Go Back   Tech Support Forum > Microsoft Support > BSOD, App Crashes And Hangs

User Tag List

someone can read this diagnosis? - Driver Verifier 0xc4

This is a discussion on someone can read this diagnosis? - Driver Verifier 0xc4 within the BSOD, App Crashes And Hangs forums, part of the Tech Support Forum category. SYSTEM_SERVICE_EXCEPTION (3b) An exception happened while executing a system service routine. Arguments: Arg1: 00000000c0000005, Exception code that caused the bugcheck


Closed Thread
 
Thread Tools Search this Thread
Old 06-23-2017, 11:47 AM   #1
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff8006d06dc94, Address of the instruction which caused the bugcheck
Arg3: ffff99807bd5b400, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------

TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

FAULTING_IP:
nt!KxWaitForLockOwnerShip+14
fffff800`6d06dc94 48890a mov qword ptr [rdx],rcx

CONTEXT: ffff99807bd5b400 -- (.cxr 0xffff99807bd5b400)
rax=0000000000000000 rbx=0000000000000000 rcx=ffff99807bd5bf28
rdx=0100000000000000 rsi=ffffde8f24b483a0 rdi=ffff99807bd5bf28
rip=fffff8006d06dc94 rsp=ffff99807bd5bdf0 rbp=ffff99807bd5bf28
r8=ffff99807bd5bf00 r9=ffffde8f24b483a0 r10=7ffffffffffffffc
r11=ffff99807bd5c310 r12=0000000000000001 r13=0000000000000001
r14=fffff8006d394810 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246
nt!KxWaitForLockOwnerShip+0x14:
fffff800`6d06dc94 48890a mov qword ptr [rdx],rcx ds:002b:01000000`00000000=????????????????
Resetting default scope

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: CODE_CORRUPTION

BUGCHECK_STR: 0x3B

PROCESS_NAME: opera.exe

CURRENT_IRQL: 2

BAD_PAGES_DETECTED: a78f

LAST_CONTROL_TRANSFER: from fffff8006d1a7b57 to fffff8006d06dc94

STACK_TEXT:
ffff9980`7bd5bdf0 fffff800`6d1a7b57 : ffffde8f`24b483a0 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KxWaitForLockOwnerShip+0x14
ffff9980`7bd5be20 fffff800`6d051d45 : ffffde8f`24b483a0 ffffde8f`24b483a0 ffff9980`7bd5bf28 00000000`00b0e348 : nt!KiAbEntryGetLockedHeadEntry+0x154767
ffff9980`7bd5bec0 fffff800`6d18e3d5 : 00000000`00000001 ffffb687`00000000 00000000`00000000 fffff80b`00000000 : nt!KiAbProcessContextSwitch+0x125
ffff9980`7bd5bf90 fffff800`6d18cbca : 00000000`00000001 00000000`00000001 00000000`00000200 00000000`00000001 : nt!KxDispatchInterrupt+0xb5
ffff9980`7bd5c0d0 fffff800`6d4bd299 : ffffb687`c8430000 00000000`00000000 ffff9980`00000001 ffffb687`c8430000 : nt!KiDpcInterrupt+0xca
ffff9980`7bd5c260 fffff800`6d4b99a5 : ffffb687`c843c008 00000000`00000002 00000000`00000002 ffff9980`7bd5c610 : nt!CmpPerformCompleteKcbCacheLookup+0x5b9
ffff9980`7bd5c340 fffff800`6d4c5276 : ffff9980`0000001c ffff9980`7bd5c810 ffff9980`7bd5c790 ffffb687`c84ae930 : nt!CmpDoParseKey+0x425
ffff9980`7bd5c720 fffff800`6d4bf58b : ffffde8f`261ce010 ffffb687`00000000 ffffde8f`261ce010 ffffb687`c8417d01 : nt!CmpParseKey+0x266
ffff9980`7bd5c8f0 fffff800`6d4c30c0 : ffffde8f`261ce000 ffff9980`7bd5cb58 00000000`00000440 ffffde8f`1bd44c00 : nt!ObpLookupObjectName+0x46b
ffff9980`7bd5cac0 fffff800`6d4c3dc4 : ffffb687`00000001 ffffde8f`1bd44c00 00000000`00000000 00000000`00000000 : nt!ObOpenObjectByNameEx+0x1e0
ffff9980`7bd5cc00 fffff800`6d54cf6e : 000001bf`1ec008b0 00000000`00000005 00000000`00000000 00000021`1dfcdfb0 : nt!CmOpenKey+0x274
ffff9980`7bd5ce00 fffff800`6d194313 : ffffde8f`00000042 00000000`00000010 ffffdcb5`80172180 ffffde8f`00000000 : nt!NtOpenKey+0x12
ffff9980`7bd5ce40 00007fff`528655f4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000021`1dfce148 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7fff`528655f4


MODULE_NAME: memory_corruption

IMAGE_NAME: memory_corruption

FOLLOWUP_NAME: memory_corruption

DEBUG_FLR_IMAGE_TIMESTAMP: 0

MEMORY_CORRUPTOR: LARGE

STACK_COMMAND: .cxr 0xffff99807bd5b400 ; kb

FAILURE_BUCKET_ID: X64_MEMORY_CORRUPTION_LARGE

BUCKET_ID: X64_MEMORY_CORRUPTION_LARGE

Followup: memory_corruption
---------

*** Memory manager detected 42895 instance(s) of page corruption, target is likely to have memory corruption.
flyinggoatz is offline  
Sponsored Links
Advertisement
 
Old 06-23-2017, 11:48 AM   #2
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



i get from time to time a bluescreen.
but i cant read this, not learned IT
flyinggoatz is offline  
Old 06-23-2017, 11:53 AM   #3
Moderator, Editor, Articles Team
 
Deejay100six's Avatar
 
Join Date: Nov 2007
Location: Doncaster, Great Britain
Posts: 11,683
OS: Windows 7 Professional SP1

My System


Hi, and welcome to TSF.

