Dump readings


T

The Doctor

Need some help.


Recently my Win2k box has been shutting down
automatically.

Here are the latest dump readings:

1)

****************************************************************
**
** Windows 2000 Crash Dump Analysis
**
****************************************************************
*
Filename . . . . . . .h:\winnt1\minidump\mini100812-01.dmp
Signature. . . . . . .PAGE
ValidDump. . . . . . .DUMP
MajorVersion . . . . .free system
MinorVersion . . . . .2195
DirectoryTableBase . .0x1175b000
PfnDataBase. . . . . .0x820ce000
PsLoadedModuleList . .0x80485bc0
PsActiveProcessHead. .0x80487648
MachineImageType . . .i386
NumberProcessors . . .2
BugCheckCode . . . . .0x000000d1
BugCheckParameter1 . .0x00008d25
BugCheckParameter2 . .0x00000002
BugCheckParameter3 . .0x00000001
BugCheckParameter4 . .0xc0300778

ExceptionCode. . . . .0x80000003
ExceptionFlags . . . .0x00000001
ExceptionAddress . . .0x8046b1e8


**** could not load kernel debugger extenion dll [ kdextx86.dll ]

****************************************************************
** Symbol File Load Log
****************************************************************

Module CheckSum
**** Error Loading Image
Module: ntoskrnl.exe
Image File: None
Debug File: None
CheckSum: 1A2D9A
Error: Incorrect Image File

hal.dll 00016426
BOOTVID.dll 0000D8A2
ACPI.sys 00029306
WMILIB.SYS 00008BFD
pci.sys 000143A0
isapnp.sys 00016FFA
ohci1394.sys 00016274
1394BUS.SYS 0001000D
pciide.sys 00006354
PCIIDEX.SYS 0000DE43
MountMgr.sys 0000B570
ftdisk.sys 00025F44
Diskperf.sys 000030D5
dmload.sys 000070AB
dmio.sys 00027E97
PartMgr.sys 000057C1
atapi.sys 0001DF44
disk.sys 0000C312
CLASSPNP.SYS 0000E6F3
fltmgr.sys 00022133
Lbd.sys 00017DEA
KSecDD.sys 00016BE3
Ntfs.sys 00082D0B
NDIS.sys 00036F8F
Gernuwa.sys 00004945
sf.sys 00014422
Mup.sys 00022931
SMBios.sys 00017A6D
VIDEOPRT.SYS 0000CC26
ati2mtag.sys 0016F1B4
USBD.SYS 0000D0D3
uhcd.sys 00012D50
USBPORT.SYS 000264C6
usbehci.sys 00005843
RTL8139.SYS 00007F56
cwcos.sys 00004074
ks.sys 00022F68
cwcspud.sys 000284B9
e100bnt5.sys 0002EB0E
i8042prt.sys 00015FE7
kbdclass.sys 00012871
mouclass.sys 00008454
fdc.sys 00011CA4
serial.sys 00014256
serenum.sys 00007EC0
parport.sys 00012781
pfc.sys 00002C6D
cdrom.sys 00014678
intelsmb.sys 000124E7
audstub.sys 00008EF7
rasl2tp.sys 00018F32
ndistapi.sys 00009EB1
ndiswan.sys 00017941
TDI.SYS 0000E55E
raspptp.sys 0000D074
ptilink.sys 000098F4
raspti.sys 0000FED0
parallel.sys 00016AFD
swenum.sys 0000B910
update.sys 0002DBA5
usbhub.sys 000174FA
usbhub20.sys 0001AD87
portcls.sys 00024A95
cwcwdm.sys 00017B40
cwcspud3.sys 00007A63
gameenum.sys 000069B7
flpydisk.sys 00011A88
Modem.SYS 00012EF3
NDProxy.SYS 000121C3
EFS.SYS 00012FD0
hppcgenio.sys 00007E0B
hppcbulkio.sys 0000AB9F
usbprint.sys 0000EB2C
eamon.sys 000362A4
Fs_Rec.SYS 000034B4
**** Error: overlapping image conflict. Invalid dump file.
Pinball.SYS 00027B6F
Null.SYS 000023CE
Beep.SYS 0000C54F
**** Error: overlapping image conflict. Invalid dump file.
vga.sys 0001047D
awechomd.sys 00007663
awlegacy.sys 00011512
mnmdd.SYS 0000F6C2
Msfs.SYS 0000E5FA
Npfs.SYS 00017E60
rasacd.sys 0000F369
EPFWNDHK.sys 0000F094
tcpip.sys 00051D12
msgpc.sys 000129D7
wanarp.sys 00016EE6
**** Error: overlapping image conflict. Invalid dump file.
netbt.sys 00032CF0
netbios.sys 0000B5C1
**** Error Loading Image
Module: SASKUTIL.sys
Image File: None
Debug File: None
CheckSum: 19609
Error: Could not find image

