DRIVER_IRQL_NOT_LESS_OR_EQUAL

#1
My brother's laptop has had some random BSOD's lately, and it usually happens within moments of logging in. He tries to open a program, and the computer just crashes. I've attached the dump files from the Minidump folder. I was able to retrieve them by using an Ubuntu disk, without actually installing the OS. Any ideas? Or other info I should provide?
 


Attachments

#2



1. Uninstall McAfee as outlined here:

How to uninstall or reinstall supported McAfee consumer products using the McAfee Consumer Products Removal tool (MCPR.exe)


2. Install MSE:

www.microsoft.com/security_essentials/



3. Uninstall Daemon tools and its driver:

DuplexSecure - FAQ



4. Go to HP support for as many updates as it will offer, such as:

HP Support & Drivers

vsmraid.sys Fri Jan 30 20:18:57 2009
VIA RAID DRIVER

SynTP.sys Tue Jul 14 17:36:36 2009
Touchpad

stwrt64.sys Tue Jul 21 18:42:28 2009
IDT PC Audio

stexstor.sys Tue Feb 17 18:03:36 2009
Promise SuperTrak EX Series Driver

Rt64win7.sys Fri May 22 10:52:30 2009
Realtek Lan

ql2300.sys Thu Jan 22 18:05:06 2009
QLogic Fibre Channel Stor Miniport Driver

iaStorV.sys Wed Apr 08 12:57:17 2009
Intel Matrix Storage

HpqKbFiltr.sys Wed Apr 29 09:48:30 2009
HP Quick Launch Buttons

elxstor.sys Tue Feb 03 17:52:11 2009
Emulex LightPulse Storport Miniport Driver

enecir.sys Sun Jun 28 22:17:30 2009
ENE Consumer IR Driver for eHome

btwl2cap.sys Fri Apr 03 20:28:45 2009
Broadcom Bluetooth

athrx.sys Mon Sep 21 22:47:11 2009
Atheros Wireless

atikmdag.sys Wed Aug 05 00:14:11 2009
ATI Mobility Catalyst

HP Support & Drivers





Crash Dumps:

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\123010-24492-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c04000 PsLoadedModuleList = 0xfffff800`02e41e50
Debug session time: Thu Dec 30 18:25:38.202 2010 (UTC - 5:00)
System Uptime: 0 days 0:01:59.090
Loading Kernel Symbols
...............................................................
................................................................
................................................................
.....................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1E, {ffffffffc0000005, fffff80002c547e7, 0, 7efa0000}

Probably caused by : ntkrnlmp.exe ( nt!RtlImageNtHeaderEx+3f )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck.  Usually the exception address pinpoints
the driver/function that caused the problem.  Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff80002c547e7, The address that the exception occurred at
Arg3: 0000000000000000, Parameter 0 of the exception
Arg4: 000000007efa0000, Parameter 1 of the exception

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
nt!RtlImageNtHeaderEx+3f
fffff800`02c547e7 66390a          cmp     word ptr [rdx],cx

EXCEPTION_PARAMETER1:  0000000000000000

EXCEPTION_PARAMETER2:  000000007efa0000

READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002eac0e0
 000000007efa0000 

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

BUGCHECK_STR:  0x1E_c0000005

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

PROCESS_NAME:  hpqWmiEx.exe

CURRENT_IRQL:  0

EXCEPTION_RECORD:  fffff880088e0768 -- (.exr 0xfffff880088e0768)
ExceptionAddress: fffff80002c547e7 (nt!RtlImageNtHeaderEx+0x000000000000003f)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 0000000000000000
   Parameter[1]: 000000007efa0000
Attempt to read from address 000000007efa0000

TRAP_FRAME:  fffff880088e0810 -- (.trap 0xfffff880088e0810)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=0000000000005a4d
rdx=000000007efa0000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002c547e7 rsp=fffff880088e09a8 rbp=fffff880088e0ae0
 r8=0000000000000000  r9=fffff880088e09e8 r10=0000000000000000
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na pe nc
nt!RtlImageNtHeaderEx+0x3f:
fffff800`02c547e7 66390a          cmp     word ptr [rdx],cx ds:00000000`7efa0000=????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff80002caea39 to fffff80002c74740