Please follow our https://www.techsupportforum.com/foru...ta-452654.html
__________________
Regards, Dave.


Submit New Articles Here

Help us to help you by posting your System Specs
Deejay100six is online now  
Sponsored Links
Advertisement
 
Old 06-23-2017, 11:57 AM   #4
Moderator, Editor, Articles Team
 
Deejay100six's Avatar
 
Join Date: Nov 2007
Location: Doncaster, Great Britain
Posts: 11,683
OS: Windows 7 Professional SP1

My System


After you have done that, whilst you wait for an analyst to assist, please do this;

How to perform a MemTest86 Test - Tech Support Forum
__________________
Regards, Dave.


Submit New Articles Here

Help us to help you by posting your System Specs
Deejay100six is online now  
Old 06-23-2017, 12:08 PM   #5
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



hi thx for help! memtest i allready did more times, hardware is not the problem. can this problem come from deamon tools `?
flyinggoatz is offline  
Old 06-23-2017, 12:17 PM   #6
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



herer are the 2 zip files

while this test was running, rufus was in work to make windows 10 usb iso

and watching a stream in twitch tv.
Attached Files
File Type: rar perfmon.rar (111.5 KB, 7 views)
File Type: rar SysnativeFileCollectionApp.rar (655.6 KB, 7 views)
flyinggoatz is offline  
Old 06-23-2017, 08:20 PM   #7
Administrator
Manager, Microsoft Support
Acting Manager, Security
BSOD Kernel Dump Expert
Microsoft Windows Insider MVP
 
jcgriff2's Avatar

Microsoft Most Valuable Professional
 
Join Date: Sep 2007
Location: New Jersey Shore
Posts: 34,338
OS: Windows 10, 8.1 + Windbg :)



Hi . . .

Daemon Tools has been the cause of BSODs for as long as I've been processing them (10 years). It doesn't always cause a BSOD, but it is high up on the list of BSOD causes.

The dump you posted in post #1 shows that a system service threw an exception (NT STATUS code 0xc0000005 -- memory access violation.

Since no 3rd party drivers were named, it is very likely that unknown hardware failure is the cause.

Unfortunately, dumps are incapable of telling us the failing hardware part.

Run - https://www.techsupportforum.com/foru...ed-473665.html

Let it run for 24 hours MINIMUM.

Upon BSOD, zip (please use ZIP and not RAR) up the dump; attach to next post.

Regards. . .

jcgriff2

`
jcgriff2 is offline  
Old 06-23-2017, 11:41 PM   #8
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



allright, i activated the verifier.
thank you for reply :)
flyinggoatz is offline  
Old 06-24-2017, 01:54 AM   #9
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



this is the new bluescreen after driver verifier
Attached Files
File Type: zip new dumb.zip (744 Bytes, 10 views)
flyinggoatz is offline  
Old 06-24-2017, 11:55 AM   #10
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



ok i see, thx
flyinggoatz is offline  
Old 06-24-2017, 01:20 PM   #11
Administrator
Manager, Microsoft Support
Acting Manager, Security
BSOD Kernel Dump Expert
Microsoft Windows Insider MVP
 
jcgriff2's Avatar

Microsoft Most Valuable Professional
 
Join Date: Sep 2007
Location: New Jersey Shore
Posts: 34,338
OS: Windows 10, 8.1 + Windbg :)



I need the actual dump file.

c:\windows\minidump
jcgriff2 is offline  
Old 06-25-2017, 03:30 AM   #12
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



there it is
Attached Files
File Type: zip 062417-6031-01.zip (91.7 KB, 9 views)
flyinggoatz is offline  
Old 06-26-2017, 08:23 AM   #13
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



help pls :)
flyinggoatz is offline  
Old 06-26-2017, 07:46 PM   #14
Administrator
Manager, Microsoft Support
Acting Manager, Security
BSOD Kernel Dump Expert
Microsoft Windows Insider MVP
 
jcgriff2's Avatar

Microsoft Most Valuable Professional
 
Join Date: Sep 2007
Location: New Jersey Shore
Posts: 34,338
OS: Windows 10, 8.1 + Windbg :)



Hi. . .

Thank you for the BSOD dump file.

This is the driver that Driver Verifier flagged - https://www.sysnative.com/drivers/dr...?id=ndisrd.sys

You need to find an update for it or remove the app that it belongs to from your system. I am unfamiliar with it. Windows has a problem with the current version in your system from 2013 -
Code:
 ndisrd.sys   Wed Feb 20 21:40:15 2013 (5125890F)
Regards. . .

jcgriff2

`

Code:

Microsoft (R) Windows Debugger Version 10.0.10075.9 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\PalmDesert\AppData\Local\Temp\Temp3_attachment.zip\062417-6031-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available


************* Symbol Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       SRV*c:\symbols*https://msdl.microsoft.com/download/symbols
Symbol search path is: SRV*c:\symbols*https://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 10 Kernel Version 15063 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 15063.0.amd64fre.rs2_release.170317-1834
Machine Name:
Kernel base = 0xfffff803`70403000 PsLoadedModuleList = 0xfffff803`7074f5a0
Debug session time: Sat Jun 24 03:38:30.314 2017 (UTC - 4:00)
System Uptime: 0 days 0:00:02.028
Loading Kernel Symbols
...............................................................
....................
Loading User Symbols
Loading unloaded module list
..
No .natvis files found at C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers.
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck C4, {2000, fffff801edaa2fe6, 0, 6452644e}

*** WARNING: Unable to verify timestamp for ndisrd.sys
*** ERROR: Module load completed but symbols could not be loaded for ndisrd.sys
Probably caused by : memory_corruption

