SpaceDog

New Member
Joined
Mar 10, 2011
Messages
24
Hi

I have a problem with my computer it crashes, it happens when the computer is in idle and doing nothing.

The temperatures are fine 37 C idle, 57/58 load
I have tested with memtest overnight there was no errors on the RAM.
I have tested with super pi overnight and it didn't crashed
tried to find out the reson with bluescreenview,
run everything on stock settings,
update all drivers inc. chipset drivers

Setup
Gigabyte EP45-UD3P
E8400 @3.6GHz (400 X 9) VCore 1.26
XIGMATEK RED SCORPION-S1283
Radeon HD 5870
Mushkin Redline DDR2 4 GB (runing 400MHz 5-5-5-18), 2.0 Volt (Northbridge raised to 1.4V)
Samsung F3 1 TB
Corsair TX650W
Windows 7 Ultimate 64bit

I have attached the 4 lates dump files, and the newste dump, the driver verifier was enabled. I hope someone can help me find out what is wrong

Link Removed
 


Solution
BCCodes: 50, a, 1a



1. Disable Driver Verifier --> Start > verifier.exe /reset



2. Uninstall Avast, install MSE:

Link Removed

Link Removed due to 404 Error




3. Update drivers:

AnyDVD
AnyDVD.sys Fri Aug 01 09:27:41 2008
ElbyCDIO.sys Mon Jul 21 08:11:55 2008

Adobe
adfs.SYS Thu Jun 26 16:52:37 2008

EZB ISODrive
ISODrv64.sys Fri Nov 02 23:21:18 2007

Realtek LAN
Rt64win7.sys Thu Feb 26 04:04:13 2009

Realtek Audio
RTKVHD64.sys Tue Nov 03 06:39:55 2009

Realtek ATI HDMI Audio
RtHDMIVX.sys Wed Dec 02 01:33:25 2009

WinRing-based software
WinRing0x64.sys Sat Jul 26 09:29:37 2008...
BCCodes: 50, a, 1a



1. Disable Driver Verifier --> Start > verifier.exe /reset



2. Uninstall Avast, install MSE:

Link Removed

Link Removed due to 404 Error




3. Update drivers:

AnyDVD
AnyDVD.sys Fri Aug 01 09:27:41 2008
ElbyCDIO.sys Mon Jul 21 08:11:55 2008

Adobe
adfs.SYS Thu Jun 26 16:52:37 2008

EZB ISODrive
ISODrv64.sys Fri Nov 02 23:21:18 2007

Realtek LAN
Rt64win7.sys Thu Feb 26 04:04:13 2009

Realtek Audio
RTKVHD64.sys Tue Nov 03 06:39:55 2009

Realtek ATI HDMI Audio
RtHDMIVX.sys Wed Dec 02 01:33:25 2009

WinRing-based software
WinRing0x64.sys Sat Jul 26 09:29:37 2008














Crash Dumps:

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\022011-20935-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`0341d000 PsLoadedModuleList = 0xfffff800`0365ae50
Debug session time: Sun Feb 20 10:18:37.787 2011 (UTC - 5:00)
System Uptime: 1 days 18:02:27.807
Loading Kernel Symbols
...............................................................
................................................................
....................................
Loading User Symbols
Loading unloaded module list
...........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1A, {41790, fffffa8001f65d20, ffff, 0}

Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+33906 )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

MEMORY_MANAGEMENT (1a)
    # Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000041790, The subtype of the bugcheck.
Arg2: fffffa8001f65d20
Arg3: 000000000000ffff
Arg4: 0000000000000000

Debugging Details:
------------------


BUGCHECK_STR:  0x1a_41790

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  AvastSvc.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from fffff80003500f9e to fffff8000348d740

STACK_TEXT:  
fffff880`035c57a8 fffff800`03500f9e : 00000000`0000001a 00000000`00041790 fffffa80`01f65d20 00000000`0000ffff : nt!KeBugCheckEx
fffff880`035c57b0 fffff800`034c0df9 : fffffa80`00000000 00000000`652e9fff 00000000`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x33906
fffff880`035c5970 fffff800`0346080c : ffffffff`ffffffff 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MiRemoveMappedView+0xd9
fffff880`035c5a90 fffff800`03770abf : fffff8a0`010a0060 00000000`00000001 00000000`00000000 fffffa80`05b27b60 : nt!MmCleanProcessAddressSpace+0x228
fffff880`035c5ae0 fffff800`0374995b : 00000000`00000000 00000000`00000001 00000000`fffdb000 00000000`00000000 : nt!PspExitThread+0x92f
fffff880`035c5ba0 fffff800`0348c993 : fffffa80`05b62060 00000000`00000000 00000000`fffdb001 fffffa80`05b27b60 : nt!NtTerminateProcess+0x25b
fffff880`035c5c20 00000000`77c1f97a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0008e308 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77c1f97a


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt! ?? ::FNODOBFM::`string'+33906
fffff800`03500f9e cc              int     3

SYMBOL_STACK_INDEX:  1

SYMBOL_NAME:  nt! ?? ::FNODOBFM::`string'+33906

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4cc791bd

FAILURE_BUCKET_ID:  X64_0x1a_41790_nt!_??_::FNODOBFM::_string_+33906

BUCKET_ID:  X64_0x1a_41790_nt!_??_::FNODOBFM::_string_+33906

Followup: MachineOwner
---------























Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\030811-19390-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`03451000 PsLoadedModuleList = 0xfffff800`0368ee50
Debug session time: Tue Mar  8 16:18:44.887 2011 (UTC - 5:00)
System Uptime: 2 days 5:53:44.417
Loading Kernel Symbols
...............................................................
................................................................
......................................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck A, {80000000, 2, 1, fffff800035020a2}

Probably caused by : afd.sys ( afd!AfdPoll32+301 )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000080000000, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
	bit 0 : value 0 = read operation, 1 = write operation
	bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff800035020a2, address which referenced memory

Debugging Details:
------------------


WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800036f90e0
 0000000080000000 

CURRENT_IRQL:  2

FAULTING_IP: 
nt!KxWaitForLockOwnerShip+12
fffff800`035020a2 48890a          mov     qword ptr [rdx],rcx

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  Skype.exe

TRAP_FRAME:  fffff880028a36c0 -- (.trap 0xfffff880028a36c0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffff880028a3970
rdx=0000000080000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800035020a2 rsp=fffff880028a3850 rbp=00000000000007ff
 r8=fffff880028a3970  r9=0000000000000018 r10=fffffa80036dac90
r11=000000000016019f r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei ng nz na po nc
nt!KxWaitForLockOwnerShip+0x12:
fffff800`035020a2 48890a          mov     qword ptr [rdx],rcx ds:be80:00000000`80000000=????????????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff800034c0ca9 to fffff800034c1740

