BSOD fun

  1. #1
    tfrazer is offline Newbie

    BSOD fun

    Hi all,

    I've got 10 XP Pro computers all identical in hardware, configured using the same image. All 10 systems have random BSODs for the past 6+ months, sometimes up to 8 times a day, sometimes not at all. We've done all the usual troubleshooting - checking event logs, booting into safe mode (no BSODs then) and have even replaced memory. The only indicator of the issue are a ton of minidumps and after looking for a long time, discovered DebugWiz on this site. I've run about four of the minidumps through it and have gotten myself even more confused. The client is 6 hours away by car, and I really don't want to drive there, and spend a weekend reimaging 10 systems... I've checked out the link at the bottom of Jephree's post about diagnosing BSODs, but it's way over my head... Does anyone want to take a crack at this? I'd be happy to post excerpts from the minidump if you're up to the challenge!

    More research since original post: found a wierd driver on the system that I can't find a reference to anywhere: zmegordc.sys. It's loaded according to DebugWiz and driver verifier, but I can't find the file using explorer. There is a registry entry for it under HKLM/Software/Microsoft/WindowsNT/CurrentVersion/SvcHost. It's on multiple systems, but I am suspicious that it might be a rootkit or something like that. Don't know of any legitimate reason for a driver to be loaded without a corresponding file.

    Thanks, Tina
    Last edited by tfrazer; 30-09-2008 at 04:06 AM. Reason: More info


+ Reply to Thread