Followup:     memory_corruption
---------

Processing initial command '!analyze -v;r;kv;lmtn;lmtsmn;.bugcheck'
0: kd> !analyze -v;r;kv;lmtn;lmtsmn;.bugcheck
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

DRIVER_VERIFIER_DETECTED_VIOLATION (c4)
A device driver attempting to corrupt the system has been caught.  This is
because the driver was specified in the registry as being suspect (by the
administrator) and the kernel has enabled substantial checking of this driver.
If the driver attempts to corrupt the system, bugchecks 0xC4, 0xC1 and 0xA will
be among the most commonly seen crashes.
Arguments:
Arg1: 0000000000002000, Code Integrity Issue: The caller specified an executable pool type. (Expected: NonPagedPoolNx)
Arg2: fffff801edaa2fe6, The address in the driver's code where the error was detected.
Arg3: 0000000000000000, Pool Type.
Arg4: 000000006452644e, Pool Tag (if provided).

Debugging Details:
------------------


BUGCHECK_P1: 2000

BUGCHECK_P2: fffff801edaa2fe6

BUGCHECK_P3: 0

BUGCHECK_P4: 6452644e

BUGCHECK_STR:  0xc4_2000

CPU_COUNT: 8

CPU_MHZ: daf

CPU_VENDOR:  GenuineIntel

CPU_FAMILY: 6

CPU_MODEL: 2a

CPU_STEPPING: 7

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  CODE_CORRUPTION

PROCESS_NAME:  System

CURRENT_IRQL:  2

ANALYSIS_VERSION: 10.0.10075.9 amd64fre

LAST_CONTROL_TRANSFER:  from fffff80370b6f03f to fffff8037056f3f0

STACK_TEXT:  
ffffe001`01790458 fffff803`70b6f03f : 00000000`000000c4 00000000`00002000 fffff801`edaa2fe6 00000000`00000000 : nt!KeBugCheckEx
ffffe001`01790460 fffff803`70650d1f : fffff801`edaa2fcb fffff803`70b669ca fffff803`706ba210 00000000`00000003 : nt!VerifierBugCheckIfAppropriate+0x6b
ffffe001`017904a0 fffff803`70b668b0 : 00000000`6452644e fffff803`707413a0 fffff801`edaa2fe6 ffffca08`817e9000 : nt!VfReportIssueWithOptions+0x103
ffffe001`017904f0 fffff803`70b64701 : 00000000`6452644e ffffe001`01790a30 00000000`00000000 ffffca08`7fff1228 : nt!VfCheckPoolType+0x90
ffffe001`01790530 fffff801`edaa2fe6 : 00000000`00000000 fffff801`edaa6180 ffffe001`01790850 ffffb002`ab7eaf70 : nt!VerifierExAllocatePoolEx+0x21
ffffe001`01790580 00000000`00000000 : fffff801`edaa6180 ffffe001`01790850 ffffb002`ab7eaf70 00000000`00000000 : ndisrd+0x2fe6


STACK_COMMAND:  kb

CHKIMG_EXTENSION: !chkimg -lo 50 -db !nt
2 errors : !nt (fffff80370494ac4-fffff80370494c33)
fffff80370494ac0  00  00  00  80 *c3  ff  ff  48  c1  e6  04  49  8b  c4  48  03 .......H...I..H.
...
fffff80370494c30  00  00  80 *c3  ff  ff  45  33  db  49  8b  c8  48  2b  c8  4d ......E3.I..H+.M