**** Error Loading Image
Module: SASDIFSV.SYS
Image File: None
Debug File: None
CheckSum: B401
Error: Could not find image

rdbss.sys 0002E9FE
mrxsmb.sys 0006AA53
Fastfat.SYS 00023FCE
dump_WMILIB.SYS 00008BFD
dump_atapi.sys 0001DF44
win32k.sys 0019A159
ati2dvag.dll 0004DB76
**** Error: overlapping image conflict. Invalid dump file.
atikvmag.dll 0002742C
ati3duag.dll 0027D0DF
ativvaxx.dll 000D5571
epfw.sys 000323CE
SYMTDI.SYS 0002189A
afd.sys 00020486
ParVdm.SYS 0000770B
Aspi32.SYS 00013DCE
wdmaud.sys 0001EE84
sysaudio.sys 0001AEB4
Fips.SYS 0001050B
srv.sys 00045B01
osaio.sys 0001102C
SIODRV.SYS 0000B1F3
Cdfs.SYS 00017081
ipnat.sys 0001A91A
ipsec.sys 0001DED4
asyncmac.sys 0001231F

****************************************************************
** drivers
****************************************************************

Base Size CheckSum Image Name
80400000 001a2c40 001a2d9a ntoskrnl.exe
80062000 00014f80 00016426 hal.dll
eb810000 00002a20 0000d8a2 BOOTVID.dll
bffd8000 00027c20 00029306 ACPI.sys
eb9c8000 00000f80 00008bfd WMILIB.SYS
eb400000 0000e6a0 000143a0 pci.sys
eb410000 0000b680 00016ffa isapnp.sys
eb420000 00009220 00016274 ohci1394.sys
eb430000 00009e20 0001000d 1394BUS.SYS
eb9c9000 00000b00 00006354 pciide.sys
eb680000 00005520 0000de43 PCIIDEX.SYS
eb688000 000074c0 0000b570 MountMgr.sys
bffbb000 0001c5a0 00025f44 ftdisk.sys
eb900000 00001d20 000030d5 Diskperf.sys
eb902000 00000000 000070ab dmload.sys
bff99000 000219c0 00027e97 dmio.sys
eb814000 00002d00 000057c1 PartMgr.sys
bff83000 00015180 0001df44 atapi.sys
eb690000 00007720 0000c312 disk.sys
eb440000 00008700 0000e6f3 CLASSPNP.SYS
bff61000 000215c0 00022133 fltmgr.sys
eb450000 0000e100 00017dea Lbd.sys
bff4f000 000117c0 00016be3 KSecDD.sys
bfed1000 0007d480 00082d0b Ntfs.sys
bfea7000 00029aa0 00036f8f NDIS.sys
eb818000 00003320 00004945 Gernuwa.sys
eb460000 0000ac80 00014422 sf.sys
bfe91000 00015be0 00022931 Mup.sys
eb490000 00008e40 00017a6d SMBios.sys
eb4b0000 0000c4c0 0000cc26 VIDEOPRT.SYS
bfcd9000 00176000 0016f1b4 ati2mtag.sys
eb6c8000 00004fc0 0000d0d3 USBD.SYS
eb6b0000 00007f40 00012d50 uhcd.sys
bfc8f000 00021b20 000264c6 USBPORT.SYS
eb6d8000 00004c00 00005843 usbehci.sys
eb6e8000 00004800 00007f56 RTL8139.SYS
eb9e8000 00000c00 00004074 cwcos.sys
bfc55000 0001fd00 00022f68 ks.sys
bfc75000 000191c0 000284b9 cwcspud.sys
bfc30000 00024400 0002eb0e e100bnt5.sys
eb4c0000 0000b680 00015fe7 i8042prt.sys
eb708000 00005ec0 00012871 kbdclass.sys
eb718000 00005400 00008454 mouclass.sys
eb728000 00000000 00011ca4 fdc.sys
eb4d0000 0000f400 00014256 serial.sys
eb894000 00003640 00007ec0 serenum.sys
eb740000 00006100 00012781 parport.sys
eb89c000 00002880 00002c6d pfc.sys
eb750000 00006c40 00014678 cdrom.sys
eb760000 00005280 000124e7 intelsmb.sys
eb9f6000 00000a40 00008ef7 audstub.sys