STACK_TEXT:  
fffff880`088dff98 fffff800`02caea39 : 00000000`0000001e ffffffff`c0000005 fffff800`02c547e7 00000000`00000000 : nt!KeBugCheckEx
fffff880`088dffa0 fffff800`02c73d82 : fffff880`088e0768 fffffa80`051ecc90 fffff880`088e0810 fffffa80`051a2040 : nt!KiDispatchException+0x1b9
fffff880`088e0630 fffff800`02c728fa : 00000000`00000000 fffffa80`051ecc90 fffffa80`051a2000 fffff880`088e0970 : nt!KiExceptionDispatch+0xc2
fffff880`088e0810 fffff800`02c547e7 : fffff800`02c54872 00000000`00000010 00000000`00000082 fffff880`088e09d8 : nt!KiPageFault+0x23a
fffff880`088e09a8 fffff800`02c54872 : 00000000`00000010 00000000`00000082 fffff880`088e09d8 fffffa80`051a2040 : nt!RtlImageNtHeaderEx+0x3f
fffff880`088e09b0 fffffa80`046e5d7c : fffff880`088e0ae0 00000000`00000000 fffffa80`046ea260 fffffa80`046ee5a0 : nt!RtlImageNtHeader+0x1e
fffff880`088e09e0 fffff880`088e0ae0 : 00000000`00000000 fffffa80`046ea260 fffffa80`046ee5a0 00000000`00000000 : 0xfffffa80`046e5d7c
fffff880`088e09e8 00000000`00000000 : fffffa80`046ea260 fffffa80`046ee5a0 00000000`00000000 00000000`00000000 : 0xfffff880`088e0ae0


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!RtlImageNtHeaderEx+3f
fffff800`02c547e7 66390a          cmp     word ptr [rdx],cx

SYMBOL_STACK_INDEX:  4

SYMBOL_NAME:  nt!RtlImageNtHeaderEx+3f

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c44a9

FAILURE_BUCKET_ID:  X64_0x1E_c0000005_nt!RtlImageNtHeaderEx+3f

BUCKET_ID:  X64_0x1E_c0000005_nt!RtlImageNtHeaderEx+3f

Followup: MachineOwner
---------



















Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\a\Minidump\D M P\DMP\123010-27284-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c1d000 PsLoadedModuleList = 0xfffff800`02e5ae50
Debug session time: Thu Dec 30 21:56:37.464 2010 (UTC - 5:00)
System Uptime: 0 days 0:02:09.353
Loading Kernel Symbols
...............................................................
................................................................
................................................................
.....................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck A, {dc, 2, 1, fffff80002c69055}

Probably caused by : ntkrnlmp.exe ( nt!KeStackAttachProcess+115 )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 00000000000000dc, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
	bit 0 : value 0 = read operation, 1 = write operation
	bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80002c69055, address which referenced memory

Debugging Details:
------------------


WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ec50e0
 00000000000000dc 

CURRENT_IRQL:  2

FAULTING_IP: 
nt!KeStackAttachProcess+115
fffff800`02c69055 f00fc186dc000000 lock xadd dword ptr [rsi+0DCh],eax

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xA

PROCESS_NAME:  System

TRAP_FRAME:  fffff88007cc37d0 -- (.trap 0xfffff88007cc37d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000008 rbx=0000000000000000 rcx=fffffa8006bd20a0
rdx=fffff88007cc3ab8 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002c69055 rsp=fffff88007cc3960 rbp=fffff88007cc3ab8
 r8=fffffa8006bd2090  r9=0000000000000130 r10=fffff880009e90c0
r11=fffffa8006bd2040 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl zr na po nc
nt!KeStackAttachProcess+0x115:
fffff800`02c69055 f00fc186dc000000 lock xadd dword ptr [rsi+0DCh],eax ds:00000000`000000dc=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from fffff80002c8cca9 to fffff80002c8d740

STACK_TEXT:  
fffff880`07cc3688 fffff800`02c8cca9 : 00000000`0000000a 00000000`000000dc 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`07cc3690 fffff800`02c8b920 : 00000000`00000000 fffffa80`06bd2040 00000000`00440042 fffffa80`046ed390 : nt!KiBugCheckDispatch+0x69
fffff880`07cc37d0 fffff800`02c69055 : fffffa80`06bd2040 00000000`00000002 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x260
fffff880`07cc3960 fffffa80`046e4c40 : fffff880`07cc3ae0 fffff800`02c93ae2 00000000`0b540f1a fffff800`02e07e80 : nt!KeStackAttachProcess+0x115
fffff880`07cc39e0 fffff880`07cc3ae0 : fffff800`02c93ae2 00000000`0b540f1a fffff800`02e07e80 5d746365`6a6e695b : 0xfffffa80`046e4c40
fffff880`07cc39e8 fffff800`02c93ae2 : 00000000`0b540f1a fffff800`02e07e80 5d746365`6a6e695b fffffa80`06000a0d : 0xfffff880`07cc3ae0
fffff880`07cc39f0 fffff800`02c935da : fffff880`07cc3c80 00000000`00000000 00000000`00000000 fffff800`02dd0ae0 : nt!SwapContext_PatchXRstor+0xfc
fffff880`07cc3a30 00000000`00000000 : 00000000`00000000 fffffa80`00000200 00000000`00000000 00000000`00000000 : nt!KiSwapContext+0x7a


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!KeStackAttachProcess+115
fffff800`02c69055 f00fc186dc000000 lock xadd dword ptr [rsi+0DCh],eax

SYMBOL_STACK_INDEX:  3

SYMBOL_NAME:  nt!KeStackAttachProcess+115

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4c1c44a9

FAILURE_BUCKET_ID:  X64_0xA_nt!KeStackAttachProcess+115

BUCKET_ID:  X64_0xA_nt!KeStackAttachProcess+115

Followup: MachineOwner
---------



Drivers:

