BSOD within 60 seconds of running IE8

Discussion in 'Windows 7 Blue Screen of Death (BSOD)' started by Shumboom, Sep 4, 2010.

  1. reghakr

    reghakr Excellent Member

    Joined:
    Jan 26, 2009
    Messages:
    14,220
    Likes Received:
    180
    Could you download and install HijackThis 1.99.1 and post the output here.

    I'm wondering if you may have some IE tool bars or Browser Helper Objects causing the problem.
     
  2. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    Could you give exact name of your nForce? Did you try to update this driver, a chance there's a more up to date version:


    nvstor32.sys Wed Aug 05 03:27:05 2009
    Nvidia IDE / SATA Drivers


     
  3. Shumboom

    Shumboom New Member

    Joined:
    Dec 31, 2009
    Messages:
    74
    Likes Received:
    0
    Hi

    I am pretty sure I have the updated version of nforce NVIDIA nForce 630i.

    When running Hijackthis it stopped saying it could not open the drivers/etc/hosts file so I had to open it in notepad and resave it. Then it ran thru ok. You'll notice that BSOD is now my homepage!

    Do u think it could be something to do with the yahoo toolbar?




    Logfile of HijackThis v1.99.1
    Scan saved at 18:55:53, on 08/09/2010
    Platform: Unknown Windows (WinNT 6.01.3504)
    MSIE: Internet Explorer v8.00 (8.00.7600.16385)

    Running processes:
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Microsoft Security Essentials\msseces.exe
    C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    C:\Windows\system32\cmd.exe
    C:\Windows\system32\conhost.exe
    C:\Users\Seraj\Desktop\hijackthis_sfx\HijackThis.exe
    C:\Windows\system32\DllHost.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.medion.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://windows7forums.com/blue-screen-death-bsod/48867-bsod-within-60-seconds-running-ie8-3.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
    O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
    O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
    O4 - HKCU\..\Run: [Google Update] "C:\Users\Seraj\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    O9 - Extra button: eBay.co.uk - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - The UK's Online Marketplace (file missing)
    O9 - Extra 'Tools' menuitem: eBay.co.uk - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - The UK's Online Marketplace (file missing)
    O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
    O9 - Extra button: eBay.co.uk - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - The UK's Online Marketplace (file missing) (HKCU)
    O9 - Extra 'Tools' menuitem: eBay.co.uk - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - The UK's Online Marketplace (file missing) (HKCU)
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
    O11 - Options group: [INTERNATIONAL] International
    O13 - Gopher Prefix:
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
    O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
    O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
    O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GO36F4~1.DLL
    O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
    O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %PROGRAMFILES%\Windows Media Player\wmpnetwk.exe (file missing)
     
  4. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    For nForce 630i you do have the latest driver. As for toolbars, I try to keep mine as few as possible, always disable if any. You may want to disable yours and see how it goes.
     
  5. Shumboom

    Shumboom New Member

    Joined:
    Dec 31, 2009
    Messages:
    74
    Likes Received:
    0
    Just to let you know IE8 has been running for an hour now ( a record by a factor of 60) - anything to do with the hosts file. I think though the windows updates will send it into BSOD mode. I'll let you know.
     
  6. Shumboom

    Shumboom New Member

    Joined:
    Dec 31, 2009
    Messages:
    74
    Likes Received:
    0
    Lasted only until I started browsing properly. Dump attached.
     

    Attached Files:

  7. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    Have you updated your system, windows updates? Checked hard drive? C:>properties>service>check disk.
    Memtest86?

    How about the video card itself?


    Something's wrong with this driver again, although it is 2010:

    nvlddmkm.sys Sat Jul 10 00:15:14 2010


    090810-12885-01.dmp
    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Bug Check 0x50: PAGE_FAULT_IN_NONPAGED_AREA
    Invalid system memory was referenced
    READ_ADDRESS: GetPointerFromAddress: unable to read from 82b82718
    Unable to read MiSystemVaType memory at 82b62160 99e3f6fc
    IMAGE_NAME: nvlddmkm.sys
    BUCKET_ID: 0x50_VRF_nvlddmkm+d061d