eb4e0000 0000ca80 00018f32 rasl2tp.sys
eb8a4000 000022e0 00009eb1 ndistapi.sys
bfc19000 00016ba0 00017941 ndiswan.sys
eb8b4000 00003e60 0000e55e TDI.SYS
eb4f0000 0000bc40 0000d074 raspptp.sys
eb780000 00004400 000098f4 ptilink.sys
eb790000 000040e0 0000fed0 raspti.sys
eb500000 0000ea20 00016afd parallel.sys
eba00000 00001000 0000b910 swenum.sys
bfbee000 0002a3a0 0002dba5 update.sys
eb530000 00009be0 000174fa usbhub.sys
eb540000 0000c160 0001ad87 usbhub20.sys
b79f8000 00024280 00024a95 portcls.sys
b7a1d000 00010660 00017b40 cwcwdm.sys
eb7b8000 00004960 00007a63 cwcspud3.sys
eb8cc000 00002540 000069b7 gameenum.sys
eb7c8000 00000000 00011a88 flpydisk.sys
eb7d8000 000070e0 00012ef3 Modem.SYS
eb570000 00009ce0 000121c3 NDProxy.SYS
eb7e8000 00006a20 00012fd0 EFS.SYS
eb5a0000 0000b000 00007e0b hppcgenio.sys
eb7f8000 00008000 0000ab9f hppcbulkio.sys
eb6a0000 00005460 0000eb2c usbprint.sys
b7903000 000cd000 000362a4 eamon.sys
eb926000 00000000 000034b4 Fs_Rec.SYS
eb8fc000 00004000 0000a8d9 rs.dll
b78e6000 0001ca40 00027b6f Pinball.SYS
eba1a000 00000000 000023ce Null.SYS
eba1c000 00000ee0 0000c54f Beep.SYS
b78c6000 00020000 00020d84 ehdrv.sys
bfcd1000 00003580 0001047d vga.sys
eb928000 00001de0 00007663 awechomd.sys
bfcc5000 00002820 00011512 awlegacy.sys
eba22000 00000f80 0000f6c2 mnmdd.SYS
eb720000 00005240 0000e5fa Msfs.SYS
eb5e0000 00008fa0 00017e60 Npfs.SYS
eb930000 00001e40 0000f369 rasacd.sys
eb5f0000 0000c000 0000f094 EPFWNDHK.sys
b7857000 0004e300 00051d12 tcpip.sys
eb600000 00008680 000129d7 msgpc.sys
eb758000 00007d00 00016ee6 wanarp.sys
b7844000 00013000 0001958b epfwtdi.sys
b77f1000 0002ad00 00032cf0 netbt.sys
eb610000 000081a0 0000b5c1 netbios.sys
b77cf000 00022000 00019609 SASKUTIL.sys
eb770000 00006000 0000b401 SASDIFSV.SYS
b77a5000 00029a20 0002e9fe rdbss.sys
b772d000 00065920 0006aa53 mrxsmb.sys
b770a000 00022ac0 00023fce Fastfat.SYS
eba54000 00000f80 00008bfd dump_WMILIB.SYS
b76f4000 00015180 0001df44 dump_atapi.sys
a0000000 00192e00 0019a159 win32k.sys
b768a000 00000000 0004db76 ati2dvag.dll
b764b000 00000000 0004e7bb ati2cqag.dll
b7615000 00000000 0002742c atikvmag.dll
b5399000 00000000 0027d0df ati3duag.dll
b52c6000 00000000 000d5571 ativvaxx.dll
b5186000 00028000 000323ce epfw.sys
b5167000 0001eb20 0002189a SYMTDI.SYS
b5149000 0001d060 00020486 afd.sys
eb97e000 00000000 0000770b ParVdm.SYS
b51d2000 00003ee0 00013dce Aspi32.SYS
b501f000 00011f80 0001ee84 wdmaud.sys
b7b7e000 0000b2c0 0001aeb4 sysaudio.sys
b5111000 00008240 0001050b Fips.SYS
b4e54000 0003d9a0 00045b01 srv.sys
b4f4a000 00002480 0001102c osaio.sys
eb93a000 00001d00 0000b1f3 SIODRV.SYS
b7b6e000 0000f600 00017081 Cdfs.SYS
b49bd000 00010600 0001a91a ipnat.sys
b4599000 00013ac0 0001ded4 ipsec.sys
eb800000 000044a0 0001231f asyncmac.sys