MODULE_NAME: memory_corruption

IMAGE_NAME:  memory_corruption

FOLLOWUP_NAME:  memory_corruption

DEBUG_FLR_IMAGE_TIMESTAMP:  0

MEMORY_CORRUPTOR:  STRIDE

FAILURE_BUCKET_ID:  MEMORY_CORRUPTION_STRIDE

BUCKET_ID:  MEMORY_CORRUPTION_STRIDE

PRIMARY_PROBLEM_CLASS:  MEMORY_CORRUPTION_STRIDE

ANALYSIS_SOURCE:  KM

FAILURE_ID_HASH_STRING:  km:memory_corruption_stride

FAILURE_ID_HASH:  {574dbc1b-92cb-fb09-cb7a-cacc1bb2c511}

Followup:     memory_corruption
---------

rax=000000006452644e rbx=fffff801edaa2fe6 rcx=00000000000000c4
rdx=0000000000002000 rsi=fffff801edaa2fe6 rdi=0000000000000000
rip=fffff8037056f3f0 rsp=ffffe00101790458 rbp=0000000000002000
 r8=fffff801edaa2fe6  r9=0000000000000000 r10=00000000000000c4
r11=0000000000000000 r12=0000000000000200 r13=ffffffff800002a8
r14=00000000000000c4 r15=0000000020206f49
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00000246
nt!KeBugCheckEx:
fffff803`7056f3f0 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffe001`01790460=00000000000000c4
 # Child-SP          RetAddr           : Args to Child                                                           : Call Site
00 ffffe001`01790458 fffff803`70b6f03f : 00000000`000000c4 00000000`00002000 fffff801`edaa2fe6 00000000`00000000 : nt!KeBugCheckEx
01 ffffe001`01790460 fffff803`70650d1f : fffff801`edaa2fcb fffff803`70b669ca fffff803`706ba210 00000000`00000003 : nt!VerifierBugCheckIfAppropriate+0x6b
02 ffffe001`017904a0 fffff803`70b668b0 : 00000000`6452644e fffff803`707413a0 fffff801`edaa2fe6 ffffca08`817e9000 : nt!VfReportIssueWithOptions+0x103
03 ffffe001`017904f0 fffff803`70b64701 : 00000000`6452644e ffffe001`01790a30 00000000`00000000 ffffca08`7fff1228 : nt!VfCheckPoolType+0x90
04 ffffe001`01790530 fffff801`edaa2fe6 : 00000000`00000000 fffff801`edaa6180 ffffe001`01790850 ffffb002`ab7eaf70 : nt!VerifierExAllocatePoolEx+0x21
05 ffffe001`01790580 00000000`00000000 : fffff801`edaa6180 ffffe001`01790850 ffffb002`ab7eaf70 00000000`00000000 : ndisrd+0x2fe6
start             end                 module name
fffff801`eb400000 fffff801`eb411000   werkernel werkernel.sys ***** Invalid (C3403C42)
fffff801`eb420000 fffff801`eb485000   CLFS     CLFS.SYS     ***** Invalid (B5B5D3D6)
fffff801`eb490000 fffff801`eb4b5000   tm       tm.sys       Mon Jan 12 01:52:09 2026 (69649A19)
fffff801`eb4d0000 fffff801`eb55e000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Tue Jul 17 20:27:54 1979 (11F2820A)
fffff801`eb560000 fffff801`eb5bf000   msrpc    msrpc.sys    Sun Jan 17 07:05:49 1982 (16A8209D)
fffff801`eb5c0000 fffff801`eb5e9000   ksecdd   ksecdd.sys   ***** Invalid (85DBC708)
fffff801`eb600000 fffff801`eb617000   PSHED    PSHED.dll    Thu Nov 05 03:56:53 2026 (6AEC44D5)
fffff801`eb620000 fffff801`eb62b000   BOOTVID  BOOTVID.dll  ***** Invalid (9EAF733C)
fffff801`eb630000 fffff801`eb695000   FLTMGR   FLTMGR.SYS   ***** Invalid (90D626DF)
fffff801`eb6a0000 fffff801`eb780000   clipsp   clipsp.sys   Sat Mar 18 00:54:13 2017 (58CCBD75)
fffff801`eb780000 fffff801`eb78e000   cmimcext cmimcext.sys ***** Invalid (FF4D5961)
fffff801`eb790000 fffff801`eb79c000   ntosext  ntosext.sys  ***** Invalid (CC2A33AD)
fffff801`eb800000 fffff801`eb8de000   Wdf01000 Wdf01000.sys Wed Sep 12 21:32:07 1990 (26EEE197)
fffff801`eb8e0000 fffff801`eb8f3000   WDFLDR   WDFLDR.SYS   Thu Sep 29 09:06:05 1977 (0E910A3D)
fffff801`eb900000 fffff801`eb90e000   SleepStudyHelper SleepStudyHelper.sys ***** Invalid (EFF776F3)
fffff801`eb910000 fffff801`eb933000   acpiex   acpiex.sys   ***** Invalid (DC6150EE)
fffff801`eb940000 fffff801`eb94e000   WppRecorder WppRecorder.sys Mon Feb 10 03:02:55 1986 (1E4DAB2F)
fffff801`eb950000 fffff801`eba07000   ACPI     ACPI.sys     Tue Dec 09 06:17:08 1975 (0B2AD2B4)
fffff801`eba10000 fffff801`eba1c000   WMILIB   WMILIB.SYS   Fri Sep 28 12:44:04 2018 (5BAE5A54)
fffff801`eba30000 fffff801`eba47000   intelpep intelpep.sys Thu Apr 19 04:53:10 2007 (46272DF6)
fffff801`eba50000 fffff801`eba66000   WindowsTrustedRT WindowsTrustedRT.sys ***** Invalid (E3FF4AF6)
fffff801`eba70000 fffff801`eba7b000   WindowsTrustedRTProxy WindowsTrustedRTProxy.sys Fri Jul 28 09:32:40 2006 (44CA11F8)
fffff801`eba80000 fffff801`eba93000   pcw      pcw.sys      Sat Jan 10 14:29:41 1970 (000CEFA5)
fffff801`ebaa0000 fffff801`ebaab000   msisadrv msisadrv.sys ***** Invalid (BAF553EF)
fffff801`ebab0000 fffff801`ebb0b000   pci      pci.sys      Sat Aug 02 05:15:37 2025 (688DD739)
fffff801`ebb10000 fffff801`ebb22000   vdrvroot vdrvroot.sys ***** Invalid (C0C6BED0)
fffff801`ebb30000 fffff801`ebb53000   pdc      pdc.sys      Sun Mar 12 08:41:46 2034 (78BEF38A)
fffff801`ebb60000 fffff801`ebb78000   CEA      CEA.sys      Wed Dec 16 23:50:10 1970 (01CDB102)
fffff801`ebb80000 fffff801`ebbab000   partmgr  partmgr.sys  Tue Dec 23 08:10:05 2025 (694A94AD)
fffff801`ebbb0000 fffff801`ebc44000   spaceport spaceport.sys Wed Apr 25 01:38:08 2035 (7AD9C5C0)
