Windows 7 Strange Reboot error.

VsUK

Senior Member
Joined
Jul 1, 2010
ok, I've had this for a while but because i don't often leave my system on & idle for more than 30 minutes at a time i don't really notice this but its a problem i would like to fix.

To start with, i can be sat working at my system all day without a problem what so ever, however if i leave it on & just turn my monitor off, shortest time i've noticed is around 30-40 minutes to an hour i come back & i have a notice, my system has recovered from a unexpected shutdown & it just gives me option to check online for solutions which dont really do much & it does this every time i leave it on idle. I'm on Ultimate 64bit but i recently upgraded from Home Premium 64Bit which did exactly the same & when i upgraded i changed my M/B, Memory, CPU & a new 80+ PSU so i don't think or i hope its not hardware.

Can anyone shed any light on this?

Last thing, my windows experience index doesn't work, i click rate this computer button & nothing happens & its not worked since my install & which i did 3 times because i messed it up the first 2 times & even then it didn't work.

Thanks
 
I'm on Ultimate 64bit but i recently upgraded from Home Premium 64Bit which did exactly the same & when i upgraded i changed my M/B, Memory, CPU & a new 80+ PSU so i don't think or i hope its not hardware.

Is the PS good enough?

Is the hardware set right without overclocking?

Did you reinstall the system after the upgrade?


http://windows7forums.com/blue-scre...mportant-every-thread-starter-please-see.html

http://windows7forums.com/blue-screen-death-bsod/55603-sf-diagnostic-tool.html
 
PS is more than good enough & when idle nothing is really running & if it was the PS it would be more inherent when im playing games which uses more resources than idle + i recently removed 2 internal & converted to External so thats even less power needed.

Hardware has always been fine & everything runs fine apart from the 2 things i have mentioned.

Upgrade was a wrong choice of words sorry, I did a full format & reinstalled as my current OS went nuts after my registry became corrupt by my own doing :p
 
What do you show for your sleep and hibernate time settings?
 
ive turned off the auto sleep & hibernate.

But i have just seen the error code as it did it just as i sat the comp.. here is the info i was given..

Problem signature:
Problem Event Name: BlueScreen
OS Version: 6.1.7601.2.1.0.256.1
Locale ID: 2057

Additional information about the problem:
BCCode: 3b
BCP1: 00000000C0000005
BCP2: FFFFF88004890817
BCP3: FFFFF880072618F0
BCP4: 0000000000000000
OS Version: 6_1_7601
Service Pack: 1_0
Product: 256_1

Files that help describe the problem:
C:\Windows\Minidump\040311-18189-01.dmp
C:\Windows\Temp\WER-31496-0.sysdata.xml

Read our privacy statement online:
Windows 7 Privacy Statement - Microsoft Windows

If the online privacy statement is not available, please read our privacy statement offline:
C:\Windows\system32\en-US\erofflps.txt
 
ive turned off the auto sleep & hibernate.

But i have just seen the error code as it did it just as i sat the comp.. here is the info i was given..


Great, I mean too bad because you are having blue screens. It might be helpful taking a look at:

1. All your crash dumps .dmp from C:\Windows\Minidump folder.
2. Screenshots of CPU-Z memory and CPU tabs
3. RAMMon HTML report (zip it of course)

http://windows7forums.com/blue-scre...mportant-every-thread-starter-please-see.html
So attach that stuff:

--> 2 screenshots CPU and MEMORY
--> RAMMon HTML.zip
--> .dmp files
 
Ok, ive zipped all the dump files which are all made from the same reboot error & zipped the RaMMon html file + a SS of my CPUZ cpu & memory.
 

Attachments

  • RAMMon - SPD Info.zip
    2.7 KB · Views: 186
  • cpuzimage.jpg
    cpuzimage.jpg
    143.8 KB · Views: 405
  • Minidump.zip
    248.1 KB · Views: 247
1.

Your blue screens are caused by the Catalyst 10.12 Preview driver, which is in fact a rather notorious BSOD maker:


BugCheck 3B, {c0000005, fffff88004951817, fffff880076118f0, 0}
Probably caused by : atikmdag.sys ( atikmdag+90817 )
atikmpag.sys Thu Nov 25 21:16:47 2010


AMD Game Forums - 10.12 blue screen error problem


There is no good reason why you shouldn't update to the latest version:

ATI Radeon



~~~~~~~~~~~~~~

2.

You have Comodo and Avast, for now uninstall both and replace them with MSE:

Link Removed due to 404 Error

~~~~~~~~~~~~~~

3.