****************************************************************
** Process
****************************************************************


****************************************************************
** Thread
****************************************************************

THREAD Cid 280.29c Teb: 7ffdb000 Win32Thread: 00000000 RUNNING
Owning Process 81768d60
WaitTime (seconds) 3934702
Context Switch Count 880319
Start Address 0x7c57b740
Win32 Start Address 0x7c3494f6
Stack Init b5069000 Current b5068cc0 Base b5069000 Limit b5066000 Call 0
Priority 4 BasePriority 4 PriorityDecrement 0 DecrementCount 0


****************************************************************
** Register Dump For Processor #0
****************************************************************

eax=8209d13c ebx=0000000a ecx=00000001 edx=40000000 esi=c0300778 edi=00008d25
eip=8046b1e8 esp=b5068c6c ebp=b5068c80 iopl=0 nv up di pl nz na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00000286
cr0=8001003b cr2=00008d25 cr3=1175b000 dr0=00000000 dr1=00000000 dr2=00000000
dr3=00000000 dr6=ffff0ff0 dr7=00000400 cr4=000006d1
gdtr=820a1008 gdtl=03ff idtr=820a17e8 idtl=07ff tr=0028 ldtr=0000


****************************************************************
** Stack Trace
****************************************************************

ChildEBP RetAddr Args to Child
b5068c68 00000000 00008d25 00000002 00000001 0x8046b1e8




And number 2)

****************************************************************
**
** Windows 2000 Crash Dump Analysis
**
****************************************************************
*
Filename . . . . . . .h:\winnt1\minidump\mini100812-02.dmp
Signature. . . . . . .PAGE
ValidDump. . . . . . .DUMP
MajorVersion . . . . .free system
MinorVersion . . . . .2195
DirectoryTableBase . .0x112cd000
PfnDataBase. . . . . .0x820ce000
PsLoadedModuleList . .0x80485bc0
PsActiveProcessHead. .0x80487648
MachineImageType . . .i386
NumberProcessors . . .2
BugCheckCode . . . . .0x000000d1
BugCheckParameter1 . .0x00000400
BugCheckParameter2 . .0x00000002
BugCheckParameter3 . .0x00000001
BugCheckParameter4 . .0x7c57b5f2

ExceptionCode. . . . .0x80000003
ExceptionFlags . . . .0x00000001
ExceptionAddress . . .0x8046b1e8


**** could not load kernel debugger extenion dll [ kdextx86.dll ]

****************************************************************
** Symbol File Load Log
****************************************************************

Module CheckSum
**** Error Loading Image
Module: ntoskrnl.exe
Image File: None
Debug File: None
CheckSum: 1A2D9A
Error: Incorrect Image File

