Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ========================== AUTO DUMP ANALYZER ==========================
- Auto Dump Analyzer
- Version: 0.91
- Time to analyze file(s): 00 hours and 02 minutes and 14 seconds
- ================================ SYSTEM ================================
- MANUFACTURER: Gigabyte Technology Co., Ltd.
- PRODUCT_NAME: H110-D3A
- ================================= BIOS =================================
- VENDOR: American Megatrends Inc.
- VERSION: F25
- DATE: 04/11/2018
- ============================= MOTHERBOARD ==============================
- MANUFACTURER: Gigabyte Technology Co., Ltd.
- PRODUCT: H110-D3A-CF
- VERSION: x.x
- ================================= RAM ==================================
- Size Speed Manufacturer Part No.
- -------------- -------------- ------------------- ----------------------
- 8192MB 2133MHz 029E CMK16GX4M2Z2400C16
- 0MHz
- 8192MB 2133MHz 029E CMK16GX4M2Z2400C16
- 0MHz
- ================================= CPU ==================================
- Processor Version: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
- COUNT: 8
- MHZ: 3408
- VENDOR: GenuineIntel
- FAMILY: 6
- MODEL: 5e
- STEPPING: 3
- MICROCODE: 0,0,0,0 (F,M,S,R) SIG: CC'00000000 (cache) 0'00000000 (init)
- ================================== OS ==================================
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 19041.1.amd64fre.vb_release.191206-1406
- BUILD_VERSION: 19041.1.amd64fre.vb_release.191206-1406
- BUILD: 19041
- SERVICEPACK: 0
- PLATFORM_TYPE: x64
- NAME: Windows 10
- EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- BUILD_TIMESTAMP: 1983-01-21 04:09:18
- BUILDDATESTAMP: 191206-1406
- BUILDLAB: vb_release
- BUILDOSVER: 10.0.19041.1.amd64fre.vb_release.191206-1406
- =============================== DEBUGGER ===============================
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- =============================== COMMENTS ===============================
- * Information gathered from different dump files may be different. If
- Windows updates between two dump files, two or more OS versions may
- be shown above.
- * If the user updates the BIOS between dump files, two or more versions
- and dates may be shown above.
- * More RAM information can be found below in a full BIOS section.
- ========================================================================
- ======================= Dump #1: ANALYZE VERBOSE =======================
- ====================== File: 080520-11500-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Unable to load image \SystemRoot\system32\ntoskrnl.exe, Win32 error 0n2
- *** WARNING: Unable to verify timestamp for ntoskrnl.exe
- *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
- Windows 10 Kernel Version 19041 MP (8 procs) Free x64
- Kernel base = 0xfffff803`0e000000 PsLoadedModuleList = 0xfffff803`0ec2a330
- Debug session time: Wed Aug 5 15:39:14.054 2020 (UTC - 4:00)
- System Uptime: 0 days 3:53:35.623
- Unable to load image \SystemRoot\system32\ntoskrnl.exe, Win32 error 0n2
- *** WARNING: Unable to verify timestamp for ntoskrnl.exe
- *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
- ************* Symbol Loading Error Summary **************
- Module name Error
- ntoskrnl The system cannot find the file specified
- You can troubleshoot most symbol related issues by turning on symbol loading diagnostics (!sym noisy) and repeating the command that caused symbols to be loaded.
- You should also verify that your symbol search path (.sympath) is correct.
- BugCheck 1A, {6001, ffffffffc000000e, 243b1ddc000, ffffa987c420ba10}
- ***** Kernel symbols are WRONG. Please fix symbols to do analysis.
- *************************************************************************
- *** Either you specified an unqualified symbol, or your debugger ***
- Cut by GM.
- *************************************************************************
- Probably caused by : ntoskrnl.exe ( nt+3ddf40 )
- Followup: MachineOwner
- MEMORY_MANAGEMENT (1a)
- # Any other values for parameter 1 must be individually examined.
- Arguments:
- Arg1: 0000000000006001, The subtype of the bugcheck.
- Arg2: ffffffffc000000e
- Arg3: 00000243b1ddc000
- Arg4: ffffa987c420ba10
- Debugging Details:
- ***** Kernel symbols are WRONG. Please fix symbols to do analysis.
- *************************************************************************
- *** Either you specified an unqualified symbol, or your debugger ***
- Cut by GM
- *************************************************************************
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- ADDITIONAL_DEBUG_TEXT:
- You can run '.symfix; .reload' to try to fix the symbol path and load symbols.
- WRONG_SYMBOLS_TIMESTAMP: 188e70be
- WRONG_SYMBOLS_SIZE: 1046000
- MODULE_NAME: nt
- FAULTING_MODULE: fffff8030e000000 nt
- DEBUG_FLR_IMAGE_TIMESTAMP: 188e70be
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x1a_6001
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff8030e471568 to fffff8030e3ddf40
- STACK_TEXT:
- ffffba08`65dff8d8 fffff803`0e471568 : 00000000`0000001a 00000000`00006001 ffffffff`c000000e 00000243`b1ddc000 : nt+0x3ddf40
- ffffba08`65dff8e0 00000000`0000001a : 00000000`00006001 ffffffff`c000000e 00000243`b1ddc000 ffffa987`c420ba10 : nt+0x471568
- ffffba08`65dff8e8 00000000`00006001 : ffffffff`c000000e 00000243`b1ddc000 ffffa987`c420ba10 00000000`00000000 : 0x1a
- ffffba08`65dff8f0 ffffffff`c000000e : 00000243`b1ddc000 ffffa987`c420ba10 00000000`00000000 00000000`00000000 : 0x6001
- ffffba08`65dff8f8 00000243`b1ddc000 : ffffa987`c420ba10 00000000`00000000 00000000`00000000 00000000`00000000 : 0xffffffff`c000000e
- ffffba08`65dff900 ffffa987`c420ba10 : 00000000`00000000 00000000`00000000 00000000`00000000 00000243`b1ddc000 : 0x00000243`b1ddc000
- ffffba08`65dff908 00000000`00000000 : 00000000`00000000 00000000`00000000 00000243`b1ddc000 00000243`b1df0000 : 0xffffa987`c420ba10
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: 6997106dce080e0f247cffc7d244723501c73d61
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 2d8a271f870bcb4f672325b569874a97520580a7
- THREAD_SHA1_HASH_MOD: 6997106dce080e0f247cffc7d244723501c73d61
- FOLLOWUP_IP:
- nt+3ddf40
- fffff803`0e3ddf40 48894c2408 mov qword ptr [rsp+8],rcx
- FAULT_INSTR_CODE: 244c8948
- SYMBOL_STACK_INDEX: 0
- SYMBOL_NAME: nt+3ddf40
- FOLLOWUP_NAME: MachineOwner
- IMAGE_NAME: ntoskrnl.exe
- BUCKET_ID_FUNC_OFFSET: 3ddf40
- FAILURE_BUCKET_ID: OLD_IMAGE_ntoskrnl.exe
- BUCKET_ID: OLD_IMAGE_ntoskrnl.exe
- PRIMARY_PROBLEM_CLASS: OLD_IMAGE_ntoskrnl.exe
- TARGET_TIME: 2020-08-05T19:39:14.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:old_image_ntoskrnl.exe
- FAILURE_ID_HASH: {d0373e20-93e3-bbe4-5df9-08ec43a17ae8}
- Followup: MachineOwner
- ====================== Dump #1: 3RD PARTY DRIVERS ======================
- May 01 2013 - WinRing0x64.sys - Intel Processor Diagnostic Tool or BatteryCare by OpenLibSys.org or Throttlestop (Properties say: OpenLibSys.org) or EVGA Precision X https://www.evga.com/
- Aug 02 2017 - Oculus_ViGEmBus.sys - Oculus Virtual Gamepad Emulation Bus driver
- May 31 2018 - tapnordvpn.sys - Nord VPN TAP driver https://nordvpn.com