STACK_TEXT:  
fffff880`028a3578 fffff800`034c0ca9 : 00000000`0000000a 00000000`80000000 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`028a3580 fffff800`034bf920 : 00000000`00000000 ffffffff`c4653600 fffffa80`0434f440 fffffa80`040e8060 : nt!KiBugCheckDispatch+0x69
fffff880`028a36c0 fffff800`035020a2 : fffffa80`07e63750 00000000`00000000 fffffa80`04301830 fffffa80`07e63530 : nt!KiPageFault+0x260
fffff880`028a3850 fffff800`034d2f2d : ffffffff`c4653600 fffff880`00000000 fffffa80`036dac90 fffffa80`04301901 : nt!KxWaitForLockOwnerShip+0x12
fffff880`028a3880 fffff880`02d3f8c1 : 00000000`000007ff ffffffff`c4653600 fffffa80`04301830 fffff800`034d0b7c : nt!KeAcquireInStackQueuedSpinLock+0x8d
fffff880`028a38d0 fffff880`02d2fcf5 : fffffa80`0489da00 fffffa80`07e63500 00000000`00000001 00000000`00000000 : afd!AfdPoll32+0x301
fffff880`028a39e0 fffff800`037da547 : fffffa80`054a8f20 fffff880`028a3ca0 fffffa80`04301a20 fffffa80`04301830 : afd! ?? ::GFJBLGFE::`string'+0x1e95
fffff880`028a3a10 fffff800`037dada6 : fffff880`009eb180 00000000`000003c0 00000000`00000001 00000000`00000000 : nt!IopXxxControlFile+0x607
fffff880`028a3b40 fffff800`034c0993 : 00000000`00000000 fffff800`037dbfa0 fffff880`028a3ca0 00000000`00000000 : nt!NtDeviceIoControlFile+0x56
fffff880`028a3bb0 00000000`75612dd9 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`04f3f0f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x75612dd9


STACK_COMMAND:  kb

FOLLOWUP_IP: 
afd!AfdPoll32+301
fffff880`02d3f8c1 4533c9          xor     r9d,r9d

SYMBOL_STACK_INDEX:  5

SYMBOL_NAME:  afd!AfdPoll32+301

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: afd

IMAGE_NAME:  afd.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bc184

FAILURE_BUCKET_ID:  X64_0xA_afd!AfdPoll32+301

BUCKET_ID:  X64_0xA_afd!AfdPoll32+301

Followup: MachineOwner
---------





















Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\030611-18283-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`0344d000 PsLoadedModuleList = 0xfffff800`0368ae50
Debug session time: Sun Mar  6 10:21:47.677 2011 (UTC - 5:00)
System Uptime: 0 days 15:15:57.207
Loading Kernel Symbols
...............................................................
................................................................
.....................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 50, {fffffa8083dcaf08, 1, fffff88003c20ff3, 5}


Could not read faulting driver name
Probably caused by : dxgmms1.sys ( dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced.  This cannot be protected by try-except,
it must be protected by a Probe.  Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffffa8083dcaf08, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffff88003c20ff3, If non-zero, the instruction address which referenced the bad memory
	address.
Arg4: 0000000000000005, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800036f50e0
 fffffa8083dcaf08 

FAULTING_IP: 
dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3
fffff880`03c20ff3 48894108        mov     qword ptr [rcx+8],rax

MM_INTERNAL_CODE:  5

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x50

PROCESS_NAME:  System

CURRENT_IRQL:  0

TRAP_FRAME:  fffff880021bd740 -- (.trap 0xfffff880021bd740)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffffa80037a8d00 rbx=0000000000000000 rcx=fffffa8083dcaf00
rdx=fffff8a0034c03f0 rsi=0000000000000000 rdi=0000000000000000
rip=fffff88003c20ff3 rsp=fffff880021bd8d0 rbp=0000000000000000
 r8=fffffa8005449380  r9=0000000000000000 r10=0000000000000000
r11=fffffa80057563c0 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei ng nz na po nc
dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+0xa3:
fffff880`03c20ff3 48894108        mov     qword ptr [rcx+8],rax ds:0002:fffffa80`83dcaf08=????????????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff8000353c8c1 to fffff800034bd740

STACK_TEXT:  
fffff880`021bd5d8 fffff800`0353c8c1 : 00000000`00000050 fffffa80`83dcaf08 00000000`00000001 fffff880`021bd740 : nt!KeBugCheckEx
fffff880`021bd5e0 fffff800`034bb82e : 00000000`00000001 fffff8a0`02baf010 00000000`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x40e8b
fffff880`021bd740 fffff880`03c20ff3 : fffff8a0`01a6edc0 fffffa80`05b92f70 fffffa80`05755000 00000000`00000000 : nt!KiPageFault+0x16e
fffff880`021bd8d0 fffff880`03c1e8af : 00000000`00000000 fffffa80`03973028 00000000`00000013 fffffa80`03b8a080 : dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+0xa3
fffff880`021bd910 fffff880`03c3865d : 00000000`00000000 fffff8a0`0b02bb30 fffffa80`00000000 fffffa80`05a04e10 : dxgmms1!VIDMM_GLOBAL::PrepareDmaBuffer+0xe1b
fffff880`021bdae0 fffff880`03c38398 : fffff800`047e3080 fffff880`03c37d00 fffffa80`00000000 fffffa80`00000000 : dxgmms1!VidSchiSubmitRenderCommand+0x241
fffff880`021bdcd0 fffff880`03c37e96 : 00000000`00000000 fffffa80`04f96560 00000000`00000080 fffffa80`051b6410 : dxgmms1!VidSchiSubmitQueueCommand+0x50
fffff880`021bdd00 fffff800`037607c6 : 00000000`03bc47d7 fffffa80`0572f210 fffffa80`0366b890 fffffa80`0572f210 : dxgmms1!VidSchiWorkerThread+0xd6
fffff880`021bdd40 fffff800`0349bc26 : fffff800`03637e80 fffffa80`0572f210 fffff800`03645c40 63517437`78625133 : nt!PspSystemThreadStartup+0x5a
fffff880`021bdd80 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KxStartSystemThread+0x16


STACK_COMMAND:  kb

FOLLOWUP_IP: 
dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3
fffff880`03c20ff3 48894108        mov     qword ptr [rcx+8],rax

SYMBOL_STACK_INDEX:  3

SYMBOL_NAME:  dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: dxgmms1

IMAGE_NAME:  dxgmms1.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4d3fa174

FAILURE_BUCKET_ID:  X64_0x50_dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3

BUCKET_ID:  X64_0x50_dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForSubmission+a3

Followup: MachineOwner
---------






















Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\031011-24164-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`0340d000 PsLoadedModuleList = 0xfffff800`0364ae50
Debug session time: Thu Mar 10 13:27:35.668 2011 (UTC - 5:00)
System Uptime: 0 days 0:26:17.213
Loading Kernel Symbols
...............................................................
................................................................
...................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck A, {fffff808036b58f8, c, 0, fffff8000348b925}

Probably caused by : ntkrnlmp.exe ( nt!KiIpiSendRequest+1d5 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: fffff808036b58f8, memory referenced
Arg2: 000000000000000c, IRQL
Arg3: 0000000000000000, bitfield :
	bit 0 : value 0 = read operation, 1 = write operation
	bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff8000348b925, address which referenced memory

Debugging Details:
------------------


READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800036b50e0
 fffff808036b58f8 

CURRENT_IRQL:  c

FAULTING_IP: 
nt!KiIpiSendRequest+1d5
fffff800`0348b925 4d8b9cf600892a00 mov     r11,qword ptr [r14+rsi*8+2A8900h]

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VERIFIER_ENABLED_VISTA_MINIDUMP

BUGCHECK_STR:  0xA

PROCESS_NAME:  svchost.exe

TRAP_FRAME:  fffff880031865d0 -- (.trap 0xfffff880031865d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=00000000ffffffff rbx=0000000000000000 rcx=000000000000001f
rdx=0000000000000001 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8000348b925 rsp=fffff88003186760 rbp=0000000000000000
 r8=000000000000001f  r9=0000000000000000 r10=0000000000000000
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei ng nz na po nc
nt!KiIpiSendRequest+0x1d5:
fffff800`0348b925 4d8b9cf600892a00 mov     r11,qword ptr [r14+rsi*8+2A8900h] ds:00000000`002a8900=????????????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff8000347cca9 to fffff8000347d740