Update drivers:

Power ISO
SCDEmu.SYS Mon Jul 07 03:58:16 2008

TuneUp Utilities
TuneUpUtilitiesDriver64.sys Thu Sep 17 07:54:52 2009



~~~~~~~~~~~~~

4.

Your memory sticks (slot 3 and 4) are matching and set right. However, AMD Cool and Quiet seems to be off. Turn it on.








CRASH DUMPS

Code:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\040211-18298-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c4b000 PsLoadedModuleList = 0xfffff800`02e90e90
Debug session time: Sat Apr  2 11:10:32.347 2011 (UTC - 4:00)
System Uptime: 0 days 4:23:35.533
Loading Kernel Symbols
...............................................................
................................................................
..................................
Loading User Symbols
Loading unloaded module list
.........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff88004951817, fffff880076118f0, 0}

Probably caused by : atikmdag.sys ( atikmdag+90817 )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff88004951817, Address of the instruction which caused the bugcheck
Arg3: fffff880076118f0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
atikmdag+90817
fffff880`04951817 8b4820          mov     ecx,dword ptr [rax+20h]

CONTEXT:  fffff880076118f0 -- (.cxr 0xfffff880076118f0)
rax=0000000000000000 rbx=fffffa8004f71c50 rcx=fffffa8004fc91d0
rdx=0000000000000000 rsi=0000000000000015 rdi=fffffa8004d51010
rip=fffff88004951817 rsp=fffff880076122d0 rbp=fffffa8004fc91d0
 r8=0000000000000015  r9=fffff88004d13970 r10=0000000000000000
r11=fffff88007612420 r12=0000000000000000 r13=fffffa8004051010
r14=0000000000000001 r15=0000000000000000
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
atikmdag+0x90817:
fffff880`04951817 8b4820          mov     ecx,dword ptr [rax+20h] ds:002b:00000000`00000020=????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  dwm.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff88004951817

STACK_TEXT:  
fffff880`076122d0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : atikmdag+0x90817


FOLLOWUP_IP: 
atikmdag+90817
fffff880`04951817 8b4820          mov     ecx,dword ptr [rax+20h]

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  atikmdag+90817

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: atikmdag

IMAGE_NAME:  atikmdag.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4cef1f94

STACK_COMMAND:  .cxr 0xfffff880076118f0 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_atikmdag+90817

BUCKET_ID:  X64_0x3B_atikmdag+90817

Followup: MachineOwner
---------



Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\033111-18423-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c4b000 PsLoadedModuleList = 0xfffff800`02e90e90
Debug session time: Thu Mar 31 10:01:05.235 2011 (UTC - 4:00)
System Uptime: 0 days 3:10:27.422
Loading Kernel Symbols
...............................................................
................................................................
..................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff88004900817, fffff880074668f0, 0}

Probably caused by : atikmdag.sys ( atikmdag+90817 )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff88004900817, Address of the instruction which caused the bugcheck
Arg3: fffff880074668f0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
atikmdag+90817
fffff880`04900817 8b4820          mov     ecx,dword ptr [rax+20h]

CONTEXT:  fffff880074668f0 -- (.cxr 0xfffff880074668f0)
rax=0000000000000000 rbx=fffffa80050e1190 rcx=fffffa80039f2c00
rdx=0000000000000000 rsi=0000000000000015 rdi=fffffa8004dbd010
rip=fffff88004900817 rsp=fffff880074672d0 rbp=fffffa80039f2c00