fffff801`ebc50000 fffff801`ebc69000   volmgr   volmgr.sys   ***** Invalid (D7133847)
fffff801`ebc70000 fffff801`ebcce000   volmgrx  volmgrx.sys  ***** Invalid (D414E432)
fffff801`ebcd0000 fffff801`ebcee000   mountmgr mountmgr.sys ***** Invalid (EA4F8C7B)
fffff801`ebcf0000 fffff801`ebd17000   storahci storahci.sys Sun Mar 25 07:56:24 1979 (115B86E8)
fffff801`ebd20000 fffff801`ebdaa000   storport storport.sys Fri Mar 13 13:18:28 1970 (005E8DE4)
fffff801`ebdb0000 fffff801`ebdcc000   EhStorClass EhStorClass.sys ***** Invalid (DDF6ADD3)
fffff801`ebdd0000 fffff801`ebdea000   fileinfo fileinfo.sys ***** Invalid (885C5414)
fffff801`ebdf0000 fffff801`ebe2b000   Wof      Wof.sys      Mon Mar 11 18:47:45 1974 (07E25791)
fffff801`ebe30000 fffff801`ebf1b000   atc      atc.sys      Tue Jun 06 05:34:07 2017 (5936770F)
fffff801`ebf20000 fffff801`ec0a9000   avc3     avc3.sys     Tue Apr 18 05:02:07 2017 (58F5D60F)
fffff801`ec0b0000 fffff801`ec0e7000   gzflt    gzflt.sys    Fri Oct 28 05:28:18 2016 (58131A32)
fffff801`ec0f0000 fffff801`ec333000   NTFS     NTFS.sys     Wed Jul 06 00:59:02 1994 (2E1A3A16)
fffff801`ec340000 fffff801`ec34d000   Fs_Rec   Fs_Rec.sys   ***** Invalid (9836443C)
fffff801`ec400000 fffff801`ec4a8000   CI       CI.dll       Sat Aug 27 15:22:09 2016 (57C1E861)
fffff801`ec4b0000 fffff801`ec552000   cng      cng.sys      ***** Invalid (F2E91F26)
fffff801`ec560000 fffff801`ec5e1000   VerifierExt VerifierExt.sys ***** Invalid (FF46AD8F)
fffff801`ec720000 fffff801`ec856000   ndis     ndis.sys     Tue Dec 15 00:19:38 1981 (167C3FEA)
fffff801`ec860000 fffff801`ec8e5000   NETIO    NETIO.SYS    ***** Invalid (8CC6BF38)
fffff801`ec8f0000 fffff801`ec920000   ksecpkg  ksecpkg.sys  ***** Invalid (AC6D7E9B)
fffff801`eca00000 fffff801`ecab6000   fvevol   fvevol.sys   Wed Feb 03 02:04:49 1999 (36B7F511)
fffff801`ecac0000 fffff801`ecacb000   volume   volume.sys   ***** Invalid (9CBEE8B7)
fffff801`ecad0000 fffff801`ecb34000   volsnap  volsnap.sys  ***** Invalid (DC1CFF91)
fffff801`ecb40000 fffff801`ecb8c000   rdyboost rdyboost.sys ***** Invalid (CA830C4C)
fffff801`ecb90000 fffff801`ecbb4000   mup      mup.sys      ***** Invalid (98323F4C)
fffff801`ecbc0000 fffff801`ecbd1000   iorate   iorate.sys   Fri Feb 01 18:15:43 2013 (510C4C9F)
fffff801`ecbf0000 fffff801`ecc0e000   disk     disk.sys     Sat Mar 28 14:37:28 2009 (49CE6E68)
fffff801`ecc10000 fffff801`ecc75000   CLASSPNP CLASSPNP.SYS Mon May 04 12:41:45 1992 (2A056949)
fffff801`ecca0000 fffff801`eccbb000   crashdmp crashdmp.sys Mon Jun 07 22:16:33 1993 (2C13F681)
fffff801`eccd0000 fffff801`eccdf000   dump_diskdump dump_diskdump.sys Wed Aug 28 09:02:36 2013 (521DF4EC)
fffff801`ecd10000 fffff801`ecd37000   dump_storahci dump_storahci.sys Sun Mar 25 07:56:24 1979 (115B86E8)
fffff801`ecd60000 fffff801`ecd7d000   dump_dumpfve dump_dumpfve.sys ***** Invalid (B65817D6)
fffff801`ecd80000 fffff801`ecdae000   cdrom    cdrom.sys    Thu Jul 20 18:39:41 1972 (04CCA32D)
fffff801`ecdb0000 fffff801`ecdc4000   filecrypt filecrypt.sys Tue May 28 04:10:59 2030 (719E1813)
fffff801`ecdd0000 fffff801`ecddd000   tbs      tbs.sys      Sat Jul 24 03:49:47 2027 (6C444C9B)
fffff801`ecde0000 fffff801`ecdea000   Null     Null.SYS     unavailable (00000000)
fffff801`ecdf0000 fffff801`ecdfa000   Beep     Beep.SYS     ***** Invalid (A94A035E)
fffff801`ece00000 fffff801`ece15000   BasicDisplay BasicDisplay.sys ***** Invalid (E7A205B4)
fffff801`ece20000 fffff801`ece34000   watchdog watchdog.sys ***** Invalid (DFC4C1CD)
fffff801`ece40000 fffff801`ecedb000   afd      afd.sys      ***** Invalid (ED6FDF1B)
fffff801`ed050000 fffff801`ed2ec000   tcpip    tcpip.sys    Sun Jun 04 00:23:17 2000 (3939D9B5)
fffff801`ed2f0000 fffff801`ed35a000   fwpkclnt fwpkclnt.sys Thu Jan 28 01:39:38 1999 (36B0062A)
fffff801`ed360000 fffff801`ed38c000   wfplwfs  wfplwfs.sys  Mon Apr 05 15:35:50 2010 (4BBA3B96)
fffff801`eda00000 fffff801`eda22000   tdx      tdx.sys      ***** Invalid (92AD75A7)
fffff801`eda30000 fffff801`eda40000   TDI      TDI.SYS      ***** Invalid (D2C3B059)
fffff801`eda40000 fffff801`eda92000   netbt    netbt.sys    ***** Invalid (B2AD25BE)
fffff801`edaa0000 fffff801`edaaa000   ndisrd   ndisrd.sys   Wed Feb 20 21:40:15 2013 (5125890F)
fffff801`edb30000 fffff801`edd8a000   dxgkrnl  dxgkrnl.sys  Wed Aug 05 15:47:00 2037 (7F24BE34)
fffff801`edd90000 fffff801`eddaa000   vmbkmclr vmbkmclr.sys Fri Oct 29 22:55:38 1993 (2CD1D7AA)
fffff801`eddb0000 fffff801`eddc0000   BasicRender BasicRender.sys Mon Jul 09 18:39:00 2007 (4692B904)
fffff801`eddc0000 fffff801`eddd9000   Npfs     Npfs.SYS     Sun Jul 14 18:34:01 2030 (71DCD8D9)
fffff801`edde0000 fffff801`eddf0000   Msfs     Msfs.SYS     unavailable (00000000)
fffff803`70403000 fffff803`70c8c000   nt       ntkrnlmp.exe Sat Jun 03 04:53:36 2017 (59327910)
fffff803`70c8c000 fffff803`70d08000   hal      hal.dll      ***** Invalid (CEA0A646)
fffff803`70e00000 fffff803`70e0b000   kd       kd.dll       ***** Invalid (91688416)