STACK_TEXT:  
fffff880`03186488 fffff800`0347cca9 : 00000000`0000000a fffff808`036b58f8 00000000`0000000c 00000000`00000000 : nt!KeBugCheckEx
fffff880`03186490 fffff800`0347b920 : fffff6fd`40030ac0 fffff800`035f7e80 fffff800`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`031865d0 fffff800`0348b925 : 00000000`00000293 fffff800`03911dfe fffff880`03186770 fffff880`03181000 : nt!KiPageFault+0x260
fffff880`03186760 fffff800`03490cc4 : fffff880`031868d8 fffff800`00000000 fffff880`031868d8 fffffa80`0a681ea0 : nt!KiIpiSendRequest+0x1d5
fffff880`03186820 fffff800`0348b731 : 00000000`00000000 00000000`00000000 00000000`00000001 fffff800`0360c888 : nt!KiIpiSendRequestEx+0x84
fffff880`03186860 fffff800`0349148b : 00000000`00003daf 00000000`00000001 00000000`00000000 00000000`00003dae : nt!KeFlushMultipleRangeTb+0x381
fffff880`03186930 fffff800`034ffa5e : fffffa80`063beec8 fffff880`00000001 00000000`00000001 fffff880`03186bb0 : nt!MiAgeWorkingSet+0x36b
fffff880`03186ae0 fffff800`03491ee2 : 00000000`0000062a 00000000`00000000 fffffa80`00000000 00000000`00000001 : nt! ?? ::FNODOBFM::`string'+0x496d6
fffff880`03186b80 fffff800`03492173 : 00000000`00000008 fffff880`03186c10 00000000`00000001 fffffa80`00000000 : nt!MmWorkingSetManager+0x6e
fffff880`03186bd0 fffff800`037207c6 : fffffa80`0371f760 00000000`00000080 fffffa80`036f6040 00000000`00000001 : nt!KeBalanceSetManager+0x1c3
fffff880`03186d40 fffff800`0345bc26 : fffff800`035f7e80 fffffa80`0371f760 fffff800`03605c40 00001000`00000000 : nt!PspSystemThreadStartup+0x5a
fffff880`03186d80 00000000`00000000 : fffff880`03187000 fffff880`03181000 fffff880`03186820 00000000`00000000 : nt!KxStartSystemThread+0x16


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!KiIpiSendRequest+1d5
fffff800`0348b925 4d8b9cf600892a00 mov     r11,qword ptr [r14+rsi*8+2A8900h]

SYMBOL_STACK_INDEX:  3

SYMBOL_NAME:  nt!KiIpiSendRequest+1d5

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4cc791bd

FAILURE_BUCKET_ID:  X64_0xA_VRF_nt!KiIpiSendRequest+1d5

BUCKET_ID:  X64_0xA_VRF_nt!KiIpiSendRequest+1d5

Followup: MachineOwner
---------




Drivers:

Code:
start             end                 module name
fffff880`04800000 fffff880`0483e000   1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f7e000 fffff880`00fd5000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`06271000 fffff880`06289000   adfs     adfs.SYS     Thu Jun 26 16:52:37 2008 (48640195)
fffff880`02c89000 fffff880`02d13000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`048a3000 fffff880`048b9000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`00dd8000 fffff880`00de3000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`04874000 fffff880`04893000   AnyDVD   AnyDVD.sys   Fri Aug 01 09:27:41 2008 (48930F4D)
fffff880`06c3a000 fffff880`06c43000   aswFsBlk aswFsBlk.SYS Thu Jan 13 03:37:10 2011 (4D2EB9B6)
fffff880`06c00000 fffff880`06c3a000   aswMonFlt aswMonFlt.sys Thu Jan 13 03:37:21 2011 (4D2EB9C1)
fffff880`02d13000 fffff880`02d1d000   aswRdr   aswRdr.SYS   Thu Jan 13 03:37:32 2011 (4D2EB9CC)
fffff880`03b40000 fffff880`03b89000   aswSP    aswSP.SYS    Thu Jan 13 03:41:42 2011 (4D2EBAC6)
fffff880`01969000 fffff880`01979000   aswTdi   aswTdi.SYS   Thu Jan 13 03:40:19 2011 (4D2EBA73)
fffff880`00dcf000 fffff880`00dd8000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00c00000 fffff880`00c2a000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`03ca6000 fffff880`044dd000   atikmdag atikmdag.sys Tue Jan 04 21:48:52 2011 (4D23DC14)
fffff880`03a00000 fffff880`03a4d000   atikmpag atikmpag.sys Tue Jan 04 21:19:38 2011 (4D23D53A)
fffff960`00920000 fffff960`00981000   ATMFD    ATMFD.DLL    Fri Jan 07 00:49:20 2011 (4D26A960)
fffff880`018bd000 fffff880`018c4000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03b2f000 fffff880`03b40000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`06357000 fffff880`06375000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`006f0000 fffff960`00717000   cdd      cdd.dll      unavailable (00000000)
fffff880`0188a000 fffff880`018b4000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00cf5000 fffff880`00db5000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`01822000 fffff880`01852000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00c97000 fffff880`00cf5000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`010fd000 fffff880`01170000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`04893000 fffff880`048a3000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`06d54000 fffff880`06d62000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03a8e000 fffff880`03b11000   csc      csc.sys      Mon Jul 13 19:24:26 2009 (4A5BC22A)
fffff880`03b11000 fffff880`03b2f000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`01979000 fffff880`01988000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`013e7000 fffff880`013fd000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`04f51000 fffff880`04f73000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`06d62000 fffff880`06d6e000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`06d85000 fffff880`06d98000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`06d6e000 fffff880`06d79000   dump_msahci dump_msahci.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`06d79000 fffff880`06d85000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`044dd000 fffff880`045d1000   dxgkrnl  dxgkrnl.sys  Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`03c00000 fffff880`03c46000   dxgmms1  dxgmms1.sys  Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`02dec000 fffff880`02df6000   ElbyCDIO ElbyCDIO.sys Mon Jul 21 08:11:55 2008 (48847D0B)
fffff880`0483e000 fffff880`0484b000   fdc      fdc.sys      unavailable (00000000)
fffff880`0108b000 fffff880`0109f000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`04ec1000 fffff880`04ecc000   flpydisk flpydisk.sys unavailable (00000000)
fffff880`0103f000 fffff880`0108b000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`0122b000 fffff880`01235000   Fs_Rec   Fs_Rec.sys   unavailable (00000000)
fffff880`01000000 fffff880`0103a000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`01593000 fffff880`015dd000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`039ea000 fffff800`03a33000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`03c46000 fffff880`03c6a000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`04f97000 fffff880`04fb0000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`067f3000 fffff880`067fb080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`04f89000 fffff880`04f97000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`0628f000 fffff880`06357000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`015f5000 fffff880`015fe000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`03baf000 fffff880`03bc5000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`02c68000 fffff880`02c84000   ISODrv64 ISODrv64.sys Fri Nov 02 23:21:18 2007 (472BE92E)
fffff880`04979000 fffff880`04988000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`06d46000 fffff880`06d54000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00ba1000 fffff800`00bab000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`04999000 fffff880`049dc000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`01200000 fffff880`0121a000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01568000 fffff880`01593000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`04f73000 fffff880`04f78200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`04fcd000 fffff880`04fe0000   LHidFilt LHidFilt.Sys Wed Jun 17 12:49:39 2009 (4A391EA3)
fffff880`06c64000 fffff880`06c79000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`04e00000 fffff880`04e14000   LMouFilt LMouFilt.Sys Wed Jun 17 12:49:43 2009 (4A391EA7)
fffff880`06dc1000 fffff880`06de4000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`04f79000 fffff880`04f89000   LUsbFilt LUsbFilt.Sys Wed Jun 17 12:49:46 2009 (4A391EAA)
fffff880`06cf4000 fffff880`06d45d00   lvrs64   lvrs64.sys   Tue Nov 09 21:36:46 2010 (4CDA053E)
fffff880`06803000 fffff880`06bf9a80   lvuvc64  lvuvc64.sys  Tue Nov 09 21:37:14 2010 (4CDA055A)
fffff880`00c3f000 fffff880`00c83000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`06db3000 fffff880`06dc1000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`04988000 fffff880`04997000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`04fe0000 fffff880`04fed000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00db5000 fffff880`00dcf000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`06375000 fffff880`0638d000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`0638d000 fffff880`063ba000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`06200000 fffff880`0624e000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`0624e000 fffff880`06271000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`00c2a000 fffff880`00c35000   msahci   msahci.sys   Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`01922000 fffff880`0192d000   Msfs     Msfs.SYS     unavailable (00000000)
fffff880`00fde000 fffff880`00fe8000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`0109f000 fffff880`010fd000   msrpc    msrpc.sys    unavailable (00000000)
fffff880`02c5d000 fffff880`02c68000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`01400000 fffff880`01412000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`01416000 fffff880`01508000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`048dd000 fffff880`048e9000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`048e9000 fffff880`04918000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`04ecc000 fffff880`04ee1000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`02d91000 fffff880`02da0000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02d1d000 fffff880`02d62000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01508000 fffff880`01568000   NETIO    NETIO.SYS    Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`0192d000 fffff880`0193e000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`02c51000 fffff880`02c5d000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`0340d000 fffff800`039ea000   nt       ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`01244000 fffff880`013e7000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`018b4000 fffff880`018bd000   Null     Null.SYS     unavailable (00000000)
fffff880`02d6b000 fffff880`02d91000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`04857000 fffff880`04874000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00fe8000 fffff880`00fef000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00fef000 fffff880`00fff000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`0121a000 fffff880`0122b000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`07a3b000 fffff880`07ae1000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`04f14000 fffff880`04f51000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c83000 fffff880`00c97000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`048b9000 fffff880`048dd000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`04918000 fffff880`04933000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`04933000 fffff880`04954000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`04954000 fffff880`0496e000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`02c00000 fffff880`02c51000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`0496e000 fffff880`04979000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`01907000 fffff880`01910000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01910000 fffff880`01919000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01919000 fffff880`01922000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`011bc000 fffff880`011f6000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`06c79000 fffff880`06c91000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`03a4d000 fffff880`03a7f000   Rt64win7 Rt64win7.sys Thu Feb 26 04:04:13 2009 (49A65B0D)
fffff880`04ee1000 fffff880`04f13700   RtHDMIVX RtHDMIVX.sys Wed Dec 02 01:33:25 2009 (4B160A35)
fffff880`06606000 fffff880`067f2780   RTKVHD64 RTKVHD64.sys Tue Nov 03 06:39:55 2009 (4AF0168B)
fffff880`07ae1000 fffff880`07aec000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`0484b000 fffff880`04857000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`02da0000 fffff880`02dbd000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`015ed000 fffff880`015f5000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`07cc1000 fffff880`07d57000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`07b32000 fffff880`07b99000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`07aec000 fffff880`07b19000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`04997000 fffff880`04998480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01602000 fffff880`017ff000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`07b19000 fffff880`07b2b000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`0195c000 fffff880`01969000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`0193e000 fffff880`0195c000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`02dd8000 fffff880`02dec000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`004d0000 fffff960`004da000   TSDDD    TSDDD.dll    Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`03b89000 fffff880`03baf000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`049dc000 fffff880`049ee000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`04e14000 fffff880`04e2ec00   usbaudio usbaudio.sys Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`04fb0000 fffff880`04fcd000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`067fc000 fffff880`067fdf00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`03c77000 fffff880`03c88000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04e67000 fffff880`04ec1000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`01988000 fffff880`019de000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`06d98000 fffff880`06db3000   USBSTOR  USBSTOR.SYS  Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`03c6a000 fffff880`03c77000   usbuhci  usbuhci.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`018c4000 fffff880`018d2000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`018d2000 fffff880`018f7000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`015dd000 fffff880`015ed000   vmstorfl vmstorfl.sys unavailable (00000000)
fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00e6a000 fffff880`00ec6000   volmgrx  volmgrx.sys  unavailable (00000000)
fffff880`01170000 fffff880`011bc000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02dbd000 fffff880`02dd8000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`018f7000 fffff880`01907000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00ecb000 fffff880`00f6f000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f6f000 fffff880`00f7e000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`02d62000 fffff880`02d6b000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`07c00000 fffff880`07c09000   wimmount wimmount.sys Mon Jul 13 19:29:31 2009 (4A5BC35B)
fffff960`000b0000 fffff960`003c0000   win32k   win32k.sys   Tue Jan 04 22:59:44 2011 (4D23ECB0)
fffff880`07b2b000 fffff880`07b32000   WinRing0x64 WinRing0x64.sys Sat Jul 26 09:29:37 2008 (488B26C1)
fffff880`00fd5000 fffff880`00fde000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`06c43000 fffff880`06c64000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`07dc8000 fffff880`07df9000   WUDFRd   WUDFRd.sys   Mon Jul 13 20:06:06 2009 (4A5BCBEE)

Unloaded modules:
fffff880`07d57000 fffff880`07dc8000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00071000
fffff880`01852000 fffff880`01860000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`01860000 fffff880`0186c000   dump_pciidex
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000C000
fffff880`0186c000 fffff880`01877000   dump_msahci.
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000B000
fffff880`01877000 fffff880`0188a000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00013000
 


Solution
I will try it, and post if it helped, it might take some time to see if it helped, sometimes there can go a week or two without a BSOD
 


Before it crashes again, let's check if your memory is set right:

a) CPU-Z memory snip
b) Rammon html report

Link Removed
 


not so fare. I am taking a few drivers at time so I can narrow it what there cause the BSOD

so fare I have:

1. Uninstalled Avast, and installed MSE

2. updated AnyDVD to 6.7.9.0

3. Updated GPU Observer (gadget)

4. Updated IntelCoreSeries (WinRing-based) (gadget)

I helped a lot with the two first steps, it ran "stabile" 2 days, then I update 3 & 4.
last time I had a BSOD was 10/03/11, but I got a BSOD today, so 13 days without BSOD, still better than having BSOD every day.