- Oct 08 2018 - SYMEVENT64x86.SYS - Symantec Event Library https://www.symantec.com/
- Nov 16 2018 - logi_core_temp.sys - Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Nov 20 2018 - logi_joy_bus_enum.sys - Logitech Joystick driver
- Nov 20 2018 - logi_joy_xlcore.sys - Logitech Joystick driver
- Jan 12 2019 - vbaudio_vmvaio64_win10.sys - VoiceMeeter Input (VB-Audio VoiceMeeter VAIO) driver
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 04 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- May 14 2019 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- Jun 28 2019 - Ironx64.SYS - Symantec Iron driver http://www.symantec.com/
- Jul 01 2019 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Jul 10 2019 - IDSvia64.sys - Symantec Intrusion Detection IDS Core driver http://www.symantec.com/
- Sep 26 2019 - BHDrvx64.sys - Norton Security BASH driver http://www.symantec.com/
- Nov 29 2019 - NvModuleTracker.sys - NVIDIA Module Tracker driver
- Dec 30 2019 - SRTSPX64.SYS - Symantec Real Time Storage Protection (PEL) http://www.symantec.com/
- Dec 31 2019 - SymEvnt.sys - Symantec Event Library driver
- Jan 09 2020 - ccSetx64.sys - Common Client Settings driver (Symantec Security Technoligies) http://www.symantec.com/
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Jan 26 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Feb 08 2020 - symnets.sys - Network Security WFP driver https://www.symantec.com/
- Feb 11 2020 - SYMEFASI64.SYS - Symantec Extended File Attributes (SI) https://www.symantec.com/
- Mar 24 2020 - wpCtrlDrv.sys - (Symantec Corporation)
- Apr 02 2020 - nlwt.sys - VPN driver (WireGuard LLC)
- Apr 20 2020 - logi_joy_vir_hid.sys - Logitech Joystick driver
- Apr 21 2020 - SRTSP64.SYS - Symantec Real Time Storage Protection http://www.symantec.com/
- May 28 2020 - oculusvad.sys - Oculus VAD driver
- Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Jul 05 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- Jul 08 2020 - nordlwf.sys - NordVPN LightWeight Firewall driver (NordVPN)
- Jul 09 2020 - eeCtrl64.sys - Symantec Eraser Control driver http://www.symantec.com/
- Jul 09 2020 - EraserUtilRebootDrv.sys - Symantec Eraser Utility Reboot driver http://www.symantec.com/
- ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \??\C:\Program Files (x86)\EVGA\WinRing0\WinRing0x64.sys
- Image name: WinRing0x64.sys
- Search : https://www.google.com/search?q=WinRing0x64.sys
- ADA Info : Intel Processor Diagnostic Tool or BatteryCare by OpenLibSys.org or Throttlestop (Properties say: OpenLibSys.org) or EVGA Precision X https://www.evga.com/
- Timestamp : Wed May 1 2013
- Image path: \SystemRoot\System32\drivers\Oculus_ViGEmBus.sys
- Image name: Oculus_ViGEmBus.sys
- Search : https://www.google.com/search?q=Oculus_ViGEmBus.sys
- ADA Info : Oculus Virtual Gamepad Emulation Bus driver
- Timestamp : Wed Aug 2 2017
- Image path: \SystemRoot\System32\drivers\tapnordvpn.sys
- Image name: tapnordvpn.sys
- Search : https://www.google.com/search?q=tapnordvpn.sys
- ADA Info : Nord VPN TAP driver https://nordvpn.com
- Timestamp : Thu May 31 2018
- Image path: \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
- Image name: SYMEVENT64x86.SYS
- Search : https://www.google.com/search?q=SYMEVENT64x86.SYS
- ADA Info : Symantec Event Library https://www.symantec.com/
- Timestamp : Mon Oct 8 2018
- Image path: \??\C:\ProgramData\LGHUB\depots\61557\driver_cpu_temperature\logi_core_temp.sys
- Image name: logi_core_temp.sys
- Search : https://www.google.com/search?q=logi_core_temp.sys
- ADA Info : Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Timestamp : Fri Nov 16 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_bus_enum.sys
- Image name: logi_joy_bus_enum.sys
- Search : https://www.google.com/search?q=logi_joy_bus_enum.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_xlcore.sys
- Image name: logi_joy_xlcore.sys
- Search : https://www.google.com/search?q=logi_joy_xlcore.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\System32\drivers\vbaudio_vmvaio64_win10.sys
- Image name: vbaudio_vmvaio64_win10.sys
- Search : https://www.google.com/search?q=vbaudio_vmvaio64_win10.sys
- ADA Info : VoiceMeeter Input (VB-Audio VoiceMeeter VAIO) driver
- Timestamp : Sat Jan 12 2019
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Thu Apr 4 2019
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Tue May 14 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\Ironx64.SYS
- Image name: Ironx64.SYS
- Search : https://www.google.com/search?q=Ironx64.SYS
- ADA Info : Symantec Iron driver http://www.symantec.com/
- Timestamp : Fri Jun 28 2019
- Image path: \SystemRoot\System32\drivers\rt640x64.sys
- Image name: rt640x64.sys
- Search : https://www.google.com/search?q=rt640x64.sys
- ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Timestamp : Mon Jul 1 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\Definitions\IPSDefs\20200805.061\IDSvia64.sys
- Image name: IDSvia64.sys
- Search : https://www.google.com/search?q=IDSvia64.sys
- ADA Info : Symantec Intrusion Detection IDS Core driver http://www.symantec.com/
- Timestamp : Wed Jul 10 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\Definitions\BASHDefs\20200728.001\BHDrvx64.sys
- Image name: BHDrvx64.sys
- Search : https://www.google.com/search?q=BHDrvx64.sys
- ADA Info : Norton Security BASH driver http://www.symantec.com/
- Timestamp : Thu Sep 26 2019
- Image path: \SystemRoot\System32\drivers\NvModuleTracker.sys
- Image name: NvModuleTracker.sys
- Search : https://www.google.com/search?q=NvModuleTracker.sys
- ADA Info : NVIDIA Module Tracker driver
- Timestamp : Fri Nov 29 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SRTSPX64.SYS
- Image name: SRTSPX64.SYS
- Search : https://www.google.com/search?q=SRTSPX64.SYS
- ADA Info : Symantec Real Time Storage Protection (PEL) http://www.symantec.com/
- Timestamp : Mon Dec 30 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\SymPlatform\SymEvnt.sys
- Image name: SymEvnt.sys
- Search : https://www.google.com/search?q=SymEvnt.sys
- ADA Info : Symantec Event Library driver
- Timestamp : Tue Dec 31 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\ccSetx64.sys
- Image name: ccSetx64.sys
- Search : https://www.google.com/search?q=ccSetx64.sys
- ADA Info : Common Client Settings driver (Symantec Security Technoligies) http://www.symantec.com/
- Timestamp : Thu Jan 9 2020
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_0f22333f160a8f42\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Sun Jan 26 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\symnets.sys
- Image name: symnets.sys
- Search : https://www.google.com/search?q=symnets.sys
- ADA Info : Network Security WFP driver https://www.symantec.com/
- Timestamp : Sat Feb 8 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SYMEFASI64.SYS
- Image name: SYMEFASI64.SYS
- Search : https://www.google.com/search?q=SYMEFASI64.SYS
- ADA Info : Symantec Extended File Attributes (SI) https://www.symantec.com/
- Timestamp : Tue Feb 11 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\wpCtrlDrv.sys
- Image name: wpCtrlDrv.sys
- Search : https://www.google.com/search?q=wpCtrlDrv.sys
- ADA Info : (Symantec Corporation)
- Timestamp : Tue Mar 24 2020
- Image path: \SystemRoot\System32\drivers\nlwt.sys
- Image name: nlwt.sys
- Search : https://www.google.com/search?q=nlwt.sys
- ADA Info : VPN driver (WireGuard LLC)
- Timestamp : Thu Apr 2 2020
- Image path: \SystemRoot\system32\drivers\logi_joy_vir_hid.sys
- Image name: logi_joy_vir_hid.sys
- Search : https://www.google.com/search?q=logi_joy_vir_hid.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Mon Apr 20 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SRTSP64.SYS
- Image name: SRTSP64.SYS
- Search : https://www.google.com/search?q=SRTSP64.SYS
- ADA Info : Symantec Real Time Storage Protection http://www.symantec.com/
- Timestamp : Tue Apr 21 2020
- Image path: \SystemRoot\System32\drivers\oculusvad.sys
- Image name: oculusvad.sys
- Search : https://www.google.com/search?q=oculusvad.sys
- ADA Info : Oculus VAD driver
- Timestamp : Thu May 28 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Tue Jun 9 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_edab19158bdd0d0a\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Sun Jul 5 2020
- Image path: \SystemRoot\system32\DRIVERS\nordlwf.sys
- Image name: nordlwf.sys
- Search : https://www.google.com/search?q=nordlwf.sys
- ADA Info : NordVPN LightWeight Firewall driver (NordVPN)
- Timestamp : Wed Jul 8 2020
- Image path: \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
- Image name: eeCtrl64.sys
- Search : https://www.google.com/search?q=eeCtrl64.sys
- ADA Info : Symantec Eraser Control driver http://www.symantec.com/
- Timestamp : Thu Jul 9 2020
- Image path: \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
- Image name: EraserUtilRebootDrv.sys
- Search : https://www.google.com/search?q=EraserUtilRebootDrv.sys
- ADA Info : Symantec Eraser Utility Reboot driver http://www.symantec.com/
- Timestamp : Thu Jul 9 2020
- ====================== Dump #1: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- bindflt.sys Windows Bind Filter driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_storahci.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- IntelTA.sys Intel Telemetry Driver
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msquic.sys Windows QUIC Driver
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- ntoskrnl.exe NT Operating System Kernal (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- parport.sys Parallel Port Driver (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- ====================== Dump #1: UNLOADED MODULES =======================
- fffff803`1cf80000 fffff803`1cf8f000 WpdUpFltr.sy
- fffff803`1c850000 fffff803`1c876000 USBSTOR.SYS
- fffff803`1baa0000 fffff803`1bc06000 IDSvia64.sys
- fffff803`093a0000 fffff803`093ae000 WSDScan.sys
- fffff803`09390000 fffff803`0939e000 WSDPrint.sys
- fffff803`093b0000 fffff803`093bb000 nlwt.sys
- fffff803`1cec0000 fffff803`1cecb000 nlwt.sys
- fffff803`1b8c0000 fffff803`1b8cf000 dump_storpor
- fffff803`1b910000 fffff803`1b943000 dump_storahc
- fffff803`1b970000 fffff803`1b98e000 dump_dumpfve
- fffff803`0fe80000 fffff803`0fe9d000 EhStorClass.
- fffff803`1bd00000 fffff803`1bd1c000 dam.sys
- fffff803`0fa00000 fffff803`0fa0a000 SymELAM.sys
- fffff803`10bf0000 fffff803`10c01000 hwpolicy.sys
- ====================== Dump #1: BIOS INFORMATION =======================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4239 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version F25
- BIOS Starting Address Segment f000
- BIOS Release Date 04/11/2018
- BIOS ROM Size 800000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product Name H110-D3A
- Version Default string
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product H110-D3A-CF
- Version x.x
- Feature Flags 09h
- -1580943648: - -1580943600: - «ûÚú
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0021h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0022h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0023h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 003dh]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003eh]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 029E
- Part Number CMK16GX4M2Z2400C16
- [Memory Device (Type 17) - Length 40 - Handle 003fh]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0040h]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 029E
- Part Number CMK16GX4M2Z2400C16
- [Memory Device (Type 17) - Length 40 - Handle 0041h]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0042h]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Array Handle 003dh
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e3060500fffbebbf
- Processor Version Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3700MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 003eh
- Mem Array Mapped Adr Handle 0042h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0040h
- Mem Array Mapped Adr Handle 0042h
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #1: Extra #1 ===========================
- 1: kd> !verifier
- 00000000: Unable to get verifier list.
- ========================== Dump #1: Extra #2 ===========================
- 1: kd> !thread
- GetPointerFromAddress: unable to read from fffff8030e021468
- ffffa987b9bdf080: Unable to get thread contents
- ========================================================================
- ======================= Dump #2: ANALYZE VERBOSE =======================
- ====================== File: 080520-11281-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Unable to load image \SystemRoot\system32\ntoskrnl.exe, Win32 error 0n2
- *** WARNING: Unable to verify timestamp for ntoskrnl.exe
- *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
- Windows 10 Kernel Version 19041 MP (8 procs) Free x64
- Kernel base = 0xfffff805`7d400000 PsLoadedModuleList = 0xfffff805`7e02a330
- Debug session time: Wed Aug 5 21:25:35.804 2020 (UTC - 4:00)
- System Uptime: 0 days 5:45:44.442
- Unable to load image \SystemRoot\system32\ntoskrnl.exe, Win32 error 0n2
- *** WARNING: Unable to verify timestamp for ntoskrnl.exe
- *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
- ************* Symbol Loading Error Summary **************
- Module name Error
- ntoskrnl The system cannot find the file specified
- You can troubleshoot most symbol related issues by turning on symbol loading diagnostics (!sym noisy) and repeating the command that caused symbols to be loaded.
- You should also verify that your symbol search path (.sympath) is correct.
- BugCheck EF, {ffffd2084bebb140, 0, 0, 0}
- ***** Kernel symbols are WRONG. Please fix symbols to do analysis.
- errfg" bg="errbg"><Unable to get nt!KiCurrentEtwBufferOffset>errfg" bg="errbg"><Unable to get nt!KiCurrentEtwBufferBase
- Probably caused by : memory_corruption
- Followup: memory_corruption
- CRITICAL_PROCESS_DIED (ef)
- A critical system process died
- Arguments:
- Arg1: ffffd2084bebb140, Process object or thread object
- Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
- Arg3: 0000000000000000
- Arg4: 0000000000000000
- Debugging Details:
- ***** Kernel symbols are WRONG. Please fix symbols to do analysis.