Unloaded modules:
fffff801`eba20000 fffff801`eba28000   bdelam.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00008000
fffff801`ecbe0000 fffff801`ecbef000   hwpolicy.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000F000
start             end                 module name
fffff801`eb950000 fffff801`eba07000   ACPI     ACPI.sys     Tue Dec 09 06:17:08 1975 (0B2AD2B4)
fffff801`eb910000 fffff801`eb933000   acpiex   acpiex.sys   ***** Invalid (DC6150EE)
fffff801`ece40000 fffff801`ecedb000   afd      afd.sys      ***** Invalid (ED6FDF1B)
fffff801`ebe30000 fffff801`ebf1b000   atc      atc.sys      Tue Jun 06 05:34:07 2017 (5936770F)
fffff801`ebf20000 fffff801`ec0a9000   avc3     avc3.sys     Tue Apr 18 05:02:07 2017 (58F5D60F)
fffff801`ece00000 fffff801`ece15000   BasicDisplay BasicDisplay.sys ***** Invalid (E7A205B4)
fffff801`eddb0000 fffff801`eddc0000   BasicRender BasicRender.sys Mon Jul 09 18:39:00 2007 (4692B904)
fffff801`ecdf0000 fffff801`ecdfa000   Beep     Beep.SYS     ***** Invalid (A94A035E)
fffff801`eb620000 fffff801`eb62b000   BOOTVID  BOOTVID.dll  ***** Invalid (9EAF733C)
fffff801`ecd80000 fffff801`ecdae000   cdrom    cdrom.sys    Thu Jul 20 18:39:41 1972 (04CCA32D)
fffff801`ebb60000 fffff801`ebb78000   CEA      CEA.sys      Wed Dec 16 23:50:10 1970 (01CDB102)
fffff801`ec400000 fffff801`ec4a8000   CI       CI.dll       Sat Aug 27 15:22:09 2016 (57C1E861)
fffff801`ecc10000 fffff801`ecc75000   CLASSPNP CLASSPNP.SYS Mon May 04 12:41:45 1992 (2A056949)
fffff801`eb420000 fffff801`eb485000   CLFS     CLFS.SYS     ***** Invalid (B5B5D3D6)
fffff801`eb6a0000 fffff801`eb780000   clipsp   clipsp.sys   Sat Mar 18 00:54:13 2017 (58CCBD75)
fffff801`eb780000 fffff801`eb78e000   cmimcext cmimcext.sys ***** Invalid (FF4D5961)
fffff801`ec4b0000 fffff801`ec552000   cng      cng.sys      ***** Invalid (F2E91F26)
fffff801`ecca0000 fffff801`eccbb000   crashdmp crashdmp.sys Mon Jun 07 22:16:33 1993 (2C13F681)
fffff801`ecbf0000 fffff801`ecc0e000   disk     disk.sys     Sat Mar 28 14:37:28 2009 (49CE6E68)
fffff801`eccd0000 fffff801`eccdf000   dump_diskdump dump_diskdump.sys Wed Aug 28 09:02:36 2013 (521DF4EC)
fffff801`ecd60000 fffff801`ecd7d000   dump_dumpfve dump_dumpfve.sys ***** Invalid (B65817D6)
fffff801`ecd10000 fffff801`ecd37000   dump_storahci dump_storahci.sys Sun Mar 25 07:56:24 1979 (115B86E8)
fffff801`edb30000 fffff801`edd8a000   dxgkrnl  dxgkrnl.sys  Wed Aug 05 15:47:00 2037 (7F24BE34)
fffff801`ebdb0000 fffff801`ebdcc000   EhStorClass EhStorClass.sys ***** Invalid (DDF6ADD3)
fffff801`ecdb0000 fffff801`ecdc4000   filecrypt filecrypt.sys Tue May 28 04:10:59 2030 (719E1813)
fffff801`ebdd0000 fffff801`ebdea000   fileinfo fileinfo.sys ***** Invalid (885C5414)
fffff801`eb630000 fffff801`eb695000   FLTMGR   FLTMGR.SYS   ***** Invalid (90D626DF)
fffff801`ec340000 fffff801`ec34d000   Fs_Rec   Fs_Rec.sys   ***** Invalid (9836443C)
fffff801`eca00000 fffff801`ecab6000   fvevol   fvevol.sys   Wed Feb 03 02:04:49 1999 (36B7F511)
fffff801`ed2f0000 fffff801`ed35a000   fwpkclnt fwpkclnt.sys Thu Jan 28 01:39:38 1999 (36B0062A)
fffff801`ec0b0000 fffff801`ec0e7000   gzflt    gzflt.sys    Fri Oct 28 05:28:18 2016 (58131A32)
fffff803`70c8c000 fffff803`70d08000   hal      hal.dll      ***** Invalid (CEA0A646)
fffff801`eba30000 fffff801`eba47000   intelpep intelpep.sys Thu Apr 19 04:53:10 2007 (46272DF6)
fffff801`ecbc0000 fffff801`ecbd1000   iorate   iorate.sys   Fri Feb 01 18:15:43 2013 (510C4C9F)
fffff803`70e00000 fffff803`70e0b000   kd       kd.dll       ***** Invalid (91688416)
fffff801`eb5c0000 fffff801`eb5e9000   ksecdd   ksecdd.sys   ***** Invalid (85DBC708)
fffff801`ec8f0000 fffff801`ec920000   ksecpkg  ksecpkg.sys  ***** Invalid (AC6D7E9B)
fffff801`eb4d0000 fffff801`eb55e000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Tue Jul 17 20:27:54 1979 (11F2820A)
fffff801`ebcd0000 fffff801`ebcee000   mountmgr mountmgr.sys ***** Invalid (EA4F8C7B)
fffff801`edde0000 fffff801`eddf0000   Msfs     Msfs.SYS     unavailable (00000000)
fffff801`ebaa0000 fffff801`ebaab000   msisadrv msisadrv.sys ***** Invalid (BAF553EF)
