Tech Support Forum banner

BSOD - Need help from BSOD Kernel Dump Specialist

2019 Views 6 Replies 3 Participants Last post by  DT Roberts
Hello Kernel Dump Specialists,

I created the Windows7_Vista_jcgriff2 zip file and would like to submit it for analysis. Before I do, could you help me get a little more comfortable with the security issues around posting my system info to this forum? Seems a bit risky to have all that information posted on a public site.

Is there a way to submit the zip and be sure it will be seen only by a Kernel Dump Specialist from TechSupportForum?

Thanks,
Dale
Status
Not open for further replies.
1 - 7 of 7 Posts
What security issues? AFAIK, we've never seen any security issues - but I've never studied this subject either.

I offer a money-back guarantee for my work :0)

What information is risky?
You may want to PM a moderator and see what can be done for your situation.

Also, Kernel Dump Specialists are made here (that's a part of what we do) - so what limitations are you placing on our attempts at training them? I'm not trying to dissuade you from posting your info - but the sheer volume of kernel dumps that we do makes it impractical to make special considerations for each and every poster.

That being said, I offer some alternatives:
- collect the data requested and then manually purge any personally sensitive data.
- become a Kernel Dump Specialist and evalutate your issue(s), posting here for clarification and questions
- post the results of the kernel dump analysis for us to see and we'll make suggestions. Use this link to get started: http://www.carrona.org/dbgrpt.html Post the last 5 memory dump analysis' in order for us to get a start. If we need more info we'll then ask for the entire Windows7_Vista_jcgriff2 zip file
See less See more
Ok, I get the idea. So here is my zip file for analysis.

OS - Windows 7 Ultimate, purchased direct from MS.
x86 32 bit
Original OS XP, then clean install of Vista, then clean install of Windows 7.
Hardware: Dell Precision Laptop M4300, 3-or-so years old.
Windows 7 installation is a few months old.

Thanks for your help!

Dale

Attachments

See less See more
Thanks for the info.

Bugchecks vary greatly:
Code:
Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\Devin\AppData\Local\Temp\Rar$DI09.715\062210-14523-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7600 MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Machine Name:
Kernel base = 0x82a53000 PsLoadedModuleList = 0x82b9b810
Debug session time: Tue Jun 22 13:59:04.295 2010 (GMT-4)
System Uptime: 1 days 4:24:19.152
Loading Kernel Symbols
...............................................................
................................................................
.......................
Loading User Symbols
Loading unloaded module list
...........
0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

ATTEMPTED_WRITE_TO_READONLY_MEMORY (be)
An attempt was made to write to readonly memory.  The guilty driver is on the
stack trace (and is typically the current instruction pointer).
When possible, the guilty driver's name (Unicode string) is printed on
the bugcheck screen and saved in KiBugCheckDriver.
Arguments:
Arg1: 0003003f, Virtual address for the attempted write.
Arg2: 86481005, PTE contents.
Arg3: 979c66ec, (reserved)
Arg4: 0000000a, (reserved)

Debugging Details:
------------------


CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0xBE

PROCESS_NAME:  svchost.exe

CURRENT_IRQL:  2

TRAP_FRAME:  979c66ec -- (.trap 0xffffffff979c66ec)
ErrCode = 00000003
eax=0003003f ebx=861e06c0 ecx=00000000 edx=0801dfb0 esi=82b7cd20 edi=00030017
eip=82a8b0e9 esp=979c6760 ebp=979c6798 iopl=0         nv up ei pl nz na po nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010202
nt!MiIdentifyPfn+0x1ed:
82a8b0e9 f00fba281f      lock bts dword ptr [eax],1Fh ds:0023:0003003f=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from 82a99638 to 82ad8903

STACK_TEXT:  
979c66d4 82a99638 00000001 0003003f 00000000 nt!MmAccessFault+0x106
979c66d4 82a8b0e9 00000001 0003003f 00000000 nt!KiTrap0E+0xdc
979c6798 82a8b562 861e06c0 861e0000 979c683c nt!MiIdentifyPfn+0x1ed
979c67c0 82c6f44a 001e0060 bdef5500 979c6850 nt!MmQueryPfnList+0xa6
979c6808 82c8fe21 00000001 bdef5580 00000000 nt!PfpPfnPrioRequest+0xde
979c6888 82c88865 00000000 00000001 979c6cd0 nt!PfQuerySuperfetchInformation+0xea
979c6d00 82c894cc 0000004f 00000000 00000000 nt!ExpQuerySystemInformation+0x24ce
979c6d1c 82a9644a 0000004f 0185ed70 00000014 nt!NtQuerySystemInformation+0x76
979c6d1c 776f64f4 0000004f 0185ed70 00000014 nt!KiFastCallEntry+0x12a
WARNING: Frame IP not in any known module. Following frames may be wrong.
0185cc30 00000000 00000000 00000000 00000000 0x776f64f4


STACK_COMMAND:  kb

FOLLOWUP_IP: 
nt!KiTrap0E+dc
82a99638 85c0            test    eax,eax

SYMBOL_STACK_INDEX:  1

SYMBOL_NAME:  nt!KiTrap0E+dc

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: nt

IMAGE_NAME:  ntkrpamp.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  4b88cacf

FAILURE_BUCKET_ID:  0xBE_nt!KiTrap0E+dc

BUCKET_ID:  0xBE_nt!KiTrap0E+dc

Followup: MachineOwner
---------

0: kd> r
eax=82b8a17c ebx=80000002 ecx=0000001c edx=00000000 esi=82b7cd20 edi=00000000
eip=82ad8903 esp=979c6650 ebp=979c66d4 iopl=0         nv up ei pl nz na pe nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00000206
nt!MmAccessFault+0x106:
82ad8903 cc              int     3
0: kd> k
ChildEBP RetAddr  
979c66d4 82a99638 nt!MmAccessFault+0x106
979c66d4 82a8b0e9 nt!KiTrap0E+0xdc
979c6798 82a8b562 nt!MiIdentifyPfn+0x1ed
979c67c0 82c6f44a nt!MmQueryPfnList+0xa6
979c6808 82c8fe21 nt!PfpPfnPrioRequest+0xde
979c6888 82c88865 nt!PfQuerySuperfetchInformation+0xea
979c6d00 82c894cc nt!ExpQuerySystemInformation+0x24ce
979c6d1c 82a9644a nt!NtQuerySystemInformation+0x76
979c6d1c 776f64f4 nt!KiFastCallEntry+0x12a
WARNING: Frame IP not in any known module. Following frames may be wrong.
0185cc30 00000000 0x776f64f4
0: kd> kv
ChildEBP RetAddr  Args to Child              
979c66d4 82a99638 00000001 0003003f 00000000 nt!MmAccessFault+0x106
979c66d4 82a8b0e9 00000001 0003003f 00000000 nt!KiTrap0E+0xdc (FPO: [0,0] TrapFrame @ 979c66ec)
979c6798 82a8b562 861e06c0 861e0000 979c683c nt!MiIdentifyPfn+0x1ed
979c67c0 82c6f44a 001e0060 bdef5500 979c6850 nt!MmQueryPfnList+0xa6
979c6808 82c8fe21 00000001 bdef5580 00000000 nt!PfpPfnPrioRequest+0xde
979c6888 82c88865 00000000 00000001 979c6cd0 nt!PfQuerySuperfetchInformation+0xea
979c6d00 82c894cc 0000004f 00000000 00000000 nt!ExpQuerySystemInformation+0x24ce
979c6d1c 82a9644a 0000004f 0185ed70 00000014 nt!NtQuerySystemInformation+0x76
979c6d1c 776f64f4 0000004f 0185ed70 00000014 nt!KiFastCallEntry+0x12a (FPO: [0,3] TrapFrame @ 979c6d34)
WARNING: Frame IP not in any known module. Following frames may be wrong.
0185cc30 00000000 00000000 00000000 00000000 0x776f64f4
0: kd> lmntsm
start    end        module name
9706d000 97099000   1394ohci 1394ohci.sys Mon Jul 13 19:51:59 2009 (4A5BC89F)
8c08b000 8c0d3000   ACPI     ACPI.sys     Mon Jul 13 19:11:11 2009 (4A5BBF0F)
914a7000 91501000   afd      afd.sys      Mon Jul 13 19:12:34 2009 (4A5BBF62)
970ef000 97101000   AgileVpn AgileVpn.sys Mon Jul 13 19:55:00 2009 (4A5BC954)
8c000000 8c009000   amdxata  amdxata.sys  Tue May 19 13:57:35 2009 (4A12F30F)
9e3ea000 9e3f3000   asyncmac asyncmac.sys Mon Jul 13 19:54:46 2009 (4A5BC946)
8c1f1000 8c1fa000   atapi    atapi.sys    Mon Jul 13 19:11:15 2009 (4A5BBF13)
8bf91000 8bfb4000   ataport  ataport.SYS  Mon Jul 13 19:11:18 2009 (4A5BBF16)
97031000 9706d000   b57nd60x b57nd60x.sys Sun Apr 26 07:15:34 2009 (49F44256)
8c132000 8c13d000   BATTC    BATTC.SYS    Mon Jul 13 19:19:15 2009 (4A5BC0F3)
8c5f9000 8c600000   Beep     Beep.SYS     Mon Jul 13 19:45:00 2009 (4A5BC6FC)
910b6000 910c4000   blbdrive blbdrive.sys Mon Jul 13 19:23:04 2009 (4A5BC1D8)
8be9c000 8bea4000   BOOTVID  BOOTVID.dll  Mon Jul 13 21:04:34 2009 (4A5BD9A2)
9871b000 98734000   bowser   bowser.sys   Mon Jul 13 19:14:21 2009 (4A5BBFCD)
98b60000 98b7e000   cdd      cdd.dll      unavailable (00000000)
8c5d3000 8c5f2000   cdrom    cdrom.sys    Mon Jul 13 19:11:24 2009 (4A5BBF1C)
8bee6000 8bf91000   CI       CI.dll       Mon Jul 13 21:09:28 2009 (4A5BDAC8)
8c57c000 8c5a1000   CLASSPNP CLASSPNP.SYS Mon Jul 13 19:11:20 2009 (4A5BBF18)
8bea4000 8bee6000   CLFS     CLFS.SYS     Mon Jul 13 19:11:10 2009 (4A5BBF0E)
970d5000 970d8700   CmBatt   CmBatt.sys   Mon Jul 13 19:19:18 2009 (4A5BC0F6)
8c396000 8c3f3000   cng      cng.sys      Mon Jul 13 19:32:55 2009 (4A5BC427)
8c12a000 8c132000   compbatt compbatt.sys Mon Jul 13 19:19:18 2009 (4A5BC0F6)
970e2000 970ef000   CompositeBus CompositeBus.sys Mon Jul 13 19:45:26 2009 (4A5BC716)
972f8000 97305000   crashdmp crashdmp.sys Mon Jul 13 19:45:50 2009 (4A5BC72E)
9103a000 9109e000   csc      csc.sys      Mon Jul 13 19:15:08 2009 (4A5BBFFC)
9109e000 910b6000   dfsc     dfsc.sys     Mon Jul 13 19:14:16 2009 (4A5BBFC8)
91405000 91411000   discache discache.sys Mon Jul 13 19:24:04 2009 (4A5BC214)
8c56b000 8c57c000   disk     disk.sys     Mon Jul 13 19:11:28 2009 (4A5BBF20)
942a1000 942ba000   drmk     drmk.sys     Mon Jul 13 20:36:05 2009 (4A5BD2F5)
97310000 97319000   dump_atapi dump_atapi.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
97305000 97310000   dump_dumpata dump_dumpata.sys Mon Jul 13 19:11:16 2009 (4A5BBF14)
97319000 9732a000   dump_dumpfve dump_dumpfve.sys Mon Jul 13 19:12:47 2009 (4A5BBF6F)
972ee000 972f8000   Dxapi    Dxapi.sys    Mon Jul 13 19:25:25 2009 (4A5BC265)
92d49000 92e00000   dxgkrnl  dxgkrnl.sys  Thu Oct 01 20:48:33 2009 (4AC54DE1)
910f7000 91130000   dxgmms1  dxgmms1.sys  Mon Jul 13 19:25:25 2009 (4A5BC265)
91400000 91404900   ElbyCDIO ElbyCDIO.sys Thu Dec 17 17:25:11 2009 (4B2AAFC7)
8bfe8000 8bff9000   fileinfo fileinfo.sys Mon Jul 13 19:21:51 2009 (4A5BC18F)
8bfb4000 8bfe8000   fltmgr   fltmgr.sys   Mon Jul 13 19:11:13 2009 (4A5BBF11)
8c20e000 8c217000   Fs_Rec   Fs_Rec.sys   Mon Jul 13 19:11:14 2009 (4A5BBF12)
8c539000 8c56b000   fvevol   fvevol.sys   Fri Sep 25 22:24:21 2009 (4ABD7B55)
8c776000 8c7a7000   fwpkclnt fwpkclnt.sys Mon Jul 13 19:12:03 2009 (4A5BBF43)
82a1c000 82a53000   hal      halmacpi.dll Mon Jul 13 19:11:03 2009 (4A5BBF07)
9117b000 9119a000   HDAudBus HDAudBus.sys Mon Jul 13 19:50:55 2009 (4A5BC85F)
94222000 94272000   HdAudio  HdAudio.sys  Mon Jul 13 19:51:46 2009 (4A5BC892)
98696000 9871b000   HTTP     HTTP.sys     Mon Jul 13 19:12:53 2009 (4A5BBF75)
8c7f7000 8c7ff000   hwpolicy hwpolicy.sys Mon Jul 13 19:11:01 2009 (4A5BBF05)
97099000 970b1000   i8042prt i8042prt.sys Mon Jul 13 19:11:23 2009 (4A5BBF1B)
8c198000 8c19f000   intelide intelide.sys Mon Jul 13 19:11:19 2009 (4A5BBF17)
910e5000 910f7000   intelppm intelppm.sys Mon Jul 13 19:11:03 2009 (4A5BBF07)
970be000 970cb000   kbdclass kbdclass.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
80bcf000 80bd7000   kdcom    kdcom.dll    Mon Jul 13 21:08:58 2009 (4A5BDAAA)
971c9000 971fd000   ks       ks.sys       Mon Jul 13 19:45:13 2009 (4A5BC709)
8c383000 8c396000   ksecdd   ksecdd.sys   Mon Jul 13 19:11:56 2009 (4A5BBF3C)
8c504000 8c529000   ksecpkg  ksecpkg.sys  Thu Dec 10 23:04:22 2009 (4B21C4C6)
973ca000 973da000   lltdio   lltdio.sys   Mon Jul 13 19:53:18 2009 (4A5BC8EE)
9735f000 9737a000   luafv    luafv.sys    Mon Jul 13 19:15:44 2009 (4A5BC020)
8be13000 8be8b000   mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Mon Jul 13 21:06:41 2009 (4A5BDA21)
972e1000 972ee000   modem    modem.sys    Mon Jul 13 19:55:24 2009 (4A5BC96C)
97354000 9735f000   monitor  monitor.sys  Mon Jul 13 19:25:58 2009 (4A5BC286)
970b1000 970be000   mouclass mouclass.sys Mon Jul 13 19:11:15 2009 (4A5BBF13)
8c1db000 8c1f1000   mountmgr mountmgr.sys Mon Jul 13 19:11:27 2009 (4A5BBF1F)
98734000 98746000   mpsdrv   mpsdrv.sys   Mon Jul 13 19:52:52 2009 (4A5BC8D4)
98746000 98769000   mrxsmb   mrxsmb.sys   Sat Feb 27 02:32:02 2010 (4B88CA72)
98769000 987a4000   mrxsmb10 mrxsmb10.sys Sat Feb 27 02:32:21 2010 (4B88CA85)
987a4000 987bf000   mrxsmb20 mrxsmb20.sys Sat Feb 27 02:32:11 2010 (4B88CA7B)
9146c000 91477000   Msfs     Msfs.SYS     Mon Jul 13 19:11:26 2009 (4A5BBF1E)
8c0dc000 8c0e4000   msisadrv msisadrv.sys Mon Jul 13 19:11:09 2009 (4A5BBF0D)
8c358000 8c383000   msrpc    msrpc.sys    Mon Jul 13 19:11:59 2009 (4A5BBF3F)
915f2000 915fc000   mssmbios mssmbios.sys Mon Jul 13 19:19:25 2009 (4A5BC0FD)
8c529000 8c539000   mup      mup.sys      Mon Jul 13 19:14:14 2009 (4A5BBFC6)
8c40f000 8c4c6000   ndis     ndis.sys     Mon Jul 13 19:12:24 2009 (4A5BBF58)
97119000 97124000   ndistapi ndistapi.sys Mon Jul 13 19:54:24 2009 (4A5BC930)
98673000 98683000   ndisuio  ndisuio.sys  Mon Jul 13 19:53:51 2009 (4A5BC90F)
97124000 97146000   ndiswan  ndiswan.sys  Mon Jul 13 19:54:34 2009 (4A5BC93A)
911de000 911ef000   NDProxy  NDProxy.SYS  Mon Jul 13 19:54:27 2009 (4A5BC933)
91559000 91567000   netbios  netbios.sys  Mon Jul 13 19:53:54 2009 (4A5BC912)
91501000 91533000   netbt    netbt.sys    Mon Jul 13 19:12:18 2009 (4A5BBF52)
8c4c6000 8c504000   NETIO    NETIO.SYS    Mon Jul 13 19:12:35 2009 (4A5BBF63)
96c1e000 97031000   netw5v32 netw5v32.sys Thu Mar 26 12:10:37 2009 (49CBA8FD)
91477000 91485000   Npfs     Npfs.SYS     Mon Jul 13 19:11:31 2009 (4A5BBF23)
915e8000 915f2000   nsiproxy nsiproxy.sys Mon Jul 13 19:12:08 2009 (4A5BBF48)
82a53000 82e63000   nt       ntkrpamp.exe Sat Feb 27 02:33:35 2010 (4B88CACF)
8c229000 8c358000   Ntfs     Ntfs.sys     Mon Jul 13 19:12:05 2009 (4A5BBF45)
8c5f2000 8c5f9000   Null     Null.SYS     Mon Jul 13 19:11:12 2009 (4A5BBF10)
92629000 92d48ce0   nvlddmkm nvlddmkm.sys Wed May 07 19:51:12 2008 (48224070)
9862d000 98673000   nwifi    nwifi.sys    Mon Jul 13 19:51:59 2009 (4A5BC89F)
9153a000 91559000   pacer    pacer.sys    Mon Jul 13 19:53:58 2009 (4A5BC916)
8c119000 8c12a000   partmgr  partmgr.sys  Mon Jul 13 19:11:35 2009 (4A5BBF27)
8c0e4000 8c10e000   pci      pci.sys      Mon Jul 13 19:11:16 2009 (4A5BBF14)
8c19f000 8c1ad000   PCIIDEX  PCIIDEX.SYS  Mon Jul 13 19:11:15 2009 (4A5BBF13)
8c1ad000 8c1db000   pcmcia   pcmcia.sys   Mon Jul 13 19:19:29 2009 (4A5BC101)
8c200000 8c20e000   pcw      pcw.sys      Mon Jul 13 19:11:10 2009 (4A5BBF0E)
9e211000 9e2a8000   peauth   peauth.sys   Mon Jul 13 20:35:44 2009 (4A5BD2E0)
94272000 942a1000   portcls  portcls.sys  Mon Jul 13 19:51:00 2009 (4A5BC864)
8be8b000 8be9c000   PSHED    PSHED.dll    Mon Jul 13 21:09:36 2009 (4A5BDAD0)
97101000 97119000   rasl2tp  rasl2tp.sys  Mon Jul 13 19:54:33 2009 (4A5BC939)
97146000 9715e000   raspppoe raspppoe.sys Mon Jul 13 19:54:53 2009 (4A5BC94D)
9715e000 97175000   raspptp  raspptp.sys  Mon Jul 13 19:54:47 2009 (4A5BC947)
97175000 9718c000   rassstp  rassstp.sys  Mon Jul 13 19:54:57 2009 (4A5BC951)
915a7000 915e8000   rdbss    rdbss.sys    Mon Jul 13 19:14:26 2009 (4A5BBFD2)
9718c000 97196000   rdpbus   rdpbus.sys   Mon Jul 13 20:02:40 2009 (4A5BCB20)
91454000 9145c000   RDPCDD   RDPCDD.sys   Mon Jul 13 20:01:40 2009 (4A5BCAE4)
9145c000 91464000   rdpencdd rdpencdd.sys Mon Jul 13 20:01:39 2009 (4A5BCAE3)
91464000 9146c000   rdprefmp rdprefmp.sys Mon Jul 13 20:01:41 2009 (4A5BCAE5)
8c600000 8c62d000   rdyboost rdyboost.sys Mon Jul 13 19:22:02 2009 (4A5BC19A)
98683000 98696000   rspndr   rspndr.sys   Mon Jul 13 19:53:20 2009 (4A5BC8F0)
973be000 973ca000   scfilter scfilter.sys Mon Jul 13 19:33:50 2009 (4A5BC45E)
971a1000 971c7000   SCSIPORT SCSIPORT.SYS Mon Jul 13 19:45:55 2009 (4A5BC733)
9e2a8000 9e2b2000   secdrv   secdrv.SYS   Wed Sep 13 09:18:32 2006 (45080528)
970cb000 970d5000   serenum  serenum.sys  Mon Jul 13 19:45:27 2009 (4A5BC717)
91567000 91581000   serial   serial.sys   Mon Jul 13 19:45:33 2009 (4A5BC71D)
8c7ef000 8c7f7000   spldr    spldr.sys    Mon May 11 12:13:47 2009 (4A084EBB)
9e32f000 9e380000   srv      srv.sys      Tue Dec 08 03:05:37 2009 (4B1E08D1)
9e2e0000 9e32f000   srv2     srv2.sys     Mon Jul 13 19:14:52 2009 (4A5BBFEC)
9e2b2000 9e2d3000   srvnet   srvnet.sys   Tue Dec 08 03:05:06 2009 (4B1E08B2)
971c7000 971c8380   swenum   swenum.sys   Mon Jul 13 19:45:08 2009 (4A5BC704)
8c62d000 8c776000   tcpip    tcpip.sys    Mon Jul 13 19:13:18 2009 (4A5BBF8E)
9e2d3000 9e2e0000   tcpipreg tcpipreg.sys Mon Jul 13 19:54:14 2009 (4A5BC926)
9149c000 914a7000   TDI      TDI.SYS      Mon Jul 13 19:12:12 2009 (4A5BBF4C)
91485000 9149c000   tdx      tdx.sys      Mon Jul 13 19:12:10 2009 (4A5BBF4A)
91597000 915a7000   termdd   termdd.sys   Mon Jul 13 20:01:35 2009 (4A5BCADF)
98b30000 98b39000   TSDDD    TSDDD.dll    Mon Jul 13 20:01:40 2009 (4A5BCAE4)
910c4000 910e5000   tunnel   tunnel.sys   Mon Jul 13 19:54:03 2009 (4A5BC91B)
96c00000 96c0e000   umbus    umbus.sys    Mon Jul 13 19:51:38 2009 (4A5BC88A)
9260b000 9261a000   usbehci  usbehci.sys  Mon Jul 13 19:51:14 2009 (4A5BC872)
9119a000 911de000   usbhub   usbhub.sys   Mon Jul 13 19:52:06 2009 (4A5BC8A6)
91130000 9117b000   USBPORT  USBPORT.SYS  Mon Jul 13 19:51:13 2009 (4A5BC871)
92600000 9260b000   usbuhci  usbuhci.sys  Mon Jul 13 19:51:10 2009 (4A5BC86E)
91594000 91596180   VCdRom   VCdRom.sys   Wed Dec 19 14:44:58 2001 (3C20EE3A)
97196000 971a1000   VClone   VClone.sys   Sun Aug 09 17:25:56 2009 (4A7F3EE4)
8c10e000 8c119000   vdrvroot vdrvroot.sys Mon Jul 13 19:46:19 2009 (4A5BC74B)
8c400000 8c40c000   vga      vga.sys      Mon Jul 13 19:25:50 2009 (4A5BC27E)
91426000 91447000   VIDEOPRT VIDEOPRT.SYS Mon Jul 13 19:25:49 2009 (4A5BC27D)
8c7a7000 8c7af380   vmstorfl vmstorfl.sys Mon Jul 13 19:28:44 2009 (4A5BC32C)
8c13d000 8c14d000   volmgr   volmgr.sys   Mon Jul 13 19:11:25 2009 (4A5BBF1D)
8c14d000 8c198000   volmgrx  volmgrx.sys  Mon Jul 13 19:11:41 2009 (4A5BBF2D)
8c7b0000 8c7ef000   volsnap  volsnap.sys  Mon Jul 13 19:11:34 2009 (4A5BBF26)
942ba000 942f7000   VSTAZL3  VSTAZL3.SYS  Wed Oct 15 20:30:03 2008 (48F68B0B)
9722c000 972e1000   VSTCNXT3 VSTCNXT3.SYS Wed Oct 15 20:29:13 2008 (48F68AD9)
942f7000 943f9000   VSTDPV3  VSTDPV3.SYS  Wed Oct 15 20:32:04 2008 (48F68B84)
91581000 91594000   wanarp   wanarp.sys   Mon Jul 13 19:55:02 2009 (4A5BC956)
91447000 91454000   watchdog watchdog.sys Mon Jul 13 19:24:10 2009 (4A5BC21A)
8c00c000 8c07d000   Wdf01000 Wdf01000.sys Mon Jul 13 19:11:36 2009 (4A5BBF28)
8c07d000 8c08b000   WDFLDR   WDFLDR.SYS   Mon Jul 13 19:11:25 2009 (4A5BBF1D)
91533000 9153a000   wfplwf   wfplwf.sys   Mon Jul 13 19:53:51 2009 (4A5BC90F)
988d0000 98b1a000   win32k   win32k.sys   unavailable (00000000)
97394000 9739c880   WinUSB   WinUSB.sys   Mon Jul 13 19:51:11 2009 (4A5BC86F)
970d9000 970e2000   wmiacpi  wmiacpi.sys  Mon Jul 13 19:19:16 2009 (4A5BC0F4)
8c0d3000 8c0dc000   WMILIB   WMILIB.SYS   Mon Jul 13 19:11:22 2009 (4A5BBF1A)
9737a000 97394000   WudfPf   WudfPf.sys   Mon Jul 13 19:50:13 2009 (4A5BC835)
9739d000 973bd480   WUDFRd   WUDFRd.sys   Mon Jul 13 19:50:44 2009 (4A5BC854)

Unloaded modules:
9e3f3000 9e3fe000   hiber_atapor
    Timestamp: unavailable (00000000)
    Checksum:  00000000
9e200000 9e209000   hiber_atapi.
    Timestamp: unavailable (00000000)
    Checksum:  00000000
9e380000 9e391000   hiber_dumpfv
    Timestamp: unavailable (00000000)
    Checksum:  00000000
9e380000 9e3ea000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
987bf000 987d7000   parport.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
9732a000 97333000   WinUSB.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
97333000 97354000   WUDFRd.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8c5a1000 8c5ae000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8c5ae000 8c5b9000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8c5b9000 8c5c2000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
8c5c2000 8c5d3000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
First off, please remove this:
Code:
91594000 91596180   VCdRom   VCdRom.sys   Wed Dec 19 14:44:58 2001 (3C20EE3A)
No 2001 driver should be in a Windows 7 system. It's part of the program called Virtual CD-ROM Control Panel. Uninstall it and see if it helps.

Also, I'm seeing an error regarding your SD card reader in the system event log:
Code:
Event[257]:
  Log Name: System
  Source: Microsoft-Windows-Smartcard-Server
  Date: 2010-06-29T10:38:59.000
  Event ID: 610
  Task: N/A
  Level: Error
  Opcode: Info
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: M4300
  Description: 
Smart Card Reader 'O2 O2Micro CCID SC Reader 0' rejected IOCTL GET_STATE: The handle is invalid.  If this error persists, your smart card or reader may not be functioning correctly.
Do you use it? It would be helpful in troubleshooting if you disabled it via Device Manager (more info here if you need it: http://cid-120d9bfa03f629fd.spaces.live.com/blog/cns!120D9BFA03F629FD!151.entry). Good luck and let us know how it works out.
See less See more
14 memory dumps from 06 May to 29 Jun 2010
7 different STOP error codes, with at least 3 different causes blamed
This seems to be a pattern that indicates a hardware problem.

After following DT Roberts' advice, please update your video drivers and your modem drivers. Then please try these these free diagnostics:
H/W Diagnostics:
Please start by running these bootable hardware diagnostics:
http://www.carrona.org/memdiag.html (read the details at the link)
http://www.carrona.org/hddiag.html (read the details at the link)

Also, please run one of these free, independent online malware scans to ensure that your current protection hasn't been compromised: http://www.carrona.org/malware.html (read the details at the link)

Then, if the above tests pass, I'd try these free stress tests:
FurMark download site: http://www.ozone3d.net/benchmarks/fur/
FurMark Setup:
- If you have more than one GPU, select Multi-GPU during setup
- In the Run mode box, select "Stability Test" and "Log GPU Temperature"
Click "Go" to start the test
- Run the test until the GPU temperature maxes out - or until you start having problems (whichever comes first).
- Click "Quit" to exit
Prime95 download site: http://www.mersenne.org/freesoft/
Prime95 Setup:
- extract the contents of the zip file to a location of your choice
- double click on the executable file
- select "Just stress testing"
- select the "Blend" test. If you've already run MemTest overnight you may want to run the "Small FFTs" test instead.
- "Number of torture test threads to run" should equal the number of CPU's times 2 (if you're using hyperthreading).
The easiest way to figure this out is to go to Task Manager...Performance tab - and see the number of boxes under CPU Usage History
Then run the test for 6 to 24 hours - or until you get errors (whichever comes first).
This won't necessarily crash the system - but check the output in the test window for errors.
The Test selection box and the stress.txt file describes what components that the program stresses.
BSOD BUGCHECK SUMMARY
Code:
[font=lucida console]
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Tue Jun 29 17:40:58.391 2010 (UTC - 4:00)
System Uptime: 1 days 6:44:45.248
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Mon Jun 28 10:55:34.524 2010 (UTC - 4:00)
System Uptime: 2 days 23:34:11.877
BUGCHECK_STR:  0xc2_7
PROCESS_NAME:  System
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Tue Jun 22 13:59:04.295 2010 (UTC - 4:00)
System Uptime: 1 days 4:24:19.152
BUGCHECK_STR:  0xBE
PROCESS_NAME:  svchost.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Mon Jun 21 00:21:35.401 2010 (UTC - 4:00)
System Uptime: 0 days 2:06:34.133
BUGCHECK_STR:  0x19_3
PROCESS_NAME:  svchost.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Sun Jun 20 22:14:04.871 2010 (UTC - 4:00)
System Uptime: 0 days 23:42:33.744
BugCheck A, {cb3b0751, 1c, 1, 82a6b2b7}
Probably caused by : ntkrpamp.exe ( nt!KiTrap0E+2cf )
BUGCHECK_STR:  0xA
PROCESS_NAME:  svchost.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Sat Jun 19 22:30:32.697 2010 (UTC - 4:00)
System Uptime: 0 days 0:11:24.554
BUGCHECK_STR:  0xBE
PROCESS_NAME:  svchost.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Mon May 31 13:53:10.873 2010 (UTC - 4:00)
System Uptime: 1 days 2:08:39.746
BugCheck 7F, {d, 0, 0, 0}
Probably caused by : ntkrpamp.exe ( nt!KiSystemFatalException+f )
BUGCHECK_STR:  0x7f_d
PROCESS_NAME:  WerFault.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Sun May 30 11:43:37.138 2010 (UTC - 4:00)
System Uptime: 0 days 0:20:25.011
BUGCHECK_STR:  0x1a_41289
PROCESS_NAME:  SearchProtocol
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Sun May 30 11:22:40.060 2010 (UTC - 4:00)
System Uptime: 5 days 18:45:37.917
BUGCHECK_STR:  0x1a_41284
PROCESS_NAME:  System
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Tue May 18 17:35:41.952 2010 (UTC - 4:00)
System Uptime: 1 days 5:54:27.825
BugCheck A, {28, 2, 1, 8288b0e9}
Probably caused by : memory_corruption ( nt!MiIdentifyPfn+1ed )
BUGCHECK_STR:  0xA
PROCESS_NAME:  svchost.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Mon May 17 11:40:17.069 2010 (UTC - 4:00)
System Uptime: 0 days 3:53:58.942
BUGCHECK_STR:  0x50
PROCESS_NAME:  iexplore.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Mon May 17 07:45:26.408 2010 (UTC - 4:00)
System Uptime: 2 days 15:19:09.281
BUGCHECK_STR:  0xBE
PROCESS_NAME:  iexplore.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Debug session time: Tue May 11 09:18:09.951 2010 (UTC - 4:00)
System Uptime: 1 days 14:43:04.824
BugCheck 7F, {d, 0, 0, 0}
Probably caused by : ntkrpamp.exe ( nt!KiSystemFatalException+f )
BUGCHECK_STR:  0x7f_d
PROCESS_NAME:  services.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
Built by: 7600.16385.x86fre.win7_rtm.090713-1255
Debug session time: Thu May  6 09:52:51.147 2010 (UTC - 4:00)
System Uptime: 0 days 16:53:42.019
BUGCHECK_STR:  0xBE
PROCESS_NAME:  svchost.exe
¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨¨
  
  
 
[/font]
See less See more
Thanks DT,

I have disabled the smart card reader and removed VCD Control tool as well as 3 occurrences of VCdRom.sys from my hard disk. Now I'll let the systme run for a while and see how we do.

Thanks again,
Dale
We're glad to help. Looking forward to some good news!

Devin
1 - 7 of 7 Posts
Status
Not open for further replies.
Top