hal.dll 00016426
BOOTVID.dll 0000D8A2
ACPI.sys 00029306
WMILIB.SYS 00008BFD
pci.sys 000143A0
isapnp.sys 00016FFA
ohci1394.sys 00016274
1394BUS.SYS 0001000D
pciide.sys 00006354
PCIIDEX.SYS 0000DE43
MountMgr.sys 0000B570
ftdisk.sys 00025F44
Diskperf.sys 000030D5
dmload.sys 000070AB
dmio.sys 00027E97
PartMgr.sys 000057C1
atapi.sys 0001DF44
disk.sys 0000C312
CLASSPNP.SYS 0000E6F3
fltmgr.sys 00022133
Lbd.sys 00017DEA
KSecDD.sys 00016BE3
Ntfs.sys 00082D0B
NDIS.sys 00036F8F
Gernuwa.sys 00004945
sf.sys 00014422
Mup.sys 00022931
SMBios.sys 00017A6D
VIDEOPRT.SYS 0000CC26
ati2mtag.sys 0016F1B4
USBD.SYS 0000D0D3
uhcd.sys 00012D50
USBPORT.SYS 000264C6
usbehci.sys 00005843
RTL8139.SYS 00007F56
cwcos.sys 00004074
ks.sys 00022F68
cwcspud.sys 000284B9
e100bnt5.sys 0002EB0E
i8042prt.sys 00015FE7
kbdclass.sys 00012871
mouclass.sys 00008454
fdc.sys 00011CA4
serial.sys 00014256
serenum.sys 00007EC0
parport.sys 00012781
pfc.sys 00002C6D
cdrom.sys 00014678
intelsmb.sys 000124E7
audstub.sys 00008EF7
rasl2tp.sys 00018F32
ndistapi.sys 00009EB1
ndiswan.sys 00017941
TDI.SYS 0000E55E
raspptp.sys 0000D074
ptilink.sys 000098F4
raspti.sys 0000FED0
parallel.sys 00016AFD
swenum.sys 0000B910
update.sys 0002DBA5
usbhub.sys 000174FA
usbhub20.sys 0001AD87
portcls.sys 00024A95
cwcwdm.sys 00017B40
cwcspud3.sys 00007A63
gameenum.sys 000069B7
flpydisk.sys 00011A88
Modem.SYS 00012EF3
NDProxy.SYS 000121C3
EFS.SYS 00012FD0
hppcgenio.sys 00007E0B
hppcbulkio.sys 0000AB9F
usbprint.sys 0000EB2C
eamon.sys 000362A4
Fs_Rec.SYS 000034B4
**** Error Loading Image
Module: rs.dll
Image File: H:\WINNT1\System32\drivers\rs.dll
Debug File: H:\WINNT1\System32\drivers\fs_rec.sys
CheckSum: A8D9
Error: Incorrect Debug Info File

Pinball.SYS 00027B6F
Null.SYS 000023CE
Beep.SYS 0000C54F
**** Error: overlapping image conflict. Invalid dump file.
vga.sys 0001047D
awechomd.sys 00007663
awlegacy.sys 00011512
mnmdd.SYS 0000F6C2
Msfs.SYS 0000E5FA
Npfs.SYS 00017E60
rasacd.sys 0000F369
EPFWNDHK.sys 0000F094
tcpip.sys 00051D12
msgpc.sys 000129D7
wanarp.sys 00016EE6
**** Error: overlapping image conflict. Invalid dump file.
netbt.sys 00032CF0
netbios.sys 0000B5C1
**** Error Loading Image
Module: SASKUTIL.sys
Image File: None
Debug File: None
CheckSum: 19609
Error: Could not find image

**** Error Loading Image
Module: SASDIFSV.SYS
Image File: None
Debug File: None
CheckSum: B401
Error: Could not find image

rdbss.sys 0002E9FE
mrxsmb.sys 0006AA53
Fastfat.SYS 00023FCE
dump_WMILIB.SYS 00008BFD
dump_atapi.sys 0001DF44
win32k.sys 0019A159
ati2dvag.dll 0004DB76
**** Error: overlapping image conflict. Invalid dump file.
atikvmag.dll 0002742C
ati3duag.dll 0027D0DF
ativvaxx.dll 000D5571
epfw.sys 000323CE
SYMTDI.SYS 0002189A
afd.sys 00020486
ParVdm.SYS 0000770B
Aspi32.SYS 00013DCE
wdmaud.sys 0001EE84
sysaudio.sys 0001AEB4
Fips.SYS 0001050B
srv.sys 00045B01
osaio.sys 0001102C
SIODRV.SYS 0000B1F3
Cdfs.SYS 00017081
ipnat.sys 0001A91A
ipsec.sys 0001DED4
asyncmac.sys 0001231F

****************************************************************
** drivers
****************************************************************