fffff801`eb560000 fffff801`eb5bf000   msrpc    msrpc.sys    Sun Jan 17 07:05:49 1982 (16A8209D)
fffff801`ecb90000 fffff801`ecbb4000   mup      mup.sys      ***** Invalid (98323F4C)
fffff801`ec720000 fffff801`ec856000   ndis     ndis.sys     Tue Dec 15 00:19:38 1981 (167C3FEA)
fffff801`edaa0000 fffff801`edaaa000   ndisrd   ndisrd.sys   Wed Feb 20 21:40:15 2013 (5125890F)
fffff801`eda40000 fffff801`eda92000   netbt    netbt.sys    ***** Invalid (B2AD25BE)
fffff801`ec860000 fffff801`ec8e5000   NETIO    NETIO.SYS    ***** Invalid (8CC6BF38)
fffff801`eddc0000 fffff801`eddd9000   Npfs     Npfs.SYS     Sun Jul 14 18:34:01 2030 (71DCD8D9)
fffff803`70403000 fffff803`70c8c000   nt       ntkrnlmp.exe Sat Jun 03 04:53:36 2017 (59327910)
fffff801`ec0f0000 fffff801`ec333000   NTFS     NTFS.sys     Wed Jul 06 00:59:02 1994 (2E1A3A16)
fffff801`eb790000 fffff801`eb79c000   ntosext  ntosext.sys  ***** Invalid (CC2A33AD)
fffff801`ecde0000 fffff801`ecdea000   Null     Null.SYS     unavailable (00000000)
fffff801`ebb80000 fffff801`ebbab000   partmgr  partmgr.sys  Tue Dec 23 08:10:05 2025 (694A94AD)
fffff801`ebab0000 fffff801`ebb0b000   pci      pci.sys      Sat Aug 02 05:15:37 2025 (688DD739)
fffff801`eba80000 fffff801`eba93000   pcw      pcw.sys      Sat Jan 10 14:29:41 1970 (000CEFA5)
fffff801`ebb30000 fffff801`ebb53000   pdc      pdc.sys      Sun Mar 12 08:41:46 2034 (78BEF38A)
fffff801`eb600000 fffff801`eb617000   PSHED    PSHED.dll    Thu Nov 05 03:56:53 2026 (6AEC44D5)
fffff801`ecb40000 fffff801`ecb8c000   rdyboost rdyboost.sys ***** Invalid (CA830C4C)
fffff801`eb900000 fffff801`eb90e000   SleepStudyHelper SleepStudyHelper.sys ***** Invalid (EFF776F3)
fffff801`ebbb0000 fffff801`ebc44000   spaceport spaceport.sys Wed Apr 25 01:38:08 2035 (7AD9C5C0)
fffff801`ebcf0000 fffff801`ebd17000   storahci storahci.sys Sun Mar 25 07:56:24 1979 (115B86E8)
fffff801`ebd20000 fffff801`ebdaa000   storport storport.sys Fri Mar 13 13:18:28 1970 (005E8DE4)
fffff801`ecdd0000 fffff801`ecddd000   tbs      tbs.sys      Sat Jul 24 03:49:47 2027 (6C444C9B)
fffff801`ed050000 fffff801`ed2ec000   tcpip    tcpip.sys    Sun Jun 04 00:23:17 2000 (3939D9B5)
fffff801`eda30000 fffff801`eda40000   TDI      TDI.SYS      ***** Invalid (D2C3B059)
fffff801`eda00000 fffff801`eda22000   tdx      tdx.sys      ***** Invalid (92AD75A7)
fffff801`eb490000 fffff801`eb4b5000   tm       tm.sys       Mon Jan 12 01:52:09 2026 (69649A19)
fffff801`ebb10000 fffff801`ebb22000   vdrvroot vdrvroot.sys ***** Invalid (C0C6BED0)
fffff801`ec560000 fffff801`ec5e1000   VerifierExt VerifierExt.sys ***** Invalid (FF46AD8F)
fffff801`edd90000 fffff801`eddaa000   vmbkmclr vmbkmclr.sys Fri Oct 29 22:55:38 1993 (2CD1D7AA)
fffff801`ebc50000 fffff801`ebc69000   volmgr   volmgr.sys   ***** Invalid (D7133847)
fffff801`ebc70000 fffff801`ebcce000   volmgrx  volmgrx.sys  ***** Invalid (D414E432)
fffff801`ecad0000 fffff801`ecb34000   volsnap  volsnap.sys  ***** Invalid (DC1CFF91)
fffff801`ecac0000 fffff801`ecacb000   volume   volume.sys   ***** Invalid (9CBEE8B7)
fffff801`ece20000 fffff801`ece34000   watchdog watchdog.sys ***** Invalid (DFC4C1CD)
fffff801`eb800000 fffff801`eb8de000   Wdf01000 Wdf01000.sys Wed Sep 12 21:32:07 1990 (26EEE197)
fffff801`eb8e0000 fffff801`eb8f3000   WDFLDR   WDFLDR.SYS   Thu Sep 29 09:06:05 1977 (0E910A3D)
fffff801`eb400000 fffff801`eb411000   werkernel werkernel.sys ***** Invalid (C3403C42)
fffff801`ed360000 fffff801`ed38c000   wfplwfs  wfplwfs.sys  Mon Apr 05 15:35:50 2010 (4BBA3B96)
fffff801`eba50000 fffff801`eba66000   WindowsTrustedRT WindowsTrustedRT.sys ***** Invalid (E3FF4AF6)
fffff801`eba70000 fffff801`eba7b000   WindowsTrustedRTProxy WindowsTrustedRTProxy.sys Fri Jul 28 09:32:40 2006 (44CA11F8)
fffff801`eba10000 fffff801`eba1c000   WMILIB   WMILIB.SYS   Fri Sep 28 12:44:04 2018 (5BAE5A54)
fffff801`ebdf0000 fffff801`ebe2b000   Wof      Wof.sys      Mon Mar 11 18:47:45 1974 (07E25791)
fffff801`eb940000 fffff801`eb94e000   WppRecorder WppRecorder.sys Mon Feb 10 03:02:55 1986 (1E4DAB2F)