I will try and update the rest of the list tonight
 


Last edited:
Be sure to update ALL as listed in my 1st post:




BCCodes: 50, a, 1a



1. Disable Driver Verifier --> Start > verifier.exe /reset



2. Uninstall Avast, install MSE:

Link Removed

Link Removed due to 404 Error




3. Update drivers:

AnyDVD
AnyDVD.sys Fri Aug 01 09:27:41 2008
ElbyCDIO.sys Mon Jul 21 08:11:55 2008

Adobe
adfs.SYS Thu Jun 26 16:52:37 2008

EZB ISODrive
ISODrv64.sys Fri Nov 02 23:21:18 2007

Realtek LAN
Rt64win7.sys Thu Feb 26 04:04:13 2009

Realtek Audio
RTKVHD64.sys Tue Nov 03 06:39:55 2009

Realtek ATI HDMI Audio
RtHDMIVX.sys Wed Dec 02 01:33:25 2009

WinRing-based software
WinRing0x64.sys Sat Jul 26 09:29:37 2008
 


I updated the drivers, and got an BSOD today :S

I have enabled driver verifier so on next BSOD, you can maybe find what's wrong

here is the screen dump from today, driver verifier was not enabled
Link Removed
 


1. Disable Driver Verifier


2.
032811-17300-01.dmp
BugCheck A, {fffffa980095f350, 2, 1, fffff800034acb7f}
Probably caused by : memory_corruption ( nt!MiReplenishPageSlist+100 )


Run 10 passes of Memtest86+ - Advanced Memory Diagnostic Tool





3. Navigate to C:\Windows\system32\drivers and rename to .bak this driver:

WinRing0x64.sys Sat Jul 26 09:29:37 2008






CRASH DUMPS

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\032811-17300-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`03417000 PsLoadedModuleList = 0xfffff800`03654e50
Debug session time: Sun Mar 27 18:47:48.146 2011 (UTC - 4:00)
System Uptime: 0 days 23:21:49.560
Loading Kernel Symbols
...............................................................
................................................................
...................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck A, {fffffa980095f350, 2, 1, fffff800034acb7f}

Probably caused by : memory_corruption ( nt!MiReplenishPageSlist+100 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: fffffa980095f350, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
	bit 0 : value 0 = read operation, 1 = write operation
	bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff800034acb7f, address which referenced memory

Debugging Details:
------------------


WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800036bf0e0
 fffffa980095f350 

CURRENT_IRQL:  2

FAULTING_IP: 
nt!MiReplenishPageSlist+100
fffff800`034acb7f f00fba6b1000    lock bts dword ptr [rbx+10h],0

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  firefox.exe

TRAP_FRAME:  fffff8800b0866c0 -- (.trap 0xfffff8800b0866c0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000080031fbc rbx=0000000000000000 rcx=fdffffffffffffff
rdx=000000000000004f rsi=0000000000000000 rdi=0000000000000000
rip=fffff800034acb7f rsp=fffff8800b086850 rbp=fffffa8003600960
 r8=fffff800036c1400  r9=fffffa8003600000 r10=fffffa8003600980
r11=fffff8800b0868a8 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na po nc
nt!MiReplenishPageSlist+0x100:
fffff800`034acb7f f00fba6b1000    lock bts dword ptr [rbx+10h],0 ds:0050:00000000`00000010=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff80003486ca9 to fffff80003487740

STACK_TEXT:  
fffff880`0b086578 fffff800`03486ca9 : 00000000`0000000a fffffa98`0095f350 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`0b086580 fffff800`03485920 : 00000000`00000000 fffffa98`0095f340 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`0b0866c0 fffff800`034acb7f : fffff800`03483c60 fffff800`03483ccc 00000000`00030000 fffff880`0b086a00 : nt!KiPageFault+0x260
fffff880`0b086850 fffff800`034ad0af : fffff800`036c1400 00000000`0000003c fffffa80`01115340 fffffa80`014e0740 : nt!MiReplenishPageSlist+0x100
fffff880`0b0868b0 fffff800`034a52c7 : 00000000`00000002 00000000`00000002 fffffa80`063fb3f8 00000000`00000002 : nt!MiRemoveAnyPage+0x24f
fffff880`0b0869d0 fffff800`034a19c6 : 00000000`00000001 00000000`18ab4000 fffff880`0b086c20 fffff680`000c55a0 : nt!MiResolveDemandZeroFault+0x577
fffff880`0b086ac0 fffff800`0348582e : 00000000`00000001 00000000`00000000 fffffa80`0504bc01 00000000`0832bb40 : nt!MmAccessFault+0x5c6
fffff880`0b086c20 00000000`74faf4eb : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
00000000`003ac16c 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x74faf4eb


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!MiReplenishPageSlist+100
fffff800`034acb7f f00fba6b1000    lock bts dword ptr [rbx+10h],0