Code:
start             end                 module name
fffff880`04445000 fffff880`04451000   Accelerometer Accelerometer.sys Fri Feb 26 11:12:18 2010 (4B87F2E2)
fffff880`00e00000 fffff880`00e57000   ACPI     ACPI.sys     Mon Jul 13 19:19:34 2009 (4A5BC106)
fffff880`01437000 fffff880`014b2000   adp94xx  adp94xx.sys  Fri Dec 05 18:54:42 2008 (4939BF42)
fffff880`014b2000 fffff880`01508000   adpahci  adpahci.sys  Tue May 01 13:30:09 2007 (46377921)
fffff880`01508000 fffff880`01537000   adpu320  adpu320.sys  Tue Feb 27 19:04:15 2007 (45E4C6FF)
fffff880`0434a000 fffff880`043d4000   afd      afd.sys      Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`019e9000 fffff880`019ff000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`01146000 fffff880`0114d000   aliide   aliide.sys   Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`0114d000 fffff880`01154000   amdide   amdide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`0453a000 fffff880`0454f000   amdppm   amdppm.sys   Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`01537000 fffff880`01555000   amdsata  amdsata.sys  Tue May 19 13:53:21 2009 (4A12F211)
fffff880`01555000 fffff880`0159c000   amdsbs   amdsbs.sys   Fri Mar 20 14:36:03 2009 (49C3E213)
fffff880`0159c000 fffff880`015a7000   amdxata  amdxata.sys  Tue May 19 13:56:59 2009 (4A12F2EB)
fffff880`015a7000 fffff880`015c0000   arc      arc.sys      Thu May 24 17:27:55 2007 (4656035B)
fffff880`015c0000 fffff880`015db000   arcsas   arcsas.sys   Wed Jan 14 14:27:37 2009 (496E3CA9)
fffff880`01332000 fffff880`0133b000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`0133b000 fffff880`01365000   ataport  ataport.SYS  Mon Jul 13 19:19:52 2009 (4A5BC118)
fffff880`0505e000 fffff880`051cd000   athrx    athrx.sys    Mon Sep 21 22:47:11 2009 (4AB83AAF)
fffff880`05200000 fffff880`05221000   AtiHdmi  AtiHdmi.sys  Fri Jul 24 02:33:11 2009 (4A6955A7)
fffff880`046f7000 fffff880`04d0e000   atikmdag atikmdag.sys Wed Aug 05 00:14:11 2009 (4A790713)
fffff880`02050000 fffff880`02058000   AtiPcie  AtiPcie.sys  Tue May 05 11:00:22 2009 (4A005486)
fffff880`06688000 fffff880`066d7000   atksgt   atksgt.sys   Sun May 17 09:36:34 2009 (4A1012E2)
fffff960`00940000 fffff960`009a1000   ATMFD    ATMFD.DLL    unavailable (00000000)
fffff880`04400000 fffff880`04445000   ax6siri5 ax6siri5.SYS Tue Jul 14 17:12:55 2009 (4A5CF4D7)
fffff880`010b1000 fffff880`010bd000   BATTC    BATTC.SYS    Mon Jul 13 19:31:01 2009 (4A5BC3B5)
fffff880`020c3000 fffff880`020ca000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`04503000 fffff880`04514000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`03cf1000 fffff880`03d0f000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff880`064f7000 fffff880`06507000   BthEnum  BthEnum.sys  Mon Jul 13 20:06:52 2009 (4A5BCC1C)
fffff880`06533000 fffff880`0654a000   bthmodem bthmodem.sys Mon Jul 13 20:06:52 2009 (4A5BCC1C)
fffff880`06513000 fffff880`06533000   bthpan   bthpan.sys   Mon Jul 13 20:07:00 2009 (4A5BCC24)
fffff880`0643f000 fffff880`064cb000   bthport  bthport.sys  Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`0638e000 fffff880`063a6000   BTHUSB   BTHUSB.sys   Mon Jul 13 20:06:52 2009 (4A5BCC1C)
fffff880`066e3000 fffff880`06769000   btwaudio btwaudio.sys Tue Aug 25 16:36:15 2009 (4A944B3F)
fffff880`06559000 fffff880`065d4000   btwavdt  btwavdt.sys  Tue Aug 25 16:35:17 2009 (4A944B05)
fffff880`06769000 fffff880`06775000   btwl2cap btwl2cap.sys Fri Apr 03 20:28:45 2009 (49D6A9BD)
fffff880`06775000 fffff880`06778880   btwrchid btwrchid.sys Tue Aug 25 16:36:32 2009 (4A944B50)
fffff960`00650000 fffff960`00677000   cdd      cdd.dll      unavailable (00000000)
fffff880`02090000 fffff880`020ba000   cdrom    cdrom.sys    Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`00c8c000 fffff880`00d4c000   CI       CI.dll       Mon Jul 13 21:32:13 2009 (4A5BE01D)
fffff880`05315000 fffff880`05327000   circlass circlass.sys Mon Jul 13 20:06:34 2009 (4A5BCC0A)
fffff880`011c5000 fffff880`011f5000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`00c2e000 fffff880`00c8c000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`051f7000 fffff880`051fb500   CmBatt   CmBatt.sys   Mon Jul 13 19:31:03 2009 (4A5BC3B7)