Base Size CheckSum Image Name
80400000 001a2c40 001a2d9a ntoskrnl.exe
80062000 00014f80 00016426 hal.dll
eb810000 00002a20 0000d8a2 BOOTVID.dll
bffd8000 00027c20 00029306 ACPI.sys
eb9c8000 00000f80 00008bfd WMILIB.SYS
eb400000 0000e6a0 000143a0 pci.sys
eb410000 0000b680 00016ffa isapnp.sys
eb420000 00009220 00016274 ohci1394.sys
eb430000 00009e20 0001000d 1394BUS.SYS
eb9c9000 00000b00 00006354 pciide.sys
eb680000 00005520 0000de43 PCIIDEX.SYS
eb688000 000074c0 0000b570 MountMgr.sys
bffbb000 0001c5a0 00025f44 ftdisk.sys
eb900000 00001d20 000030d5 Diskperf.sys
eb902000 00000000 000070ab dmload.sys
bff99000 000219c0 00027e97 dmio.sys
eb814000 00002d00 000057c1 PartMgr.sys
bff83000 00015180 0001df44 atapi.sys
eb690000 00007720 0000c312 disk.sys
eb440000 00008700 0000e6f3 CLASSPNP.SYS
bff61000 000215c0 00022133 fltmgr.sys
eb450000 0000e100 00017dea Lbd.sys
bff4f000 000117c0 00016be3 KSecDD.sys
bfed1000 0007d480 00082d0b Ntfs.sys
bfea7000 00029aa0 00036f8f NDIS.sys
eb818000 00003320 00004945 Gernuwa.sys
eb460000 0000ac80 00014422 sf.sys
bfe91000 00015be0 00022931 Mup.sys
eb490000 00008e40 00017a6d SMBios.sys
eb4b0000 0000c4c0 0000cc26 VIDEOPRT.SYS
bfcd9000 00176000 0016f1b4 ati2mtag.sys
eb6c8000 00004fc0 0000d0d3 USBD.SYS
eb6b0000 00007f40 00012d50 uhcd.sys
bfc8f000 00021b20 000264c6 USBPORT.SYS
eb6d8000 00004c00 00005843 usbehci.sys
eb6e8000 00004800 00007f56 RTL8139.SYS
eb9e8000 00000c00 00004074 cwcos.sys
bfc55000 0001fd00 00022f68 ks.sys
bfc75000 000191c0 000284b9 cwcspud.sys
bfc30000 00024400 0002eb0e e100bnt5.sys
eb4c0000 0000b680 00015fe7 i8042prt.sys
eb708000 00005ec0 00012871 kbdclass.sys
eb718000 00005400 00008454 mouclass.sys
eb728000 00000000 00011ca4 fdc.sys
eb4d0000 0000f400 00014256 serial.sys
eb894000 00003640 00007ec0 serenum.sys
eb740000 00006100 00012781 parport.sys
eb89c000 00002880 00002c6d pfc.sys
eb750000 00006c40 00014678 cdrom.sys
eb760000 00005280 000124e7 intelsmb.sys
eb9f6000 00000a40 00008ef7 audstub.sys
eb4e0000 0000ca80 00018f32 rasl2tp.sys
eb8a4000 000022e0 00009eb1 ndistapi.sys
bfc19000 00016ba0 00017941 ndiswan.sys
eb8b4000 00003e60 0000e55e TDI.SYS
eb4f0000 0000bc40 0000d074 raspptp.sys
eb780000 00004400 000098f4 ptilink.sys
eb790000 000040e0 0000fed0 raspti.sys
eb500000 0000ea20 00016afd parallel.sys
eba00000 00001000 0000b910 swenum.sys
bfbee000 0002a3a0 0002dba5 update.sys
eb530000 00009be0 000174fa usbhub.sys
eb540000 0000c160 0001ad87 usbhub20.sys
b79f8000 00024280 00024a95 portcls.sys
b7a1d000 00010660 00017b40 cwcwdm.sys
eb7b8000 00004960 00007a63 cwcspud3.sys
eb8cc000 00002540 000069b7 gameenum.sys
eb7c8000 00000000 00011a88 flpydisk.sys
eb7d8000 000070e0 00012ef3 Modem.SYS
eb570000 00009ce0 000121c3 NDProxy.SYS
eb7e8000 00006a20 00012fd0 EFS.SYS
eb5a0000 0000b000 00007e0b hppcgenio.sys
eb7f8000 00008000 0000ab9f hppcbulkio.sys
eb6a0000 00005460 0000eb2c usbprint.sys
b7903000 000cd000 000362a4 eamon.sys
eb924000 00000000 000034b4 Fs_Rec.SYS
eb8f8000 00004000 0000a8d9 rs.dll
b78e6000 0001ca40 00027b6f Pinball.SYS
eba1a000 00000000 000023ce Null.SYS
eba1c000 00000ee0 0000c54f Beep.SYS
b78c6000 00020000 00020d84 ehdrv.sys
bfcd1000 00003580 0001047d vga.sys
eb926000 00001de0 00007663 awechomd.sys
bfcc5000 00002820 00011512 awlegacy.sys
eba22000 00000f80 0000f6c2 mnmdd.SYS
eb720000 00005240 0000e5fa Msfs.SYS
eb5e0000 00008fa0 00017e60 Npfs.SYS
eb92e000 00001e40 0000f369 rasacd.sys
eb5f0000 0000c000 0000f094 EPFWNDHK.sys
b7857000 0004e300 00051d12 tcpip.sys
eb600000 00008680 000129d7 msgpc.sys
eb758000 00007d00 00016ee6 wanarp.sys
b7844000 00013000 0001958b epfwtdi.sys
b77f1000 0002ad00 00032cf0 netbt.sys
eb610000 000081a0 0000b5c1 netbios.sys
b77cf000 00022000 00019609 SASKUTIL.sys
eb770000 00006000 0000b401 SASDIFSV.SYS
b77a5000 00029a20 0002e9fe rdbss.sys
b772d000 00065920 0006aa53 mrxsmb.sys
b770a000 00022ac0 00023fce Fastfat.SYS
eba54000 00000f80 00008bfd dump_WMILIB.SYS
b76f4000 00015180 0001df44 dump_atapi.sys
a0000000 00192e00 0019a159 win32k.sys
b768a000 00000000 0004db76 ati2dvag.dll
b764b000 00000000 0004e7bb ati2cqag.dll
b7615000 00000000 0002742c atikvmag.dll
b5399000 0027bc60 0027d0df ati3duag.dll
b52c6000 00000000 000d5571 ativvaxx.dll
b5186000 00028000 000323ce epfw.sys
b5167000 0001eb20 0002189a SYMTDI.SYS
b5149000 0001d060 00020486 afd.sys
eb9ac000 00000000 0000770b ParVdm.SYS
b51d2000 00003ee0 00013dce Aspi32.SYS
b501f000 00011f80 0001ee84 wdmaud.sys
eb670000 0000b2c0 0001aeb4 sysaudio.sys
b50f1000 00008240 0001050b Fips.SYS
b4e54000 0003d9a0 00045b01 srv.sys
b4f4a000 00002480 0001102c osaio.sys
eb998000 00001d00 0000b1f3 SIODRV.SYS
b4f7f000 0000f600 00017081 Cdfs.SYS
b49bd000 00010600 0001a91a ipnat.sys
b4614000 00013ac0 0001ded4 ipsec.sys
eb7c0000 000044a0 0001231f asyncmac.sys