SYMBOL_STACK_INDEX:  3

SYMBOL_NAME:  nt!MiReplenishPageSlist+100

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

DEBUG_FLR_IMAGE_TIMESTAMP:  4cc791bd

IMAGE_NAME:  memory_corruption

FAILURE_BUCKET_ID:  X64_0xA_nt!MiReplenishPageSlist+100

BUCKET_ID:  X64_0xA_nt!MiReplenishPageSlist+100

Followup: MachineOwner
---------





DRIVERS

Code:
start             end                 module name
fffff880`04923000 fffff880`04961000   1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f7b000 fffff880`00fd2000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`04718000 fffff880`0472e000   AdobeDriveCS5 AdobeDriveCS5.sys Mon Aug 23 11:54:28 2010 (4C7299B4)
fffff880`02c40000 fffff880`02cca000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`049ca000 fffff880`049e0000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`00c58000 fffff880`00c63000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`04997000 fffff880`049ba000   AnyDVD   AnyDVD.sys   Wed Dec 01 14:06:20 2010 (4CF69CAC)
fffff880`00c1a000 fffff880`00c23000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00c23000 fffff880`00c4d000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`03c1e000 fffff880`04455000   atikmdag atikmdag.sys Tue Jan 04 21:48:52 2011 (4D23DC14)
fffff880`03af7000 fffff880`03b44000   atikmpag atikmpag.sys Tue Jan 04 21:19:38 2011 (4D23D53A)
fffff960`00840000 fffff960`008a1000   ATMFD    ATMFD.DLL    Fri Jan 07 00:49:20 2011 (4D26A960)
fffff880`019c8000 fffff880`019cf000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03aaa000 fffff880`03abb000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`0472e000 fffff880`0474c000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`00600000 fffff960`00627000   cdd      cdd.dll      Wed Jan 26 01:31:34 2011 (4D3FBFC6)
fffff880`01964000 fffff880`0198e000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00d29000 fffff880`00de9000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`018fc000 fffff880`0192c000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00ccb000 fffff880`00d29000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01115000 fffff880`01188000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`049ba000 fffff880`049ca000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`078ab000 fffff880`078b9000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03a09000 fffff880`03a8c000   csc      csc.sys      Mon Jul 13 19:24:26 2009 (4A5BC22A)
fffff880`03a8c000 fffff880`03aaa000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`01897000 fffff880`018a6000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`018e6000 fffff880`018fc000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`04fb4000 fffff880`04fd6000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`078b9000 fffff880`078c5000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`078d0000 fffff880`078e3000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`078c5000 fffff880`078d0000   dump_msahci dump_msahci.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`078e3000 fffff880`078ef000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`04455000 fffff880`04549000   dxgkrnl  dxgkrnl.sys  Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`04549000 fffff880`0458f000   dxgmms1  dxgmms1.sys  Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`02c29000 fffff880`02c35000   ElbyCDIO ElbyCDIO.sys Thu Dec 16 17:58:13 2010 (4D0A9985)
fffff880`09186000 fffff880`091bc000   fastfat  fastfat.SYS  Mon Jul 13 19:23:28 2009 (4A5BC1F0)
fffff880`04961000 fffff880`0496e000   fdc      fdc.sys      Mon Jul 13 20:00:54 2009 (4A5BCAB6)
fffff880`010a3000 fffff880`010b7000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`04f0f000 fffff880`04f1a000   flpydisk flpydisk.sys Mon Jul 13 20:00:54 2009 (4A5BCAB6)
fffff880`01057000 fffff880`010a3000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`013f5000 fffff880`013ff000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`018ac000 fffff880`018e6000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`01400000 fffff880`0144a000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`039f4000 fffff800`03a3d000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`0458f000 fffff880`045b3000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`0790d000 fffff880`07926000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`07926000 fffff880`0792e080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`078ff000 fffff880`0790d000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`04650000 fffff880`04718000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`015f2000 fffff880`015fb000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`03ae1000 fffff880`03af7000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`02c0b000 fffff880`02c29000   ISODrv64 ISODrv64.sys Thu Jan 28 22:39:02 2010 (4B625856)
fffff880`049eb000 fffff880`049fa000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`07982000 fffff880`07990000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00bbb000 fffff800`00bc5000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`03b9a000 fffff880`03bdd000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`013ca000 fffff880`013e4000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`015b5000 fffff880`015e0000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`04fd6000 fffff880`04fdb200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`07931000 fffff880`07944000   LHidFilt LHidFilt.Sys Wed Jun 17 12:49:39 2009 (4A391EA3)
fffff880`04e73000 fffff880`04e88000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`07951000 fffff880`07965000   LMouFilt LMouFilt.Sys Wed Jun 17 12:49:43 2009 (4A391EA7)
fffff880`079d4000 fffff880`079f7000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`078ef000 fffff880`078ff000   LUsbFilt LUsbFilt.Sys Wed Jun 17 12:49:46 2009 (4A391EAA)
fffff880`04e00000 fffff880`04e51d00   lvrs64   lvrs64.sys   Tue Nov 09 21:36:46 2010 (4CDA053E)
fffff880`08204000 fffff880`085faa80   lvuvc64  lvuvc64.sys  Tue Nov 09 21:37:14 2010 (4CDA055A)
fffff880`00c73000 fffff880`00cb7000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`07990000 fffff880`0799e000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`045d1000 fffff880`045e0000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`07944000 fffff880`07951000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00c00000 fffff880`00c1a000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`0198e000 fffff880`019bf000   MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
fffff880`09130000 fffff880`09140000   MpNWMon  MpNWMon.sys  Tue Sep 14 20:19:30 2010 (4C901112)
fffff880`0474c000 fffff880`04764000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`04764000 fffff880`04791000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`04791000 fffff880`047df000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`04600000 fffff880`04623000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`00c4d000 fffff880`00c58000   msahci   msahci.sys   Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`01850000 fffff880`0185b000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fdb000 fffff880`00fe5000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`091be000 fffff880`091bfc00   MSPCLOCK MSPCLOCK.sys Mon Jul 13 20:00:17 2009 (4A5BCA91)
fffff880`091bc000 fffff880`091bda80   MSPQM    MSPQM.sys    Mon Jul 13 20:00:17 2009 (4A5BCA91)
fffff880`010b7000 fffff880`01115000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`02c00000 fffff880`02c0b000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`015e0000 fffff880`015f2000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`01463000 fffff880`01555000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`04824000 fffff880`04830000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`04830000 fffff880`0485f000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`04f1a000 fffff880`04f2f000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`02d3e000 fffff880`02d4d000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02cca000 fffff880`02d0f000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01555000 fffff880`015b5000   NETIO    NETIO.SYS    Thu Apr 08 22:43:59 2010 (4BBE946F)
fffff880`09140000 fffff880`09155000   NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149)
fffff880`0185b000 fffff880`0186c000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`02dea000 fffff880`02df6000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`03417000 fffff800`039f4000   nt       ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`01227000 fffff880`013ca000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`019bf000 fffff880`019c8000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`02d18000 fffff880`02d3e000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`0497a000 fffff880`04997000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00fe5000 fffff880`00fec000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00fec000 fffff880`00ffc000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013e4000 fffff880`013f5000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`088df000 fffff880`08985000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`04f77000 fffff880`04fb4000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00cb7000 fffff880`00ccb000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`04800000 fffff880`04824000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`0485f000 fffff880`0487a000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`0487a000 fffff880`0489b000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`0489b000 fffff880`048b5000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`02d99000 fffff880`02dea000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`049e0000 fffff880`049eb000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`01835000 fffff880`0183e000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0183e000 fffff880`01847000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01847000 fffff880`01850000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`01000000 fffff880`0103a000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`04e88000 fffff880`04ea0000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`048b9000 fffff880`04923000   Rt64win7 Rt64win7.sys Wed Jan 26 08:34:03 2011 (4D4022CB)
fffff880`04f2f000 fffff880`04f76c00   RtHDMIVX RtHDMIVX.sys Tue Nov 23 05:27:12 2010 (4CEB9700)
fffff880`0760c000 fffff880`078aa980   RTKVHD64 RTKVHD64.sys Thu Feb 24 05:19:18 2011 (4D6630A6)
fffff880`08985000 fffff880`08990000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`0496e000 fffff880`0497a000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`02d4d000 fffff880`02d6a000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`0145a000 fffff880`01462000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`09029000 fffff880`090bf000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`08800000 fffff880`08867000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`08990000 fffff880`089bd000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`049fa000 fffff880`049fb480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01601000 fffff880`017fe000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`089bd000 fffff880`089cf000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`0188a000 fffff880`01897000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`0186c000 fffff880`0188a000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`02d85000 fffff880`02d99000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`005d0000 fffff960`005da000   TSDDD    TSDDD.dll    unavailable (00000000)
fffff880`03abb000 fffff880`03ae1000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`045e0000 fffff880`045f2000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`0799e000 fffff880`079b8c00   usbaudio usbaudio.sys Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`07965000 fffff880`07982000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`0792f000 fffff880`07930f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`045c0000 fffff880`045d1000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04eb5000 fffff880`04f0f000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`03b44000 fffff880`03b9a000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`079b9000 fffff880`079d4000   USBSTOR  USBSTOR.SYS  Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`045b3000 fffff880`045c0000   usbuhci  usbuhci.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`019cf000 fffff880`019dd000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`01800000 fffff880`01825000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`0144a000 fffff880`0145a000   vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00e6a000 fffff880`00ec6000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01188000 fffff880`011d4000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02d6a000 fffff880`02d85000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`01825000 fffff880`01835000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00ec8000 fffff880`00f6c000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f6c000 fffff880`00f7b000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`02d0f000 fffff880`02d18000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`000a0000 fffff960`003b0000   win32k   win32k.sys   Tue Jan 04 22:59:44 2011 (4D23ECB0)
fffff880`089cf000 fffff880`089d6000   WinRing0x64 WinRing0x64.sys Sat Jul 26 09:29:37 2008 (488B26C1)
fffff880`00fd2000 fffff880`00fdb000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`04e52000 fffff880`04e73000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`09155000 fffff880`09186000   WUDFRd   WUDFRd.sys   Mon Jul 13 20:06:06 2009 (4A5BCBEE)

Unloaded modules:
fffff880`090bf000 fffff880`09130000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00071000
fffff880`0192c000 fffff880`0193a000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`0193a000 fffff880`01946000   dump_pciidex
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000C000
fffff880`01946000 fffff880`01951000   dump_msahci.
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000B000
fffff880`01951000 fffff880`01964000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00013000
 


I already have run memtest86+ overnight 20+ runs passed ;)

I have uninstalled IntelCoreSeries (gadget), there uses a WinRing-based driver to measure CPU temp, I have been suspecting this driver to make the BSOD
 


It crashed again :( Maybe WinRing drivers are still in the system, I have been playing with others temperature programs...
 


Attachments


033111-16395-01.dmp
BugCheck A, {80000028, 2, 1, fffff800034df408}
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.
Probably caused by : ntkrnlmp.exe ( nt!KiTimerWaitTest+2e8 )


Good idea to update Logitech Setpoint, but it won't fix you. RAM is set right, sticks matching.