- <Unable to get nt!KiCurrentEtwBufferOffset><Unable to get nt!KiCurrentEtwBufferBase>
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- ADDITIONAL_DEBUG_TEXT:
- You can run '.symfix; .reload' to try to fix the symbol path and load symbols.
- WRONG_SYMBOLS_TIMESTAMP: 188e70be
- WRONG_SYMBOLS_SIZE: 1046000
- FAULTING_MODULE: fffff8057d400000 nt
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- DUMP_TYPE: 2
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0xEF
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff8057dd173c2 to fffff8057d7ddf40
- STACK_TEXT:
- ffff868a`9ff36c08 fffff805`7dd173c2 : 00000000`000000ef ffffd208`4bebb140 00000000`00000000 00000000`00000000 : nt+0x3ddf40
- ffff868a`9ff36c10 00000000`000000ef : ffffd208`4bebb140 00000000`00000000 00000000`00000000 00000000`00000000 : nt+0x9173c2
- ffff868a`9ff36c18 ffffd208`4bebb140 : 00000000`00000000 00000000`00000000 00000000`00000000 00000078`caf81500 : 0xef
- ffff868a`9ff36c20 00000000`00000000 : 00000000`00000000 00000000`00000000 00000078`caf81500 00000000`00501902 : 0xffffd208`4bebb140
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !volmgr
- fffff80582be10fd-fffff80582be10fe 2 bytes - volmgr!VmReadWrite+ed
- [ 48 ff:4c 8b ]
- fffff80582be1104-fffff80582be1108 5 bytes - volmgr!VmReadWrite+f4 (+0x07)
- [ 0f 1f 44 00 00:e8 e7 5b a6 fa ]
- fffff80582be128a-fffff80582be128b 2 bytes - volmgr!VmFlushBuffers+3a (+0x186)
- [ 48 ff:4c 8b ]
- fffff80582be1291-fffff80582be1295 5 bytes - volmgr!VmFlushBuffers+41 (+0x07)
- [ 0f 1f 44 00 00:e8 5a 60 af fa ]
- fffff80582be12f1-fffff80582be12f2 2 bytes - volmgr!VmFlushBuffers+a1 (+0x60)
- [ 48 ff:4c 8b ]
- fffff80582be12f8-fffff80582be12fc 5 bytes - volmgr!VmFlushBuffers+a8 (+0x07)
- [ 0f 1f 44 00 00:e8 73 ce b2 fa ]
- fffff80582be13b5-fffff80582be13b6 2 bytes - volmgr!VmCreate+15 (+0xbd)
- [ 48 ff:4c 8b ]
- fffff80582be13bc-fffff80582be13c0 5 bytes - volmgr!VmCreate+1c (+0x07)
- [ 0f 1f 44 00 00:e8 df b2 a5 fa ]
- fffff80582be140f-fffff80582be1410 2 bytes - volmgr!VmWmi+3f (+0x53)
- [ 48 ff:4c 8b ]
- fffff80582be1416-fffff80582be141a 5 bytes - volmgr!VmWmi+46 (+0x07)
- [ 0f 1f 44 00 00:e8 f5 4b e1 ff ]
- fffff80582be143d-fffff80582be143e 2 bytes - volmgr!VmWmi+6d (+0x27)
- [ 48 ff:4c 8b ]
- fffff80582be1444-fffff80582be1448 5 bytes - volmgr!VmWmi+74 (+0x07)
- [ 0f 1f 44 00 00:e8 57 b2 a5 fa ]
- fffff80582be15c8-fffff80582be15c9 2 bytes - volmgr!VmDeviceControl+58 (+0x184)
- [ 48 ff:4c 8b ]
- fffff80582be15cf-fffff80582be15d3 5 bytes - volmgr!VmDeviceControl+5f (+0x07)
- [ 0f 1f 44 00 00:e8 1c 5d af fa ]
- fffff80582be1627-fffff80582be1628 2 bytes - volmgr!VmDeviceControl+b7 (+0x58)
- [ 48 ff:4c 8b ]
- fffff80582be162e-fffff80582be1632 5 bytes - volmgr!VmDeviceControl+be (+0x07)
- [ 0f 1f 44 00 00:e8 3d cb b2 fa ]
- fffff80582be166b-fffff80582be166c 2 bytes - volmgr!VmDeviceControl+fb (+0x3d)
- [ 48 ff:4c 8b ]
- fffff80582be2169-fffff80582be216a 2 bytes - volmgr!VmInternalDeviceControl+99 (+0xafe)
- [ 48 ff:4c 8b ]
- fffff80582be2170-fffff80582be2174 5 bytes - volmgr!VmInternalDeviceControl+a0 (+0x07)
- [ 0f 1f 44 00 00:e8 2b a5 a5 fa ]
- fffff80582be4bfe-fffff80582be4bff 2 bytes - volmgr!VmShutdown+7e (+0x2a8e)
- [ 48 ff:4c 8b ]
- fffff80582be4c05-fffff80582be4c09 5 bytes - volmgr!VmShutdown+85 (+0x07)
- [ 0f 1f 44 00 00:e8 26 c4 1d fb ]
- fffff80582bf49af-fffff80582bf49b0 2 bytes - volmgr!VmUnload+1f
- [ 48 ff:4c 8b ]
- fffff80582bf49b6-fffff80582bf49ba 5 bytes - volmgr!VmUnload+26 (+0x07)
- [ 0f 1f 44 00 00:e8 d5 b1 f5 fa ]
- fffff80582bf49fb-fffff80582bf49fc 2 bytes - volmgr!VmpProcessDiskNotificationsWorkRoutine+2b (+0x45)
- [ 48 ff:4c 8b ]
- fffff80582bf4a02-fffff80582bf4a06 5 bytes - volmgr!VmpProcessDiskNotificationsWorkRoutine+32 (+0x07)
- [ 0f 1f 44 00 00:e8 39 a1 b4 fa ]
- 86 errors : !volmgr (fffff80582be10fd-fffff80582bf4a06)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-08-06T01:25:35.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #2: 3RD PARTY DRIVERS ======================
- May 01 2013 - WinRing0x64.sys - Intel Processor Diagnostic Tool or BatteryCare by OpenLibSys.org or Throttlestop (Properties say: OpenLibSys.org) or EVGA Precision X https://www.evga.com/
- Aug 02 2017 - Oculus_ViGEmBus.sys - Oculus Virtual Gamepad Emulation Bus driver
- May 31 2018 - tapnordvpn.sys - Nord VPN TAP driver https://nordvpn.com
- Oct 08 2018 - SYMEVENT64x86.SYS - Symantec Event Library https://www.symantec.com/
- Nov 16 2018 - logi_core_temp.sys - Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Nov 20 2018 - logi_joy_bus_enum.sys - Logitech Joystick driver
- Nov 20 2018 - logi_joy_xlcore.sys - Logitech Joystick driver
- Jan 12 2019 - vbaudio_vmvaio64_win10.sys - VoiceMeeter Input (VB-Audio VoiceMeeter VAIO) driver
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 04 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- May 14 2019 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- Jun 28 2019 - Ironx64.SYS - Symantec Iron driver http://www.symantec.com/
- Jul 01 2019 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Jul 10 2019 - IDSvia64.sys - Symantec Intrusion Detection IDS Core driver http://www.symantec.com/
- Sep 26 2019 - BHDrvx64.sys - Norton Security BASH driver http://www.symantec.com/
- Nov 29 2019 - NvModuleTracker.sys - NVIDIA Module Tracker driver
- Dec 30 2019 - SRTSPX64.SYS - Symantec Real Time Storage Protection (PEL) http://www.symantec.com/
- Dec 31 2019 - SymEvnt.sys - Symantec Event Library driver
- Jan 09 2020 - ccSetx64.sys - Common Client Settings driver (Symantec Security Technoligies) http://www.symantec.com/
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Jan 26 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Feb 08 2020 - symnets.sys - Network Security WFP driver https://www.symantec.com/
- Feb 11 2020 - SYMEFASI64.SYS - Symantec Extended File Attributes (SI) https://www.symantec.com/
- Mar 24 2020 - wpCtrlDrv.sys - (Symantec Corporation)
- Apr 02 2020 - nlwt.sys - VPN driver (WireGuard LLC)
- Apr 20 2020 - logi_joy_vir_hid.sys - Logitech Joystick driver
- Apr 21 2020 - SRTSP64.SYS - Symantec Real Time Storage Protection http://www.symantec.com/
- May 28 2020 - oculusvad.sys - Oculus VAD driver
- Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Jul 05 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- Jul 08 2020 - nordlwf.sys - NordVPN LightWeight Firewall driver (NordVPN)
- Jul 09 2020 - eeCtrl64.sys - Symantec Eraser Control driver http://www.symantec.com/