fffff880`01154000 fffff880`0115c000   cmdide   cmdide.sys   Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`01a00000 fffff880`01a73000   cng      cng.sys      Mon Jul 13 19:49:40 2009 (4A5BC814)
fffff880`010a8000 fffff880`010b1000   compbatt compbatt.sys Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`04451000 fffff880`04461000   CompositeBus CompositeBus.sys Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`0630b000 fffff880`06319000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`044e5000 fffff880`04503000   dfsc     dfsc.sys     Mon Jul 13 19:23:44 2009 (4A5BC200)
fffff880`044d6000 fffff880`044e5000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`0203a000 fffff880`02050000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`0525e000 fffff880`05280000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`06319000 fffff880`06325000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`06330000 fffff880`06343000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`06325000 fffff880`06330000   dump_msahci dump_msahci.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`06507000 fffff880`06513000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`04600000 fffff880`046f4000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 21:00:14 2009 (4AC5509E)
fffff880`04d0e000 fffff880`04d54000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:38:32 2009 (4A5BC578)
fffff880`01606000 fffff880`0168d000   elxstor  elxstor.sys  Tue Feb 03 17:52:11 2009 (4988CA9B)
fffff880`045dd000 fffff880`045fa000   enecir   enecir.sys   Sun Jun 28 22:17:30 2009 (4A48243A)
fffff880`04598000 fffff880`045ce000   fastfat  fastfat.SYS  Mon Jul 13 19:23:28 2009 (4A5BC1F0)
fffff880`01b81000 fffff880`01b95000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`01b35000 fffff880`01b81000   fltmgr   fltmgr.sys   Mon Jul 13 19:19:59 2009 (4A5BC11F)
fffff880`01c2b000 fffff880`01c35000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`02000000 fffff880`0203a000   fvevol   fvevol.sys   Fri Sep 25 22:34:26 2009 (4ABD7DB2)
fffff880`0427a000 fffff880`042c4000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:21:08 2009 (4A5BC164)
fffff800`031f9000 fffff800`03242000   hal      hal.dll      Mon Jul 13 21:27:36 2009 (4A5BDF08)
fffff880`04d54000 fffff880`04d78000   HDAudBus HDAudBus.sys Mon Jul 13 20:06:13 2009 (4A5BCBF5)
fffff880`062ce000 fffff880`062e7000   HIDCLASS HIDCLASS.SYS Mon Jul 13 20:06:21 2009 (4A5BCBFD)
fffff880`062bd000 fffff880`062ce000   hidir    hidir.sys    Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`062e7000 fffff880`062ef080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`021c5000 fffff880`021cf000   hpdskflt hpdskflt.sys Fri Feb 26 11:12:18 2010 (4B87F2E2)
fffff880`051eb000 fffff880`051f7000   HpqKbFiltr HpqKbFiltr.sys Wed Apr 29 09:48:30 2009 (49F85AAE)
fffff880`01008000 fffff880`0101f000   HpSAMD   HpSAMD.sys   Mon May 18 19:43:49 2009 (4A11F2B5)
fffff880`03c29000 fffff880`03cf1000   HTTP     HTTP.sys     Mon Jul 13 19:22:16 2009 (4A5BC1A8)
fffff880`021bc000 fffff880`021c5000   hwpolicy hwpolicy.sys Mon Jul 13 19:19:22 2009 (4A5BC0FA)
fffff880`04dce000 fffff880`04dec000   i8042prt i8042prt.sys Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`01214000 fffff880`01332000   iaStorV  iaStorV.sys  Wed Apr 08 12:57:17 2009 (49DCD76D)
fffff880`0168d000 fffff880`0169e000   iirsp    iirsp.sys    Tue Dec 13 16:47:54 2005 (439F418A)
fffff880`0112e000 fffff880`01136000   intelide intelide.sys Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`0432c000 fffff880`0434a000   ipfltdrv ipfltdrv.sys Mon Jul 13 20:10:03 2009 (4A5BCCDB)
fffff880`01060000 fffff880`01069000   isapnp   isapnp.sys   Mon Jul 13 19:31:08 2009 (4A5BC3BC)
fffff880`04dec000 fffff880`04dfb000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`062f0000 fffff880`062fe000   kbdhid   kbdhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff800`00bbe000 fffff800`00bc1000   kdcom    kdcom.dll    Tue Nov 30 09:40:39 2010 (4CF50CE7)