Run 10 passes of Memtest86+ - Advanced Memory Diagnostic Tool overnight.




CRASH DUMPS

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\033111-16395-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16695.amd64fre.win7_gdr.101026-1503
Machine Name:
Kernel base = 0xfffff800`03465000 PsLoadedModuleList = 0xfffff800`036a2e50
Debug session time: Thu Mar 31 10:39:08.282 2011 (UTC - 4:00)
System Uptime: 0 days 22:46:14.812
Loading Kernel Symbols
...............................................................
................................................................
..................................
Loading User Symbols
Loading unloaded module list
.............
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck A, {80000028, 2, 1, fffff800034df408}

Probably caused by : ntkrnlmp.exe ( nt!KiTimerWaitTest+2e8 )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000080000028, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
	bit 0 : value 0 = read operation, 1 = write operation
	bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff800034df408, address which referenced memory

Debugging Details:
------------------


WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff8000370d0e0
 0000000080000028 

CURRENT_IRQL:  2

FAULTING_IP: 
nt!KiTimerWaitTest+2e8
fffff800`034df408 f083402801      lock add dword ptr [rax+28h],1

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  System

TRAP_FRAME:  fffff88002f1b3d0 -- (.trap 0xfffff88002f1b3d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000080000000 rbx=0000000000000000 rcx=0000000000000001
rdx=0000000000000102 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800034df408 rsp=fffff88002f1b560 rbp=fffffa8004aea4d8
 r8=0000000000000001  r9=0000000000000000 r10=0000000000000069
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na po nc
nt!KiTimerWaitTest+0x2e8:
fffff800`034df408 f083402801      lock add dword ptr [rax+28h],1 ds:e1a0:00000000`80000028=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff800034d4ca9 to fffff800034d5740

STACK_TEXT:  
fffff880`02f1b288 fffff800`034d4ca9 : 00000000`0000000a 00000000`80000028 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`02f1b290 fffff800`034d3920 : fffffa80`04c91010 fffffa80`04aea4d8 00000001`00000000 00000000`00000001 : nt!KiBugCheckDispatch+0x69
fffff880`02f1b3d0 fffff800`034df408 : fffffa80`059e1a68 fffffa80`059e1a68 00000000`00000000 fffffa80`059e1a60 : nt!KiPageFault+0x260
fffff880`02f1b560 fffff800`034e0d7d : fffffa80`04aea4d0 fffffa80`06722c68 fffffa80`06722c68 00000000`00000102 : nt!KiTimerWaitTest+0x2e8
fffff880`02f1b5e0 fffff800`034e14be : 000000be`dccbb49e fffff880`02f1bc58 00000000`00502e69 fffff880`009ee2a8 : nt!KiProcessExpiredTimerList+0x6d
fffff880`02f1bc30 fffff800`034e0cb7 : 00000043`1a4a8ccb 00000043`00502e69 00000043`1a4a8cef 00000000`00000069 : nt!KiTimerExpiration+0x1be
fffff880`02f1bcd0 fffff800`034ddeea : fffff880`009eb180 fffff880`009f5f40 00000000`00000000 fffff880`0148dc50 : nt!KiRetireDpcList+0x277
fffff880`02f1bd80 00000000`00000000 : fffff880`02f1c000 fffff880`02f16000 fffff880`02f1bd40 00000000`00000000 : nt!KiIdleLoop+0x5a


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!KiTimerWaitTest+2e8
fffff800`034df408 f083402801      lock add dword ptr [rax+28h],1

SYMBOL_STACK_INDEX:  3

SYMBOL_NAME:  nt!KiTimerWaitTest+2e8

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4cc791bd

FAILURE_BUCKET_ID:  X64_0xA_nt!KiTimerWaitTest+2e8

BUCKET_ID:  X64_0xA_nt!KiTimerWaitTest+2e8

Followup: MachineOwner
---------





DRIVERS

Code:
start             end                 module name
fffff880`0491c000 fffff880`0495a000   1394ohci 1394ohci.sys Mon Jul 13 20:07:12 2009 (4A5BCC30)
fffff880`00f67000 fffff880`00fbe000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`055b5000 fffff880`055cb000   AdobeDriveCS5 AdobeDriveCS5.sys Mon Aug 23 11:54:28 2010 (4C7299B4)
fffff880`02c92000 fffff880`02d1c000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`049c3000 fffff880`049d9000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`0904c000 fffff880`09054000   ALSysIO64 ALSysIO64.sys Sun Apr 19 15:41:04 2009 (49EB7E50)
fffff880`00df0000 fffff880`00dfb000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`04990000 fffff880`049b3000   AnyDVD   AnyDVD.sys   Wed Dec 01 14:06:20 2010 (4CF69CAC)
fffff880`09041000 fffff880`0904c000   asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00e9b000 fffff880`00ea4000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fd1000 fffff880`00ffb000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`03c9e000 fffff880`044d5000   atikmdag atikmdag.sys Tue Jan 04 21:48:52 2011 (4D23DC14)
fffff880`03b1d000 fffff880`03b6a000   atikmpag atikmpag.sys Tue Jan 04 21:19:38 2011 (4D23D53A)
fffff960`008c0000 fffff960`00921000   ATMFD    ATMFD.DLL    unavailable (00000000)
fffff880`019d7000 fffff880`019de000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03ad0000 fffff880`03ae1000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`055cb000 fffff880`055e9000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`00670000 fffff960`00697000   cdd      cdd.dll      unavailable (00000000)
fffff880`01973000 fffff880`0199d000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00cd4000 fffff880`00d94000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`0190b000 fffff880`0193b000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00c76000 fffff880`00cd4000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01000000 fffff880`01073000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`049b3000 fffff880`049c3000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`078ac000 fffff880`078ba000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03a2f000 fffff880`03ab2000   csc      csc.sys      Mon Jul 13 19:24:26 2009 (4A5BC22A)
fffff880`03ab2000 fffff880`03ad0000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`02deb000 fffff880`02dfa000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`018f5000 fffff880`0190b000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`04c3d000 fffff880`04c5f000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`078ba000 fffff880`078c6000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`078d1000 fffff880`078e4000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`078c6000 fffff880`078d1000   dump_msahci dump_msahci.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`078a0000 fffff880`078ac000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`044d5000 fffff880`045c9000   dxgkrnl  dxgkrnl.sys  Tue Jan 25 23:22:56 2011 (4D3FA1A0)
fffff880`03c00000 fffff880`03c46000   dxgmms1  dxgmms1.sys  Tue Jan 25 23:22:12 2011 (4D3FA174)
fffff880`02c86000 fffff880`02c92000   ElbyCDIO ElbyCDIO.sys Thu Dec 16 17:58:13 2010 (4D0A9985)
fffff880`09007000 fffff880`0903d000   fastfat  fastfat.SYS  Mon Jul 13 19:23:28 2009 (4A5BC1F0)
fffff880`0495a000 fffff880`04967000   fdc      fdc.sys      Mon Jul 13 20:00:54 2009 (4A5BCAB6)
fffff880`01138000 fffff880`0114c000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`04d92000 fffff880`04d9d000   flpydisk flpydisk.sys Mon Jul 13 20:00:54 2009 (4A5BCAB6)
fffff880`010ec000 fffff880`01138000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`01211000 fffff880`0121b000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`018bb000 fffff880`018f5000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`0142b000 fffff880`01475000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`0341c000 fffff800`03465000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`03c46000 fffff880`03c6a000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`078f2000 fffff880`0790b000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`0790b000 fffff880`07913080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`078e4000 fffff880`078f2000   hidusb   hidusb.sys   Mon Jul 13 20:06:22 2009 (4A5BCBFE)
fffff880`054ed000 fffff880`055b5000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`0121b000 fffff880`01224000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`03b07000 fffff880`03b1d000   intelppm intelppm.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`02c68000 fffff880`02c86000   ISODrv64 ISODrv64.sys Thu Jan 28 22:39:02 2010 (4B625856)
fffff880`0489c000 fffff880`048ab000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`07916000 fffff880`07924000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00bd4000 fffff800`00bde000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`04ce3000 fffff880`04d26000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`013db000 fffff880`013f5000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01400000 fffff880`0142b000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`04c5f000 fffff880`04c64200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`0795f000 fffff880`07972000   LHidFilt LHidFilt.Sys Wed Jun 17 12:49:39 2009 (4A391EA3)
fffff880`045c9000 fffff880`045de000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`0797f000 fffff880`07993000   LMouFilt LMouFilt.Sys Wed Jun 17 12:49:43 2009 (4A391EA7)
fffff880`04c99000 fffff880`04cbc000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`0794f000 fffff880`0795f000   LUsbFilt LUsbFilt.Sys Wed Jun 17 12:49:46 2009 (4A391EAA)
fffff880`079ae000 fffff880`079ffd00   lvrs64   lvrs64.sys   Tue Nov 09 21:36:46 2010 (4CDA053E)
fffff880`07a07000 fffff880`07dfda80   lvuvc64  lvuvc64.sys  Tue Nov 09 21:37:14 2010 (4CDA055A)
fffff880`00c1e000 fffff880`00c62000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:29:10 2009 (4A5BDF66)
fffff880`07941000 fffff880`0794f000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`03c88000 fffff880`03c97000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`07972000 fffff880`0797f000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00e81000 fffff880`00e9b000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`0199d000 fffff880`019ce000   MpFilter MpFilter.sys Tue Sep 14 20:19:28 2010 (4C901110)
fffff880`054b6000 fffff880`054c6000   MpNWMon  MpNWMon.sys  Tue Sep 14 20:19:30 2010 (4C901112)
fffff880`05400000 fffff880`05418000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`05418000 fffff880`05445000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`05445000 fffff880`05493000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`05493000 fffff880`054b6000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`00ea4000 fffff880`00eaf000   msahci   msahci.sys   Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`01850000 fffff880`0185b000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fc7000 fffff880`00fd1000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`0114c000 fffff880`011aa000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`02c5d000 fffff880`02c68000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`015e6000 fffff880`015f8000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`0148c000 fffff880`0157e000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`04800000 fffff880`0480c000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`0480c000 fffff880`0483b000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`04d9d000 fffff880`04db2000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`02d90000 fffff880`02d9f000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`02d1c000 fffff880`02d61000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`0157e000 fffff880`015de000   NETIO    NETIO.SYS    Thu Apr 08 22:43:59 2010 (4BBE946F)
fffff880`09152000 fffff880`09167000   NisDrvWFP NisDrvWFP.sys Tue Sep 14 20:20:25 2010 (4C901149)
fffff880`0185b000 fffff880`0186c000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`02c51000 fffff880`02c5d000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`03465000 fffff800`03a42000   nt       ntkrnlmp.exe Tue Oct 26 22:43:09 2010 (4CC791BD)
fffff880`01238000 fffff880`013db000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`019ce000 fffff880`019d7000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`02d6a000 fffff880`02d90000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`04973000 fffff880`04990000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`00e6a000 fffff880`00e71000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00e71000 fffff880`00e81000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`01200000 fffff880`01211000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`08ae8000 fffff880`08b8e000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`04c00000 fffff880`04c3d000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c62000 fffff880`00c76000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`049d9000 fffff880`049fd000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`0483b000 fffff880`04856000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`04856000 fffff880`04877000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`04877000 fffff880`04891000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`02c00000 fffff880`02c51000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`04891000 fffff880`0489c000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`01835000 fffff880`0183e000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`0183e000 fffff880`01847000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01847000 fffff880`01850000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`011aa000 fffff880`011e4000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`045de000 fffff880`045f6000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`048b2000 fffff880`0491c000   Rt64win7 Rt64win7.sys Wed Jan 26 08:34:03 2011 (4D4022CB)
fffff880`04db2000 fffff880`04df9c00   RtHDMIVX RtHDMIVX.sys Tue Nov 23 05:27:12 2010 (4CEB9700)
fffff880`07601000 fffff880`0789f980   RTKVHD64 RTKVHD64.sys Thu Feb 24 05:19:18 2011 (4D6630A6)
fffff880`08b8e000 fffff880`08b99000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`04967000 fffff880`04973000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`02d9f000 fffff880`02dbc000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`015de000 fffff880`015e6000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`090bc000 fffff880`09152000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`09055000 fffff880`090bc000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`08b99000 fffff880`08bc6000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`048ab000 fffff880`048ac480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`01602000 fffff880`017ff000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`08a71000 fffff880`08a83000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`0188a000 fffff880`01897000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`0186c000 fffff880`0188a000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`02dd7000 fffff880`02deb000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`004b0000 fffff960`004ba000   TSDDD    TSDDD.dll    unavailable (00000000)
fffff880`03ae1000 fffff880`03b07000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`04d26000 fffff880`04d38000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`07993000 fffff880`079adc00   usbaudio usbaudio.sys Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`07924000 fffff880`07941000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`07914000 fffff880`07915f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`03c77000 fffff880`03c88000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04d38000 fffff880`04d92000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`03b6a000 fffff880`03bc0000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`091b3000 fffff880`091ce000   USBSTOR  USBSTOR.SYS  Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`03c6a000 fffff880`03c77000   usbuhci  usbuhci.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`019de000 fffff880`019ec000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`01800000 fffff880`01825000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`01475000 fffff880`01485000   vmstorfl vmstorfl.sys Mon Jul 13 19:42:54 2009 (4A5BC67E)
fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`00d94000 fffff880`00df0000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01073000 fffff880`010bf000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`02dbc000 fffff880`02dd7000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`01825000 fffff880`01835000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00eb4000 fffff880`00f58000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f58000 fffff880`00f67000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`02d61000 fffff880`02d6a000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`000f0000 fffff960`00400000   win32k   win32k.sys   unavailable (00000000)
fffff880`00fbe000 fffff880`00fc7000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`04cbc000 fffff880`04cdd000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)
fffff880`091ce000 fffff880`091ff000   WUDFRd   WUDFRd.sys   Mon Jul 13 20:06:06 2009 (4A5BCBEE)

Unloaded modules:
fffff880`09000000 fffff880`09007000   WinRing0x64.
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00007000
fffff880`0903f000 fffff880`09041000   MSPCLOCK.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00002000
fffff880`0903d000 fffff880`0903f000   MSPQM.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00002000
fffff880`08a00000 fffff880`08a71000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00071000
fffff880`09198000 fffff880`091b3000   USBSTOR.SYS
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0001B000
fffff880`09167000 fffff880`09198000   WUDFRd.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00031000
fffff880`04c65000 fffff880`04c80000   USBSTOR.SYS
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0001B000
fffff880`04c8a000 fffff880`04c99000   RNDISMPX.SYS
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000F000
fffff880`04c80000 fffff880`04c8a000   usb8023x.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000A000
fffff880`0193b000 fffff880`01949000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`01949000 fffff880`01955000   dump_pciidex
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000C000
fffff880`01955000 fffff880`01960000   dump_msahci.
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000B000
fffff880`01960000 fffff880`01973000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00013000
 


Back
Top