- Jul 09 2020 - EraserUtilRebootDrv.sys - Symantec Eraser Utility Reboot driver http://www.symantec.com/
- ================== Dump #2: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \??\C:\Program Files (x86)\EVGA\WinRing0\WinRing0x64.sys
- Image name: WinRing0x64.sys
- Search : https://www.google.com/search?q=WinRing0x64.sys
- ADA Info : Intel Processor Diagnostic Tool or BatteryCare by OpenLibSys.org or Throttlestop (Properties say: OpenLibSys.org) or EVGA Precision X https://www.evga.com/
- Timestamp : Wed May 1 2013
- Image path: \SystemRoot\System32\drivers\Oculus_ViGEmBus.sys
- Image name: Oculus_ViGEmBus.sys
- Search : https://www.google.com/search?q=Oculus_ViGEmBus.sys
- ADA Info : Oculus Virtual Gamepad Emulation Bus driver
- Timestamp : Wed Aug 2 2017
- Image path: \SystemRoot\System32\drivers\tapnordvpn.sys
- Image name: tapnordvpn.sys
- Search : https://www.google.com/search?q=tapnordvpn.sys
- ADA Info : Nord VPN TAP driver https://nordvpn.com
- Timestamp : Thu May 31 2018
- Image path: \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
- Image name: SYMEVENT64x86.SYS
- Search : https://www.google.com/search?q=SYMEVENT64x86.SYS
- ADA Info : Symantec Event Library https://www.symantec.com/
- Timestamp : Mon Oct 8 2018
- Image path: \??\C:\ProgramData\LGHUB\depots\61557\driver_cpu_temperature\logi_core_temp.sys
- Image name: logi_core_temp.sys
- Search : https://www.google.com/search?q=logi_core_temp.sys
- ADA Info : Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Timestamp : Fri Nov 16 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_bus_enum.sys
- Image name: logi_joy_bus_enum.sys
- Search : https://www.google.com/search?q=logi_joy_bus_enum.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_xlcore.sys
- Image name: logi_joy_xlcore.sys
- Search : https://www.google.com/search?q=logi_joy_xlcore.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\System32\drivers\vbaudio_vmvaio64_win10.sys
- Image name: vbaudio_vmvaio64_win10.sys
- Search : https://www.google.com/search?q=vbaudio_vmvaio64_win10.sys
- ADA Info : VoiceMeeter Input (VB-Audio VoiceMeeter VAIO) driver
- Timestamp : Sat Jan 12 2019
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Thu Apr 4 2019
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Tue May 14 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\Ironx64.SYS
- Image name: Ironx64.SYS
- Search : https://www.google.com/search?q=Ironx64.SYS
- ADA Info : Symantec Iron driver http://www.symantec.com/
- Timestamp : Fri Jun 28 2019
- Image path: \SystemRoot\System32\drivers\rt640x64.sys
- Image name: rt640x64.sys
- Search : https://www.google.com/search?q=rt640x64.sys
- ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Timestamp : Mon Jul 1 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\Definitions\IPSDefs\20200805.061\IDSvia64.sys
- Image name: IDSvia64.sys
- Search : https://www.google.com/search?q=IDSvia64.sys
- ADA Info : Symantec Intrusion Detection IDS Core driver http://www.symantec.com/
- Timestamp : Wed Jul 10 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\Definitions\BASHDefs\20200728.001\BHDrvx64.sys
- Image name: BHDrvx64.sys
- Search : https://www.google.com/search?q=BHDrvx64.sys
- ADA Info : Norton Security BASH driver http://www.symantec.com/
- Timestamp : Thu Sep 26 2019
- Image path: \SystemRoot\System32\drivers\NvModuleTracker.sys
- Image name: NvModuleTracker.sys
- Search : https://www.google.com/search?q=NvModuleTracker.sys
- ADA Info : NVIDIA Module Tracker driver
- Timestamp : Fri Nov 29 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SRTSPX64.SYS
- Image name: SRTSPX64.SYS
- Search : https://www.google.com/search?q=SRTSPX64.SYS
- ADA Info : Symantec Real Time Storage Protection (PEL) http://www.symantec.com/
- Timestamp : Mon Dec 30 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\SymPlatform\SymEvnt.sys
- Image name: SymEvnt.sys
- Search : https://www.google.com/search?q=SymEvnt.sys
- ADA Info : Symantec Event Library driver
- Timestamp : Tue Dec 31 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\ccSetx64.sys
- Image name: ccSetx64.sys
- Search : https://www.google.com/search?q=ccSetx64.sys
- ADA Info : Common Client Settings driver (Symantec Security Technoligies) http://www.symantec.com/
- Timestamp : Thu Jan 9 2020
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_0f22333f160a8f42\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Sun Jan 26 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\symnets.sys
- Image name: symnets.sys
- Search : https://www.google.com/search?q=symnets.sys
- ADA Info : Network Security WFP driver https://www.symantec.com/
- Timestamp : Sat Feb 8 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SYMEFASI64.SYS
- Image name: SYMEFASI64.SYS
- Search : https://www.google.com/search?q=SYMEFASI64.SYS
- ADA Info : Symantec Extended File Attributes (SI) https://www.symantec.com/
- Timestamp : Tue Feb 11 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\wpCtrlDrv.sys
- Image name: wpCtrlDrv.sys
- Search : https://www.google.com/search?q=wpCtrlDrv.sys
- ADA Info : (Symantec Corporation)
- Timestamp : Tue Mar 24 2020
- Image path: \SystemRoot\System32\drivers\nlwt.sys
- Image name: nlwt.sys
- Search : https://www.google.com/search?q=nlwt.sys
- ADA Info : VPN driver (WireGuard LLC)
- Timestamp : Thu Apr 2 2020
- Image path: \SystemRoot\system32\drivers\logi_joy_vir_hid.sys
- Image name: logi_joy_vir_hid.sys
- Search : https://www.google.com/search?q=logi_joy_vir_hid.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Mon Apr 20 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SRTSP64.SYS
- Image name: SRTSP64.SYS
- Search : https://www.google.com/search?q=SRTSP64.SYS
- ADA Info : Symantec Real Time Storage Protection http://www.symantec.com/
- Timestamp : Tue Apr 21 2020
- Image path: \SystemRoot\System32\drivers\oculusvad.sys
- Image name: oculusvad.sys
- Search : https://www.google.com/search?q=oculusvad.sys
- ADA Info : Oculus VAD driver
- Timestamp : Thu May 28 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Tue Jun 9 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_edab19158bdd0d0a\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Sun Jul 5 2020
- Image path: \SystemRoot\system32\DRIVERS\nordlwf.sys
- Image name: nordlwf.sys
- Search : https://www.google.com/search?q=nordlwf.sys
- ADA Info : NordVPN LightWeight Firewall driver (NordVPN)
- Timestamp : Wed Jul 8 2020
- Image path: \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
- Image name: eeCtrl64.sys
- Search : https://www.google.com/search?q=eeCtrl64.sys
- ADA Info : Symantec Eraser Control driver http://www.symantec.com/
- Timestamp : Thu Jul 9 2020
- Image path: \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
- Image name: EraserUtilRebootDrv.sys
- Search : https://www.google.com/search?q=EraserUtilRebootDrv.sys
- ADA Info : Symantec Eraser Utility Reboot driver http://www.symantec.com/
- Timestamp : Thu Jul 9 2020
- ====================== Dump #2: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- bindflt.sys Windows Bind Filter driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_storahci.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- exfat.SYS Extended FAT File System driver (Microsoft)
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- IntelTA.sys Intel Telemetry Driver
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msquic.sys Windows QUIC Driver
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- ntoskrnl.exe NT Operating System Kernal (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- parport.sys Parallel Port Driver (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- qwavedrv.sys Quality Windows Audio Video Experience (qWave) Support driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- ====================== Dump #2: UNLOADED MODULES =======================
- fffff805`937d0000 fffff805`937de000 WSDScan.sys
- fffff805`937c0000 fffff805`937ce000 WSDPrint.sys
- fffff805`92c50000 fffff805`92c5f000 WpdUpFltr.sy
- fffff805`912c0000 fffff805`912e6000 USBSTOR.SYS
- fffff805`82e80000 fffff805`82e9d000 EhStorClass.
- fffff805`937d0000 fffff805`937de000 WSDScan.sys
- fffff805`937c0000 fffff805`937ce000 WSDPrint.sys
- fffff805`92c00000 fffff805`92c0b000 nlwt.sys
- fffff805`8ec30000 fffff805`8ec3b000 nlwt.sys
- fffff805`84230000 fffff805`8423f000 dump_storpor
- fffff805`84280000 fffff805`842b3000 dump_storahc
- fffff805`842e0000 fffff805`842fe000 dump_dumpfve
- fffff805`92c00000 fffff805`92c55000 WUDFRd.sys
- fffff805`8e940000 fffff805`8e95c000 dam.sys
- fffff805`82a00000 fffff805`82a0a000 SymELAM.sys
- fffff805`83bf0000 fffff805`83c01000 hwpolicy.sys
- ====================== Dump #2: BIOS INFORMATION =======================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4239 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version F25
- BIOS Starting Address Segment f000
- BIOS Release Date 04/11/2018
- BIOS ROM Size 800000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product Name H110-D3A
- Version Default string
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product H110-D3A-CF
- Version x.x
- Feature Flags 09h
- -1579239712: - -1579239664: - «ûÚú
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0021h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0022h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0023h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 003dh]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003eh]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 029E
- Part Number CMK16GX4M2Z2400C16
- [Memory Device (Type 17) - Length 40 - Handle 003fh]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0040h]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 029E
- Part Number CMK16GX4M2Z2400C16
- [Memory Device (Type 17) - Length 40 - Handle 0041h]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0042h]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Array Handle 003dh
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e3060500fffbebbf
- Processor Version Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3700MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 003eh
- Mem Array Mapped Adr Handle 0042h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0040h
- Mem Array Mapped Adr Handle 0042h
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #2: Extra #1 ===========================
- 0: kd> !verifier
- 00000000: Unable to get verifier list.
- ========================== Dump #2: Extra #2 ===========================
- 0: kd> !thread
- GetPointerFromAddress: unable to read from fffff8057d421468
- ffffd208501ed080: Unable to get thread contents
- ========================================================================
- ======================= Dump #3: ANALYZE VERBOSE =======================
- ====================== File: 080220-10078-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Unable to load image \SystemRoot\system32\ntoskrnl.exe, Win32 error 0n2
- *** WARNING: Unable to verify timestamp for ntoskrnl.exe
- *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
- Windows 10 Kernel Version 19041 MP (8 procs) Free x64
- Kernel base = 0xfffff807`53200000 PsLoadedModuleList = 0xfffff807`53e2a330
- Debug session time: Sun Aug 2 13:58:08.599 2020 (UTC - 4:00)
- System Uptime: 0 days 0:55:43.236
- Unable to load image \SystemRoot\system32\ntoskrnl.exe, Win32 error 0n2
- *** WARNING: Unable to verify timestamp for ntoskrnl.exe
- *** ERROR: Module load completed but symbols could not be loaded for ntoskrnl.exe
- ************* Symbol Loading Error Summary **************
- Module name Error
- ntoskrnl The system cannot find the file specified
- You can troubleshoot most symbol related issues by turning on symbol loading diagnostics (!sym noisy) and repeating the command that caused symbols to be loaded.
- You should also verify that your symbol search path (.sympath) is correct.
- BugCheck EF, {ffffcd8fe84ef140, 0, 0, 0}
- ***** Kernel symbols are WRONG. Please fix symbols to do analysis.
- errfg" bg="errbg"><Unable to get nt!KiCurrentEtwBufferOffset>errfg" bg="errbg"><Unable to get nt!KiCurrentEtwBufferBase>
- Probably caused by : memory_corruption
- Followup: memory_corruption
- CRITICAL_PROCESS_DIED (ef)
- A critical system process died
- Arguments:
- Arg1: ffffcd8fe84ef140, Process object or thread object
- Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
- Arg3: 0000000000000000
- Arg4: 0000000000000000
- Debugging Details:
- ***** Kernel symbols are WRONG. Please fix symbols to do analysis.
- <Unable to get nt!KiCurrentEtwBufferOffset><Unable to get nt!KiCurrentEtwBufferBase>
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- ADDITIONAL_DEBUG_TEXT:
- You can run '.symfix; .reload' to try to fix the symbol path and load symbols.
- WRONG_SYMBOLS_TIMESTAMP: 188e70be
- WRONG_SYMBOLS_SIZE: 1046000
- FAULTING_MODULE: fffff80753200000 nt
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- DUMP_TYPE: 2
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0xEF
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff80753b173c2 to fffff807535ddf40
- STACK_TEXT:
- ffffab00`5d9a6c08 fffff807`53b173c2 : 00000000`000000ef ffffcd8f`e84ef140 00000000`00000000 00000000`00000000 : nt+0x3ddf40
- ffffab00`5d9a6c10 00000000`000000ef : ffffcd8f`e84ef140 00000000`00000000 00000000`00000000 00000000`00000000 : nt+0x9173c2
- ffffab00`5d9a6c18 ffffcd8f`e84ef140 : 00000000`00000000 00000000`00000000 00000000`00000000 000000d6`2d541700 : 0xef
- ffffab00`5d9a6c20 00000000`00000000 : 00000000`00000000 00000000`00000000 000000d6`2d541700 00000000`00501902 : 0xffffcd8f`e84ef140
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !Wof
- fffff80758ae3224-fffff80758ae3225 2 bytes - Wof!WofPostReadCallback+64
- [ 48 ff:4c 8b ]
- fffff80758ae322b-fffff80758ae322f 5 bytes - Wof!WofPostReadCallback+6b (+0x07)
- [ 0f 1f 44 00 00:e8 c0 43 a3 fa ]
- fffff80758ae3244-fffff80758ae3245 2 bytes - Wof!WofPostReadCallback+84 (+0x19)
- [ 48 ff:4c 8b ]
- fffff80758ae324b-fffff80758ae324f 5 bytes - Wof!WofPostReadCallback+8b (+0x07)
- [ 0f 1f 44 00 00:e8 40 c3 93 fa ]
- fffff80758ae325d-fffff80758ae325e 2 bytes - Wof!WofPostReadCallback+9d (+0x12)
- [ 48 ff:4c 8b ]
- fffff80758ae3264-fffff80758ae3268 5 bytes - Wof!WofPostReadCallback+a4 (+0x07)
- [ 0f 1f 44 00 00:e8 b7 09 07 fa ]
- 21 errors : !Wof (fffff80758ae3224-fffff80758ae3268)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-08-02T17:58:08.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #3: 3RD PARTY DRIVERS ======================
- May 01 2013 - WinRing0x64.sys - Intel Processor Diagnostic Tool or BatteryCare by OpenLibSys.org or Throttlestop (Properties say: OpenLibSys.org) or EVGA Precision X https://www.evga.com/
- Aug 02 2017 - Oculus_ViGEmBus.sys - Oculus Virtual Gamepad Emulation Bus driver
- May 31 2018 - tapnordvpn.sys - Nord VPN TAP driver https://nordvpn.com
- Oct 08 2018 - SYMEVENT64x86.SYS - Symantec Event Library https://www.symantec.com/
- Nov 16 2018 - logi_core_temp.sys - Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Nov 20 2018 - logi_joy_bus_enum.sys - Logitech Joystick driver
- Nov 20 2018 - logi_joy_xlcore.sys - Logitech Joystick driver
- Jan 12 2019 - vbaudio_vmvaio64_win10.sys - VoiceMeeter Input (VB-Audio VoiceMeeter VAIO) driver
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 04 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- May 14 2019 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- Jun 28 2019 - Ironx64.SYS - Symantec Iron driver http://www.symantec.com/
- Jul 01 2019 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Jul 10 2019 - IDSvia64.sys - Symantec Intrusion Detection IDS Core driver http://www.symantec.com/
- Sep 26 2019 - BHDrvx64.sys - Norton Security BASH driver http://www.symantec.com/
- Nov 29 2019 - NvModuleTracker.sys - NVIDIA Module Tracker driver
- Dec 30 2019 - SRTSPX64.SYS - Symantec Real Time Storage Protection (PEL) http://www.symantec.com/
- Dec 31 2019 - SymEvnt.sys - Symantec Event Library driver
- Jan 09 2020 - ccSetx64.sys - Common Client Settings driver (Symantec Security Technoligies) http://www.symantec.com/
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Jan 26 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Feb 08 2020 - symnets.sys - Network Security WFP driver https://www.symantec.com/
- Feb 11 2020 - SYMEFASI64.SYS - Symantec Extended File Attributes (SI) https://www.symantec.com/
- Mar 24 2020 - wpCtrlDrv.sys - (Symantec Corporation)
- Apr 02 2020 - nlwt.sys - VPN driver (WireGuard LLC)
- Apr 20 2020 - logi_joy_vir_hid.sys - Logitech Joystick driver
- Apr 21 2020 - SRTSP64.SYS - Symantec Real Time Storage Protection http://www.symantec.com/
- May 28 2020 - oculusvad.sys - Oculus VAD driver
- Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Jul 05 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- Jul 08 2020 - nordlwf.sys - NordVPN LightWeight Firewall driver (NordVPN)
- Jul 09 2020 - eeCtrl64.sys - Symantec Eraser Control driver http://www.symantec.com/
- Jul 09 2020 - EraserUtilRebootDrv.sys - Symantec Eraser Utility Reboot driver http://www.symantec.com/
- ================== Dump #3: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \??\C:\Program Files (x86)\EVGA\WinRing0\WinRing0x64.sys
- Image name: WinRing0x64.sys
- Search : https://www.google.com/search?q=WinRing0x64.sys
- ADA Info : Intel Processor Diagnostic Tool or BatteryCare by OpenLibSys.org or Throttlestop (Properties say: OpenLibSys.org) or EVGA Precision X https://www.evga.com/
- Timestamp : Wed May 1 2013
- Image path: \SystemRoot\System32\drivers\Oculus_ViGEmBus.sys
- Image name: Oculus_ViGEmBus.sys
- Search : https://www.google.com/search?q=Oculus_ViGEmBus.sys
- ADA Info : Oculus Virtual Gamepad Emulation Bus driver
- Timestamp : Wed Aug 2 2017
- Image path: \SystemRoot\System32\drivers\tapnordvpn.sys
- Image name: tapnordvpn.sys
- Search : https://www.google.com/search?q=tapnordvpn.sys
- ADA Info : Nord VPN TAP driver https://nordvpn.com
- Timestamp : Thu May 31 2018
- Image path: \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
- Image name: SYMEVENT64x86.SYS
- Search : https://www.google.com/search?q=SYMEVENT64x86.SYS
- ADA Info : Symantec Event Library https://www.symantec.com/
- Timestamp : Mon Oct 8 2018
- Image path: \??\C:\ProgramData\LGHUB\depots\61557\driver_cpu_temperature\logi_core_temp.sys
- Image name: logi_core_temp.sys
- Search : https://www.google.com/search?q=logi_core_temp.sys
- ADA Info : Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Timestamp : Fri Nov 16 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_bus_enum.sys
- Image name: logi_joy_bus_enum.sys
- Search : https://www.google.com/search?q=logi_joy_bus_enum.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_xlcore.sys
- Image name: logi_joy_xlcore.sys
- Search : https://www.google.com/search?q=logi_joy_xlcore.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\System32\drivers\vbaudio_vmvaio64_win10.sys
- Image name: vbaudio_vmvaio64_win10.sys
- Search : https://www.google.com/search?q=vbaudio_vmvaio64_win10.sys
- ADA Info : VoiceMeeter Input (VB-Audio VoiceMeeter VAIO) driver
- Timestamp : Sat Jan 12 2019
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Thu Apr 4 2019
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Tue May 14 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\Ironx64.SYS
- Image name: Ironx64.SYS
- Search : https://www.google.com/search?q=Ironx64.SYS
- ADA Info : Symantec Iron driver http://www.symantec.com/
- Timestamp : Fri Jun 28 2019
- Image path: \SystemRoot\System32\drivers\rt640x64.sys
- Image name: rt640x64.sys
- Search : https://www.google.com/search?q=rt640x64.sys
- ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Timestamp : Mon Jul 1 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\Definitions\IPSDefs\20200731.061\IDSvia64.sys
- Image name: IDSvia64.sys
- Search : https://www.google.com/search?q=IDSvia64.sys
- ADA Info : Symantec Intrusion Detection IDS Core driver http://www.symantec.com/
- Timestamp : Wed Jul 10 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\Definitions\BASHDefs\20200728.001\BHDrvx64.sys
- Image name: BHDrvx64.sys
- Search : https://www.google.com/search?q=BHDrvx64.sys
- ADA Info : Norton Security BASH driver http://www.symantec.com/
- Timestamp : Thu Sep 26 2019
- Image path: \SystemRoot\System32\drivers\NvModuleTracker.sys
- Image name: NvModuleTracker.sys
- Search : https://www.google.com/search?q=NvModuleTracker.sys
- ADA Info : NVIDIA Module Tracker driver
- Timestamp : Fri Nov 29 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SRTSPX64.SYS
- Image name: SRTSPX64.SYS
- Search : https://www.google.com/search?q=SRTSPX64.SYS
- ADA Info : Symantec Real Time Storage Protection (PEL) http://www.symantec.com/
- Timestamp : Mon Dec 30 2019
- Image path: \??\C:\Program Files\Norton Security\NortonData\22.19.9.63\SymPlatform\SymEvnt.sys
- Image name: SymEvnt.sys
- Search : https://www.google.com/search?q=SymEvnt.sys
- ADA Info : Symantec Event Library driver
- Timestamp : Tue Dec 31 2019
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\ccSetx64.sys
- Image name: ccSetx64.sys
- Search : https://www.google.com/search?q=ccSetx64.sys
- ADA Info : Common Client Settings driver (Symantec Security Technoligies) http://www.symantec.com/
- Timestamp : Thu Jan 9 2020
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_0f22333f160a8f42\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Sun Jan 26 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\symnets.sys
- Image name: symnets.sys
- Search : https://www.google.com/search?q=symnets.sys
- ADA Info : Network Security WFP driver https://www.symantec.com/
- Timestamp : Sat Feb 8 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SYMEFASI64.SYS
- Image name: SYMEFASI64.SYS
- Search : https://www.google.com/search?q=SYMEFASI64.SYS
- ADA Info : Symantec Extended File Attributes (SI) https://www.symantec.com/
- Timestamp : Tue Feb 11 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\wpCtrlDrv.sys
- Image name: wpCtrlDrv.sys
- Search : https://www.google.com/search?q=wpCtrlDrv.sys
- ADA Info : (Symantec Corporation)
- Timestamp : Tue Mar 24 2020
- Image path: \SystemRoot\System32\drivers\nlwt.sys
- Image name: nlwt.sys
- Search : https://www.google.com/search?q=nlwt.sys
- ADA Info : VPN driver (WireGuard LLC)
- Timestamp : Thu Apr 2 2020
- Image path: \SystemRoot\system32\drivers\logi_joy_vir_hid.sys
- Image name: logi_joy_vir_hid.sys
- Search : https://www.google.com/search?q=logi_joy_vir_hid.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Mon Apr 20 2020
- Image path: \SystemRoot\System32\drivers\NGCx64\1614040.039\SRTSP64.SYS
- Image name: SRTSP64.SYS
- Search : https://www.google.com/search?q=SRTSP64.SYS
- ADA Info : Symantec Real Time Storage Protection http://www.symantec.com/
- Timestamp : Tue Apr 21 2020
- Image path: \SystemRoot\System32\drivers\oculusvad.sys
- Image name: oculusvad.sys
- Search : https://www.google.com/search?q=oculusvad.sys
- ADA Info : Oculus VAD driver
- Timestamp : Thu May 28 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Tue Jun 9 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_edab19158bdd0d0a\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Sun Jul 5 2020
- Image path: \SystemRoot\system32\DRIVERS\nordlwf.sys
- Image name: nordlwf.sys
- Search : https://www.google.com/search?q=nordlwf.sys
- ADA Info : NordVPN LightWeight Firewall driver (NordVPN)
- Timestamp : Wed Jul 8 2020
- Image path: \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
- Image name: eeCtrl64.sys
- Search : https://www.google.com/search?q=eeCtrl64.sys
- ADA Info : Symantec Eraser Control driver http://www.symantec.com/
- Timestamp : Thu Jul 9 2020
- Image path: \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
- Image name: EraserUtilRebootDrv.sys
- Search : https://www.google.com/search?q=EraserUtilRebootDrv.sys
- ADA Info : Symantec Eraser Utility Reboot driver http://www.symantec.com/
- Timestamp : Thu Jul 9 2020
- ====================== Dump #3: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- bindflt.sys Windows Bind Filter driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_storahci.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- IntelTA.sys Intel Telemetry Driver
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msquic.sys Windows QUIC Driver
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- ntoskrnl.exe NT Operating System Kernal (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- parport.sys Parallel Port Driver (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBSTOR.SYS USB Mass Storage Class driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- ====================== Dump #3: UNLOADED MODULES =======================
- fffff807`a4490000 fffff807`a44ed000 WdFilter.sys
- fffff807`a44f0000 fffff807`a4503000 WdNisDrv.sys
- fffff807`a4030000 fffff807`a403e000 WSDScan.sys
- fffff807`a4020000 fffff807`a402e000 WSDPrint.sys
- fffff807`a4040000 fffff807`a404b000 nlwt.sys
- fffff807`656f0000 fffff807`656fb000 nlwt.sys
- fffff807`64510000 fffff807`6451f000 dump_storpor
- fffff807`64560000 fffff807`64593000 dump_storahc
- fffff807`645c0000 fffff807`645de000 dump_dumpfve
- fffff807`58aa0000 fffff807`58abd000 EhStorClass.
- fffff807`59f10000 fffff807`59f2c000 dam.sys
- fffff807`58610000 fffff807`58621000 WdBoot.sys
- fffff807`58600000 fffff807`5860a000 SymELAM.sys
- fffff807`59810000 fffff807`59821000 hwpolicy.sys
- ====================== Dump #3: BIOS INFORMATION =======================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4239 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version F25
- BIOS Starting Address Segment f000
- BIOS Release Date 04/11/2018
- BIOS ROM Size 800000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product Name H110-D3A
- Version Default string
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product H110-D3A-CF
- Version x.x
- Feature Flags 09h
- -1575110944: - -1575110896: - «ûÚú
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0021h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0022h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0023h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 003dh]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003eh]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 029E
- Part Number CMK16GX4M2Z2400C16
- [Memory Device (Type 17) - Length 40 - Handle 003fh]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0040h]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 029E
- Part Number CMK16GX4M2Z2400C16
- [Memory Device (Type 17) - Length 40 - Handle 0041h]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0042h]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Array Handle 003dh
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e3060500fffbebbf
- Processor Version Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3700MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 003eh
- Mem Array Mapped Adr Handle 0042h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0040h
- Mem Array Mapped Adr Handle 0042h
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #3: Extra #1 ===========================
- 1: kd> !verifier
- Error
Add Comment
Please, Sign In to add comment