 r8=0000000000000015  r9=fffff88004cc2970 r10=0000000000000000
r11=fffff88007467420 r12=0000000000000000 r13=fffffa800643cb60
r14=0000000000000001 r15=0000000000000000
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
atikmdag+0x90817:
fffff880`04900817 8b4820          mov     ecx,dword ptr [rax+20h] ds:002b:00000000`00000020=????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  dwm.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff88004900817

STACK_TEXT:  
fffff880`074672d0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : atikmdag+0x90817


FOLLOWUP_IP: 
atikmdag+90817
fffff880`04900817 8b4820          mov     ecx,dword ptr [rax+20h]

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  atikmdag+90817

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: atikmdag

IMAGE_NAME:  atikmdag.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4cef1f94

STACK_COMMAND:  .cxr 0xfffff880074668f0 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_atikmdag+90817

BUCKET_ID:  X64_0x3B_atikmdag+90817

Followup: MachineOwner
---------




Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\040111-18782-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c03000 PsLoadedModuleList = 0xfffff800`02e48e90
Debug session time: Fri Apr  1 14:48:42.702 2011 (UTC - 4:00)
System Uptime: 0 days 7:49:08.888
Loading Kernel Symbols
...............................................................
................................................................
..................................
Loading User Symbols
Loading unloaded module list
...........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff88004914817, fffff880075288f0, 0}

Probably caused by : atikmdag.sys ( atikmdag+90817 )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff88004914817, Address of the instruction which caused the bugcheck
Arg3: fffff880075288f0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
atikmdag+90817
fffff880`04914817 8b4820          mov     ecx,dword ptr [rax+20h]

CONTEXT:  fffff880075288f0 -- (.cxr 0xfffff880075288f0)
rax=0000000000000000 rbx=fffffa8005052230 rcx=fffffa8005bab1f0
rdx=0000000000000000 rsi=0000000000000015 rdi=fffffa8004d5a010
rip=fffff88004914817 rsp=fffff880075292d0 rbp=fffffa8005bab1f0
 r8=0000000000000015  r9=fffff88004cd6970 r10=0000000000000000
r11=fffff88007529420 r12=0000000000000000 r13=fffffa8003fd9800
r14=0000000000000001 r15=0000000000000000
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
atikmdag+0x90817:
fffff880`04914817 8b4820          mov     ecx,dword ptr [rax+20h] ds:002b:00000000`00000020=????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  dwm.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff88004914817

STACK_TEXT:  
fffff880`075292d0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : atikmdag+0x90817


FOLLOWUP_IP: 
atikmdag+90817
fffff880`04914817 8b4820          mov     ecx,dword ptr [rax+20h]

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  atikmdag+90817

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: atikmdag

IMAGE_NAME:  atikmdag.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4cef1f94

STACK_COMMAND:  .cxr 0xfffff880075288f0 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_atikmdag+90817

BUCKET_ID:  X64_0x3B_atikmdag+90817

Followup: MachineOwner
---------




Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [F:\DMP\040311-18189-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`02c57000 PsLoadedModuleList = 0xfffff800`02e9ce90
Debug session time: Sun Apr  3 07:24:54.998 2011 (UTC - 4:00)
System Uptime: 0 days 1:44:29.574
Loading Kernel Symbols
...............................................................
................................................................
..................................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 3B, {c0000005, fffff88004890817, fffff880072618f0, 0}

Probably caused by : atikmdag.sys ( atikmdag+90817 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff88004890817, Address of the instruction which caused the bugcheck
Arg3: fffff880072618f0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

FAULTING_IP: 
atikmdag+90817
fffff880`04890817 8b4820          mov     ecx,dword ptr [rax+20h]

CONTEXT:  fffff880072618f0 -- (.cxr 0xfffff880072618f0)
rax=0000000000000000 rbx=fffffa8004fb3170 rcx=fffffa8004d511f0
rdx=0000000000000000 rsi=0000000000000015 rdi=fffffa8004d60010
rip=fffff88004890817 rsp=fffff880072622d0 rbp=fffffa8004d511f0
 r8=0000000000000015  r9=fffff88004c52970 r10=0000000000000000
r11=fffff88007262420 r12=0000000000000000 r13=fffffa8003e6d750
r14=0000000000000001 r15=0000000000000000
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
atikmdag+0x90817:
fffff880`04890817 8b4820          mov     ecx,dword ptr [rax+20h] ds:002b:00000000`00000020=????????
Resetting default scope

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x3B

PROCESS_NAME:  dwm.exe

CURRENT_IRQL:  0

LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff88004890817

STACK_TEXT:  
fffff880`072622d0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : atikmdag+0x90817


FOLLOWUP_IP: 
atikmdag+90817
fffff880`04890817 8b4820          mov     ecx,dword ptr [rax+20h]

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  atikmdag+90817

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: atikmdag

IMAGE_NAME:  atikmdag.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4cef1f94

STACK_COMMAND:  .cxr 0xfffff880072618f0 ; kb

FAILURE_BUCKET_ID:  X64_0x3B_atikmdag+90817

BUCKET_ID:  X64_0x3B_atikmdag+90817

Followup: MachineOwner
---------





DRIVERS

Code:
start             end                 module name
fffff880`00f7d000 fffff880`00fd4000   ACPI     ACPI.sys     Sat Nov 20 04:19:16 2010 (4CE79294)
fffff880`040b3000 fffff880`0413c000   afd      afd.sys      Sat Nov 20 04:23:27 2010 (4CE7938F)
fffff880`04310000 fffff880`04326000   AgileVpn AgileVpn.sys Mon Jul 13 20:10:24 2009 (4A5BCCF0)
fffff880`0420f000 fffff880`04223000   amdiox64 amdiox64.sys Thu Feb 18 10:17:53 2010 (4B7D5A21)
fffff880`03fa8000 fffff880`03fbd000   amdppm   amdppm.sys   Mon Jul 13 19:19:25 2009 (4A5BC0FD)
fffff880`00c83000 fffff880`00c8e000   amdxata  amdxata.sys  Fri Mar 19 12:18:18 2010 (4BA3A3CA)
fffff880`042e3000 fffff880`042eb000   ASACPI   ASACPI.sys   Wed Jul 15 23:31:29 2009 (4A5E9F11)
fffff880`03f7c000 fffff880`03f82000   AsIO     AsIO.sys     Mon Aug 03 03:03:16 2009 (4A768BB4)
fffff880`03f76000 fffff880`03f7c000   AsUpIO   AsUpIO.sys   Sun Jul 05 22:21:38 2009 (4A515FB2)
fffff880`067f7000 fffff880`06800000   aswFsBlk aswFsBlk.SYS Wed Feb 23 09:54:56 2011 (4D651FC0)
fffff880`05c23000 fffff880`05c5d000   aswMonFlt aswMonFlt.sys Wed Feb 23 09:55:04 2011 (4D651FC8)
fffff880`0413c000 fffff880`04146000   aswRdr   aswRdr.SYS   Wed Feb 23 09:55:11 2011 (4D651FCF)
fffff880`01131000 fffff880`011b1000   aswSnx   aswSnx.SYS   Wed Feb 23 09:56:59 2011 (4D65203B)
fffff880`03f2b000 fffff880`03f76000   aswSP    aswSP.SYS    Wed Feb 23 09:57:02 2011 (4D65203E)
fffff880`04097000 fffff880`040a7000   aswTdi   aswTdi.SYS   Wed Feb 23 09:55:51 2011 (4D651FF7)
fffff880`091e4000 fffff880`091ef000   asyncmac asyncmac.sys Mon Jul 13 20:10:13 2009 (4A5BCCE5)
fffff880`00c50000 fffff880`00c59000   atapi    atapi.sys    Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00c59000 fffff880`00c83000   ataport  ataport.SYS  Sat Nov 20 04:19:15 2010 (4CE79293)
fffff880`05cfe000 fffff880`05d1e000   AtihdW76 AtihdW76.sys Wed Nov 17 07:02:04 2010 (4CE3C43C)
fffff880`04800000 fffff880`05011000   atikmdag atikmdag.sys Thu Nov 25 21:46:44 2010 (4CEF1F94)
fffff880`04241000 fffff880`0428d000   atikmpag atikmpag.sys Thu Nov 25 21:16:47 2010 (4CEF188F)
fffff880`01630000 fffff880`01638000   AtiPcie  AtiPcie.sys  Mon Aug 24 04:25:26 2009 (4A924E76)
fffff880`015dd000 fffff880`015e4000   Beep     Beep.SYS     Mon Jul 13 20:00:13 2009 (4A5BCA8D)
fffff880`03f1a000 fffff880`03f2b000   blbdrive blbdrive.sys Mon Jul 13 19:35:59 2009 (4A5BC4DF)
fffff880`05580000 fffff880`0559e000   bowser   bowser.sys   Mon Jul 13 19:23:50 2009 (4A5BC206)
fffff960`006d0000 fffff960`006f7000   cdd      cdd.dll      Sat Nov 20 07:55:34 2010 (4CE7C546)
fffff880`019d2000 fffff880`019fc000   cdrom    cdrom.sys    Sat Nov 20 04:19:20 2010 (4CE79298)
fffff880`00d16000 fffff880`00dd6000   CI       CI.dll       Sat Nov 20 08:12:36 2010 (4CE7C944)
fffff880`01600000 fffff880`01630000   CLASSPNP CLASSPNP.SYS Sat Nov 20 04:19:23 2010 (4CE7929B)
fffff880`00cb8000 fffff880`00d16000   CLFS     CLFS.SYS     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`0159b000 fffff880`015dd000   cmdguard cmdguard.sys Wed Jan 05 12:10:43 2011 (4D24A613)
fffff880`040a7000 fffff880`040b3000   cmdhlp   cmdhlp.sys   Wed Jan 05 12:09:59 2011 (4D24A5E7)
fffff880`010bf000 fffff880`01131000   cng      cng.sys      Sat Nov 20 05:08:45 2010 (4CE79E2D)
fffff880`04300000 fffff880`04310000   CompositeBus CompositeBus.sys Sat Nov 20 05:33:17 2010 (4CE7A3ED)
fffff880`0778f000 fffff880`0779d000   crashdmp crashdmp.sys Mon Jul 13 20:01:01 2009 (4A5BCABD)
fffff880`03e79000 fffff880`03efc000   csc      csc.sys      Sat Nov 20 04:27:12 2010 (4CE79470)
fffff880`03efc000 fffff880`03f1a000   dfsc     dfsc.sys     Sat Nov 20 04:26:31 2010 (4CE79447)
fffff880`03e6a000 fffff880`03e79000   discache discache.sys Mon Jul 13 19:37:18 2009 (4A5BC52E)
fffff880`019bc000 fffff880`019d2000   disk     disk.sys     Mon Jul 13 19:19:57 2009 (4A5BC11D)
fffff880`05d5b000 fffff880`05d7d000   drmk     drmk.sys     Mon Jul 13 21:01:25 2009 (4A5BD8E5)
fffff880`077a9000 fffff880`077b2000   dump_atapi dump_atapi.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`0779d000 fffff880`077a9000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`077b2000 fffff880`077c5000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
fffff880`05dd4000 fffff880`05de0000   Dxapi    Dxapi.sys    Mon Jul 13 19:38:28 2009 (4A5BC574)
fffff880`05011000 fffff880`05105000   dxgkrnl  dxgkrnl.sys  Sat Nov 20 04:50:50 2010 (4CE799FA)
fffff880`05105000 fffff880`0514b000   dxgmms1  dxgmms1.sys  Sat Nov 20 04:49:53 2010 (4CE799C1)
fffff880`0104d000 fffff880`01061000   fileinfo fileinfo.sys Mon Jul 13 19:34:25 2009 (4A5BC481)
fffff880`01001000 fffff880`0104d000   fltmgr   fltmgr.sys   Sat Nov 20 04:19:24 2010 (4CE7929C)
fffff880`013ef000 fffff880`013f9000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:19:45 2009 (4A5BC111)
fffff880`01982000 fffff880`019bc000   fvevol   fvevol.sys   Sat Nov 20 04:24:06 2010 (4CE793B6)
fffff880`0187f000 fffff880`018c9000   fwpkclnt fwpkclnt.sys Sat Nov 20 04:21:37 2010 (4CE79321)
fffff800`02c0e000 fffff800`02c57000   hal      hal.dll      Sat Nov 20 08:00:25 2010 (4CE7C669)
fffff880`0514b000 fffff880`0516f000   HDAudBus HDAudBus.sys Sat Nov 20 05:43:42 2010 (4CE7A65E)
fffff880`05d83000 fffff880`05d9c000   HIDCLASS HIDCLASS.SYS Sat Nov 20 05:43:49 2010 (4CE7A665)
fffff880`067ee000 fffff880`067f6080   HIDPARSE HIDPARSE.SYS Mon Jul 13 20:06:17 2009 (4A5BCBF9)
fffff880`067e0000 fffff880`067ee000   hidusb   hidusb.sys   Sat Nov 20 05:43:49 2010 (4CE7A665)
fffff880`054b7000 fffff880`05580000   HTTP     HTTP.sys     Sat Nov 20 04:24:30 2010 (4CE793CE)
fffff880`01979000 fffff880`01982000   hwpolicy hwpolicy.sys Sat Nov 20 04:18:54 2010 (4CE7927E)
fffff880`041ba000 fffff880`041d2000   inspect  inspect.sys  Wed Jan 05 12:09:49 2011 (4D24A5DD)
fffff880`043e6000 fffff880`043f5000   kbdclass kbdclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05dc6000 fffff880`05dd4000   kbdhid   kbdhid.sys   Sat Nov 20 05:33:25 2010 (4CE7A3F5)
fffff800`00bca000 fffff800`00bd4000   kdcom    kdcom.dll    Mon Jul 13 21:31:07 2009 (4A5BDFDB)
fffff880`03fbd000 fffff880`04000000   ks       ks.sys       Sat Nov 20 05:33:23 2010 (4CE7A3F3)
fffff880`013c3000 fffff880`013de000   ksecdd   ksecdd.sys   Sat Nov 20 04:21:15 2010 (4CE7930B)
fffff880`01570000 fffff880`0159b000   ksecpkg  ksecpkg.sys  Sat Nov 20 05:10:34 2010 (4CE79E9A)
fffff880`05d7d000 fffff880`05d82200   ksthunk  ksthunk.sys  Mon Jul 13 20:00:19 2009 (4A5BCA93)
fffff880`0548a000 fffff880`0549f000   lltdio   lltdio.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`05c00000 fffff880`05c23000   luafv    luafv.sys    Mon Jul 13 19:26:13 2009 (4A5BC295)
fffff880`00c97000 fffff880`00ca4000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Mon Jul 13 21:29:09 2009 (4A5BDF65)
fffff880`091ef000 fffff880`091fd000   monitor  monitor.sys  Mon Jul 13 19:38:52 2009 (4A5BC58C)
fffff880`04200000 fffff880`0420f000   mouclass mouclass.sys Mon Jul 13 19:19:50 2009 (4A5BC116)
fffff880`05d9c000 fffff880`05da9000   mouhid   mouhid.sys   Mon Jul 13 20:00:20 2009 (4A5BCA94)
fffff880`00dd6000 fffff880`00df0000   mountmgr mountmgr.sys Sat Nov 20 04:19:21 2010 (4CE79299)
fffff880`0559e000 fffff880`055b6000   mpsdrv   mpsdrv.sys   Mon Jul 13 20:08:25 2009 (4A5BCC79)
fffff880`055b6000 fffff880`055e3000   mrxsmb   mrxsmb.sys   Sat Nov 20 04:27:41 2010 (4CE7948D)
fffff880`07678000 fffff880`076c5000   mrxsmb10 mrxsmb10.sys Sat Nov 20 04:26:53 2010 (4CE7945D)
fffff880`076c5000 fffff880`076e9000   mrxsmb20 mrxsmb20.sys Sat Nov 20 04:26:47 2010 (4CE79457)
fffff880`01209000 fffff880`01214000   Msfs     Msfs.SYS     Mon Jul 13 19:19:47 2009 (4A5BC113)
fffff880`00fdd000 fffff880`00fe7000   msisadrv msisadrv.sys Mon Jul 13 19:19:26 2009 (4A5BC0FE)
fffff880`01061000 fffff880`010bf000   msrpc    msrpc.sys    Sat Nov 20 04:21:56 2010 (4CE79334)
fffff880`03e5f000 fffff880`03e6a000   mssmbios mssmbios.sys Mon Jul 13 19:31:10 2009 (4A5BC3BE)
fffff880`01967000 fffff880`01979000   mup      mup.sys      Mon Jul 13 19:23:45 2009 (4A5BC201)
fffff880`0141d000 fffff880`01510000   ndis     ndis.sys     Sat Nov 20 04:23:30 2010 (4CE79392)
fffff880`0434a000 fffff880`04356000   ndistapi ndistapi.sys Mon Jul 13 20:10:00 2009 (4A5BCCD8)
fffff880`04356000 fffff880`04385000   ndiswan  ndiswan.sys  Sat Nov 20 05:52:32 2010 (4CE7A870)
fffff880`05ce9000 fffff880`05cfe000   NDProxy  NDProxy.SYS  Sat Nov 20 05:52:20 2010 (4CE7A864)
fffff880`041d2000 fffff880`041e1000   netbios  netbios.sys  Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff880`04146000 fffff880`0418b000   netbt    netbt.sys    Sat Nov 20 04:23:18 2010 (4CE79386)
fffff880`01510000 fffff880`01570000   NETIO    NETIO.SYS    Sat Nov 20 04:23:13 2010 (4CE79381)
fffff880`011d6000 fffff880`011e7000   Npfs     Npfs.SYS     Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`03e53000 fffff880`03e5f000   nsiproxy nsiproxy.sys Mon Jul 13 19:21:02 2009 (4A5BC15E)
fffff800`02c57000 fffff800`03241000   nt       ntkrnlmp.exe Sat Nov 20 04:30:02 2010 (4CE7951A)
fffff880`01220000 fffff880`013c3000   Ntfs     Ntfs.sys     Sat Nov 20 04:20:57 2010 (4CE792F9)
fffff880`0166e000 fffff880`01677000   Null     Null.SYS     Mon Jul 13 19:19:37 2009 (4A5BC109)
fffff880`04194000 fffff880`041ba000   pacer    pacer.sys    Sat Nov 20 05:52:18 2010 (4CE7A862)
fffff880`051e1000 fffff880`051fe000   parport  parport.sys  Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`00e40000 fffff880`00e55000   partmgr  partmgr.sys  Sat Nov 20 04:20:00 2010 (4CE792C0)
fffff880`00e00000 fffff880`00e33000   pci      pci.sys      Sat Nov 20 04:19:11 2010 (4CE7928F)
fffff880`00fe7000 fffff880`00fee000   pciide   pciide.sys   Mon Jul 13 19:19:49 2009 (4A5BC115)
fffff880`00fee000 fffff880`00ffe000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:19:48 2009 (4A5BC114)
fffff880`013de000 fffff880`013ef000   pcw      pcw.sys      Mon Jul 13 19:19:27 2009 (4A5BC0FF)
fffff880`076e9000 fffff880`0778f000   peauth   peauth.sys   Mon Jul 13 21:01:19 2009 (4A5BD8DF)
fffff880`05d1e000 fffff880`05d5b000   portcls  portcls.sys  Mon Jul 13 20:06:27 2009 (4A5BCC03)
fffff880`00ca4000 fffff880`00cb8000   PSHED    PSHED.dll    Mon Jul 13 21:32:23 2009 (4A5BE027)
fffff880`04326000 fffff880`0434a000   rasl2tp  rasl2tp.sys  Sat Nov 20 05:52:34 2010 (4CE7A872)
fffff880`04385000 fffff880`043a0000   raspppoe raspppoe.sys Mon Jul 13 20:10:17 2009 (4A5BCCE9)
fffff880`043a0000 fffff880`043c1000   raspptp  raspptp.sys  Sat Nov 20 05:52:31 2010 (4CE7A86F)
fffff880`043c1000 fffff880`043db000   rassstp  rassstp.sys  Mon Jul 13 20:10:25 2009 (4A5BCCF1)
fffff880`03e02000 fffff880`03e53000   rdbss    rdbss.sys    Sat Nov 20 04:27:51 2010 (4CE79497)
fffff880`043db000 fffff880`043e6000   rdpbus   rdpbus.sys   Mon Jul 13 20:17:46 2009 (4A5BCEAA)
fffff880`01410000 fffff880`01419000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`015f2000 fffff880`015fb000   rdpencdd rdpencdd.sys Mon Jul 13 20:16:34 2009 (4A5BCE62)
fffff880`01200000 fffff880`01209000   rdprefmp rdprefmp.sys Mon Jul 13 20:16:35 2009 (4A5BCE63)
fffff880`0192d000 fffff880`01967000   rdyboost rdyboost.sys Sat Nov 20 04:43:10 2010 (4CE7982E)
fffff880`0549f000 fffff880`054b7000   rspndr   rspndr.sys   Mon Jul 13 20:08:50 2009 (4A5BCC92)
fffff880`0516f000 fffff880`051c5000   Rt64win7 Rt64win7.sys Wed Jun 23 05:10:45 2010 (4C21CF95)
fffff880`0402f000 fffff880`04048000   SCDEmu   SCDEmu.SYS   Mon Jul 07 03:58:16 2008 (4871CC98)
fffff880`077c5000 fffff880`077d0000   secdrv   secdrv.SYS   Wed Sep 13 09:18:38 2006 (4508052E)
fffff880`042eb000 fffff880`042f7000   serenum  serenum.sys  Mon Jul 13 20:00:33 2009 (4A5BCAA1)
fffff880`041e1000 fffff880`041fe000   serial   serial.sys   Mon Jul 13 20:00:40 2009 (4A5BCAA8)
fffff880`01925000 fffff880`0192d000   spldr    spldr.sys    Mon May 11 12:56:27 2009 (4A0858BB)
fffff880`090d2000 fffff880`0916b000   srv      srv.sys      Sat Nov 20 04:28:05 2010 (4CE794A5)
fffff880`09067000 fffff880`090d2000   srv2     srv2.sys     Sat Nov 20 04:27:43 2010 (4CE7948F)
fffff880`07600000 fffff880`07631000   srvnet   srvnet.sys   Sat Nov 20 04:27:20 2010 (4CE79478)
fffff880`051fe000 fffff880`051ff480   swenum   swenum.sys   Mon Jul 13 20:00:18 2009 (4A5BCA92)
fffff880`0167b000 fffff880`0187f000   tcpip    tcpip.sys    Sat Nov 20 04:25:52 2010 (4CE79420)
fffff880`07631000 fffff880`07643000   tcpipreg tcpipreg.sys Sat Nov 20 05:51:48 2010 (4CE7A844)
fffff880`0408a000 fffff880`04097000   TDI      TDI.SYS      Sat Nov 20 04:22:06 2010 (4CE7933E)
fffff880`04068000 fffff880`0408a000   tdx      tdx.sys      Sat Nov 20 04:21:54 2010 (4CE79332)
fffff880`0401b000 fffff880`0402f000   termdd   termdd.sys   Sat Nov 20 06:03:40 2010 (4CE7AB0C)
fffff960`00540000 fffff960`0054a000   TSDDD    TSDDD.dll    unavailable (00000000)
fffff880`0916b000 fffff880`09173000   TuneUpUtilitiesDriver64 TuneUpUtilitiesDriver64.sys Thu Sep 17 07:54:52 2009 (4AB2238C)
fffff880`03f82000 fffff880`03fa8000   tunnel   tunnel.sys   Sat Nov 20 05:51:50 2010 (4CE7A846)
fffff880`05435000 fffff880`0548a000   udfs     udfs.sys     Sat Nov 20 04:26:11 2010 (4CE79433)
fffff880`04223000 fffff880`04235000   umbus    umbus.sys    Sat Nov 20 05:44:37 2010 (4CE7A695)
fffff880`067c1000 fffff880`067de000   usbccgp  usbccgp.sys  Sat Nov 20 05:44:03 2010 (4CE7A673)
fffff880`067de000 fffff880`067dff00   USBD     USBD.SYS     Mon Jul 13 20:06:23 2009 (4A5BCBFF)
fffff880`051d0000 fffff880`051e1000   usbehci  usbehci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`05c8f000 fffff880`05ce9000   usbhub   usbhub.sys   Sat Nov 20 05:44:30 2010 (4CE7A68E)
fffff880`051c5000 fffff880`051d0000   usbohci  usbohci.sys  Mon Jul 13 20:06:30 2009 (4A5BCC06)
fffff880`0428d000 fffff880`042e3000   USBPORT  USBPORT.SYS  Mon Jul 13 20:06:31 2009 (4A5BCC07)
fffff880`05dba000 fffff880`05dc6000   usbprint usbprint.sys Mon Jul 13 20:38:18 2009 (4A5BD37A)
fffff880`05da9000 fffff880`05dba000   usbscan  usbscan.sys  Mon Jul 13 20:35:32 2009 (4A5BD2D4)
fffff880`00e33000 fffff880`00e40000   vdrvroot vdrvroot.sys Mon Jul 13 20:01:31 2009 (4A5BCADB)
fffff880`015e4000 fffff880`015f2000   vga      vga.sys      Mon Jul 13 19:38:47 2009 (4A5BC587)
fffff880`0660a000 fffff880`067c1000   viahduaa viahduaa.sys Sat May 15 06:22:39 2010 (4BEE75EF)
fffff880`011b1000 fffff880`011d6000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:38:51 2009 (4A5BC58B)
fffff880`00c00000 fffff880`00c3c000   vmbus    vmbus.sys    Sat Nov 20 04:57:29 2010 (4CE79B89)
fffff880`018c9000 fffff880`018d9000   vmstorfl vmstorfl.sys Sat Nov 20 04:57:30 2010 (4CE79B8A)
fffff880`00e55000 fffff880`00e6a000   volmgr   volmgr.sys   Sat Nov 20 04:19:28 2010 (4CE792A0)
fffff880`00e6a000 fffff880`00ec6000   volmgrx  volmgrx.sys  Sat Nov 20 04:20:43 2010 (4CE792EB)
fffff880`018d9000 fffff880`01925000   volsnap  volsnap.sys  Sat Nov 20 04:20:08 2010 (4CE792C8)
fffff880`04000000 fffff880`0401b000   wanarp   wanarp.sys   Sat Nov 20 05:52:36 2010 (4CE7A874)
fffff880`01400000 fffff880`01410000   watchdog watchdog.sys Mon Jul 13 19:37:35 2009 (4A5BC53F)
fffff880`00eca000 fffff880`00f6e000   Wdf01000 Wdf01000.sys Mon Jul 13 19:22:07 2009 (4A5BC19F)
fffff880`00f6e000 fffff880`00f7d000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:19:54 2009 (4A5BC11A)
fffff880`0418b000 fffff880`04194000   wfplwf   wfplwf.sys   Mon Jul 13 20:09:26 2009 (4A5BCCB6)
fffff960`00080000 fffff960`00391000   win32k   win32k.sys   Wed Jan 05 01:55:38 2011 (4D2415EA)
fffff880`00c3c000 fffff880`00c50000   winhv    winhv.sys    Sat Nov 20 04:20:02 2010 (4CE792C2)
fffff880`042f7000 fffff880`04300000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:31:02 2009 (4A5BC3B6)
fffff880`00fd4000 fffff880`00fdd000   WMILIB   WMILIB.SYS   Mon Jul 13 19:19:51 2009 (4A5BC117)
fffff880`05c5d000 fffff880`05c7e000   WudfPf   WudfPf.sys   Sat Nov 20 05:42:44 2010 (4CE7A624)

Unloaded modules:
fffff880`05de0000 fffff880`05dee000   monitor.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`09173000 fffff880`091e4000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00071000
fffff880`01638000 fffff880`01646000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000E000
fffff880`01646000 fffff880`01652000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000C000
fffff880`01652000 fffff880`0165b000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00009000
fffff880`0165b000 fffff880`0166e000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00013000
 
Back
Top Bottom