Unloaded modules:
fffff801`eba20000 fffff801`eba28000   bdelam.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  00008000
fffff801`ecbe0000 fffff801`ecbef000   hwpolicy.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
    ImageSize:  0000F000
Bugcheck code 000000C4
Arguments 00000000`00002000 fffff801`edaa2fe6 00000000`00000000 00000000`6452644e
jcgriff2 is offline  
Old 06-26-2017, 09:04 PM   #15
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



thanks a lot for the help :)
flyinggoatz is offline  
Old 06-26-2017, 11:46 PM   #16
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



this sys is from lan optimizer, realtek semiconductor corp, wich i never installed :D
flyinggoatz is offline  
Old 06-27-2017, 01:19 AM   #17
Administrator
Manager, Microsoft Support
Acting Manager, Security
BSOD Kernel Dump Expert
Microsoft Windows Insider MVP
 
jcgriff2's Avatar

Microsoft Most Valuable Professional
 
Join Date: Sep 2007
Location: New Jersey Shore
Posts: 34,338
OS: Windows 10, 8.1 + Windbg :)



My pleasure to try and help.

If it was never installed, how did the kernel mode driver(s) get into your system?
jcgriff2 is offline  
Old 06-27-2017, 02:26 AM   #18
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



i have no clue ... could i just delete the sys ? but havent a bluescreen since 3 days pc running without brake
flyinggoatz is offline  
Old 06-27-2017, 10:49 AM   #19
Administrator
Manager, Microsoft Support
Acting Manager, Security
BSOD Kernel Dump Expert
Microsoft Windows Insider MVP
 
jcgriff2's Avatar

Microsoft Most Valuable Professional
 
Join Date: Sep 2007
Location: New Jersey Shore
Posts: 34,338
OS: Windows 10, 8.1 + Windbg :)



Do you have the Realtek program installed? Check in Control Panel.

I would not just delete the driver as Windows is obviously loading it into RAM for some reason.
jcgriff2 is offline  
Old 06-27-2017, 12:20 PM   #20
Registered Member
 
Join Date: Jun 2017
Posts: 15
OS: windows 10 64 bit



realtek hd audio and ethernet driver is installed yea
flyinggoatz is offline  
Closed Thread

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
Freezing/Stuttering while playing Diablo 3.
Hi, after 2 days of trying to fix this myself and doing all the research I could, I haven't found a fix, so I'm finally making a topic. Description of problem: During gameplay anywhere from every 3-30 seconds my screen will freeze for 0.5-3.0 seconds. These freezes are noticeably worse when...
HBDomo PC Gaming Support 9 09-05-2015 10:41 AM
Vista reboots before login
Hello everyone, A client brought to me a PC with Windows Vista SP2 installed. Just before the login, the systems restarts without a BSOD. I have already check HDD and RAM and there is nothing wrong. I also tried system restore, the system booted, but after a restart, the same happened. Also...
John_F_L Windows 7 , Windows Vista Support 9 01-01-2015 01:23 PM
GT 240 1GB DDR3 - Driver Issue
Hello, I know this is probably the wrong section but I have a question for anyone who might be computer smart. I recently got a 1 G GeForce GT 240 DDR3 PCI-E 128-bit VGA DVI TV Graphics Card, and I'm having issues with it. I deleted my old 8600 gt graphic cards setting in the uninstall programs...
Gotmilkman Video Card Support 25 07-30-2012 05:15 PM
windows 7 freezes during startup
i have been having issues since friday my computer seems to freeze on startup. it gets to the welcome screen and freezes. someone recommended doing a boot log but i don't know how to know what it means. the whole thing is to long but here is the last part someone please help Loaded...
mucwen Windows 7 , Windows Vista Support 1 12-11-2011 09:32 PM
Windows 7 freezes at startup (HiJack This Log)
Out of the blue my Windows 7 x64 laptop started having problems. Every time I boot it will get to the desktop and LOOK fine, but if I try to open anything it is completely unresponsive. Eventually it will notify me that Windows is not responding and offer to restart or wait. If I restart the...
slhaas Windows 7 , Windows Vista Support 3 08-01-2011 01:29 PM

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Post a Question


» Site Navigation
 > FAQ
  > 10.0.0.2
Powered by vBadvanced CMPS v3.2.3


All times are GMT -7. The time now is 07:39 PM.


Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2020, vBulletin Solutions, Inc.
vBulletin Security provided by vBSecurity v2.2.2 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
User Alert System provided by Advanced User Tagging v3.1.0 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
Copyright 2001 - 2018, Tech Support Forum

Windows 10 - Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts