Advertisement
Guest User

Untitled

a guest
Aug 6th, 2020
93
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 52.67 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 01 minutes and 14 seconds
  5.  
  6. ================================ SYSTEM ================================
  7. MANUFACTURER: MSI
  8. PRODUCT_NAME: MS-7916
  9. VERSION: 1.0
  10.  
  11. ================================= BIOS =================================
  12. VENDOR: American Megatrends Inc.
  13. VERSION: V1.12
  14. DATE: 02/16/2016
  15.  
  16. ============================= MOTHERBOARD ==============================
  17. MANUFACTURER: MSI
  18. PRODUCT: Z97 GAMING 7 (MS-7916)
  19. VERSION: 1.0
  20.  
  21. ================================= RAM ==================================
  22. Size Speed Manufacturer Part No.
  23. -------------- -------------- ------------------- ----------------------
  24. 0MHz
  25. 8192MB 1600MHz 0215 CML16GX3M2A1600C10
  26. 0MHz
  27. 8192MB 1600MHz 0215 CML16GX3M2A1600C10
  28.  
  29. ================================= CPU ==================================
  30. Processor Version: Intel(R) Core(TM) i5-4570 CPU @ 3.20GHz
  31. COUNT: 4
  32. MHZ: 3200
  33. VENDOR: GenuineIntel
  34. FAMILY: 6
  35. MODEL: 3c
  36. STEPPING: 3
  37. MICROCODE: 6,3c,3,0 (F,M,S,R) SIG: 27'00000000 (cache) 27'00000000 (init)
  38.  
  39. ================================== OS ==================================
  40. Product: WinNt, suite: TerminalServer SingleUserTS Personal
  41. Built by: 19041.1.amd64fre.vb_release.191206-1406
  42. BUILD_VERSION: 10.0.19041.388 (WinBuild.160101.0800)
  43. BUILD: 19041
  44. SERVICEPACK: 388
  45. PLATFORM_TYPE: x64
  46. NAME: Windows 10
  47. EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
  48. BUILD_TIMESTAMP: unknown_date
  49. BUILDDATESTAMP: 160101.0800
  50. BUILDLAB: WinBuild
  51. BUILDOSVER: 10.0.19041.388
  52.  
  53. =============================== DEBUGGER ===============================
  54. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  55. Copyright (c) Microsoft Corporation. All rights reserved.
  56.  
  57. =============================== COMMENTS ===============================
  58. * Information gathered from different dump files may be different. If
  59. Windows updates between two dump files, two or more OS versions may
  60. be shown above.
  61. * If the user updates the BIOS between dump files, two or more versions
  62. and dates may be shown above.
  63. * More RAM information can be found below in a full BIOS section.
  64.  
  65. ========================================================================
  66. ======================= Dump #1: ANALYZE VERBOSE =======================
  67. ====================== File: 080520-20859-01.dmp =======================
  68. ========================================================================
  69.  
  70. Mini Kernel Dump File: Only registers and stack trace are available
  71. Windows 10 Kernel Version 19041 MP (4 procs) Free x64
  72. Kernel base = 0xfffff803`78400000 PsLoadedModuleList = 0xfffff803`7902a310
  73. Debug session time: Tue Aug 4 20:53:26.660 2020 (UTC - 4:00)
  74. System Uptime: 1 days 3:12:12.502
  75.  
  76. BugCheck 1000007E, {ffffffffc0000005, fffff8037e285697, ffffd781f1d10388, ffffd781f1d0fbc0}
  77. *** WARNING: Unable to verify timestamp for win32k.sys
  78. *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
  79. Probably caused by : memory_corruption
  80. Followup: memory_corruption
  81.  
  82. SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
  83. This is a very common bugcheck. Usually the exception address pinpoints
  84. the driver/function that caused the problem. Always note this address
  85. as well as the link date of the driver/image that contains this address.
  86. Some common problems are exception code 0x80000003. This means a hard
  87. coded breakpoint or assertion was hit, but this system was booted
  88. /NODEBUG. This is not supposed to happen as developers should never have
  89. hardcoded breakpoints in retail code, but ...
  90. If this happens, make sure a debugger gets connected, and the
  91. system is booted /DEBUG. This will let us see why this breakpoint is
  92. happening.
  93.  
  94. Arguments:
  95. Arg1: ffffffffc0000005, The exception code that was not handled
  96. Arg2: fffff8037e285697, The address that the exception occurred at
  97. Arg3: ffffd781f1d10388, Exception Record Address
  98. Arg4: ffffd781f1d0fbc0, Context Record Address
  99.  
  100. Debugging Details:
  101. DUMP_CLASS: 1
  102. DUMP_QUALIFIER: 400
  103. DUMP_TYPE: 2
  104. EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
  105. FAULTING_IP:
  106. dxgmms2!VIDMM_PAGE_TABLE_BASE::GetSegmentOffsetInPages+b
  107. fffff803`7e285697 f7405000100000 test dword ptr [rax+50h],1000h
  108. EXCEPTION_RECORD: ffffd781f1d10388 -- (.exr 0xffffd781f1d10388)
  109. ExceptionAddress: fffff8037e285697 (dxgmms2!VIDMM_PAGE_TABLE_BASE::GetSegmentOffsetInPages+0x000000000000000b)
  110. ExceptionCode: c0000005 (Access violation)
  111. ExceptionFlags: 00000000
  112. NumberParameters: 2
  113. Parameter[0]: 0000000000000000
  114. Parameter[1]: 0000000000000050
  115. Attempt to read from address 0000000000000050
  116. CONTEXT: ffffd781f1d0fbc0 -- (.cxr 0xffffd781f1d0fbc0)
  117. rax=0000000000000000 rbx=0000000000000002 rcx=ffffe2062e256b10
  118. rdx=ffffe2063debecb0 rsi=ffffe2062e256b10 rdi=ffffe2063830c958
  119. rip=fffff8037e285697 rsp=ffffd781f1d105c8 rbp=0000000000000200
  120. r8=ffffd781f1d104e0 r9=00000000ffffffff r10=0000000000000000
  121. r11=ffffd781f1d104d0 r12=0000000000000009 r13=ffffe2061373a150
  122. r14=ffffe206184cee90 r15=0000000000000048
  123. iopl=0 nv up ei ng nz na pe nc
  124. cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282
  125. dxgmms2!VIDMM_PAGE_TABLE_BASE::GetSegmentOffsetInPages+0xb:
  126. fffff803`7e285697 f7405000100000 test dword ptr [rax+50h],1000h ds:002b:00000000`00000050=????????
  127. Resetting default scope
  128. CUSTOMER_CRASH_COUNT: 1
  129.  
  130. PROCESS_NAME: System
  131.  
  132. CURRENT_IRQL: 0
  133. ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
  134. EXCEPTION_CODE_STR: c0000005
  135. EXCEPTION_PARAMETER1: 0000000000000000
  136. EXCEPTION_PARAMETER2: 0000000000000050
  137. FOLLOWUP_IP:
  138. dxgmms2!VIDMM_PAGE_TABLE_BASE::GetSegmentOffsetInPages+b
  139. fffff803`7e285697 f7405000100000 test dword ptr [rax+50h],1000h
  140. READ_ADDRESS: fffff803790fa388: Unable to get MiVisibleState
  141. 0000000000000050
  142. BUGCHECK_STR: AV
  143. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  144. LAST_CONTROL_TRANSFER: from fffff8037e31ef80 to fffff8037e285697
  145. STACK_TEXT:
  146. ffffd781`f1d105c8 fffff803`7e31ef80 : ffffd781`00000001 ffffe206`2e256b10 00000000`00000000 00000000`00000005 : dxgmms2!VIDMM_PAGE_TABLE_BASE::GetSegmentOffsetInPages+0xb
  147. ffffd781`f1d105d0 fffff803`7e31eff8 : 00000000`00000000 00000000`00000000 00000000`00000800 ffffe206`184cee90 : dxgmms2!VIDMM_PAGE_DIRECTORY::MapPageTablesToVaSpace+0x130
  148. ffffd781`f1d10670 fffff803`7e30df4d : 00000000`00000000 00000000`00000000 ffffd781`f1d10810 ffff9d8a`f909c000 : dxgmms2!VIDMM_PAGE_DIRECTORY::MapPageTablesToVaSpace+0x1a8
  149. ffffd781`f1d10710 fffff803`7e2f5522 : 00000000`00000000 00000000`00000000 00000000`00000076 ffffe206`3830b400 : dxgmms2!VIDMM_GLOBAL::InitPagingProcessVaSpace+0x1cef9
  150. ffffd781`f1d10880 fffff803`7e2e82e2 : ffffe206`13739d30 ffffd781`00000001 00000000`00000001 ffffe206`184a2200 : dxgmms2!VIDMM_GLOBAL::ProcessSystemCommand+0x31e22
  151. ffffd781`f1d10a00 fffff803`7e2f1b99 : ffffe206`184a2190 ffff9d8a`f8f22001 00000000`00000000 00000000`08f13000 : dxgmms2!VIDMM_WORKER_THREAD::Run+0x1462
  152. ffffd781`f1d10be0 fffff803`78746735 : ffff9d8a`f8f22080 fffff803`7e2f1b90 ffffe206`184a2190 000fa425`bd9bbfff : dxgmms2!VidMmWorkerThreadProc+0x9
  153. ffffd781`f1d10c10 fffff803`787e51b8 : fffff803`73e28180 ffff9d8a`f8f22080 fffff803`787466e0 00000000`00000002 : nt!PspSystemThreadStartup+0x55
  154. ffffd781`f1d10c60 00000000`00000000 : ffffd781`f1d11000 ffffd781`f1d0b000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28
  155. CHKIMG_EXTENSION: !chkimg -lo 50 -d !FLTMGR
  156. fffff80375cb6bc3-fffff80375cb6bc4 2 bytes - FLTMGR!DeleteFileListCtrlCallback+43
  157. [ 48 ff:4c 8b ]
  158. fffff80375cb6bca-fffff80375cb6bce 5 bytes - FLTMGR!DeleteFileListCtrlCallback+4a (+0x07)
  159. [ 0f 1f 44 00 00:e8 61 bc a5 02 ]
  160. fffff80375cb6bdb-fffff80375cb6bdc 2 bytes - FLTMGR!DeleteFileListCtrlCallback+5b (+0x11)
  161. [ 48 ff:4c 8b ]
  162. fffff80375cb6be2-fffff80375cb6be6 5 bytes - FLTMGR!DeleteFileListCtrlCallback+62 (+0x07)
  163. [ 0f 1f 44 00 00:e8 39 c5 96 02 ]
  164. fffff80375cb6c23-fffff80375cb6c24 2 bytes - FLTMGR!DeleteFileListCtrlCallback+a3 (+0x41)
  165. [ 48 ff:4c 8b ]
  166. fffff80375cb6c2a-fffff80375cb6c30 7 bytes - FLTMGR!DeleteFileListCtrlCallback+aa (+0x07)
  167. [ 0f 1f 44 00 00 48 ff:e8 41 bd 96 02 4c 8b ]
  168. fffff80375cb6c36-fffff80375cb6c3a 5 bytes - FLTMGR!DeleteFileListCtrlCallback+b6 (+0x0c)
  169. [ 0f 1f 44 00 00:e8 a5 4c a4 02 ]
  170. 28 errors : !FLTMGR (fffff80375cb6bc3-fffff80375cb6c3a)
  171. MODULE_NAME: memory_corruption
  172.  
  173. IMAGE_NAME: memory_corruption
  174.  
  175. FOLLOWUP_NAME: memory_corruption
  176. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  177. MEMORY_CORRUPTOR: LARGE
  178. STACK_COMMAND: .cxr 0xffffd781f1d0fbc0 ; kb
  179. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  180. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  181. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  182. TARGET_TIME: 2020-08-05T00:53:26.000Z
  183. SUITE_MASK: 784
  184. PRODUCT_TYPE: 1
  185. USER_LCID: 0
  186. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  187. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  188. Followup: memory_corruption
  189.  
  190. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  191.  
  192. Jul 30 2009 - MBfilt64.sys - High Definition Audio driver (Realtek Ltd) https://www.realtek.com/en/
  193. May 03 2012 - GEARAspiWDM.sys - Gear Software Advanced SCSI Programming Interface Windows Driver Model http://www.gearsoftware.com/
  194. Nov 26 2012 - NTIOLib_X64.sys - !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  195. Feb 28 2013 - npf.sys - NetGroup Packet Filter driver, a component of WinPCap by Riverbed
  196. Jan 10 2014 - ikbevent.sys - Intel Keyboard Class Upper Filter driver
  197. Jan 10 2014 - imsevent.sys - Intel Mouse Class Upper Filter driver
  198. Feb 17 2014 - I2cHkBurn.sys - MSI Gaming App driver or FINTEK FitGpBus Device driver (Feature Integration Technology)
  199. Apr 03 2014 - iaStorA.sys - Intel SATA Storage Device RAID Controller
  200. Oct 03 2014 - iwdbus.sys - Intel WiDi Solution driver http://www.intel.com/
  201. Nov 23 2014 - HWiNFO64A.SYS - HWiNFO AMD64 Kernel driver https://www.hwinfo.com/
  202. Feb 26 2015 - XtuAcpiDriver.sys - !!! Intel Extreme Tuning BIOS Interface driver https://downloadcenter.intel.com/
  203. Mar 23 2015 - bcbtums.sys - Broadcom Bluetooth Firmware Download Filter driver
  204. May 06 2015 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  205. May 06 2015 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  206. May 28 2015 - iocbios2.sys - !!! Overclocking Software - Intel(R) Extreme Tuning Utility Performance Tuning driver
  207. May 29 2015 - gwdrv.sys - GlassWire Driver https://www.glasswire.com/
  208. Jul 07 2015 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
  209. Sep 20 2015 - ICCWDT.sys - Intel(R) Watchdog Timer driver
  210. Oct 01 2015 - asstahci64.sys - Asmedia 106x SATA Host Controller driver
  211. Feb 04 2016 - asmthub3.sys - ASMedia USB 3.0 Hub driver http://www.asmedia.com.tw/
  212. Feb 04 2016 - asmtxhci.sys - ASMedia USB 3.0 driver http://www.asmedia.com.tw/
  213. May 19 2016 - 000.fcl - FCL driver (CyberLink) http://www.gocyberlink.com/
  214. Dec 06 2016 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  215. Mar 15 2017 - NTIOLib_X64.sys - !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  216. Mar 29 2017 - NTIOLib_X64.sys - !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  217. Jul 09 2017 - NTIOLib_X64.sys - !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  218. Apr 03 2018 - LEqdUsb.Sys - Logitech SetPoint Unifying KMDF USB Filter driver http://support.logitech.com/
  219. Apr 03 2018 - LHidEqd.Sys - Logitech SetPoint Unifying KMDF HID Filter driver http://support.logitech.com/
  220. Apr 03 2018 - LHidFilt.Sys - Logitech HID Filter driver http://www.logitech.com/
  221. Apr 03 2018 - LMouFilt.Sys - Logitech Mouse Filter driver http://support.logitech.com/
  222. Apr 26 2018 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
  223. Aug 21 2018 - KfeCo10X64.sys - Killer Networking Suite driver
  224. Aug 31 2018 - e2xw10x64.sys - Killer PCI-E Gigabit Ethernet Controller driver http://www.killernetworking.com/
  225. Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
  226. Apr 09 2019 - AsIO2.sys - Asus Input Output driver
  227. May 15 2019 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  228. Aug 13 2019 - cthda.sys - Sound Blaster HD Audio driver (Creative Technology Ltd)
  229. Aug 13 2019 - cthdb.sys - Sound Blaster HD Audio Controller driver (Creative Technology Ltd)
  230. Nov 20 2019 - mbamswissarmy.sys - MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
  231. Nov 29 2019 - NvModuleTracker.sys - NVIDIA Module Tracker driver
  232. Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  233. Jan 21 2020 - igdkmd64.sys - Intel HD graphics driver
  234. Jan 26 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
  235. Feb 10 2020 - bcmwl63a.sys - Broadcom 802 11 Network Adapter Wireless driver http://www.broadcom.com/support/
  236. Jun 04 2020 - MbamChameleon.sys - Malwarebytes Anti-Malware Chameleon driver https://www.malwarebytes.com/
  237. Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
  238. Jul 23 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
  239.  
  240. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  241.  
  242. Image path: \SystemRoot\system32\drivers\MBfilt64.sys
  243. Image name: MBfilt64.sys
  244. Search : https://www.google.com/search?q=MBfilt64.sys
  245. ADA Info : High Definition Audio driver (Realtek Ltd) https://www.realtek.com/en/
  246. Timestamp : Thu Jul 30 2009
  247.  
  248. Image path: \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
  249. Image name: GEARAspiWDM.sys
  250. Search : https://www.google.com/search?q=GEARAspiWDM.sys
  251. ADA Info : Gear Software Advanced SCSI Programming Interface Windows Driver Model http://www.gearsoftware.com/
  252. Timestamp : Thu May 3 2012
  253.  
  254. Image path: \??\C:\Program Files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys
  255. Image name: NTIOLib_X64.sys
  256. Search : https://www.google.com/search?q=NTIOLib_X64.sys
  257. ADA Info : !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  258. Timestamp : Mon Nov 26 2012
  259.  
  260. Image path: \SystemRoot\system32\drivers\npf.sys
  261. Image name: npf.sys
  262. Search : https://www.google.com/search?q=npf.sys
  263. ADA Info : NetGroup Packet Filter driver, a component of WinPCap by Riverbed
  264. Timestamp : Thu Feb 28 2013
  265.  
  266. Image path: \SystemRoot\system32\DRIVERS\ikbevent.sys
  267. Image name: ikbevent.sys
  268. Search : https://www.google.com/search?q=ikbevent.sys
  269. ADA Info : Intel Keyboard Class Upper Filter driver
  270. Timestamp : Fri Jan 10 2014
  271.  
  272. Image path: \SystemRoot\system32\DRIVERS\imsevent.sys
  273. Image name: imsevent.sys
  274. Search : https://www.google.com/search?q=imsevent.sys
  275. ADA Info : Intel Mouse Class Upper Filter driver
  276. Timestamp : Fri Jan 10 2014
  277.  
  278. Image path: \SystemRoot\system32\drivers\I2cHkBurn.sys
  279. Image name: I2cHkBurn.sys
  280. Search : https://www.google.com/search?q=I2cHkBurn.sys
  281. ADA Info : MSI Gaming App driver or FINTEK FitGpBus Device driver (Feature Integration Technology)
  282. Timestamp : Mon Feb 17 2014
  283.  
  284. Image path: \SystemRoot\System32\drivers\iaStorA.sys
  285. Image name: iaStorA.sys
  286. Search : https://www.google.com/search?q=iaStorA.sys
  287. ADA Info : Intel SATA Storage Device RAID Controller
  288. Timestamp : Thu Apr 3 2014
  289.  
  290. Image path: \SystemRoot\System32\drivers\iwdbus.sys
  291. Image name: iwdbus.sys
  292. Search : https://www.google.com/search?q=iwdbus.sys
  293. ADA Info : Intel WiDi Solution driver http://www.intel.com/
  294. Timestamp : Fri Oct 3 2014
  295.  
  296. Image path: \??\C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS
  297. Image name: HWiNFO64A.SYS
  298. Search : https://www.google.com/search?q=HWiNFO64A.SYS
  299. ADA Info : HWiNFO AMD64 Kernel driver https://www.hwinfo.com/
  300. Timestamp : Sun Nov 23 2014
  301.  
  302. Image path: \SystemRoot\System32\drivers\XtuAcpiDriver.sys
  303. Image name: XtuAcpiDriver.sys
  304. Search : https://www.google.com/search?q=XtuAcpiDriver.sys
  305. ADA Info : !!! Intel Extreme Tuning BIOS Interface driver https://downloadcenter.intel.com/
  306. Timestamp : Thu Feb 26 2015
  307.  
  308. Image path: \SystemRoot\system32\drivers\bcbtums.sys
  309. Image name: bcbtums.sys
  310. Search : https://www.google.com/search?q=bcbtums.sys
  311. ADA Info : Broadcom Bluetooth Firmware Download Filter driver
  312. Timestamp : Mon Mar 23 2015
  313.  
  314. Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
  315. Image name: CorsairVBusDriver.sys
  316. Search : https://www.google.com/search?q=CorsairVBusDriver.sys
  317. ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  318. Timestamp : Wed May 6 2015
  319.  
  320. Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
  321. Image name: CorsairVHidDriver.sys
  322. Search : https://www.google.com/search?q=CorsairVHidDriver.sys
  323. ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  324. Timestamp : Wed May 6 2015
  325.  
  326. Image path: \??\C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys
  327. Image name: iocbios2.sys
  328. Search : https://www.google.com/search?q=iocbios2.sys
  329. ADA Info : !!! Overclocking Software - Intel(R) Extreme Tuning Utility Performance Tuning driver
  330. Timestamp : Thu May 28 2015
  331.  
  332. Image path: \SystemRoot\system32\DRIVERS\gwdrv.sys
  333. Image name: gwdrv.sys
  334. Search : https://www.google.com/search?q=gwdrv.sys
  335. ADA Info : GlassWire Driver https://www.glasswire.com/
  336. Timestamp : Fri May 29 2015
  337.  
  338. Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
  339. Image name: TeeDriverW8x64.sys
  340. Search : https://www.google.com/search?q=TeeDriverW8x64.sys
  341. ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
  342. Timestamp : Tue Jul 7 2015
  343.  
  344. Image path: \SystemRoot\System32\drivers\ICCWDT.sys
  345. Image name: ICCWDT.sys
  346. Search : https://www.google.com/search?q=ICCWDT.sys
  347. ADA Info : Intel(R) Watchdog Timer driver
  348. Timestamp : Sun Sep 20 2015
  349.  
  350. Image path: \SystemRoot\System32\drivers\asstahci64.sys
  351. Image name: asstahci64.sys
  352. Search : https://www.google.com/search?q=asstahci64.sys
  353. ADA Info : Asmedia 106x SATA Host Controller driver
  354. Timestamp : Thu Oct 1 2015
  355.  
  356. Image path: \SystemRoot\System32\drivers\asmthub3.sys
  357. Image name: asmthub3.sys
  358. Search : https://www.google.com/search?q=asmthub3.sys
  359. ADA Info : ASMedia USB 3.0 Hub driver http://www.asmedia.com.tw/
  360. Timestamp : Thu Feb 4 2016
  361.  
  362. Image path: \SystemRoot\System32\drivers\asmtxhci.sys
  363. Image name: asmtxhci.sys
  364. Search : https://www.google.com/search?q=asmtxhci.sys
  365. ADA Info : ASMedia USB 3.0 driver http://www.asmedia.com.tw/
  366. Timestamp : Thu Feb 4 2016
  367.  
  368. Image path: \SystemRoot\system32\DRIVERS\CLFCL5.15\000.fcl
  369. Image name: 000.fcl
  370. Search : https://www.google.com/search?q=000.fcl
  371. ADA Info : FCL driver (CyberLink) http://www.gocyberlink.com/
  372. Timestamp : Thu May 19 2016
  373.  
  374. Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
  375. Image name: RTKVHD64.sys
  376. Search : https://www.google.com/search?q=RTKVHD64.sys
  377. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  378. Timestamp : Tue Dec 6 2016
  379.  
  380. Image path: \??\C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys
  381. Image name: NTIOLib_X64.sys
  382. Search : https://www.google.com/search?q=NTIOLib_X64.sys
  383. ADA Info : !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  384. Timestamp : Wed Mar 15 2017
  385.  
  386. Image path: \??\C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys
  387. Image name: NTIOLib_X64.sys
  388. Search : https://www.google.com/search?q=NTIOLib_X64.sys
  389. ADA Info : !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  390. Timestamp : Wed Mar 29 2017
  391.  
  392. Image path: \??\C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys
  393. Image name: NTIOLib_X64.sys
  394. Search : https://www.google.com/search?q=NTIOLib_X64.sys
  395. ADA Info : !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
  396. Timestamp : Sun Jul 9 2017
  397.  
  398. Image path: \SystemRoot\system32\DRIVERS\LEqdUsb.Sys
  399. Image name: LEqdUsb.Sys
  400. Search : https://www.google.com/search?q=LEqdUsb.Sys
  401. ADA Info : Logitech SetPoint Unifying KMDF USB Filter driver http://support.logitech.com/
  402. Timestamp : Tue Apr 3 2018
  403.  
  404. Image path: \SystemRoot\system32\DRIVERS\LHidEqd.Sys
  405. Image name: LHidEqd.Sys
  406. Search : https://www.google.com/search?q=LHidEqd.Sys
  407. ADA Info : Logitech SetPoint Unifying KMDF HID Filter driver http://support.logitech.com/
  408. Timestamp : Tue Apr 3 2018
  409.  
  410. Image path: \SystemRoot\system32\DRIVERS\LHidFilt.Sys
  411. Image name: LHidFilt.Sys
  412. Search : https://www.google.com/search?q=LHidFilt.Sys
  413. ADA Info : Logitech HID Filter driver http://www.logitech.com/
  414. Timestamp : Tue Apr 3 2018
  415.  
  416. Image path: \SystemRoot\system32\DRIVERS\LMouFilt.Sys
  417. Image name: LMouFilt.Sys
  418. Search : https://www.google.com/search?q=LMouFilt.Sys
  419. ADA Info : Logitech Mouse Filter driver http://support.logitech.com/
  420. Timestamp : Tue Apr 3 2018
  421.  
  422. Image path: \SystemRoot\System32\drivers\IntcDAud.sys
  423. Image name: IntcDAud.sys
  424. Search : https://www.google.com/search?q=IntcDAud.sys
  425. ADA Info : Intel Display Audio Driver http://www.intel.com/
  426. Timestamp : Thu Apr 26 2018
  427.  
  428. Image path: \SystemRoot\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys
  429. Image name: KfeCo10X64.sys
  430. Search : https://www.google.com/search?q=KfeCo10X64.sys
  431. ADA Info : Killer Networking Suite driver
  432. Timestamp : Tue Aug 21 2018
  433.  
  434. Image path: \SystemRoot\System32\drivers\e2xw10x64.sys
  435. Image name: e2xw10x64.sys
  436. Search : https://www.google.com/search?q=e2xw10x64.sys
  437. ADA Info : Killer PCI-E Gigabit Ethernet Controller driver http://www.killernetworking.com/
  438. Timestamp : Fri Aug 31 2018
  439.  
  440. Image path: \SystemRoot\system32\drivers\nvvad64v.sys
  441. Image name: nvvad64v.sys
  442. Search : https://www.google.com/search?q=nvvad64v.sys
  443. ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
  444. Timestamp : Thu Mar 14 2019
  445.  
  446. Image path: \??\C:\WINDOWS\system32\drivers\AsIO2.sys
  447. Image name: AsIO2.sys
  448. Search : https://www.google.com/search?q=AsIO2.sys
  449. ADA Info : Asus Input Output driver
  450. Timestamp : Tue Apr 9 2019
  451.  
  452. Image path: \??\C:\WINDOWS\system32\drivers\ene.sys
  453. Image name: ene.sys
  454. Search : https://www.google.com/search?q=ene.sys
  455. ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  456. Timestamp : Wed May 15 2019
  457.  
  458. Image path: \SystemRoot\system32\drivers\cthda.sys
  459. Image name: cthda.sys
  460. Search : https://www.google.com/search?q=cthda.sys
  461. ADA Info : Sound Blaster HD Audio driver (Creative Technology Ltd)
  462. Timestamp : Tue Aug 13 2019
  463.  
  464. Image path: \SystemRoot\system32\DRIVERS\cthdb.sys
  465. Image name: cthdb.sys
  466. Search : https://www.google.com/search?q=cthdb.sys
  467. ADA Info : Sound Blaster HD Audio Controller driver (Creative Technology Ltd)
  468. Timestamp : Tue Aug 13 2019
  469.  
  470. Image path: \SystemRoot\System32\Drivers\mbamswissarmy.sys
  471. Image name: mbamswissarmy.sys
  472. Search : https://www.google.com/search?q=mbamswissarmy.sys
  473. ADA Info : MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
  474. Timestamp : Wed Nov 20 2019
  475.  
  476. Image path: \SystemRoot\System32\drivers\NvModuleTracker.sys
  477. Image name: NvModuleTracker.sys
  478. Search : https://www.google.com/search?q=NvModuleTracker.sys
  479. ADA Info : NVIDIA Module Tracker driver
  480. Timestamp : Fri Nov 29 2019
  481.  
  482. Image path: \SystemRoot\System32\drivers\nvvhci.sys
  483. Image name: nvvhci.sys
  484. Search : https://www.google.com/search?q=nvvhci.sys
  485. ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  486. Timestamp : Fri Jan 10 2020
  487.  
  488. Image path: \SystemRoot\system32\DRIVERS\igdkmd64.sys
  489. Image name: igdkmd64.sys
  490. Search : https://www.google.com/search?q=igdkmd64.sys
  491. ADA Info : Intel HD graphics driver
  492. Timestamp : Tue Jan 21 2020
  493.  
  494. Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_0f22333f160a8f42\UcmCxUcsiNvppc.sys
  495. Image name: UcmCxUcsiNvppc.sys
  496. Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
  497. ADA Info : NVIDIA USB Type-C Port Policy Controller driver
  498. Timestamp : Sun Jan 26 2020
  499.  
  500. Image path: \SystemRoot\System32\drivers\bcmwl63a.sys
  501. Image name: bcmwl63a.sys
  502. Search : https://www.google.com/search?q=bcmwl63a.sys
  503. ADA Info : Broadcom 802 11 Network Adapter Wireless driver http://www.broadcom.com/support/
  504. Timestamp : Mon Feb 10 2020
  505.  
  506. Image path: \SystemRoot\System32\Drivers\MbamChameleon.sys
  507. Image name: MbamChameleon.sys
  508. Search : https://www.google.com/search?q=MbamChameleon.sys
  509. ADA Info : Malwarebytes Anti-Malware Chameleon driver https://www.malwarebytes.com/
  510. Timestamp : Thu Jun 4 2020
  511.  
  512. Image path: \SystemRoot\system32\drivers\nvhda64v.sys
  513. Image name: nvhda64v.sys
  514. Search : https://www.google.com/search?q=nvhda64v.sys
  515. ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
  516. Timestamp : Tue Jun 9 2020
  517.  
  518. Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3491fc86dc91eddc\nvlddmkm.sys
  519. Image name: nvlddmkm.sys
  520. Search : https://www.google.com/search?q=nvlddmkm.sys
  521. ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
  522. Timestamp : Thu Jul 23 2020
  523.  
  524. ====================== Dump #1: MICROSOFT DRIVERS ======================
  525.  
  526. ACPI.sys ACPI Driver for NT (Microsoft)
  527. acpiex.sys ACPIEx Driver (Microsoft)
  528. acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
  529. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  530. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  531. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  532. ahcache.sys Application Compatibility Cache (Microsoft)
  533. bam.sys BAM Kernal driver (Microsoft)
  534. BasicDisplay.sys Basic Display driver (Microsoft)
  535. BasicRender.sys Basic Render driver (Microsoft)
  536. Beep.SYS BEEP driver (Microsoft)
  537. bindflt.sys Windows Bind Filter driver (Microsoft)
  538. BOOTVID.dll VGA Boot Driver (Microsoft)
  539. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  540. btampm.sys Microsoft Bluetooth Audio Multiprofile Manager
  541. BthA2dp.sys Bluetooth A2DP Driver
  542. BthEnum.sys Bluetooth Bus Extender
  543. BthHfAud.sys Bluetooth Hands-free Audio Device driver (Microsoft)
  544. bthhfenum.sys Bluetooth Hands-Free Audio and Call Control HID Enumerator
  545. bthpan.sys Bluetooth Personal Area Networking
  546. BTHport.sys Bluetooth Bus driver (Microsoft)
  547. BTHUSB.sys Bluetooth Miniport driver (Microsoft)
  548. cdd.dll Canonical Display Driver (Microsoft)
  549. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  550. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  551. CI.dll Code Integrity Module (Microsoft)
  552. CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
  553. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  554. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  555. CLFS.SYS Common Log File System Driver (Microsoft)
  556. clipsp.sys CLIP Service (Microsoft)
  557. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  558. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  559. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  560. condrv.sys Console Driver (Microsoft)
  561. crashdmp.sys Crash Dump driver (Microsoft)
  562. DevAuthE.sys Xbox Device Authentication Driver
  563. dfsc.sys DFS Namespace Client Driver (Microsoft)
  564. disk.sys PnP Disk Driver (Microsoft)
  565. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  566. dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  567. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  568. dump_iaStorA.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  569. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  570. dxgmms2.sys DirectX Graphics MMS
  571. exfat.SYS Extended FAT File System driver (Microsoft)
  572. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  573. fileinfo.sys FileInfo Filter Driver (Microsoft)
  574. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  575. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  576. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  577. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  578. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  579. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  580. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  581. HdAudio.sys High Definition Audio Function driver (Microsoft)
  582. hidbth.sys Bluetooth Miniport Driver for HID Devices
  583. HIDCLASS.SYS Hid Class Library (Microsoft)
  584. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  585. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  586. HTTP.sys HTTP Protocol Stack (Microsoft)
  587. intelpep.sys Intel Power Engine Plugin (Microsoft)
  588. intelppm.sys Processor Device Driver (Microsoft)
  589. IntelTA.sys Intel Telemetry Driver
  590. iorate.sys I/O rate control Filter (Microsoft)
  591. kbdclass.sys Keyboard Class Driver (Microsoft)
  592. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  593. kd.dll Local Kernal Debugger (Microsoft)
  594. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  595. ks.sys Kernal CSA Library (Microsoft)
  596. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  597. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  598. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  599. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  600. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  601. mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
  602. Microsoft.Bluetooth.AvrcpTransport.sys Microsoft Bluetooth Avrcp Transport Driver
  603. Microsoft.Bluetooth.Legacy.LEEnumerator.sys Microsoft Bluetooth Legacy LE Enumerator driver (Microsoft)
  604. mmcss.sys MMCSS Driver (Microsoft)
  605. monitor.sys Monitor Driver (Microsoft)
  606. mouclass.sys Mouse Class Driver (Microsoft)
  607. mouhid.sys HID Mouse Filter Driver (Microsoft)
  608. mountmgr.sys Mount Point Manager (Microsoft)
  609. MpKslDrv.sys Microsoft Anti-malware Protection driver
  610. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  611. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  612. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  613. Msfs.SYS Mailslot driver (Microsoft)
  614. msisadrv.sys ISA Driver (Microsoft)
  615. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  616. msquic.sys Windows QUIC Driver
  617. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  618. mssmbios.sys System Management BIOS driver (Microsoft)
  619. mt7612US.sys Xbox Wireless Adapter for Windows (Microsoft)
  620. mup.sys Multiple UNC Provider driver (Microsoft)
  621. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  622. ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
  623. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  624. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  625. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  626. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  627. NDProxy.sys NDIS Proxy driver (Microsoft)
  628. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  629. netbios.sys NetBIOS Interface driver (Microsoft)
  630. netbt.sys MBT Transport driver (Microsoft)
  631. NETIO.SYS Network I/O Subsystem (Microsoft)
  632. Npfs.SYS NPFS driver (Microsoft)
  633. npsvctrig.sys Named pipe service triggers (Microsoft)
  634. nsiproxy.sys NSI Proxy driver (Microsoft)
  635. Ntfs.sys NT File System Driver (Microsoft)
  636. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  637. ntosext.sys NTOS Extension Host driver (Microsoft)
  638. Null.SYS NULL Driver (Microsoft)
  639. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  640. pacer.sys QoS Packet Scheduler (Microsoft)
  641. partmgr.sys Partition driver (Microsoft)
  642. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  643. pcw.sys Performance Counter Driver (Microsoft)
  644. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  645. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  646. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  647. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  648. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  649. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  650. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  651. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  652. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  653. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  654. rdyboost.sys ReadyBoost Driver (Microsoft)
  655. rfcomm.sys Bluetooth RFCOMM driver (Microsoft)
  656. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  657. serenum.sys Serial Port Enumerator (Microsoft)
  658. serial.sys Serial Device Driver
  659. serscan.sys Serial Imaging Device Driver (Microsoft)
  660. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  661. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  662. spaceport.sys Storage Spaces driver (Microsoft)
  663. srv.sys Server driver (Microsoft)
  664. srv2.sys Smb 2.0 Server driver (Microsoft)
  665. srvnet.sys Server Network driver (Microsoft)
  666. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  667. storqosflt.sys Storage QoS Filter driver (Microsoft)
  668. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  669. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  670. tcpip.sys TCP/IP Protocol driver (Microsoft)
  671. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  672. TDI.SYS TDI Wrapper driver (Microsoft)
  673. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  674. tm.sys Kernel Transaction Manager driver (Microsoft)
  675. UcmCx.sys USB Connector Manager KMDF Class Extension
  676. ucx01000.sys USB Controller Extension (Microsoft)
  677. umbus.sys User-Mode Bus Enumerator (Microsoft)
  678. umpass.sys Generic pass-through driver (Microsoft)
  679. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  680. USBD.SYS Universal Serial Bus Driver (Microsoft)
  681. usbehci.sys EHCI eUSB Miniport Driver (Microsoft)
  682. usbhub.sys Default Hub Driver for USB (Microsoft)
  683. UsbHub3.sys USB3 HUB driver (Microsoft)
  684. USBPORT.SYS USB 1.1 & 2.0 Port Driver (Microsoft)
  685. USBXHCI.SYS USB XHCI driver (Microsoft)
  686. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  687. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  688. volmgr.sys Volume Manager Driver (Microsoft)
  689. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  690. volsnap.sys Volume Shadow Copy driver (Microsoft)
  691. volume.sys Volume driver (Microsoft)
  692. vwifibus.sys Virtual Wireless Bus driver (Microsoft)
  693. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  694. vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
  695. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  696. watchdog.sys Watchdog driver (Microsoft)
  697. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  698. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  699. WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
  700. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  701. WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
  702. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  703. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  704. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  705. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  706. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  707. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  708. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  709. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  710. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  711. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  712. Wof.sys Windows Overlay Filter (Microsoft)
  713. WppRecorder.sys WPP Trace Recorder (Microsoft)
  714. WSDPrint.sys Web Services Print Device driver (Microsoft)
  715. WSDScan.sys Web Service Based Scan Device driver (Microsoft)
  716. xboxgip.sys Game Input Protocol Driver
  717. xusb22.sys Xbox 360 Common Controller for Windows driver (Microsoft)
  718.  
  719. ====================== Dump #1: UNLOADED MODULES =======================
  720.  
  721. fffff803`be670000 fffff803`be67c000 umpass.sys
  722. fffff803`cf9c0000 fffff803`cf9cf000 vwifibus.sys
  723. fffff803`83a10000 fffff803`8462f000 bcmwl63a.sys
  724. fffff803`be650000 fffff803`be664000 vwifimp.sys
  725. fffff803`be600000 fffff803`be60c000 umpass.sys
  726. fffff803`cf9c0000 fffff803`cf9cf000 vwifibus.sys
  727. fffff803`83a10000 fffff803`8462f000 bcmwl63a.sys
  728. fffff803`be4a0000 fffff803`be4b4000 vwifimp.sys
  729. fffff803`be610000 fffff803`be624000 xinputhid.sy
  730. fffff803`be4e0000 fffff803`be4ec000 umpass.sys
  731. fffff803`be480000 fffff803`be491000 MpKslDrv.sys
  732. fffff803`be5f0000 fffff803`be5ff000 WpdUpFltr.sy
  733. fffff803`be520000 fffff803`be575000 WUDFRd.sys
  734. fffff803`be4f0000 fffff803`be516000 USBSTOR.SYS
  735. fffff803`7bfe0000 fffff803`7bffd000 EhStorClass.
  736. fffff803`be4d0000 fffff803`be4d8000 amifldrv64.s
  737. fffff803`84630000 fffff803`8463f000 vwifibus.sys
  738. fffff803`83a10000 fffff803`8462f000 bcmwl63a.sys
  739. fffff803`bebb0000 fffff803`bebc4000 vwifimp.sys
  740. fffff803`cf9c0000 fffff803`cf9c8000 NTIOLib_X64.
  741. fffff803`cf9c0000 fffff803`cf9cc000 umpass.sys
  742. fffff803`be440000 fffff803`be454000 xinputhid.sy
  743. fffff803`bdfe0000 fffff803`bdfee000 WSDScan.sys
  744. fffff803`bdfd0000 fffff803`bdfde000 WSDPrint.sys
  745. fffff803`be430000 fffff803`be43c000 umpass.sys
  746. fffff803`cf9c0000 fffff803`cf9c8000 NTIOLib_X64.
  747. fffff803`be3d0000 fffff803`be3dc000 umpass.sys
  748. fffff803`be420000 fffff803`be428000 NTIOLib_X64.
  749. fffff803`be400000 fffff803`be408000 magdrvamd64.
  750. fffff803`be3f0000 fffff803`be3f8000 magdrvamd64.
  751. fffff803`82cd0000 fffff803`82cda000 CorsairVHidD
  752. fffff803`be3b0000 fffff803`be3b8000 amifldrv64.s
  753. fffff803`cf9f0000 fffff803`cf9f8000 NTIOLib_X64.
  754. fffff803`7d3f0000 fffff803`7d3ff000 dump_storpor
  755. fffff803`7d800000 fffff803`7dac4000 dump_iaStorA
  756. fffff803`7daf0000 fffff803`7db0e000 dump_dumpfve
  757. fffff803`84680000 fffff803`8468a000 ikbevent.sys
  758. fffff803`84650000 fffff803`84672000 i8042prt.sys
  759. fffff803`7d310000 fffff803`7d32c000 dam.sys
  760. fffff803`7ead0000 fffff803`7ee36000 bwcW10x64.sy
  761. fffff803`7b810000 fffff803`7b821000 WdBoot.sys
  762. fffff803`7b800000 fffff803`7b809000 MbamElam.sys
  763. fffff803`7cbf0000 fffff803`7cc00000 hwpolicy.sys
  764.  
  765. ====================== Dump #1: BIOS INFORMATION =======================
  766.  
  767. [SMBIOS Data Tables v2.8]
  768. [DMI Version - 0]
  769. [2.0 Calling Convention - No]
  770. [Table Size - 3795 bytes]
  771. [BIOS Information (Type 0) - Length 24 - Handle 0000h]
  772. Vendor American Megatrends Inc.
  773. BIOS Version V1.12
  774. BIOS Starting Address Segment f000
  775. BIOS Release Date 02/16/2016
  776. BIOS ROM Size 800000
  777. BIOS Characteristics
  778. 07: - PCI Supported
  779. 11: - Upgradeable FLASH BIOS
  780. 12: - BIOS Shadowing Supported
  781. 15: - CD-Boot Supported
  782. 16: - Selectable Boot Supported
  783. 17: - BIOS ROM Socketed
  784. 19: - EDD Supported
  785. 23: - 1.2MB Floppy Supported
  786. 24: - 720KB Floppy Supported
  787. 25: - 2.88MB Floppy Supported
  788. 26: - Print Screen Device Supported
  789. 27: - Keyboard Services Supported
  790. 28: - Serial Services Supported
  791. 29: - Printer Services Supported
  792. 32: - BIOS Vendor Reserved
  793. BIOS Characteristic Extensions
  794. 00: - ACPI Supported
  795. 01: - USB Legacy Supported
  796. 08: - BIOS Boot Specification Supported
  797. 10: - Specification Reserved
  798. 11: - Specification Reserved
  799. BIOS Major Revision 4
  800. BIOS Minor Revision 6
  801. EC Firmware Major Revision 255
  802. EC Firmware Minor Revision 255
  803. [System Information (Type 1) - Length 27 - Handle 0001h]
  804. Manufacturer MSI
  805. Product Name MS-7916
  806. Version 1.0
  807. UUID 00000000-0000-0000-0000-000000000000
  808. Wakeup Type Power Switch
  809. [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
  810. Manufacturer MSI
  811. Product Z97 GAMING 7 (MS-7916)
  812. Version 1.0
  813. Feature Flags 09h
  814. 1387181792: - 1387181840: - «g?ú
  815. Chassis Handle 0003h
  816. Board Type 0ah - Processor/Memory Module
  817. Number of Child Handles 0
  818. [System Enclosure (Type 3) - Length 22 - Handle 0003h]
  819. Manufacturer MSI
  820. Chassis Type Desktop
  821. Version 1.0
  822. Bootup State Safe
  823. Power Supply State Safe
  824. Thermal State Safe
  825. Security Status None
  826. OEM Defined 0
  827. Height 0U
  828. Number of Power Cords 1
  829. Number of Contained Elements 0
  830. Contained Element Size 3
  831. [OEM Strings (Type 11) - Length 5 - Handle 0021h]
  832. Number of Strings 1
  833. [System Configuration Options (Type 12) - Length 5 - Handle 0022h]
  834. [Processor Information (Type 4) - Length 42 - Handle 003dh]
  835. Socket Designation SOCKET 0
  836. Processor Type Central Processor
  837. Processor Family cdh - Specification Reserved
  838. Processor Manufacturer Intel
  839. Processor ID c3060300fffbebbf
  840. Processor Version Intel(R) Core(TM) i5-4570 CPU @ 3.20GHz
  841. Processor Voltage 8ch - 1.2V
  842. External Clock 100MHz
  843. Max Speed 3800MHz
  844. Current Speed 3200MHz
  845. Status Enabled Populated
  846. Processor Upgrade Specification Reserved
  847. L1 Cache Handle 003eh
  848. L2 Cache Handle 003fh
  849. L3 Cache Handle 0040h
  850. [Cache Information (Type 7) - Length 19 - Handle 003eh]
  851. Socket Designation CPU Internal L1
  852. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  853. Maximum Cache Size 0100h - 256K
  854. Installed Size 0100h - 256K
  855. Supported SRAM Type 0020h - Synchronous
  856. Current SRAM Type 0020h - Synchronous
  857. Cache Speed 0ns
  858. Error Correction Type ParitySingle-Bit ECC
  859. System Cache Type Other
  860. Associativity 8-way Set-Associative
  861. [Cache Information (Type 7) - Length 19 - Handle 003fh]
  862. Socket Designation CPU Internal L2
  863. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  864. Maximum Cache Size 0400h - 1024K
  865. Installed Size 0400h - 1024K
  866. Supported SRAM Type 0020h - Synchronous
  867. Current SRAM Type 0020h - Synchronous
  868. Cache Speed 0ns
  869. Error Correction Type Multi-Bit ECC
  870. System Cache Type Unified
  871. Associativity 8-way Set-Associative
  872. [Cache Information (Type 7) - Length 19 - Handle 0040h]
  873. Socket Designation CPU Internal L3
  874. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  875. Maximum Cache Size 1800h - 6144K
  876. Installed Size 1800h - 6144K
  877. Supported SRAM Type 0020h - Synchronous
  878. Current SRAM Type 0020h - Synchronous
  879. Cache Speed 0ns
  880. Error Correction Type Specification Reserved
  881. System Cache Type Unified
  882. Associativity Specification Reserved
  883. [Physical Memory Array (Type 16) - Length 23 - Handle 0042h]
  884. Location 03h - SystemBoard/Motherboard
  885. Use 03h - System Memory
  886. Memory Error Correction 03h - None
  887. Maximum Capacity 33554432KB
  888. Number of Memory Devices 4
  889. [Memory Device (Type 17) - Length 40 - Handle 0043h]
  890. Physical Memory Array Handle 0042h
  891. Total Width 0 bits
  892. Data Width 0 bits
  893. Form Factor 09h - DIMM
  894. Device Locator ChannelA-DIMM0
  895. Bank Locator BANK 0
  896. Memory Type 02h - Unknown
  897. Type Detail 0000h -
  898. Speed 0MHz
  899. [Memory Device (Type 17) - Length 40 - Handle 0044h]
  900. Physical Memory Array Handle 0042h
  901. Total Width 64 bits
  902. Data Width 64 bits
  903. Size 8192MB
  904. Form Factor 09h - DIMM
  905. Device Locator ChannelA-DIMM1
  906. Bank Locator BANK 1
  907. Memory Type 18h - Specification Reserved
  908. Type Detail 0080h - Synchronous
  909. Speed 1600MHz
  910. Manufacturer 0215
  911. Part Number CML16GX3M2A1600C10
  912. [Memory Device (Type 17) - Length 40 - Handle 0045h]
  913. Physical Memory Array Handle 0042h
  914. Total Width 0 bits
  915. Data Width 0 bits
  916. Form Factor 09h - DIMM
  917. Device Locator ChannelB-DIMM0
  918. Bank Locator BANK 2
  919. Memory Type 02h - Unknown
  920. Type Detail 0000h -
  921. Speed 0MHz
  922. [Memory Device (Type 17) - Length 40 - Handle 0046h]
  923. Physical Memory Array Handle 0042h
  924. Total Width 64 bits
  925. Data Width 64 bits
  926. Size 8192MB
  927. Form Factor 09h - DIMM
  928. Device Locator ChannelB-DIMM1
  929. Bank Locator BANK 3
  930. Memory Type 18h - Specification Reserved
  931. Type Detail 0080h - Synchronous
  932. Speed 1600MHz
  933. Manufacturer 0215
  934. Part Number CML16GX3M2A1600C10
  935. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0047h]
  936. Starting Address 00000000h
  937. Ending Address 00ffffffh
  938. Memory Array Handle 0042h
  939. Partition Width 04
  940. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
  941. Starting Address 00000000h
  942. Ending Address 007fffffh
  943. Memory Device Handle 0044h
  944. Mem Array Mapped Adr Handle 0047h
  945. Interleave Position 01
  946. Interleave Data Depth 02
  947. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0049h]
  948. Starting Address 00800000h
  949. Ending Address 00ffffffh
  950. Memory Device Handle 0046h
  951. Mem Array Mapped Adr Handle 0047h
  952. Interleave Position 02
  953. Interleave Data Depth 02
  954.  
  955. ========================== Dump #1: Extra #1 ===========================
  956.  
  957. 2: kd> !verifier
  958. Verify Flags Level 0x00000000
  959. STANDARD FLAGS:
  960. [X] (0x00000000) Automatic Checks
  961. [ ] (0x00000001) Special pool
  962. [ ] (0x00000002) Force IRQL checking
  963. [ ] (0x00000008) Pool tracking
  964. [ ] (0x00000010) I/O verification
  965. [ ] (0x00000020) Deadlock detection
  966. [ ] (0x00000080) DMA checking
  967. [ ] (0x00000100) Security checks
  968. [ ] (0x00000800) Miscellaneous checks
  969. [ ] (0x00020000) DDI compliance checking
  970. ADDITIONAL FLAGS:
  971. [ ] (0x00000004) Randomized low resources simulation
  972. [ ] (0x00000200) Force pending I/O requests
  973. [ ] (0x00000400) IRP logging
  974. [ ] (0x00002000) Invariant MDL checking for stack
  975. [ ] (0x00004000) Invariant MDL checking for driver
  976. [ ] (0x00008000) Power framework delay fuzzing
  977. [ ] (0x00010000) Port/miniport interface checking
  978. [ ] (0x00040000) Systematic low resources simulation
  979. [ ] (0x00080000) DDI compliance checking (additional)
  980. [ ] (0x00200000) NDIS/WIFI verification
  981. [ ] (0x00800000) Kernel synchronization delay fuzzing
  982. [ ] (0x01000000) VM switch verification
  983. [ ] (0x02000000) Code integrity checks
  984. [X] Indicates flag is enabled
  985. Summary of All Verifier Statistics
  986. RaiseIrqls 0x0
  987. AcquireSpinLocks 0x0
  988. Synch Executions 0x0
  989. Trims 0x0
  990. Pool Allocations Attempted 0x0
  991. Pool Allocations Succeeded 0x0
  992. Pool Allocations Succeeded SpecialPool 0x0
  993. Pool Allocations With NO TAG 0x0
  994. Pool Allocations Failed 0x0
  995. Current paged pool allocations 0x0 for 00000000 bytes
  996. Peak paged pool allocations 0x0 for 00000000 bytes
  997. Current nonpaged pool allocations 0x0 for 00000000 bytes
  998. Peak nonpaged pool allocations 0x0 for 00000000 bytes
  999.  
  1000. ========================== Dump #1: Extra #2 ===========================
  1001.  
  1002. 2: kd> !thread
  1003. THREAD ffff9d8af8f22080 Cid 0004.0330 Teb: 0000000000000000 Win32Thread: 0000000000000000 RUNNING on processor 2
  1004. Not impersonating
  1005. GetUlongFromAddress: unable to read from fffff8037901143c
  1006. Owning Process ffff9d8af0c63040 Image: System
  1007. Attached Process N/A Image: N/A
  1008. fffff78000000000: Unable to get shared data
  1009. Wait Start TickCount 6267680
  1010. Context Switch Count 2458724 IdealProcessor: 0
  1011. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  1012. UserTime 00:00:00.000
  1013. KernelTime 00:00:00.000
  1014. Win32 Start Address dxgmms2!VidMmWorkerThreadProc (0xfffff8037e2f1b90)
  1015. Stack Init ffffd781f1d10c90 Current ffffd781f1d0ede0
  1016. Base ffffd781f1d11000 Limit ffffd781f1d0b000 Call 0000000000000000
  1017. Priority 15 BasePriority 15 PriorityDecrement 0 IoPriority 2 PagePriority 5
  1018. Child-SP RetAddr : Args to Child : Call Site
  1019. ffffd781`f1d105c8 fffff803`7e31ef80 : ffffd781`00000001 ffffe206`2e256b10 00000000`00000000 00000000`00000005 : dxgmms2!VIDMM_PAGE_TABLE_BASE::GetSegmentOffsetInPages+0xb
  1020. ffffd781`f1d105d0 fffff803`7e31eff8 : 00000000`00000000 00000000`00000000 00000000`00000800 ffffe206`184cee90 : dxgmms2!VIDMM_PAGE_DIRECTORY::MapPageTablesToVaSpace+0x130
  1021. ffffd781`f1d10670 fffff803`7e30df4d : 00000000`00000000 00000000`00000000 ffffd781`f1d10810 ffff9d8a`f909c000 : dxgmms2!VIDMM_PAGE_DIRECTORY::MapPageTablesToVaSpace+0x1a8
  1022. ffffd781`f1d10710 fffff803`7e2f5522 : 00000000`00000000 00000000`00000000 00000000`00000076 ffffe206`3830b400 : dxgmms2!VIDMM_GLOBAL::InitPagingProcessVaSpace+0x1cef9
  1023. ffffd781`f1d10880 fffff803`7e2e82e2 : ffffe206`13739d30 ffffd781`00000001 00000000`00000001 ffffe206`184a2200 : dxgmms2!VIDMM_GLOBAL::ProcessSystemCommand+0x31e22
  1024. ffffd781`f1d10a00 fffff803`7e2f1b99 : ffffe206`184a2190 ffff9d8a`f8f22001 00000000`00000000 00000000`08f13000 : dxgmms2!VIDMM_WORKER_THREAD::Run+0x1462
  1025. ffffd781`f1d10be0 fffff803`78746735 : ffff9d8a`f8f22080 fffff803`7e2f1b90 ffffe206`184a2190 000fa425`bd9bbfff : dxgmms2!VidMmWorkerThreadProc+0x9
  1026. ffffd781`f1d10c10 fffff803`787e51b8 : fffff803`73e28180 ffff9d8a`f8f22080 fffff803`787466e0 00000000`00000002 : nt!PspSystemThreadStartup+0x55
  1027. ffffd781`f1d10c60 00000000`00000000 : ffffd781`f1d11000 ffffd781`f1d0b000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement