BSoD pci.sys & acpi.sys Error - IRQL NOT LESS OR EQUAL

  1. #1
    Kazna3 is offline Senior Member

    BSoD pci.sys & acpi.sys Error - IRQL NOT LESS OR EQUAL

    Hi

    I've had many problems as you can see HERE and lately HERE with three PC's. One of which I've thrown away now, but I've kept the harddrive as it was brand new.

    I have three Maxtor hardrives:
    A: Maxtor 40GB 5400RPM
    B: Maxtor 80GB 7200RPM
    C: Maxtor 80GB 7200RPM (new)

    Yesterday was the first day I was able to load up XP after the 10th CLEAN reinstall, and 7th repair reinstall on drive A and B. All seemed well, I migrated all my backups and settings, files configurations... fetched and installed much extra's as well that I had made a list of as were on my previous drives. I also installed much newer software with configurations.
    All this required around 13 reboots on each PC. Each time it rebooted and worked perfectly and I performed many utility checkups, scans etc as well. I even shut down and swapped drives in computers at least 3 times. My Windows XP Pro SP2 seemed working perfectly and I was happy after a long hard day.

    After having to go through ALL that pain and frustration again and again.. I noticed yesterday that towards the end, when chosen to "Shut down", Windows too 8 minutes and lagged heavily. I restarted to check up if all is fine, all was as it seemed apart from the shutdown.

    Then, I took drive B and connected it to "this" computer which was running off drive A as Master. So I Slaved the B drive perfectly.

    Next startup.......... After the POST a black screen saying:

    Code:
    Windows could not load up because the following file is missing or corrupt C:Windows\System32\DRIVERS\pci.sys
    At times it would load up and then give a

    Code:
    PAGE_FAULT_IN_NONPAGED_AREA
    and others
    Code:
    IRQL NOT LESS OR EQUAL
    At another time it identified 0x00000050 and
    "problems seemed to be caused by acpi.sys"

    At other times it would just keep rebooting.

    Other times it kept rebooting to the screen with options of Last Known Good Confugration, Safe Mode etc, but wouldn't boot into any as when choosing SafeMode the drivers are loaded up: one of these drivers is pci.sys and it would become jammed on that as the last one on screen.

    I ran the XP SP2 CD and it won't run. Most of the time as the Windows Setup loading page is copying files an error occurs:

    Code:
    File Setupdd.sys could not be loaded
    The error code is 4 (another one time it was 7)
    I get this repeatedly which means I can't repair or do anything! I have 3 XP CD copies, ALL brand newly done and this is what comes up on these drives and yet on none of my friends computers.

    Now this has ALL my info just about transferred on it by yesterday!!


    As you can imagine, I tried drive B as well and it showed EXACTLY the same problems!!!

    I don't believe what is happening - how can they both be perfect and the minute I connect them together rearranged all messes up on BOTH drives?!

    Now I'm VERY hesistant to slave them to this computers harddrive incase this messes up with the same error as well, after just installing a new XP on it and other stuff to get it working safely.

    Please, help!!

    I have another question.... Can I slave the two faulty A and B drives to this C drive and copy paste the pci.sys and acpi.sys files from here to there?

    I mean if theyre corrupt, won't that fix it?
    Is it possible?

    Thanks much in advance!


  2. #2
    Kazna3 is offline Senior Member
    This is the same problem with both my harddrives:
    http://www.pcreview.co.uk/forums/thread-287284.php

    This is what Microsoft says about it:
    http://support.microsoft.com/kb/330181

    Hardware error

    But why is this drive and computer running perfectly now then?

    If only I could somehow get in, I would run SFC /scannow and verify if its Windows files or just the hardware (the harddrives because theyre the only additions)
    Last edited by Kazna3; 27-10-2006 at 05:36 AM.

  3. #3
    Kazna3 is offline Senior Member
    I've just changed the drive again, connecting the 40GB drive to check up: it did a chkdsk /f as I had previously instrcuted and deleted a few files.

    Now its started up perfectly with everything there, when set as Master on the same computer!

    I dont know what to say. I'll check the other 80GB drive B to see what happens.

    I think it was JUST a connection problem that was causing this..

    Anyone know any software which analyses dumps, mini dumps, memory dumps?

    I have some so I can check what it is - I know for certain now, that it was the hardrive connections that are faulty, and/or jumper settings. Nothing else.

  4. #4
    jephree is offline ¨*·.¸ «.·°·..·°·.» ¸.·*¨
    In order to get more details please do the following:

    Go to start | search (type in) .dmp
    Note the location of your .dmp files.
    Remember this location and the path that leads to it.

    Then:

    1) Download and install the
    Debugging Tools from Microsoft

    All you need do is download and install this. Make no attempt to start or run it.

    2) Download and install this
    debugwiz

    This is a DOS based batch file that will command the above Microsoft Tools.

    3) Open the Wiz & Browse to, or paste in the path to, your .dmp file.

    4) After the Wiz creates a Text document attach it back to this thread.


    If you are looking for links on how to interpret this data then I can post my collection on the subject but I know of no automated analyzer outside of the above tools.

  5. #5
    Kazna3 is offline Senior Member
    Cheers Jephree!
    Here's the first minidump analysis:
    Code:
    Opened log file 'd:\debuglog.txt'
    
    Microsoft (R) Windows Debugger  Version 6.6.0007.5
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [D:\WINDOWS\Minidump\Mini102606-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: D:\WINDOWS;D:\WINDOWS\system32;D:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible
    Product: WinNt
    Built by: 2600.xpsp_sp2_rtm.040803-2158
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055ab20
    Debug session time: Thu Oct 26 02:17:27.188 2006 (GMT+1)
    System Uptime: 0 days 4:28:39.766
    Loading Kernel Symbols
    ..................................................................................................................
    Loading User Symbols
    Loading unloaded module list
    .....................
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck D1, {0, 2, 0, f499b7fc}
    
    *** ERROR: Module load completed but symbols could not be loaded for fwdrv.sys
    Probably caused by : fwdrv.sys ( fwdrv+22d18 )
    
    Followup: MachineOwner
    ---------
    
    kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If kernel debugger is available get stack backtrace.
    Arguments:
    Arg1: 00000000, memory referenced
    Arg2: 00000002, IRQL
    Arg3: 00000000, value 0 = read operation, 1 = write operation
    Arg4: f499b7fc, address which referenced memory
    
    Debugging Details:
    ------------------
    
    
    READ_ADDRESS:  00000000 
    
    CURRENT_IRQL:  2
    
    FAULTING_IP: 
    afd!AfdBReceiveEventHandler+5e
    f499b7fc 668b06          mov     ax,word ptr [esi]
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  DRIVER_FAULT
    
    BUGCHECK_STR:  0xD1
    
    TRAP_FRAME:  f1db59f4 -- (.trap fffffffff1db59f4)
    .trap fffffffff1db59f4
    ErrCode = 00000000
    eax=00000002 ebx=f1db5aa4 ecx=00000002 edx=f1db5a70 esi=00000000 edi=852d87f0
    eip=f499b7fc esp=f1db5a68 ebp=f1db5a98 iopl=0         nv up ei pl zr na pe nc
    cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010246
    afd!AfdBReceiveEventHandler+0x5e:
    f499b7fc 668b06          mov     ax,word ptr [esi]        ds:0023:00000000=????
    .trap
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from f499b7fc to 804e2158
    
    STACK_TEXT:  
    f1db59f4 f499b7fc badb0d00 f1db5a70 00000000 nt!KiTrap0E+0x233
    f1db5aa4 f4a65d18 84df3ef0 852d87f0 00000e20 afd!AfdBReceiveEventHandler+0x5e
    WARNING: Stack unwind information not available. Following frames may be wrong.
    f1db5ae8 f4a639a7 f499b79e 84df3ef0 852d87f0 fwdrv+0x22d18
    f1db5b44 f4a6458e 84b50ac8 84f0f038 00000353 fwdrv+0x209a7
    f1db5b74 f4a64bfd 84b50ac8 00000001 84f0f038 fwdrv+0x2158e
    f1db5bc8 f4a46d63 84f0f000 00000009 00db5c0c fwdrv+0x21bfd
    f1db5be0 f4a44be9 850ac280 84f0f000 f1db5c08 fwdrv+0x3d63
    f1db5bf0 f4a4611d 84f0f000 00002038 00000000 fwdrv+0x1be9
    f1db5c08 f4a4622b 851d6538 00000034 0000000e fwdrv+0x311d
    f1db5c24 f4a4631b 8521e228 851d6538 f1db5c58 fwdrv+0x322b
    f1db5c34 804e3d77 8521e228 851d6538 806ed070 fwdrv+0x331b
    f1db5c44 8056a9ab 851d65a8 8513b380 851d6538 nt!IopfCallDriver+0x31
    f1db5c58 8057d9f7 8521e228 851d6538 8513b380 nt!IopSynchronousServiceTail+0x60
    f1db5d00 8057fbfa 00000444 00000000 00000000 nt!IopXxxControlFile+0x611
    f1db5d34 804df06b 00000444 00000000 00000000 nt!NtDeviceIoControlFile+0x2a
    f1db5d34 7c90eb94 00000444 00000000 00000000 nt!KiFastCallEntry+0xf8
    06e6aee8 00000000 00000000 00000000 00000000 0x7c90eb94
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    fwdrv+22d18
    f4a65d18 8945e8          mov     dword ptr [ebp-18h],eax
    
    SYMBOL_STACK_INDEX:  2
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: fwdrv
    
    IMAGE_NAME:  fwdrv.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  43a1f89d
    
    SYMBOL_NAME:  fwdrv+22d18
    
    FAILURE_BUCKET_ID:  0xD1_fwdrv+22d18
    
    BUCKET_ID:  0xD1_fwdrv+22d18
    
    Followup: MachineOwner
    ---------
    
    eax=ffdff13c ebx=00000002 ecx=00000000 edx=40000000 esi=f499b7fc edi=00000000
    eip=804e2158 esp=f1db59dc ebp=f1db59f4 iopl=0         nv up ei ng nz na pe nc
    cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00000286
    nt!KiTrap0E+0x233:
    804e2158 f7457000000200  test    dword ptr [ebp+70h],20000h ss:0010:f1db5a64=00010246
    ChildEBP RetAddr  Args to Child              
    f1db59f4 f499b7fc badb0d00 f1db5a70 00000000 nt!KiTrap0E+0x233 (FPO: [0,0] TrapFrame @ f1db59f4)
    f1db5aa4 f4a65d18 84df3ef0 852d87f0 00000e20 afd!AfdBReceiveEventHandler+0x5e (FPO: [Non-Fpo])
    WARNING: Stack unwind information not available. Following frames may be wrong.
    f1db5ae8 f4a639a7 f499b79e 84df3ef0 852d87f0 fwdrv+0x22d18
    f1db5b44 f4a6458e 84b50ac8 84f0f038 00000353 fwdrv+0x209a7
    f1db5b74 f4a64bfd 84b50ac8 00000001 84f0f038 fwdrv+0x2158e
    f1db5bc8 f4a46d63 84f0f000 00000009 00db5c0c fwdrv+0x21bfd
    f1db5be0 f4a44be9 850ac280 84f0f000 f1db5c08 fwdrv+0x3d63
    f1db5bf0 f4a4611d 84f0f000 00002038 00000000 fwdrv+0x1be9
    f1db5c08 f4a4622b 851d6538 00000034 0000000e fwdrv+0x311d
    f1db5c24 f4a4631b 8521e228 851d6538 f1db5c58 fwdrv+0x322b
    f1db5c34 804e3d77 8521e228 851d6538 806ed070 fwdrv+0x331b
    f1db5c44 8056a9ab 851d65a8 8513b380 851d6538 nt!IopfCallDriver+0x31 (FPO: [0,0,0])
    f1db5c58 8057d9f7 8521e228 851d6538 8513b380 nt!IopSynchronousServiceTail+0x60 (FPO: [Non-Fpo])
    f1db5d00 8057fbfa 00000444 00000000 00000000 nt!IopXxxControlFile+0x611 (FPO: [Non-Fpo])
    f1db5d34 804df06b 00000444 00000000 00000000 nt!NtDeviceIoControlFile+0x2a (FPO: [Non-Fpo])
    f1db5d34 7c90eb94 00000444 00000000 00000000 nt!KiFastCallEntry+0xf8 (FPO: [0,0] TrapFrame @ f1db5d64)
    06e6aee8 00000000 00000000 00000000 00000000 0x7c90eb94
    start    end        module name
    804d7000 806eb780   nt       ntoskrnl.exe Wed Aug 04 07:19:48 2004 (41108004)
    806ec000 806ffd80   hal      halacpi.dll  Wed Aug 04 06:59:04 2004 (41107B28)
    bf800000 bf9c0380   win32k   win32k.sys   Wed Aug 04 07:17:30 2004 (41107F7A)
    bf9c1000 bf9d2580   dxg      dxg.sys      Wed Aug 04 07:00:51 2004 (41107B93)
    bf9d3000 bfa28100   SiSGRV   SiSGRV.dll   Tue Oct 01 10:11:17 2002 (3D9966B5)
    f1c55000 f1c57580   hidusb   hidusb.sys   Fri Aug 17 22:02:16 2001 (3B7D8658)
    f1cbd000 f1cc0ae0   aswRdr   aswRdr.SYS   Mon Sep 25 16:39:25 2006 (4517F82D)
    f1ccd000 f1d0d380   HTTP     HTTP.sys     Wed Aug 04 07:00:09 2004 (41107B69)
    f2056000 f20a8180   srv      srv.sys      Wed Aug 04 07:14:44 2004 (41107ED4)
    f2191000 f2193f80   mouhid   mouhid.sys   Fri Aug 17 21:47:57 2001 (3B7D82FD)
    f21c1000 f21d6580   aswMon2  aswMon2.SYS  Fri Sep 08 18:28:09 2006 (4501A829)
    f21d7000 f2203400   mrxdav   mrxdav.sys   Wed Aug 04 07:00:49 2004 (41107B91)
    f225c000 f2264d80   HIDCLASS HIDCLASS.SYS Wed Aug 04 07:08:18 2004 (41107D52)
    f23e9000 f23fd400   wdmaud   wdmaud.sys   Wed Aug 04 07:15:03 2004 (41107EE7)
    f259e000 f25acd80   sysaudio sysaudio.sys Wed Aug 04 07:15:54 2004 (41107F1A)
    f2742000 f2745280   ndisuio  ndisuio.sys  Wed Aug 04 07:03:10 2004 (41107C1E)
    f487e000 f4895480   dump_atapi dump_atapi.sys Wed Aug 04 06:59:41 2004 (41107B4D)
    f48be000 f48def00   ipnat    ipnat.sys    Wed Aug 04 07:04:48 2004 (41107C80)
    f48df000 f48f3000   khips    khips.sys    Thu Dec 15 23:01:51 2005 (43A1F5DF)
    f48f3000 f4961380   mrxsmb   mrxsmb.sys   Wed Aug 04 07:15:14 2004 (41107EF2)
    f4962000 f498d180   rdbss    rdbss.sys    Wed Aug 04 07:20:05 2004 (41108015)
    f498e000 f49afd00   afd      afd.sys      Wed Aug 04 07:14:13 2004 (41107EB5)
    f49b0000 f49d7c00   netbt    netbt.sys    Wed Aug 04 07:14:36 2004 (41107ECC)
    f49d8000 f4a2fa80   tcpip    tcpip.sys    Wed Aug 04 07:14:39 2004 (41107ECF)
    f4a30000 f4a42400   ipsec    ipsec.sys    Wed Aug 04 07:14:27 2004 (41107EC3)
    f4a43000 f4b21000   fwdrv    fwdrv.sys    Thu Dec 15 23:13:33 2005 (43A1F89D)
    f7355000 f7357900   Dxapi    Dxapi.sys    Fri Aug 17 21:53:19 2001 (3B7D843F)
    f7409000 f743c200   update   update.sys   Wed Aug 04 06:58:32 2004 (41107B08)
    f7465000 f7495100   rdpdr    rdpdr.sys    Wed Aug 04 07:01:10 2004 (41107BA6)
    f7496000 f74a6e00   psched   psched.sys   Wed Aug 04 07:04:16 2004 (41107C60)
    f74a7000 f74bd680   ndiswan  ndiswan.sys  Wed Aug 04 07:14:30 2004 (41107EC6)
    f74be000 f74e0e80   USBPORT  USBPORT.SYS  Wed Aug 04 07:08:34 2004 (41107D62)
    f74e1000 f753ffc0   cmuda    cmuda.sys    Wed Mar 06 06:27:00 2002 (3C85B6B4)
    f7540000 f7562680   ks       ks.sys       Wed Aug 04 07:15:20 2004 (41107EF8)
    f7563000 f7586980   portcls  portcls.sys  Wed Aug 04 07:15:47 2004 (41107F13)
    f7587000 f759a900   parport  parport.sys  Wed Aug 04 06:59:04 2004 (41107B28)
    f759b000 f75ae780   VIDEOPRT VIDEOPRT.SYS Wed Aug 04 07:07:04 2004 (41107D08)
    f75af000 f75e5c00   sisgrp   sisgrp.sys   Tue Oct 01 10:10:12 2002 (3D996674)
    f75f6000 f75f8280   rasacd   rasacd.sys   Fri Aug 17 21:55:39 2001 (3B7D84CB)
    f762e000 f7648580   Mup      Mup.sys      Wed Aug 04 07:15:20 2004 (41107EF8)
    f7649000 f7675a80   NDIS     NDIS.sys     Wed Aug 04 07:14:27 2004 (41107EC3)
    f7676000 f7702480   Ntfs     Ntfs.sys     Wed Aug 04 07:15:06 2004 (41107EEA)
    f7703000 f7719780   KSecDD   KSecDD.sys   Wed Aug 04 06:59:45 2004 (41107B51)
    f771a000 f772bf00   sr       sr.sys       Wed Aug 04 07:06:22 2004 (41107CDE)
    f772c000 f774a780   fltMgr   fltMgr.sys   Wed Aug 04 07:01:17 2004 (41107BAD)
    f774b000 f7762480   atapi    atapi.sys    Wed Aug 04 06:59:41 2004 (41107B4D)
    f7763000 f7788700   dmio     dmio.sys     Wed Aug 04 07:07:13 2004 (41107D11)
    f7789000 f77a7880   ftdisk   ftdisk.sys   Fri Aug 17 21:52:41 2001 (3B7D8419)
    f77a8000 f77b8a80   pci      pci.sys      Wed Aug 04 07:07:45 2004 (41107D31)
    f77b9000 f77e6d80   ACPI     ACPI.sys     Wed Aug 04 07:07:35 2004 (41107D27)
    f7808000 f7810c00   isapnp   isapnp.sys   Fri Aug 17 21:58:01 2001 (3B7D8559)
    f7818000 f7822500   MountMgr MountMgr.sys Wed Aug 04 06:58:29 2004 (41107B05)
    f7828000 f7834c80   VolSnap  VolSnap.sys  Wed Aug 04 07:00:14 2004 (41107B6E)
    f7838000 f7840e00   disk     disk.sys     Wed Aug 04 06:59:53 2004 (41107B59)
    f7848000 f7854200   CLASSPNP CLASSPNP.SYS Wed Aug 04 07:14:26 2004 (41107EC2)
    f7858000 f7862080   sisagp   sisagp.sys   Wed Aug 04 07:07:42 2004 (41107D2E)
    f78a8000 f78b7900   Cdfs     Cdfs.SYS     Wed Aug 04 07:14:09 2004 (41107EB1)
    f7918000 f7921200   amdk7    amdk7.sys    Wed Aug 04 06:59:19 2004 (41107B37)
    f7928000 f7934e00   i8042prt i8042prt.sys Wed Aug 04 07:14:36 2004 (41107ECC)
    f7938000 f7947d80   serial   serial.sys   Wed Aug 04 07:15:51 2004 (41107F17)
    f7948000 f7956b80   drmk     drmk.sys     Wed Aug 04 07:07:54 2004 (41107D3A)
    f7958000 f7962380   imapi    imapi.sys    Wed Aug 04 07:00:12 2004 (41107B6C)
    f7968000 f7974180   cdrom    cdrom.sys    Wed Aug 04 06:59:52 2004 (41107B58)
    f7978000 f7986080   redbook  redbook.sys  Wed Aug 04 06:59:34 2004 (41107B46)
    f7988000 f7994880   rasl2tp  rasl2tp.sys  Wed Aug 04 07:14:21 2004 (41107EBD)
    f7998000 f79a2200   raspppoe raspppoe.sys Wed Aug 04 07:05:06 2004 (41107C92)
    f79a8000 f79b3d00   raspptp  raspptp.sys  Wed Aug 04 07:14:26 2004 (41107EC2)
    f79b8000 f79c0900   msgpc    msgpc.sys    Wed Aug 04 07:04:11 2004 (41107C5B)
    f79c8000 f79d1f00   termdd   termdd.sys   Wed Aug 04 06:58:52 2004 (41107B1C)
    f79d8000 f79e1480   NDProxy  NDProxy.SYS  Fri Aug 17 21:55:30 2001 (3B7D84C2)
    f7a18000 f7a26100   usbhub   usbhub.sys   Wed Aug 04 07:08:40 2004 (41107D68)
    f7a28000 f7a30360   aswTdi   aswTdi.SYS   Mon Sep 25 16:39:01 2006 (4517F815)
    f7a38000 f7a40700   netbios  netbios.sys  Wed Aug 04 07:03:19 2004 (41107C27)
    f7a48000 f7a50700   wanarp   wanarp.sys   Wed Aug 04 07:04:57 2004 (41107C89)
    f7a58000 f7a60880   Fips     Fips.SYS     Sat Aug 18 02:31:49 2001 (3B7DC585)
    f7a88000 f7a8e200   PCIIDEX  PCIIDEX.SYS  Wed Aug 04 06:59:40 2004 (41107B4C)
    f7a90000 f7a94900   PartMgr  PartMgr.sys  Sat Aug 18 02:32:23 2001 (3B7DC5A7)
    f7ac8000 f7ace000   kbdclass kbdclass.sys Wed Aug 04 06:58:32 2004 (41107B08)
    f7ad0000 f7ad7000   fdc      fdc.sys      unavailable (00000000)
    f7ad8000 f7adc280   usbohci  usbohci.sys  Wed Aug 04 07:08:34 2004 (41107D62)
    f7ae0000 f7ae6800   usbehci  usbehci.sys  Wed Aug 04 07:08:34 2004 (41107D62)
    f7ae8000 f7aefe00   sisnic   sisnic.sys   Wed Jul 10 09:39:32 2002 (3D2BF2C4)
    f7af0000 f7af4880   TDI      TDI.SYS      Wed Aug 04 07:07:47 2004 (41107D33)
    f7af8000 f7afc580   ptilink  ptilink.sys  Fri Aug 17 21:49:53 2001 (3B7D8371)
    f7b00000 f7b04080   raspti   raspti.sys   Fri Aug 17 21:55:32 2001 (3B7D84C4)
    f7b08000 f7b0da00   mouclass mouclass.sys Wed Aug 04 06:58:32 2004 (41107B08)
    f7b10000 f7b15000   flpydisk flpydisk.sys Wed Aug 04 06:59:24 2004 (41107B3C)
    f7b20000 f7b26180   HIDPARSE HIDPARSE.SYS Wed Aug 04 07:08:15 2004 (41107D4F)
    f7b28000 f7b2d200   vga      vga.sys      Wed Aug 04 07:07:06 2004 (41107D0A)
    f7b30000 f7b34a80   Msfs     Msfs.SYS     Wed Aug 04 07:00:37 2004 (41107B85)
    f7b38000 f7b3f880   Npfs     Npfs.SYS     Wed Aug 04 07:00:38 2004 (41107B86)
    f7b58000 f7b5db00   Aavmker4 Aavmker4.SYS Mon Sep 25 16:37:48 2006 (4517F7CC)
    f7b90000 f7b94500   watchdog watchdog.sys Wed Aug 04 07:07:32 2004 (41107D24)
    f7c18000 f7c1b000   BOOTVID  BOOTVID.dll  Fri Aug 17 21:49:09 2001 (3B7D8345)
    f7cac000 f7cafc80   serenum  serenum.sys  Wed Aug 04 06:59:06 2004 (41107B2A)
    f7cb0000 f7cb2980   gameenum gameenum.sys Wed Aug 04 07:08:20 2004 (41107D54)
    f7cb8000 f7cba580   ndistapi ndistapi.sys Fri Aug 17 21:55:29 2001 (3B7D84C1)
    f7cdc000 f7cdfc80   mssmbios mssmbios.sys Wed Aug 04 07:07:47 2004 (41107D33)
    f7d08000 f7d09b80   kdcom    kdcom.dll    Fri Aug 17 21:49:10 2001 (3B7D8346)
    f7d0a000 f7d0b100   WMILIB   WMILIB.SYS   Fri Aug 17 22:07:23 2001 (3B7D878B)
    f7d0c000 f7d0d700   dmload   dmload.sys   Fri Aug 17 21:58:15 2001 (3B7D8567)
    f7d0e000 f7d0fa80   ParVdm   ParVdm.SYS   Fri Aug 17 21:49:49 2001 (3B7D836D)
    f7d26000 f7d27100   swenum   swenum.sys   Wed Aug 04 06:58:41 2004 (41107B11)
    f7d28000 f7d29280   USBD     USBD.SYS     Fri Aug 17 22:02:58 2001 (3B7D8682)
    f7d2a000 f7d2bf00   Fs_Rec   Fs_Rec.SYS   Fri Aug 17 21:49:37 2001 (3B7D8361)
    f7d2c000 f7d2d080   Beep     Beep.SYS     Fri Aug 17 21:47:33 2001 (3B7D82E5)
    f7d2e000 f7d2f080   mnmdd    mnmdd.SYS    Fri Aug 17 21:57:28 2001 (3B7D8538)
    f7d30000 f7d31080   RDPCDD   RDPCDD.sys   Fri Aug 17 21:46:56 2001 (3B7D82C0)
    f7d66000 f7d67100   dump_WMILIB dump_WMILIB.SYS Fri Aug 17 22:07:23 2001 (3B7D878B)
    f7dd0000 f7dd0d00   pciide   pciide.sys   Fri Aug 17 21:51:49 2001 (3B7D83E5)
    f7e50000 f7e50860   BANTExt  BANTExt.sys  Thu May 28 03:43:29 1998 (356CCF51)
    f7e9b000 f7e9bb80   msmpu401 msmpu401.sys Fri Aug 17 21:59:59 2001 (3B7D85CF)
    f7e9e000 f7e9ec00   audstub  audstub.sys  Fri Aug 17 21:59:40 2001 (3B7D85BC)
    f7f3d000 f7f3dd00   dxgthk   dxgthk.sys   Fri Aug 17 21:53:12 2001 (3B7D8438)
    f7f4d000 f7f4db80   Null     Null.SYS     Fri Aug 17 21:47:39 2001 (3B7D82EB)
    
    Unloaded modules:
    f197d000 f19a7000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1a47000 f1a71000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1a47000 f1a71000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1b11000 f1b3b000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1b11000 f1b3b000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1bdb000 f1c05000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1bdb000 f1c05000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1bdb000 f1c05000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1d5e000 f1d67000   HIDCLASS.SYS
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1c95000 f1c98000   hidusb.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1c09000 f1c0c000   mouhid.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f1c91000 f1c94000   mouhid.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f239c000 f23c6000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f23c6000 f23e9000   aec.sys 
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7f28000 f7f29000   drmkaud.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f253e000 f254b000   DMusic.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f254e000 f255c000   swmidi.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7d9e000 f7da0000   splitter.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f75fa000 f75fe000   kbdhid.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7b18000 f7b1d000   Cdaudio.SYS
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f75fe000 f7601000   Sfloppy.SYS
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    Closing open log file d:\debuglog.txt
    The second minidump analysis:
    Code:
    Opened log file 'd:\debuglog.txt'
    
    Microsoft (R) Windows Debugger  Version 6.6.0007.5
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [D:\WINDOWS\Minidump\Mini102706-02.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: D:\WINDOWS;D:\WINDOWS\system32;D:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible
    Product: WinNt
    Built by: 2600.xpsp_sp2_rtm.040803-2158
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055ab20
    Debug session time: Fri Oct 27 23:29:56.835 2006 (GMT+1)
    System Uptime: 0 days 1:07:31.402
    Loading Kernel Symbols
    .....................................................................................................................
    Loading User Symbols
    Loading unloaded module list
    ...............
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck 50, {bd830687, 0, bd830687, 2}
    
    
    Could not read faulting driver name
    Probably caused by : win32k.sys ( win32k!xxxInternalPaintDesktop+66 )
    
    Followup: MachineOwner
    ---------
    
    kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced.  This cannot be protected by try-except,
    it must be protected by a Probe.  Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: bd830687, memory referenced.
    Arg2: 00000000, value 0 = read operation, 1 = write operation.
    Arg3: bd830687, If non-zero, the instruction address which referenced the bad memory
    	address.
    Arg4: 00000002, (reserved)
    
    Debugging Details:
    ------------------
    
    
    Could not read faulting driver name
    
    READ_ADDRESS:  bd830687 
    
    FAULTING_IP: 
    +ffffffffbd830687
    bd830687 ??              ???
    
    MM_INTERNAL_CODE:  2
    
    CUSTOMER_CRASH_COUNT:  2
    
    DEFAULT_BUCKET_ID:  DRIVER_FAULT
    
    BUGCHECK_STR:  0x50
    
    TRAP_FRAME:  f73c1670 -- (.trap fffffffff73c1670)
    .trap fffffffff73c1670
    ErrCode = 00000000
    eax=00000000 ebx=00000001 ecx=84f99fc8 edx=80000000 esi=bc5d1b48 edi=0401010d
    eip=bd830687 esp=f73c16e4 ebp=f73c1730 iopl=0         nv up ei pl nz na po nc
    cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010202
    bd830687 ??              ???
    .trap
    Resetting default scope
    
    LAST_CONTROL_TRANSFER:  from 805246fb to 805339ae
    
    FAILED_INSTRUCTION_ADDRESS: 
    +ffffffffbd830687
    bd830687 ??              ???
    
    STACK_TEXT:  
    f73c160c 805246fb 00000050 bd830687 00000000 nt!KeBugCheckEx+0x1b
    f73c1658 804e1ff1 00000000 bd830687 00000000 nt!MmAccessFault+0x6f5
    f73c1658 bd830687 00000000 bd830687 00000000 nt!KiTrap0E+0xcc
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f73c16e0 f73c1774 f73c1764 00000000 00000000 0xbd830687
    f73c1730 bf8d9b57 01010054 00000000 bf8d9d6d 0xf73c1774
    f73c177c bf87fbd5 bc6106e8 01010054 00000001 win32k!xxxInternalPaintDesktop+0x66
    f73c17f4 bf814008 bc6106e8 00000014 01010054 win32k!xxxDesktopWndProc+0xd0
    f73c1834 bf80f470 bc6106e8 00000014 01010054 win32k!xxxSendMessageTimeout+0x18a
    f73c1858 bf815e48 bc6106e8 00000014 01010054 win32k!xxxSendMessage+0x1b
    f73c187c bf82252a bc6106e8 00000000 00000001 win32k!xxxSendEraseBkgnd+0x5c
    f73c189c bf8225f0 bc6106e8 bc6106e8 f774cdae win32k!xxxSimpleDoSyncPaint+0xc6
    f73c18b8 bf8097a9 bc6106e8 00000020 bc6106e8 win32k!xxxInternalDoSyncPaint+0x12
    f73c1914 bf80d0b0 bc6106e8 00000088 00000020 win32k!xxxRealDefWindowProc+0x753
    f73c1938 bf87fb5c bc6106e8 00000088 00000020 win32k!xxxDefWindowProc+0xef
    f73c19b4 bf83c47c bc6106e8 00000088 00000020 win32k!xxxDesktopWndProc+0x363
    f73c1a18 bf801e58 e1bdfe00 bf9a8980 e1bdfe00 win32k!xxxReceiveMessage+0x295
    f73c1a54 bf8aa7a9 f73c1aa4 000025ff 00000000 win32k!xxxRealInternalGetMessage+0x1d7
    f73c1d30 bf8c8602 bf9a8980 00000001 f73c1d54 win32k!xxxDesktopThread+0x3f6
    f73c1d40 bf800ff4 bf9a8980 f73c1d64 0075fff4 win32k!xxxCreateSystemThreads+0x6a
    f73c1d54 804df06b 00000000 00000022 00000000 win32k!NtUserCallOneParam+0x23
    f73c1d54 7c90eb94 00000000 00000022 00000000 nt!KiFastCallEntry+0xf8
    00000000 00000000 00000000 00000000 00000000 0x7c90eb94
    
    
    STACK_COMMAND:  kb
    
    FOLLOWUP_IP: 
    win32k!xxxInternalPaintDesktop+66
    bf8d9b57 8bf0            mov     esi,eax
    
    SYMBOL_STACK_INDEX:  5
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: win32k
    
    IMAGE_NAME:  win32k.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  41107f7a
    
