05ff6000   vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
    fffff880`041bf000 fffff880`041d5000   vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
    fffff880`03a24000 fffff880`03a2e000   vwifimp  vwifimp.sys  Mon Jul 13 20:07:28 2009 (4A5BCC40)
    fffff880`0401d000 fffff880`04038000   wanarp   wanarp.sys   Sat Nov 20 05:52:36 2010 (4CE7A874)
    fffff880`043e4000 fffff880`043f4000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
    fffff880`00ed7000 fffff880`00f7b000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
    fffff880`00f7b000 fffff880`00f8a000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
    fffff880`04190000 fffff880`04199000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
    fffff960`00040000 fffff960`00351000   win32k   win32k.sys   Wed Jan 05 01:55:38 2011 (4D2415EA)
    fffff880`01127000 fffff880`0113b000   winhv    winhv.sys    Sat Nov 20 04:20:02 2010 (4CE792C2)
    fffff880`07844000 fffff880`07855000   WinUSB   WinUSB.sys   Sat Nov 20 05:43:56 2010 (4CE7A66C)
    fffff880`06027000 fffff880`06030000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:31:02 2009 (4A5BC3B6)
    fffff880`00fe1000 fffff880`00fea000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
    fffff880`07823000 fffff880`07844000   WudfPf   WudfPf.sys   Sat Nov 20 05:42:44 2010 (4CE7A624)
    fffff880`07b9d000 fffff880`07bce000   WUDFRd   WUDFRd.sys   Sat Nov 20 05:43:32 2010 (4CE7A654)
    fffff880`08fa3000 fffff880`08fab000   XAudio64 XAudio64.sys Wed Apr 29 14:21:07 2009 (49F89A93)
    
    Unloaded modules:
    fffff880`0968b000 fffff880`0969c000   usbaapl64.sy
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00011000
    fffff880`0967a000 fffff880`0968b000   usbaapl64.sy
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00011000
    fffff880`09600000 fffff880`09671000   spsys.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00071000
    fffff880`06040000 fffff880`06048000   serscan.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00008000
    fffff880`07e21000 fffff880`07e32000   WinUSB.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00011000
    fffff880`07e32000 fffff880`07e63000   WUDFRd.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00031000
    fffff880`01846000 fffff880`01854000   crashdmp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  0000E000
    fffff880`0424a000 fffff880`0439e000   dump_iaStor.
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00154000
    fffff880`0439e000 fffff880`043b1000   dump_dumpfve
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  00013000
    fffff880`043b1000 fffff880`043db000   cdrom.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
        ImageSize:  0002A000
    
    
     
  18. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    With all due respect, you didn't ask me a million times to uninstall impcd.sys; you asked me to uninstall TurboB.sys, which I did.

    I will uninstall SpeedFan, although the CPU stress test (Prime95) which you recommended, highly recommended installing SpeedFan to monitor temps during stress test. I ran the stress test for about 2 hours last night with no problems.

    Intel Driver Update Utility reports that the two Intel drivers (bpusb.sys Tue Sep 15 15:44:59 2009, and HECIx64.sys Thu Sep 17 15:54:16 2009) are the latest versions. I installed the latest (March 2, 2011) version of the Intel Management Engine Interface a week or two ago; it did not update the HECIx64.sys driver.

    I ran Memtest86+ about a week ago for 16 passes, with no problems; I will run it again and attach a screenshot.

    I ran HDDScan about a week ago, with no problems; I will run it again and attach a screenshot.

    Thanks for your help.
     
  19. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321

    I did:






    ~~~~~~~~~~

    Again, DO NOT use Intel Turbo feature, uninstall it and see how it goes.
     
  20. Puluke

    Puluke New Member

    Joined:
    Sep 6, 2010
    Messages:
    56
    Likes Received:
    0
    Yes, you said to uninstall Turbo Boos, but you'll note that you pointed to TurboB.sys every previous time, not Impcd.sys. I DID un-install TurboB.sys when you asked me to do so, and I did make every possible change in BIOS to turn off Turbo Boost functionality.

    I have now un-installed Impcd.sys via Device Manager, which it turns out is not easy to do, since Windows reinstalls it upon re-boot. I've made that impossible by removing the FileRepository backup for that driver.

    Thanks.
     

Share This Page

Loading...