    STACK_TEXT:
    99e37388 82a60638 00000000 99e3f6fc 00000000 nt!MmAccessFault+0x106
    99e37388 8f70861d 00000000 99e3f6fc 00000000 nt!KiTrap0E+0xdc
    99e37418 8f701fc8 99e37480 00320ff4 99e37480 nvlddmkm+0xd061d
    99e37438 8f6f0bc9 99e37aa0 884ee6f0 903782e8 nvlddmkm+0xc9fc8
    99e37464 8f6f1398 99e37480 99e3cc1c 884ee6f0 nvlddmkm+0xb8bc9
    99e3775c 8fba3db8 99e37aa0 82e2f6ee 95fad000 nvlddmkm+0xb9398
    99e37778 900da696 88578748 8fba3d79 00000000 nvlddmkm+0x56bdb8
    99e377a0 900d4b79 884ee6f0 99e37aa0 00020000 dxgkrnl+0x22696
    99e37b44 900d6a2b 90378740 99e37cb8 09ee5cd8 dxgkrnl+0x1cb79
    99e37d28 82a5d44a 0306efc4 0306f114 779064f4 dxgkrnl+0x1ea2b
    99e37d28 779064f4 0306efc4 0306f114 779064f4 nt!KiFastCallEntry+0x12a
    0306f114 00000000 00000000 00000000 00000000 0x779064f4

    Code:
    Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [F:\a\Minidump\090810-12885-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7600 MP (2 procs) Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS Personal
    Built by: 7600.16617.x86fre.win7_gdr.100618-1621
    Machine Name:
    Kernel base = 0x82a1a000 PsLoadedModuleList = 0x82b62810
    System Uptime: 0 days 2:55:30.372
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ..........
    Loading User Symbols
    Loading unloaded module list
    .......
    1: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced.  This cannot be protected by try-except,
    it must be protected by a Probe.  Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: 99e3f6fc, memory referenced.
    Arg2: 00000000, value 0 = read operation, 1 = write operation.
    Arg3: 8f70861d, If non-zero, the instruction address which referenced the bad memory
        address.
    Arg4: 00000000, (reserved)
    
    Debugging Details:
    ------------------
    
    Unable to load image \SystemRoot\system32\DRIVERS\nvlddmkm.sys, Win32 error 0n2
    *** WARNING: Unable to verify timestamp for nvlddmkm.sys
    *** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys
    *** WARNING: Unable to verify timestamp for dxgkrnl.sys
    *** ERROR: Module load completed but symbols could not be loaded for dxgkrnl.sys
    
    Could not read faulting driver name
    
    READ_ADDRESS: GetPointerFromAddress: unable to read from 82b82718
    Unable to read MiSystemVaType memory at 82b62160
     99e3f6fc 
    
    FAULTING_IP: 
    nvlddmkm+d061d
    8f70861d 8b8e7c020000    mov     ecx,dword ptr [esi+27Ch]
    
    MM_INTERNAL_CODE:  0
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  VERIFIER_ENABLED_VISTA_MINIDUMP
    
    BUGCHECK_STR:  0x50
    
    PROCESS_NAME:  dwm.exe
    
    CURRENT_IRQL:  0
    
    TRAP_FRAME:  99e373a0 -- (.trap 0xffffffff99e373a0)
    ErrCode = 00000000
    eax=8f708616 ebx=8fcdaf78 ecx=99e37480 edx=00320ff4 esi=99e37480 edi=884ee6f0
    eip=8f70861d esp=99e37414 ebp=99e37418 iopl=0         nv up ei ng nz na po nc
    cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010282
    nvlddmkm+0xd061d:
    8f70861d 8b8e7c020000    mov     ecx,dword ptr [esi+27Ch] ds:0023:99e376fc=9915ce58
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from 82a60638 to 82a9f903
    
    STACK_TEXT:  
    99e37388 82a60638 00000000 99e3f6fc 00000000 nt!MmAccessFault+0x106
    99e37388 8f70861d 00000000 99e3f6fc 00000000 nt!KiTrap0E+0xdc
    WARNING: Stack unwind information not available. Following frames may be wrong.
    99e37418 8f701fc8 99e37480 00320ff4 99e37480 nvlddmkm+0xd061d
    99e37438 8f6f0bc9 99e37aa0 884ee6f0 903782e8 nvlddmkm+0xc9fc8
    99e37464 8f6f1398 99e37480 99e3cc1c 884ee6f0 nvlddmkm+0xb8bc9
    99e3775c 8fba3db8 99e37aa0 82e2f6ee 95fad000 nvlddmkm+0xb9398
    99e37778 900da696 88578748 8fba3d79 00000000 nvlddmkm+0x56bdb8
    99e377a0 900d4b79 884ee6f0 99e37aa0 00020000 dxgkrnl+0x22696
    99e37b44 900d6a2b 90378740 99e37cb8 09ee5cd8 dxgkrnl+0x1cb79
    99e37d28 82a5d44a 0306efc4 0306f114 779064f4 dxgkrnl+0x1ea2b
    99e37d28 779064f4 0306efc4 0306f114 779064f4 nt!KiFastCallEntry+0x12a
    0306f114 00000000 00000000 00000000 00000000 0x779064f4
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    nvlddmkm+d061d
    8f70861d 8b8e7c020000    mov     ecx,dword ptr [esi+27Ch]
    
    SYMBOL_STACK_INDEX:  2
    
    SYMBOL_NAME:  nvlddmkm+d061d
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: nvlddmkm
    
    IMAGE_NAME:  nvlddmkm.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4c379162
    
    FAILURE_BUCKET_ID:  0x50_VRF_nvlddmkm+d061d
    
    BUCKET_ID:  0x50_VRF_nvlddmkm+d061d
    
    Followup: MachineOwner
    ---------
    
    
    start    end        module name
    80bb2000 80bba000   kdcom    kdcom.dll    Tue Jul 14 04:08:58 2009 (4A5BDAAA)
    82a1a000 82e2a000   nt       ntkrpamp.exe Sat Jun 19 06:55:24 2010 (4C1C3FAC)
    82e2a000 82e61000   hal      halmacpi.dll Tue Jul 14 02:11:03 2009 (4A5BBF07)
    84e31000 84ea9000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Tue Jul 14 04:06:41 2009 (4A5BDA21)
    84ea9000 84eba000   PSHED    PSHED.dll    Tue Jul 14 04:09:36 2009 (4A5BDAD0)
    84eba000 84ec2000   BOOTVID  BOOTVID.dll  Tue Jul 14 04:04:34 2009 (4A5BD9A2)
    84ec2000 84f04000   CLFS     CLFS.SYS     Tue Jul 14 02:11:10 2009 (4A5BBF0E)
    84f04000 84faf000   CI       CI.dll       Tue Jul 14 04:09:28 2009 (4A5BDAC8)
    84faf000 84fe6000   nvstor32 nvstor32.sys Wed Aug 05 03:27:05 2009 (4A78D1D9)
    85000000 85023000   ataport  ataport.SYS  Tue Jul 14 02:11:18 2009 (4A5BBF16)
    85023000 85036000   ksecdd   ksecdd.sys   Tue Jul 14 02:11:56 2009 (4A5BBF3C)
    8503f000 850b0000   Wdf01000 Wdf01000.sys Tue Jul 14 02:11:36 2009 (4A5BBF28)
    850b0000 850be000   WDFLDR   WDFLDR.SYS   Tue Jul 14 02:11:25 2009 (4A5BBF1D)
    850be000 85106000   ACPI     ACPI.sys     Tue Jul 14 02:11:11 2009 (4A5BBF0F)
    85106000 8510f000   WMILIB   WMILIB.SYS   Tue Jul 14 02:11:22 2009 (4A5BBF1A)
    8510f000 85117000   msisadrv msisadrv.sys Tue Jul 14 02:11:09 2009 (4A5BBF0D)
    85117000 85141000   pci      pci.sys      Tue Jul 14 02:11:16 2009 (4A5BBF14)
    85141000 8514c000   vdrvroot vdrvroot.sys Tue Jul 14 02:46:19 2009 (4A5BC74B)
    8514c000 8515d000   partmgr  partmgr.sys  Tue Jul 14 02:11:35 2009 (4A5BBF27)
    8515d000 8516d000   volmgr   volmgr.sys   Tue Jul 14 02:11:25 2009 (4A5BBF1D)
    8516d000 851b8000   volmgrx  volmgrx.sys  Tue Jul 14 02:11:41 2009 (4A5BBF2D)
    851b8000 851bf000   pciide   pciide.sys   Tue Jul 14 02:11:19 2009 (4A5BBF17)
    851bf000 851cd000   PCIIDEX  PCIIDEX.SYS  Tue Jul 14 02:11:15 2009 (4A5BBF13)
    851cd000 851e3000   mountmgr mountmgr.sys Tue Jul 14 02:11:27 2009 (4A5BBF1F)
    851e3000 851ec000   atapi    atapi.sys    Tue Jul 14 02:11:15 2009 (4A5BBF13)
    85204000 8524b000   storport storport.sys Tue Jul 14 02:45:58 2009 (4A5BC736)
    8524b000 85254000   amdxata  amdxata.sys  Tue May 19 20:57:35 2009 (4A12F30F)
    85254000 85288000   fltmgr   fltmgr.sys   Tue Jul 14 02:11:13 2009 (4A5BBF11)
    85288000 85299000   fileinfo fileinfo.sys Tue Jul 14 02:21:51 2009 (4A5BC18F)
    85299000 853c8000   Ntfs     Ntfs.sys     Tue Jul 14 02:12:05 2009 (4A5BBF45)
    853c8000 853f3000   msrpc    msrpc.sys    Tue Jul 14 02:11:59 2009 (4A5BBF3F)
    8542d000 8548a000   cng      cng.sys      Tue Jul 14 02:32:55 2009 (4A5BC427)
    8548a000 85498000   pcw      pcw.sys      Tue Jul 14 02:11:10 2009 (4A5BBF0E)
    85498000 854a1000   Fs_Rec   Fs_Rec.sys   Tue Jul 14 02:11:14 2009 (4A5BBF12)
    854a1000 85558000   ndis     ndis.sys     Tue Jul 14 02:12:24 2009 (4A5BBF58)
    85558000 85596000   NETIO    NETIO.SYS    Tue Jul 14 02:12:35 2009 (4A5BBF63)
    85596000 855bb000   ksecpkg  ksecpkg.sys  Fri Dec 11 06:04:22 2009 (4B21C4C6)
    855bb000 855e8000   rdyboost rdyboost.sys Tue Jul 14 02:22:02 2009 (4A5BC19A)
    8561d000 85766000   tcpip    tcpip.sys    Mon Jun 14 06:36:59 2010 (4C15A3DB)
    85766000 85797000   fwpkclnt fwpkclnt.sys Tue Jul 14 02:12:03 2009 (4A5BBF43)
    85797000 857d6000   volsnap  volsnap.sys  Tue Jul 14 02:11:34 2009 (4A5BBF26)
    857d6000 857de000   spldr    spldr.sys    Mon May 11 19:13:47 2009 (4A084EBB)
    857de000 857ee000   mup      mup.sys      Tue Jul 14 02:14:14 2009 (4A5BBFC6)
    857ee000 857f6000   hwpolicy hwpolicy.sys Tue Jul 14 02:11:01 2009 (4A5BBF05)
    85826000 85858000   fvevol   fvevol.sys   Sat Sep 26 05:24:21 2009 (4ABD7B55)
    85858000 85869000   disk     disk.sys     Tue Jul 14 02:11:28 2009 (4A5BBF20)
    85869000 8588e000   CLASSPNP CLASSPNP.SYS Tue Jul 14 02:11:20 2009 (4A5BBF18)
    8588e000 858dd000   srv2     srv2.sys     Tue Jul 14 02:14:52 2009 (4A5BBFEC)
    858ed000 8590c000   cdrom    cdrom.sys    Tue Jul 14 02:11:24 2009 (4A5BBF1C)
    8590c000 8592f000   MpFilter MpFilter.sys Sat Mar 20 06:03:26 2010 (4BA4490E)
    8592f000 85936000   Null     Null.SYS     Tue Jul 14 02:11:12 2009 (4A5BBF10)
    85936000 8593d000   Beep     Beep.SYS     Tue Jul 14 02:45:00 2009 (4A5BC6FC)
    8593d000 85949000   vga      vga.sys      Tue Jul 14 02:25:50 2009 (4A5BC27E)
    85949000 8596a000   VIDEOPRT VIDEOPRT.SYS Tue Jul 14 02:25:49 2009 (4A5BC27D)
    8596a000 85977000   watchdog watchdog.sys Tue Jul 14 02:24:10 2009 (4A5BC21A)
    85977000 8597f000   RDPCDD   RDPCDD.sys   Tue Jul 14 03:01:40 2009 (4A5BCAE4)
    8597f000 85987000   rdpencdd rdpencdd.sys Tue Jul 14 03:01:39 2009 (4A5BCAE3)
    85987000 8598f000   rdprefmp rdprefmp.sys Tue Jul 14 03:01:41 2009 (4A5BCAE5)
    8598f000 8599a000   Msfs     Msfs.SYS     Tue Jul 14 02:11:26 2009 (4A5BBF1E)
    8599a000 859a8000   Npfs     Npfs.SYS     Tue Jul 14 02:11:31 2009 (4A5BBF23)
    859a8000 859bf000   tdx      tdx.sys      Tue Jul 14 02:12:10 2009 (4A5BBF4A)
    859bf000 859ca000   TDI      TDI.SYS      Tue Jul 14 02:12:12 2009 (4A5BBF4C)
    8c412000 8c46c000   afd      afd.sys      Tue Jul 14 02:12:34 2009 (4A5BBF62)
    8c46c000 8c49e000   netbt    netbt.sys    Tue Jul 14 02:12:18 2009 (4A5BBF52)
    8c49e000 8c4a5000   wfplwf   wfplwf.sys   Tue Jul 14 02:53:51 2009 (4A5BC90F)
    8c4a5000 8c4c4000   pacer    pacer.sys    Tue Jul 14 02:53:58 2009 (4A5BC916)
    8c4c4000 8c4d2000   netbios  netbios.sys  Tue Jul 14 02:53:54 2009 (4A5BC912)