    SYMBOL_NAME:  win32k!xxxInternalPaintDesktop+66
    
    FAILURE_BUCKET_ID:  0x50_CODE_AV_BAD_IP_win32k!xxxInternalPaintDesktop+66
    
    BUCKET_ID:  0x50_CODE_AV_BAD_IP_win32k!xxxInternalPaintDesktop+66
    
    Followup: MachineOwner
    ---------
    
    eax=ffdff13c ebx=00000000 ecx=00000000 edx=804e2a00 esi=c02f60c0 edi=c0300bd8
    eip=805339ae esp=f73c15f4 ebp=f73c160c iopl=0         nv up ei ng nz na pe nc
    cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00000286
    nt!KeBugCheckEx+0x1b:
    805339ae 5d              pop     ebp
    ChildEBP RetAddr  Args to Child              
    f73c160c 805246fb 00000050 bd830687 00000000 nt!KeBugCheckEx+0x1b (FPO: [Non-Fpo])
    f73c1658 804e1ff1 00000000 bd830687 00000000 nt!MmAccessFault+0x6f5 (FPO: [Non-Fpo])
    f73c1658 bd830687 00000000 bd830687 00000000 nt!KiTrap0E+0xcc (FPO: [0,0] TrapFrame @ f73c1670)
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f73c16e0 f73c1774 f73c1764 00000000 00000000 0xbd830687
    f73c1730 bf8d9b57 01010054 00000000 bf8d9d6d 0xf73c1774
    f73c177c bf87fbd5 bc6106e8 01010054 00000001 win32k!xxxInternalPaintDesktop+0x66 (FPO: [Non-Fpo])
    f73c17f4 bf814008 bc6106e8 00000014 01010054 win32k!xxxDesktopWndProc+0xd0 (FPO: [Non-Fpo])
    f73c1834 bf80f470 bc6106e8 00000014 01010054 win32k!xxxSendMessageTimeout+0x18a (FPO: [Non-Fpo])
    f73c1858 bf815e48 bc6106e8 00000014 01010054 win32k!xxxSendMessage+0x1b (FPO: [Non-Fpo])
    f73c187c bf82252a bc6106e8 00000000 00000001 win32k!xxxSendEraseBkgnd+0x5c (FPO: [Non-Fpo])
    f73c189c bf8225f0 bc6106e8 bc6106e8 f774cdae win32k!xxxSimpleDoSyncPaint+0xc6 (FPO: [Non-Fpo])
    f73c18b8 bf8097a9 bc6106e8 00000020 bc6106e8 win32k!xxxInternalDoSyncPaint+0x12 (FPO: [Non-Fpo])
    f73c1914 bf80d0b0 bc6106e8 00000088 00000020 win32k!xxxRealDefWindowProc+0x753 (FPO: [Non-Fpo])
    f73c1938 bf87fb5c bc6106e8 00000088 00000020 win32k!xxxDefWindowProc+0xef (FPO: [Non-Fpo])
    f73c19b4 bf83c47c bc6106e8 00000088 00000020 win32k!xxxDesktopWndProc+0x363 (FPO: [Non-Fpo])
    f73c1a18 bf801e58 e1bdfe00 bf9a8980 e1bdfe00 win32k!xxxReceiveMessage+0x295 (FPO: [Non-Fpo])
    f73c1a54 bf8aa7a9 f73c1aa4 000025ff 00000000 win32k!xxxRealInternalGetMessage+0x1d7 (FPO: [Non-Fpo])
    f73c1d30 bf8c8602 bf9a8980 00000001 f73c1d54 win32k!xxxDesktopThread+0x3f6 (FPO: [Non-Fpo])
    f73c1d40 bf800ff4 bf9a8980 f73c1d64 0075fff4 win32k!xxxCreateSystemThreads+0x6a (FPO: [Non-Fpo])
    f73c1d54 804df06b 00000000 00000022 00000000 win32k!NtUserCallOneParam+0x23 (FPO: [Non-Fpo])
    start    end        module name
    804d7000 806eb780   nt       ntoskrnl.exe Wed Aug 04 07:19:48 2004 (41108004)
    806ec000 806ffd80   hal      halacpi.dll  Wed Aug 04 06:59:04 2004 (41107B28)
    bf800000 bf9c0380   win32k   win32k.sys   Wed Aug 04 07:17:30 2004 (41107F7A)
    bf9c1000 bf9d2580   dxg      dxg.sys      Wed Aug 04 07:00:51 2004 (41107B93)
    bf9d3000 bfa8a680   SiSGRV   SiSGRV.dll   Wed Dec 04 06:45:57 2002 (3DEDA4A5)
    f396e000 f39ae380   HTTP     HTTP.sys     Wed Aug 04 07:00:09 2004 (41107B69)
    f3af3000 f3af6ae0   aswRdr   aswRdr.SYS   Mon Sep 25 16:39:25 2006 (4517F82D)
    f3d6f000 f3dc1180   srv      srv.sys      Wed Aug 04 07:14:44 2004 (41107ED4)
    f40e2000 f40f7580   aswMon2  aswMon2.SYS  Fri Sep 08 18:28:09 2006 (4501A829)
    f43cd000 f43e1400   wdmaud   wdmaud.sys   Wed Aug 04 07:15:03 2004 (41107EE7)
    f440a000 f4436400   mrxdav   mrxdav.sys   Wed Aug 04 07:00:49 2004 (41107B91)
    f463f000 f4642280   ndisuio  ndisuio.sys  Wed Aug 04 07:03:10 2004 (41107C1E)
    f47c7000 f47de480   dump_atapi dump_atapi.sys Wed Aug 04 06:59:41 2004 (41107B4D)
    f487f000 f4893000   khips    khips.sys    Thu Dec 15 23:01:51 2005 (43A1F5DF)
    f48a7000 f48a9900   Dxapi    Dxapi.sys    Fri Aug 17 21:53:19 2001 (3B7D843F)
    f48bb000 f4929380   mrxsmb   mrxsmb.sys   Wed Aug 04 07:15:14 2004 (41107EF2)
    f492a000 f4955180   rdbss    rdbss.sys    Wed Aug 04 07:20:05 2004 (41108015)
    f4956000 f4977d00   afd      afd.sys      Wed Aug 04 07:14:13 2004 (41107EB5)
    f4978000 f499fc00   netbt    netbt.sys    Wed Aug 04 07:14:36 2004 (41107ECC)
    f49a0000 f49c0f00   ipnat    ipnat.sys    Wed Aug 04 07:04:48 2004 (41107C80)
    f49c1000 f4a18a80   tcpip    tcpip.sys    Wed Aug 04 07:14:39 2004 (41107ECF)
    f4a19000 f4a2b400   ipsec    ipsec.sys    Wed Aug 04 07:14:27 2004 (41107EC3)
    f4a2c000 f4b0a000   fwdrv    fwdrv.sys    Thu Dec 15 23:13:33 2005 (43A1F89D)
    f7392000 f73a0d80   sysaudio sysaudio.sys Wed Aug 04 07:15:54 2004 (41107F1A)
    f73f2000 f7425200   update   update.sys   Wed Aug 04 06:58:32 2004 (41107B08)
    f744e000 f747e100   rdpdr    rdpdr.sys    Wed Aug 04 07:01:10 2004 (41107BA6)
    f747f000 f748fe00   psched   psched.sys   Wed Aug 04 07:04:16 2004 (41107C60)
    f7490000 f74a6680   ndiswan  ndiswan.sys  Wed Aug 04 07:14:30 2004 (41107EC6)
    f74a7000 f74c9e80   USBPORT  USBPORT.SYS  Wed Aug 04 07:08:34 2004 (41107D62)
    f74ca000 f75383c0   cmuda    cmuda.sys    Fri Nov 01 09:11:18 2002 (3DC24536)
    f7539000 f755b680   ks       ks.sys       Wed Aug 04 07:15:20 2004 (41107EF8)
    f755c000 f757f980   portcls  portcls.sys  Wed Aug 04 07:15:47 2004 (41107F13)
    f7580000 f7593900   parport  parport.sys  Wed Aug 04 06:59:04 2004 (41107B28)
    f7594000 f75a7780   VIDEOPRT VIDEOPRT.SYS Wed Aug 04 07:07:04 2004 (41107D08)
    f75a8000 f75e5200   sisgrp   sisgrp.sys   Mon Dec 02 07:30:22 2002 (3DEB0C0E)
    f762e000 f7648580   Mup      Mup.sys      Wed Aug 04 07:15:20 2004 (41107EF8)
    f7649000 f7675a80   NDIS     NDIS.sys     Wed Aug 04 07:14:27 2004 (41107EC3)
    f7676000 f7702480   Ntfs     Ntfs.sys     Wed Aug 04 07:15:06 2004 (41107EEA)
    f7703000 f7719780   KSecDD   KSecDD.sys   Wed Aug 04 06:59:45 2004 (41107B51)
    f771a000 f772bf00   sr       sr.sys       Wed Aug 04 07:06:22 2004 (41107CDE)
    f772c000 f774a780   fltMgr   fltMgr.sys   Wed Aug 04 07:01:17 2004 (41107BAD)
    f774b000 f7762480   atapi    atapi.sys    Wed Aug 04 06:59:41 2004 (41107B4D)
    f7763000 f7788700   dmio     dmio.sys     Wed Aug 04 07:07:13 2004 (41107D11)
    f7789000 f77a7880   ftdisk   ftdisk.sys   Fri Aug 17 21:52:41 2001 (3B7D8419)
    f77a8000 f77b8a80   pci      pci.sys      Wed Aug 04 07:07:45 2004 (41107D31)
    f77b9000 f77e6d80   ACPI     ACPI.sys     Wed Aug 04 07:07:35 2004 (41107D27)
    f7808000 f7810c00   isapnp   isapnp.sys   Fri Aug 17 21:58:01 2001 (3B7D8559)
    f7818000 f7822500   MountMgr MountMgr.sys Wed Aug 04 06:58:29 2004 (41107B05)
    f7828000 f7834c80   VolSnap  VolSnap.sys  Wed Aug 04 07:00:14 2004 (41107B6E)
    f7838000 f7840e00   disk     disk.sys     Wed Aug 04 06:59:53 2004 (41107B59)
    f7848000 f7854200   CLASSPNP CLASSPNP.SYS Wed Aug 04 07:14:26 2004 (41107EC2)
    f7858000 f7862080   sisagp   sisagp.sys   Wed Aug 04 07:07:42 2004 (41107D2E)
    f7888000 f7891200   amdk7    amdk7.sys    Wed Aug 04 06:59:19 2004 (41107B37)
    f7898000 f78a4e00   i8042prt i8042prt.sys Wed Aug 04 07:14:36 2004 (41107ECC)
    f78a8000 f78b7d80   serial   serial.sys   Wed Aug 04 07:15:51 2004 (41107F17)
    f78b8000 f78c6b80   drmk     drmk.sys     Wed Aug 04 07:07:54 2004 (41107D3A)
    f78c8000 f78d2380   imapi    imapi.sys    Wed Aug 04 07:00:12 2004 (41107B6C)
    f78d8000 f78e4180   cdrom    cdrom.sys    Wed Aug 04 06:59:52 2004 (41107B58)
    f78e8000 f78f6080   redbook  redbook.sys  Wed Aug 04 06:59:34 2004 (41107B46)
    f78f8000 f7904880   rasl2tp  rasl2tp.sys  Wed Aug 04 07:14:21 2004 (41107EBD)
    f7908000 f7912200   raspppoe raspppoe.sys Wed Aug 04 07:05:06 2004 (41107C92)
    f7918000 f7923d00   raspptp  raspptp.sys  Wed Aug 04 07:14:26 2004 (41107EC2)
    f7928000 f7930900   msgpc    msgpc.sys    Wed Aug 04 07:04:11 2004 (41107C5B)
    f7938000 f7941f00   termdd   termdd.sys   Wed Aug 04 06:58:52 2004 (41107B1C)
    f7948000 f7951480   NDProxy  NDProxy.SYS  Fri Aug 17 21:55:30 2001 (3B7D84C2)
    f7988000 f7996100   usbhub   usbhub.sys   Wed Aug 04 07:08:40 2004 (41107D68)
    f7998000 f79a0360   aswTdi   aswTdi.SYS   Mon Sep 25 16:39:01 2006 (4517F815)
    f79a8000 f79b0700   wanarp   wanarp.sys   Wed Aug 04 07:04:57 2004 (41107C89)
    f79b8000 f79c0d80   HIDCLASS HIDCLASS.SYS Wed Aug 04 07:08:18 2004 (41107D52)
    f79c8000 f79d0700   netbios  netbios.sys  Wed Aug 04 07:03:19 2004 (41107C27)
    f79d8000 f79e0880   Fips     Fips.SYS     Sat Aug 18 02:31:49 2001 (3B7DC585)
    f7a38000 f7a47900   Cdfs     Cdfs.SYS     Wed Aug 04 07:14:09 2004 (41107EB1)
    f7a88000 f7a8e200   PCIIDEX  PCIIDEX.SYS  Wed Aug 04 06:59:40 2004 (41107B4C)
    f7a90000 f7a94900   PartMgr  PartMgr.sys  Sat Aug 18 02:32:23 2001 (3B7DC5A7)
    f7ab0000 f7ab6000   kbdclass kbdclass.sys Wed Aug 04 06:58:32 2004 (41107B08)
    f7ac0000 f7ac7000   fdc      fdc.sys      unavailable (00000000)
    f7af8000 f7afc280   usbohci  usbohci.sys  Wed Aug 04 07:08:34 2004 (41107D62)
    f7b00000 f7b06800   usbehci  usbehci.sys  Wed Aug 04 07:08:34 2004 (41107D62)
    f7b08000 f7b0fe00   sisnic   sisnic.sys   Wed Jul 10 09:39:32 2002 (3D2BF2C4)
    f7b20000 f7b24500   watchdog watchdog.sys Wed Aug 04 07:07:32 2004 (41107D24)
    f7b28000 f7b2c880   TDI      TDI.SYS      Wed Aug 04 07:07:47 2004 (41107D33)
    f7b38000 f7b3c580   ptilink  ptilink.sys  Fri Aug 17 21:49:53 2001 (3B7D8371)
    f7b48000 f7b4c080   raspti   raspti.sys   Fri Aug 17 21:55:32 2001 (3B7D84C4)
    f7b50000 f7b55a00   mouclass mouclass.sys Wed Aug 04 06:58:32 2004 (41107B08)
    f7b60000 f7b65000   flpydisk flpydisk.sys Wed Aug 04 06:59:24 2004 (41107B3C)
    f7b88000 f7b8e180   HIDPARSE HIDPARSE.SYS Wed Aug 04 07:08:15 2004 (41107D4F)
    f7b90000 f7b95200   vga      vga.sys      Wed Aug 04 07:07:06 2004 (41107D0A)
    f7ba0000 f7ba4a80   Msfs     Msfs.SYS     Wed Aug 04 07:00:37 2004 (41107B85)
    f7bb0000 f7bb7880   Npfs     Npfs.SYS     Wed Aug 04 07:00:38 2004 (41107B86)
    f7c00000 f7c05b00   Aavmker4 Aavmker4.SYS Mon Sep 25 16:37:48 2006 (4517F7CC)
    f7c18000 f7c1b000   BOOTVID  BOOTVID.dll  Fri Aug 17 21:49:09 2001 (3B7D8345)
    f7c94000 f7c96280   rasacd   rasacd.sys   Fri Aug 17 21:55:39 2001 (3B7D84CB)
    f7ca8000 f7cabc80   serenum  serenum.sys  Wed Aug 04 06:59:06 2004 (41107B2A)
    f7cb4000 f7cb6980   gameenum gameenum.sys Wed Aug 04 07:08:20 2004 (41107D54)
    f7cbc000 f7cbe580   hidusb   hidusb.sys   Fri Aug 17 22:02:16 2001 (3B7D8658)
    f7cc8000 f7ccaf80   mouhid   mouhid.sys   Fri Aug 17 21:47:57 2001 (3B7D82FD)
    f7ccc000 f7cce580   ndistapi ndistapi.sys Fri Aug 17 21:55:29 2001 (3B7D84C1)
    f7cf0000 f7cf3c80   mssmbios mssmbios.sys Wed Aug 04 07:07:47 2004 (41107D33)
    f7d08000 f7d09b80   kdcom    kdcom.dll    Fri Aug 17 21:49:10 2001 (3B7D8346)
    f7d0a000 f7d0b100   WMILIB   WMILIB.SYS   Fri Aug 17 22:07:23 2001 (3B7D878B)
    f7d0c000 f7d0d700   dmload   dmload.sys   Fri Aug 17 21:58:15 2001 (3B7D8567)
    f7d0e000 f7d10000   speedfan speedfan.sys unavailable (00000000)
    f7d14000 f7d15100   swenum   swenum.sys   Wed Aug 04 06:58:41 2004 (41107B11)
    f7d1a000 f7d1b280   USBD     USBD.SYS     Fri Aug 17 22:02:58 2001 (3B7D8682)
    f7d1e000 f7d1ff00   Fs_Rec   Fs_Rec.SYS   Fri Aug 17 21:49:37 2001 (3B7D8361)
    f7d22000 f7d23080   Beep     Beep.SYS     Fri Aug 17 21:47:33 2001 (3B7D82E5)
    f7d26000 f7d27080   mnmdd    mnmdd.SYS    Fri Aug 17 21:57:28 2001 (3B7D8538)
    f7d2a000 f7d2b080   RDPCDD   RDPCDD.sys   Fri Aug 17 21:46:56 2001 (3B7D82C0)
    f7d34000 f7d35a80   ParVdm   ParVdm.SYS   Fri Aug 17 21:49:49 2001 (3B7D836D)
    f7d42000 f7d43100   dump_WMILIB dump_WMILIB.SYS Fri Aug 17 22:07:23 2001 (3B7D878B)
    f7dd0000 f7dd0d00   pciide   pciide.sys   Fri Aug 17 21:51:49 2001 (3B7D83E5)
    f7dd1000 f7dd1680   giveio   giveio.sys   Thu Apr 04 03:33:25 1996 (316334F5)
    f7e8a000 f7e8ab80   msmpu401 msmpu401.sys Fri Aug 17 21:59:59 2001 (3B7D85CF)
    f7e95000 f7e95c00   audstub  audstub.sys  Fri Aug 17 21:59:40 2001 (3B7D85BC)
    f7ec0000 f7ec0b80   Null     Null.SYS     Fri Aug 17 21:47:39 2001 (3B7D82EB)
    f7ee6000 f7ee6b80   mbmiodrvr mbmiodrvr.sys Sat Apr 10 15:42:35 2004 (407807DB)
    f7ef7000 f7ef7860   BANTExt  BANTExt.sys  Thu May 28 03:43:29 1998 (356CCF51)
    f7f1c000 f7f1cd00   dxgthk   dxgthk.sys   Fri Aug 17 21:53:12 2001 (3B7D8438)
    
    Unloaded modules:
    f373a000 f3764000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7be0000 f7be7000   usbprint.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7bc8000 f7bd0000   usbccgp.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f744a000 f744e000   usbscan.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7d30000 f7d32000   splitter.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f3804000 f382e000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f4380000 f43aa000   kmixer.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7e24000 f7e25000   drmkaud.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f43aa000 f43cd000   aec.sys 
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f4717000 f4724000   DMusic.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f4727000 f4735000   swmidi.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7d30000 f7d32000   splitter.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f75ea000 f75ee000   kbdhid.sys
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f7b78000 f7b7d000   Cdaudio.SYS
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    f75ee000 f75f1000   Sfloppy.SYS
        Timestamp: unavailable (00000000)
        Checksum:  00000000
    Closing open log file d:\debuglog.txt

  6. #6
    jephree is offline ¨*·.¸ «.·°·..·°·.» ¸.·*¨
    My first suspect on those dumps would be the Kerio Firewall.

    My first test would be to turn it off and see if things change.

    If you are running the SP2 Firewall as well that could conflict. As a test I would turn off Kerio and enable the SP2 wall just to see if it affects the system.

    These dumps can show deep links but the Kerio was on the surface.

    Again trying to read these logs is a hobby for me but I have had a bit of experience and again I'll gladly share my research links if you want them.

  7. #7
    jephree is offline ¨*·.¸ «.·°·..·°·.» ¸.·*¨
    Just to note on further review your surface error was most likely a conflict resulting from the combination of:

    Kerio + Proxomitron + XP

  8. #8
    Kazna3 is offline Senior Member
    For 100% CPU usage you mean? Yes I realized for a while now that Kerio is causing some heavy work... but it works fantastic where I need it. I don't have th Windows Firewall enabled as Kerio switches that off wwhen started automatically.

    Those minidumps were with two drives, A and B.

    A is fixed apart from its high CPU usage, slow shutdwon and slow Windows processes.
    B still gives the same error as in the minidumps. Now it repeatedly reboots, which I know is the result of this error. It has a brand new cleans intall of XP on it btw.

    I don't have Proxomitron installed on here although its in the program files as it was previously installed.

    I don't know how to interpret the above.... but yes some information would be very helpful, thankyou.

    On switching the firewall off and PS2 firewall on - the Automatic windows doesn't even load up. Or it may be taking too long (over 7minutes now) and not loading up just yet.

    Although the system has got much faster without kerio no doubt. I dunno what to do....

    Thanks for all the help, as usual!

  9. #9
    jephree is offline ¨*·.¸ «.·°·..·°·.» ¸.·*¨
    I will pull together my links for your own review ASAP. There are other things I am dealing with at the moment.

    I wonder if you recognize anything in this process?

    The second dump begins (in other words ends) with:
    f73c177c bf87fbd5 bc6106e8 01010054 00000001 win32k!xxxInternalPaintDesktop+0x66 (FPO: [Non-Fpo])
    f73c17f4 bf814008 bc6106e8 00000014 01010054 win32k!xxxDesktopWndProc+0xd0 (FPO: [Non-Fpo])
    f73c1834 bf80f470 bc6106e8 00000014 01010054 win32k!xxxSendMessageTimeout+0x18a (FPO: [Non-Fpo])
    f73c1858 bf815e48 bc6106e8 00000014 01010054 win32k!xxxSendMessage+0x1b (FPO: [Non-Fpo])
    f73c187c bf82252a bc6106e8 00000000 00000001 win32k!xxxSendEraseBkgnd+0x5c (FPO: [Non-Fpo])
    f73c189c bf8225f0 bc6106e8 bc6106e8 f774cdae win32k!xxxSimpleDoSyncPaint+0xc6 (FPO: [Non-Fpo])
    f73c18b8 bf8097a9 bc6106e8 00000020 bc6106e8 win32k!xxxInternalDoSyncPaint+0x12 (FPO: [Non-Fpo])
    These dumps are presented in reverse. The fist line on the stack was the last process performed.

  10. #10
    Kazna3 is offline Senior Member
    Ok thanks.

    I don't actually reognize any of them until I know what they stand for. Theres no such processes that I know of, but I'll check around and see.

    Looking at it
    f73c177c bf87fbd5 bc6106e8 01010054 00000001 win32k!xxxInternalPaintDesktop+0x66 (FPO: [Non-Fpo])
    That I can only relate to a paint screenshot that was on the desktop. There is no such thing or process ran on my computer that I've seen before.

    f73c17f4 bf814008 bc6106e8 00000014 01010054 win32k!xxxDesktopWndProc+0xd0 (FPO: [Non-Fpo])
    Thats a windows process. Dunno but it could have been anything such as control panel mainly (where I'm visiting a lot)

    f73c1834 bf80f470 bc6106e8 00000014 01010054 win32k!xxxSendMessageTimeout+0x18a (FPO: [Non-Fpo])
    This maybe Thunderbird, the firewall or updates. Or I don't know...

    f73c187c bf82252a bc6106e8 00000000 00000001 win32k!xxxSendEraseBkgnd+0x5c (FPO: [Non-Fpo])
    Thats the deletion of my desktop background as it seems

+ Reply to Thread
Page 1 of 3 1 2 3 LastLast