fffff880`052d2000 fffff880`05315000   ks       ks.sys       Wed Mar 03 23:32:25 2010 (4B8F37D9)
fffff880`01c00000 fffff880`01c1a000   ksecdd   ksecdd.sys   Mon Jul 13 19:20:54 2009 (4A5BC156)
fffff880`01f57000 fffff880`01f82000   ksecpkg  ksecpkg.sys  Fri Dec 11 01:03:32 2009 (4B21E0B4)
fffff880`05280000 fffff880`05285200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`03dc5000 fffff880`03dd2000   lirsgt   lirsgt.sys   Sun May 17 09:06:57 2009 (4A100BF1)
fffff880`067cb000 fffff880`067e0000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`0169e000 fffff880`016bd000   lsi_fc   lsi_fc.sys   Tue Dec 09 17:46:09 2008 (493EF531)
fffff880`01365000 fffff880`01382000   lsi_sas  lsi_sas.sys  Mon May 18 20:20:23 2009 (4A11FB47)
fffff880`016bd000 fffff880`016d0000   lsi_sas2 lsi_sas2.sys Mon May 18 20:31:48 2009 (4A11FDF4)
fffff880`016d0000 fffff880`016ef000   lsi_scsi lsi_scsi.sys Thu Apr 16 18:13:50 2009 (49E7AD9E)
fffff880`06787000 fffff880`067aa000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`05327000 fffff880`0536b000   MarvinBus64 MarvinBus64.sys Fri Sep 23 17:17:03 2005 (433470CF)
fffff880`00c0d000 fffff880`00c1a000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`016ef000 fffff880`016fb000   megasas  megasas.sys  Mon May 18 21:09:46 2009 (4A1206DA)
fffff880`016fb000 fffff880`0179f000   MegaSR   MegaSR.sys   Mon May 18 21:25:54 2009 (4A120AA2)
fffff880`076b4000 fffff880`076cb600   mfeavfk  mfeavfk.sys  Fri Jul 31 18:02:42 2009 (4A736A02)
fffff880`0213d000 fffff880`021bbc00   mfehidk  mfehidk.sys  Fri Aug 06 18:33:19 2010 (4C5C8DAF)
fffff880`0654a000 fffff880`06559000   modem    modem.sys    Mon Jul 13 20:10:48 2009 (4A5BCD08)
fffff880`06779000 fffff880`06787000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`045ce000 fffff880`045dd000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`062fe000 fffff880`0630b000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`0115c000 fffff880`01176000   mountmgr mountmgr.sys Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`042c4000 fffff880`04301000   Mpfp     Mpfp.sys     Thu Jul 15 15:40:11 2010 (4C3F641B)
fffff880`01069000 fffff880`01093000   mpio     mpio.sys     Mon Jul 13 20:01:27 2009 (4A5BCAD7)
fffff880`03d0f000 fffff880`03d27000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`03d27000 fffff880`03d54000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:52:19 2010 (4B88CF33)
fffff880`03d54000 fffff880`03da2000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:52:28 2010 (4B88CF3C)
fffff880`03da2000 fffff880`03dc5000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:52:26 2010 (4B88CF3A)
fffff880`013e4000 fffff880`013ef000   msahci   msahci.sys   Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`01176000 fffff880`0119c000   msdsm    msdsm.sys    Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`01de7000 fffff880`01df2000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00e57000 fffff880`00e61000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`01b95000 fffff880`01bf3000   msrpc    msrpc.sys    Mon Jul 13 19:21:32 2009 (4A5BC17C)
fffff880`044cb000 fffff880`044d6000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`0212b000 fffff880`0213d000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`01e05000 fffff880`01ef7000   ndis     ndis.sys     Mon Jul 13 19:21:40 2009 (4A5BC184)
fffff880`04461000 fffff880`0446d000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`06653000 fffff880`06666000   ndisuio  ndisuio.sys  Mon Jul 13 20:09:25 2009 (4A5BCCB5)
fffff880`01400000 fffff880`0142f000   ndiswan  ndiswan.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`053d7000 fffff880`053ec000   NDProxy  NDProxy.SYS  Mon Jul 13 20:10:05 2009 (4A5BCCDD)
fffff880`043ea000 fffff880`043f9000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`04200000 fffff880`04245000   netbt    netbt.sys    Mon Jul 13 19:21:28 2009 (4A5BC178)
fffff880`01ef7000 fffff880`01f57000   NETIO    NETIO.SYS    Mon Jul 13 19:21:46 2009 (4A5BC18A)
fffff880`0179f000 fffff880`017af000   nfrd960  nfrd960.sys  Tue Jun 06 17:11:48 2006 (4485EF94)