    8c4d2000 8c4e5000   wanarp   wanarp.sys   Tue Jul 14 02:55:02 2009 (4A5BC956)
    8c4e5000 8c4f5000   termdd   termdd.sys   Tue Jul 14 03:01:35 2009 (4A5BCADF)
    8c4f5000 8c536000   rdbss    rdbss.sys    Tue Jul 14 02:14:26 2009 (4A5BBFD2)
    8c536000 8c540000   nsiproxy nsiproxy.sys Tue Jul 14 02:12:08 2009 (4A5BBF48)
    8c540000 8c54a000   mssmbios mssmbios.sys Tue Jul 14 02:19:25 2009 (4A5BC0FD)
    8c54a000 8c556000   discache discache.sys Tue Jul 14 02:24:04 2009 (4A5BC214)
    8c556000 8c56e000   dfsc     dfsc.sys     Tue Jul 14 02:14:16 2009 (4A5BBFC8)
    8c56e000 8c57c000   blbdrive blbdrive.sys Tue Jul 14 02:23:04 2009 (4A5BC1D8)
    8c57c000 8c59d000   tunnel   tunnel.sys   Tue Jul 14 02:54:03 2009 (4A5BC91B)
    8c59d000 8c5af000   intelppm intelppm.sys Tue Jul 14 02:11:03 2009 (4A5BBF07)
    8c5af000 8c5b8000   nvsmu    nvsmu.sys    Mon Jun 29 10:36:34 2009 (4A486F02)
    8c5b8000 8c5c2000   usbohci  usbohci.sys  Tue Jul 14 02:51:14 2009 (4A5BC872)
    8cc2c000 8cc77000   USBPORT  USBPORT.SYS  Tue Jul 14 02:51:13 2009 (4A5BC871)
    8cc77000 8cc86000   usbehci  usbehci.sys  Sat Oct 24 06:58:55 2009 (4AE27B7F)
    8cc86000 8cca5000   HDAudBus HDAudBus.sys Tue Jul 14 02:50:55 2009 (4A5BC85F)
    8cca5000 8cce9880   nvmf6232 nvmf6232.sys Fri Jul 31 02:47:55 2009 (4A72312B)
    8ccea000 8cd02000   raspppoe raspppoe.sys Tue Jul 14 02:54:53 2009 (4A5BC94D)
    8cd02000 8cd19000   raspptp  raspptp.sys  Tue Jul 14 02:54:47 2009 (4A5BC947)
    8cd19000 8cd30000   rassstp  rassstp.sys  Tue Jul 14 02:54:57 2009 (4A5BC951)
    8cd30000 8cd64000   ks       ks.sys       Tue Jul 14 02:45:13 2009 (4A5BC709)
    8cd64000 8cd72000   umbus    umbus.sys    Tue Jul 14 02:51:38 2009 (4A5BC88A)
    8cd72000 8cdb6000   usbhub   usbhub.sys   Sat Oct 24 07:00:05 2009 (4AE27BC5)
    8cdb6000 8cdc7000   NDProxy  NDProxy.SYS  Tue Jul 14 02:54:27 2009 (4A5BC933)
    8f600000 8f622000   ndiswan  ndiswan.sys  Tue Jul 14 02:54:34 2009 (4A5BC93A)
    8f622000 8f62f000   kbdclass kbdclass.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
    8f62f000 8f630380   swenum   swenum.sys   Tue Jul 14 02:45:08 2009 (4A5BC704)
    8f638000 900b5dc0   nvlddmkm nvlddmkm.sys Sat Jul 10 00:15:14 2010 (4C379162)
    900b6000 900b7040   nvBridge nvBridge.kmd Sat Jul 10 00:10:11 2010 (4C379033)
    900b8000 9016f000   dxgkrnl  dxgkrnl.sys  Fri Oct 02 03:48:33 2009 (4AC54DE1)
    9016f000 901a8000   dxgmms1  dxgmms1.sys  Tue Jul 14 02:25:25 2009 (4A5BC265)
    901a8000 901b1000   wmiacpi  wmiacpi.sys  Tue Jul 14 02:19:16 2009 (4A5BC0F4)
    901b1000 901be000   CompositeBus CompositeBus.sys Tue Jul 14 02:45:26 2009 (4A5BC716)
    901be000 901d0000   AgileVpn AgileVpn.sys Tue Jul 14 02:55:00 2009 (4A5BC954)
    901d0000 901e8000   rasl2tp  rasl2tp.sys  Tue Jul 14 02:54:33 2009 (4A5BC939)
    901e8000 901f3000   ndistapi ndistapi.sys Tue Jul 14 02:54:24 2009 (4A5BC930)
    901f3000 90200000   mouclass mouclass.sys Tue Jul 14 02:11:15 2009 (4A5BBF13)
    95017000 95067000   HdAudio  HdAudio.sys  Tue Jul 14 02:51:46 2009 (4A5BC892)
    95067000 95096000   portcls  portcls.sys  Tue Jul 14 02:51:00 2009 (4A5BC864)
    95096000 950af000   drmk     drmk.sys     Tue Jul 14 03:36:05 2009 (4A5BD2F5)
    950af000 950b9000   Dxapi    Dxapi.sys    Tue Jul 14 02:25:25 2009 (4A5BC265)
    950b9000 950c6000   crashdmp crashdmp.sys Tue Jul 14 02:45:50 2009 (4A5BC72E)
    950c6000 950d0000   dump_diskdump dump_diskdump.sys Tue Jul 14 02:45:49 2009 (4A5BC72D)
    950d0000 95107000   dump_nvstor32 dump_nvstor32.sys Wed Aug 05 03:27:05 2009 (4A78D1D9)
    95107000 95118000   dump_dumpfve dump_dumpfve.sys Tue Jul 14 02:12:47 2009 (4A5BBF6F)
    95118000 95123000   hidusb   hidusb.sys   Tue Jul 14 02:51:04 2009 (4A5BC868)
    95123000 95136000   HIDCLASS HIDCLASS.SYS Tue Jul 14 02:51:01 2009 (4A5BC865)
    95136000 9513c480   HIDPARSE HIDPARSE.SYS Tue Jul 14 02:50:59 2009 (4A5BC863)
    9513d000 9513e700   USBD     USBD.SYS     Tue Jul 14 02:51:05 2009 (4A5BC869)
    9513f000 9514a000   monitor  monitor.sys  Tue Jul 14 02:25:58 2009 (4A5BC286)
    9514a000 95155000   mouhid   mouhid.sys   Tue Jul 14 02:45:08 2009 (4A5BC704)
    95155000 9516c000   usbccgp  usbccgp.sys  Tue Jul 14 02:51:31 2009 (4A5BC883)
    9516c000 95178000   kbdhid   kbdhid.sys   Tue Jul 14 02:45:09 2009 (4A5BC705)
    95178000 95193000   luafv    luafv.sys    Tue Jul 14 02:15:44 2009 (4A5BC020)
    95193000 951ad000   WudfPf   WudfPf.sys   Tue Jul 14 02:50:13 2009 (4A5BC835)
    951ad000 951bd000   lltdio   lltdio.sys   Tue Jul 14 02:53:18 2009 (4A5BC8EE)
    951bd000 951d0000   rspndr   rspndr.sys   Tue Jul 14 02:53:20 2009 (4A5BC8F0)
    951d0000 951f1000   srvnet   srvnet.sys   Tue Jul 14 02:14:45 2009 (4A5BBFE5)
    95200000 9520d000   tcpipreg tcpipreg.sys Tue Jul 14 02:54:14 2009 (4A5BC926)
    9521a000 9529f000   HTTP     HTTP.sys     Tue Jul 14 02:12:53 2009 (4A5BBF75)
    9529f000 952b8000   bowser   bowser.sys   Tue Jul 14 02:14:21 2009 (4A5BBFCD)
    952b8000 952ca000   mpsdrv   mpsdrv.sys   Tue Jul 14 02:52:52 2009 (4A5BC8D4)
    952ca000 952ed000   mrxsmb   mrxsmb.sys   Sat Feb 27 09:32:02 2010 (4B88CA72)
    952ed000 95328000   mrxsmb10 mrxsmb10.sys Sat Feb 27 09:32:21 2010 (4B88CA85)
    95328000 95343000   mrxsmb20 mrxsmb20.sys Sat Feb 27 09:32:11 2010 (4B88CA7B)
    9535b000 953f2000   peauth   peauth.sys   Tue Jul 14 03:35:44 2009 (4A5BD2E0)
    953f2000 953fc000   secdrv   secdrv.SYS   Wed Sep 13 16:18:32 2006 (45080528)
    95620000 9563e000   cdd      cdd.dll      Tue Jul 14 04:04:18 2009 (4A5BD992)
    95790000 959da000   win32k   win32k.sys   Sat Jun 19 07:06:50 2010 (4C1C425A)
    959f0000 959f9000   TSDDD    TSDDD.dll    unavailable (00000000)
    9a01b000 9a06c000   srv      srv.sys      Tue Jul 14 02:15:10 2009 (4A5BBFFE)
    9a06c000 9a074e00   MpNWMon  MpNWMon.sys  Sat Mar 20 06:03:24 2010 (4BA4490C)
    
    Unloaded modules:
    9a0df000 9a149000   spsys.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    9a075000 9a0df000   spsys.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    95343000 9535b000   parport.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    8588e000 8589b000   crashdmp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    8589b000 858a5000   dump_storpor
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    858a5000 858dc000   dump_nvstor3
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    858dc000 858ed000   dump_dumpfve
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    
     
  8. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    Could be the video card really:

    Bug Check 0x50: PAGE_FAULT_IN_NONPAGED_AREA
    Bug check 0x50 usually occurs after the installation of faulty hardware or in the event of failure of installed hardware (usually related to defective RAM, be it main memory, L2 RAM cache, or video RAM).
     
  9. Shumboom

    Shumboom New Member

    Joined:
    Dec 31, 2009
    Messages:
    74
    Likes Received:
    0
    I have done the chkdsk and memtest and all were fine.
    Windows updates have crashed the machine occasionally and I am not sure what the situation is now.

    If u think its the video card then I'll try and find another and see what happens. Is there a test I can do ?
    thanks,S
     
  10. reghakr

    reghakr Excellent Member

    Joined:
    Jan 26, 2009
    Messages:
    14,220
    Likes Received:
    180
    Did you disable or uninstall the toolbars?
     
  11. Captain Jack

    Captain Jack Extraordinary Member

    Joined:
    Mar 6, 2010
    Messages:
    1,952
    Likes Received:
    139
    Hello and Welcome !

    Lot of different crashes and Driver Verifier haven't caught any drivers specficially could be some Hardware. It's best to Run a Hardware Diagnostic (Memory and Hard Drive) follow this link for instructions Hardware Diagnostic !! « Captain Debugger

    Follow this link and run the Video Stress Test STOP 0x116: VIDEO_TDR_ERROR troubleshooting - Windows 7 Forums

    As I mentioned in the article make sure when you run atleast 6 to 8 passes. Then Run the Tool according this article and post us the Files BSOD Kernel Dump & System File Collection - jcgriff2.com

    Good Luck,
    Captain
     
    reghakr and (deleted member) like this.
  12. reghakr

    reghakr Excellent Member

    Joined:
    Jan 26, 2009
    Messages:
    14,220
    Likes Received:
    180
    I would uninstall all the toolvars and BHO's.

    This is troubling me also:
    Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

    Download http://www.cexx.org/lspfix.zip
     
  13. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
  14. reghakr

    reghakr Excellent Member

    Joined:
    Jan 26, 2009
    Messages:
    14,220
    Likes Received:
    180
    Did we get a ruling on whether the Aero troubleshooter provided any good information, IE, yes, your video card supports Aero?
     
  15. cybercore

    cybercore New Member

    Joined:
    Jul 7, 2009
    Messages:
    15,823
    Likes Received:
    321
    So far we have this below (from the latest crash dump), and I wonder if it is actually the video card - the drivers have been updated, but looks like nvlddmkm.sys is faulting. The hard drive has no errors, neither does the ram, as reported by the user.


     
  16. Shumboom

    Shumboom New Member

    Joined:
    Dec 31, 2009
    Messages:
    74
    Likes Received:
    0
    Sorry but I needed a holiday after working on this machine!

    1. The furMark test resulted in this BSOD.
    2. The LSP-Fix program ran ok
    3. Memtest86 has run overnight without errors.
    4. Chkdsk has been run several times without error
    5. The video card stability test froze the pc after 10 mins first time, then ran for 6 hours before freezing again. No dumps though.

    thanks!
     

    Attached Files:

  17. reghakr

    reghakr Excellent Member

    Joined:
    Jan 26, 2009
    Messages:
    14,220
    Likes Received:
    180
    #57 reghakr, Sep 18, 2010
    Last edited: Sep 18, 2010
  18. Captain Jack

    Captain Jack Extraordinary Member

    Joined:
    Mar 6, 2010
    Messages:
    1,952
    Likes Received:
    139
    Hello,

    The dumps are pointing to Hardware. Are you Overclocking ? Reset the BIOS to default settings. Does your PSU have enough power ? Install Speedfan check the Temps make sure there is no Overheat issues. I'm starting to suspect if it's a bad display card or so :confused: If you have or see if you can borrow one from your friend and test it and see if it crashes.

    Code:
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If kernel debugger is available get stack backtrace.
    Arguments:
    Arg1: 6c1d88cf, memory referenced
    Arg2: 00000002, IRQL
    Arg3: 00000001, value 0 = read operation, 1 = write operation
    Arg4: 8c559271, address which referenced memory
    Debugging Details:
    ------------------
    
    WRITE_ADDRESS: GetPointerFromAddress: unable to read from 82b7b718
    Unable to read MiSystemVaType memory at 82b5b160
     6c1d88cf 
    CURRENT_IRQL:  2
    FAULTING_IP: 
    tunnel!TunnelWorkQueueRoutine+65
    8c559271 d08bcf881d6c    ror     byte ptr [ebx+6C1D88CFh],1
    CUSTOMER_CRASH_COUNT:  1
    DEFAULT_BUCKET_ID:  [B][COLOR=red]VERIFIER_ENABLED_VISTA_MINIDUMP[/COLOR][/B]
    BUGCHECK_STR:  0xD1
    PROCESS_NAME:  System
    TRAP_FRAME:  87b07c58 -- (.trap 0xffffffff87b07c58)
    ErrCode = 00000002
    eax=00000000 ebx=00000000 ecx=8c564668 edx=8c564670 esi=8c564660 edi=8c564669
    eip=8c559271 esp=87b07ccc ebp=87b07cdc iopl=0         nv up ei pl zr na pe nc
    cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010246
    tunnel!TunnelWorkQueueRoutine+0x65:
    8c559271 d08bcf881d6c    ror     byte ptr [ebx+6C1D88CFh],1 ds:0023:6c1d88cf=??
    Resetting default scope
    MISALIGNED_IP: 
    tunnel!TunnelWorkQueueRoutine+65
    8c559271 d08bcf881d6c    ror     byte ptr [ebx+6C1D88CFh],1
    LAST_CONTROL_TRANSFER:  from 8c559271 to 82a5982b
    STACK_TEXT:  
    87b07c58 8c559271 badb0d00 8c564670 8c5645c8 nt!KiTrap0E+0x2cf
    87b07cdc 8549730a 00000000 8a8f8fe8 87b07d00 tunnel!TunnelWorkQueueRoutine+0x65
    87b07cec 82c33815 00000000 8a8f8fe8 84df7020 ndis!ndisDispatchIoWorkItem+0xf
    87b07d00 82a80f3b 8ac56a48 00000000 84df7020 nt!IopProcessWorkItem+0x23
    87b07d50 82c216d3 00000000 a8093898 00000000 nt!ExpWorkerThread+0x10d
    87b07d90 82ad30f9 82a80e2e 00000000 00000000 nt!PspSystemThreadStartup+0x9e
    00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19
    
    STACK_COMMAND:  kb
    FOLLOWUP_IP: 
    tunnel!TunnelWorkQueueRoutine+65
    8c559271 d08bcf881d6c    ror     byte ptr [ebx+6C1D88CFh],1
    SYMBOL_STACK_INDEX:  1
    SYMBOL_NAME:  tunnel!TunnelWorkQueueRoutine+65
    FOLLOWUP_NAME:  MachineOwner
    IMAGE_NAME:  hardware
    DEBUG_FLR_IMAGE_TIMESTAMP:  0
    MODULE_NAME: [B][COLOR=red]hardware[/COLOR][/B]
    FAILURE_BUCKET_ID:  IP_MISALIGNED_tunnel.sys
    
    Hope this helps,
    Captain
     
    cybercore and (deleted member) like this.
  19. TorrentG

    TorrentG Banned

    Joined:
    May 31, 2010
    Messages:
    7,814
    Likes Received:
    372
    Excellent Captain, but I don't think it's the video card. Notice in the dump it does say hardware, but also tunnel.sys, which is networking.

    Probably bad RAM or overclocking like you say. :)
     
    cybercore and (deleted member) like this.
  20. Captain Jack

    Captain Jack Extraordinary Member

    Joined:
    Mar 6, 2010
    Messages:
    1,952
    Likes Received:
    139
    Yes your rite ! I suspected that because once nVidia was caught and Funmark failed and blue screened. He said the Memtes86+ ran over night no problem. So i think it might be heat issue, Overclocking or not enough power. Video card was just a test to rule that out of the equation. Thanks TorrentG
     

Share This Page

Loading...