****************************************************************
** Process
****************************************************************


****************************************************************
** Thread
****************************************************************

THREAD Cid 280.29c Teb: 7ffdb000 Win32Thread: 00000000 RUNNING
Owning Process 81767b80
WaitTime (seconds) 374846
Context Switch Count 76876
Start Address 0x7c57b740
Win32 Start Address 0x7c3494f6
Stack Init b5065000 Current b5064ca0 Base b5065000 Limit b5062000 Call 0
Priority 4 BasePriority 4 PriorityDecrement 0 DecrementCount 0


****************************************************************
** Register Dump For Processor #0
****************************************************************

eax=ffdff13c ebx=0000000a ecx=00000001 edx=40000000 esi=7c57b5f2 edi=00000400
eip=8046b1e8 esp=b5064c58 ebp=b5064c6c iopl=0 nv up di pl nz na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00000286
cr0=8001003b cr2=00000400 cr3=112cd000 dr0=00000000 dr1=00000000 dr2=00000000
dr3=00000000 dr6=ffff0ff0 dr7=00000400 cr4=000006d1
gdtr=80036000 gdtl=03ff idtr=80036400 idtl=07ff tr=0028 ldtr=0000


****************************************************************
** Stack Trace
****************************************************************

ChildEBP RetAddr Args to Child
b5064c54 00000000 00000400 00000002 00000001 0x8046b1e8



End

Pointers needed.
 
Ad

Advertisements


Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads


Top