fffff880`019d8000 fffff880`019e9000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`044bf000 fffff880`044cb000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c1d000 fffff800`031f9000   nt       ntkrnlmp.exe Sat Jun 19 00:16:41 2010 (4C1C44A9)
fffff880`01c44000 fffff880`01de7000   Ntfs     Ntfs.sys     Mon Jul 13 19:20:47 2009 (4A5BC14F)
fffff880`020ba000 fffff880`020c3000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`0119c000 fffff880`011c5000   nvraid   nvraid.sys   Wed May 20 02:39:40 2009 (4A13A5AC)
fffff880`017af000 fffff880`017da000   nvstor   nvstor.sys   Wed May 20 02:45:37 2009 (4A13A711)
fffff880`06600000 fffff880`06653000   nwifi    nwifi.sys    Mon Jul 13 20:07:23 2009 (4A5BCC3B)
fffff880`0424e000 fffff880`04274000   pacer    pacer.sys    Mon Jul 13 20:09:41 2009 (4A5BCCC5)
fffff880`01093000 fffff880`010a8000   partmgr  partmgr.sys  Mon Jul 13 19:19:58 2009 (4A5BC11E)
fffff880`0102d000 fffff880`01060000   pci      pci.sys      Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`011f5000 fffff880`011fc000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`01136000 fffff880`01146000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`01c1a000 fffff880`01c2b000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`072fc000 fffff880`073a2000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`05221000 fffff880`0525e000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00c1a000 fffff880`00c2e000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`01834000 fffff880`019d8000   ql2300   ql2300.sys   Thu Jan 22 18:05:06 2009 (4978FBA2)
fffff880`01a7c000 fffff880`01adb000   ql40xx   ql40xx.sys   Mon May 18 21:18:11 2009 (4A1208D3)
fffff880`017da000 fffff880`017fe000   rasl2tp  rasl2tp.sys  Mon Jul 13 20:10:11 2009 (4A5BCCE3)
fffff880`015db000 fffff880`015f6000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`05295000 fffff880`052b6000   raspptp  raspptp.sys  Mon Jul 13 20:10:18 2009 (4A5BCCEA)
fffff880`052b6000 fffff880`052d0000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`0446e000 fffff880`044bf000   rdbss    rdbss.sys    Mon Jul 13 19:24:09 2009 (4A5BC219)
fffff880`020e8000 fffff880`020f1000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`021f4000 fffff880`021fd000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01c35000 fffff880`01c3e000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`020f1000 fffff880`0212b000   rdyboost rdyboost.sys Mon Jul 13 19:34:34 2009 (4A5BC48A)
fffff880`064cb000 fffff880`064f7000   rfcomm   rfcomm.sys   Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`06666000 fffff880`0667e000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`05000000 fffff880`05039000   Rt64win7 Rt64win7.sys Fri May 22 10:52:30 2009 (4A16BC2E)
fffff880`01fde000 fffff880`01ffb000   sbp2port sbp2port.sys Mon Jul 13 19:19:53 2009 (4A5BC119)
fffff880`00fb3000 fffff880`00fe2000   SCSIPORT SCSIPORT.SYS Mon Jul 13 20:01:04 2009 (4A5BCAC0)
fffff880`073a2000 fffff880`073ad000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`01adb000 fffff880`01ae9000   SiSRaid2 SiSRaid2.sys Wed Sep 24 14:28:20 2008 (48DA86C4)
fffff880`01ae9000 fffff880`01b01000   sisraid4 sisraid4.sys Wed Oct 01 17:56:04 2008 (48E3F1F4)
fffff880`01fd6000 fffff880`01fde000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`00e84000 fffff880`00faa000   sptd     sptd.sys     Sun Oct 11 16:55:14 2009 (4AD24632)
fffff880`0761e000 fffff880`076b4000   srv      srv.sys      Thu Aug 26 23:38:00 2010 (4C773318)
fffff880`07200000 fffff880`07267000   srv2     srv2.sys     Thu Aug 26 23:37:46 2010 (4C77330A)
fffff880`073ad000 fffff880`073da000   srvnet   srvnet.sys   Thu Aug 26 23:37:24 2010 (4C7732F4)
fffff880`01b01000 fffff880`01b0b000   stexstor stexstor.sys Tue Feb 17 18:03:36 2009 (499B4248)
fffff880`01382000 fffff880`013e4000   storport storport.sys Mon Jul 13 20:01:18 2009 (4A5BCACE)
fffff880`06242000 fffff880`062bd000   stwrt64  stwrt64.sys  Tue Jul 21 18:42:28 2009 (4A664454)
fffff880`052d0000 fffff880`052d1480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`0454f000 fffff880`04598000   SynTP    SynTP.sys    Tue Jul 14 17:36:36 2009 (4A5CFA64)
fffff880`03403000 fffff880`03600000   tcpip    tcpip.sys    Sun Jun 13 23:39:04 2010 (4C15A458)
fffff880`073da000 fffff880`073ec000   tcpipreg tcpipreg.sys Mon Jul 13 20:09:49 2009 (4A5BCCCD)
fffff880`04301000 fffff880`0430e000   TDI      TDI.SYS      Mon Jul 13 19:21:18 2009 (4A5BC16E)
fffff880`0430e000 fffff880`0432c000   tdx      tdx.sys      Mon Jul 13 19:21:15 2009 (4A5BC16B)
fffff880`0181b000 fffff880`0182f000   termdd   termdd.sys   Mon Jul 13 20:16:36 2009 (4A5BCE64)
fffff960`004f0000 fffff960`004fa000   TSDDD    TSDDD.dll    unavailable (00000000)
fffff880`04514000 fffff880`0453a000   tunnel   tunnel.sys   Mon Jul 13 20:09:37 2009 (4A5BCCC1)
fffff880`0536b000 fffff880`0537d000   umbus    umbus.sys    Mon Jul 13 20:06:56 2009 (4A5BCC20)
fffff880`06343000 fffff880`06360000   usbccgp  usbccgp.sys  Mon Jul 13 20:06:45 2009 (4A5BCC15)
fffff880`05051000 fffff880`05052f00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`051da000 fffff880`051eb000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05044000 fffff880`05051000   usbfilter usbfilter.sys Mon Mar 09 07:49:01 2009 (49B5022D)
fffff880`0537d000 fffff880`053d7000   usbhub   usbhub.sys   Mon Jul 13 20:07:09 2009 (4A5BCC2D)
fffff880`05039000 fffff880`05044000   usbohci  usbohci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`04d78000 fffff880`04dce000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`06360000 fffff880`0638d200   usbvideo usbvideo.sys Wed Mar 03 23:40:57 2010 (4B8F39D9)
fffff880`00e61000 fffff880`00e6e000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`020ca000 fffff880`020d8000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`01000000 fffff880`01008000   viaide   viaide.sys   Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`021cf000 fffff880`021f4000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`010bd000 fffff880`010d2000   volmgr   volmgr.sys   Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`010d2000 fffff880`0112e000   volmgrx  volmgrx.sys  Mon Jul 13 19:20:33 2009 (4A5BC141)
fffff880`01f8a000 fffff880`01fd6000   volsnap  volsnap.sys  Mon Jul 13 19:20:08 2009 (4A5BC128)
fffff880`01b0b000 fffff880`01b35000   vsmraid  vsmraid.sys  Fri Jan 30 20:18:57 2009 (4983A701)
fffff880`051cd000 fffff880`051da000   vwifibus vwifibus.sys Mon Jul 13 20:07:21 2009 (4A5BCC39)
fffff880`043d4000 fffff880`043ea000   vwififlt vwififlt.sys Mon Jul 13 20:07:22 2009 (4A5BCC3A)
fffff880`0667e000 fffff880`06688000   vwifimp  vwifimp.sys  Mon Jul 13 20:07:28 2009 (4A5BCC40)
fffff880`01800000 fffff880`0181b000   wanarp   wanarp.sys   Mon Jul 13 20:10:21 2009 (4A5BCCED)
fffff880`020d8000 fffff880`020e8000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`01f82000 fffff880`01f8a000   wd       wd.sys       Mon Jul 13 19:19:55 2009 (4A5BC11B)
fffff880`00d4c000 fffff880`00df0000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00df0000 fffff880`00dff000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`04245000 fffff880`0424e000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`00000000 fffff960`00310000   win32k   win32k.sys   unavailable (00000000)
fffff880`05053000 fffff880`0505c000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00faa000 fffff880`00fb3000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`067aa000 fffff880`067cb000   WudfPf   WudfPf.sys   Mon Jul 13 20:05:37 2009 (4A5BCBD1)

Unloaded modules:
fffff880`02058000 fffff880`02066000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`02066000 fffff880`02072000   dump_pciidex
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000C000
fffff880`02072000 fffff880`0207d000   dump_msahci.
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000B000
fffff880`0207d000 fffff880`02090000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00013000
fffff880`01800000 fffff880`0181d000   serial.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0001D000
 


Last edited:
This website is not affiliated, owned, or endorsed by Microsoft Corporation. It is a member of the Microsoft Partner Program.