Advertisement
Guest User

Untitled

a guest
Jul 28th, 2020
90
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 43.80 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 00 minutes and 51 seconds
  5.  
  6. ================================= BIOS =================================
  7. VENDOR: American Megatrends Inc.
  8. VERSION: 5406
  9. DATE: 11/13/2019
  10.  
  11. ============================= MOTHERBOARD ==============================
  12. MANUFACTURER: ASUSTeK COMPUTER INC.
  13. PRODUCT: ROG STRIX B350-F GAMING
  14. VERSION: Rev X.0x
  15.  
  16. ================================= RAM ==================================
  17. Size Speed Manufacturer Part No.
  18. -------------- -------------- ------------------- ----------------------
  19. 8192MB 3200MHz Corsair CMW16GX4M2C3200C16
  20. 0MHz Unknown Unknown
  21. 8192MB 3200MHz Corsair CMW16GX4M2C3200C16
  22. 0MHz Unknown Unknown
  23.  
  24. ================================= CPU ==================================
  25. Processor Version: AMD Ryzen 5 3600 6-Core Processor
  26. COUNT: c
  27. MHZ: 3593
  28. VENDOR: AuthenticAMD
  29. FAMILY: 17
  30. MODEL: 71
  31. STEPPING: 0
  32.  
  33. ================================== OS ==================================
  34. Product: WinNt, suite: TerminalServer SingleUserTS Personal
  35. Built by: 18362.1.amd64fre.19h1_release.190318-1202
  36. BUILD_VERSION: 10.0.18362.959 (WinBuild.160101.0800)
  37. BUILD: 18362
  38. SERVICEPACK: 959
  39. PLATFORM_TYPE: x64
  40. NAME: Windows 10
  41. EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
  42. BUILD_TIMESTAMP: unknown_date
  43. BUILDDATESTAMP: 160101.0800
  44. BUILDLAB: WinBuild
  45. BUILDOSVER: 10.0.18362.959
  46.  
  47. =============================== DEBUGGER ===============================
  48. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  49. Copyright (c) Microsoft Corporation. All rights reserved.
  50.  
  51. =============================== COMMENTS ===============================
  52. * Information gathered from different dump files may be different. If
  53. Windows updates between two dump files, two or more OS versions may
  54. be shown above.
  55. * If the user updates the BIOS between dump files, two or more versions
  56. and dates may be shown above.
  57. * More RAM information can be found below in a full BIOS section.
  58.  
  59. ========================================================================
  60. ======================= Dump #1: ANALYZE VERBOSE =======================
  61. ======================= File: 072720-9906-01.dmp =======================
  62. ========================================================================
  63.  
  64. Mini Kernel Dump File: Only registers and stack trace are available
  65. Windows 10 Kernel Version 18362 MP (12 procs) Free x64
  66. Kernel base = 0xfffff801`64200000 PsLoadedModuleList = 0xfffff801`64648190
  67. Debug session time: Mon Jul 27 07:57:52.887 2020 (UTC - 4:00)
  68. System Uptime: 0 days 0:31:36.546
  69.  
  70. BugCheck FFFFFFFF, {ffffffff00240000, 700000000, 3, ffffae84723c6108}
  71. *** WARNING: Unable to verify timestamp for win32k.sys
  72. *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
  73. Probably caused by : memory_corruption
  74. Followup: memory_corruption
  75.  
  76. Unknown bugcheck code (ffffffff)
  77. Unknown bugcheck description
  78.  
  79. Arguments:
  80. Arg1: ffffffff00240000
  81. Arg2: 0000000700000000
  82. Arg3: 0000000000000003
  83. Arg4: ffffae84723c6108
  84.  
  85. Debugging Details:
  86. DUMP_CLASS: 1
  87. DUMP_QUALIFIER: 400
  88. DUMP_TYPE: 2
  89. CUSTOMER_CRASH_COUNT: 1
  90. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  91. BUGCHECK_STR: 0xFFFFFFFF
  92.  
  93. PROCESS_NAME: System
  94.  
  95. CURRENT_IRQL: 0
  96. LAST_CONTROL_TRANSFER: from 0000000100000301 to fffff801643c23c0
  97. STACK_TEXT:
  98. ffffc30d`1ea99828 00000001`00000301 : 00000000`ffffffff ffffffff`00240000 00000007`00000000 00000000`00000003 : nt!KeBugCheckEx
  99. ffffc30d`1ea99830 00000000`ffffffff : ffffffff`00240000 00000007`00000000 00000000`00000003 ffffae84`723c6108 : 0x00000001`00000301
  100. ffffc30d`1ea99838 ffffffff`00240000 : 00000007`00000000 00000000`00000003 ffffae84`723c6108 fffff801`ffffffff : 0xffffffff
  101. ffffc30d`1ea99840 00000007`00000000 : 00000000`00000003 ffffae84`723c6108 fffff801`ffffffff 00000000`00000002 : 0xffffffff`00240000
  102. ffffc30d`1ea99848 00000000`00000003 : ffffae84`723c6108 fffff801`ffffffff 00000000`00000002 00000000`00000001 : 0x00000007`00000000
  103. ffffc30d`1ea99850 ffffae84`723c6108 : fffff801`ffffffff 00000000`00000002 00000000`00000001 ffffae84`723df910 : 0x3
  104. ffffc30d`1ea99858 fffff801`ffffffff : 00000000`00000002 00000000`00000001 ffffae84`723df910 ffffae84`723c6100 : 0xffffae84`723c6108
  105. ffffc30d`1ea99860 00000000`00000002 : 00000000`00000001 ffffae84`723df910 ffffae84`723c6100 00000000`00000000 : 0xfffff801`ffffffff
  106. ffffc30d`1ea99868 00000000`00000001 : ffffae84`723df910 ffffae84`723c6100 00000000`00000000 00000000`00000001 : 0x2
  107. ffffc30d`1ea99870 ffffae84`723df910 : ffffae84`723c6100 00000000`00000000 00000000`00000001 00000000`00000000 : 0x1
  108. ffffc30d`1ea99878 ffffae84`723c6100 : 00000000`00000000 00000000`00000001 00000000`00000000 00000000`00000000 : 0xffffae84`723df910
  109. ffffc30d`1ea99880 00000000`00000000 : 00000000`00000001 00000000`00000000 00000000`00000000 ffffae84`6e4b5100 : 0xffffae84`723c6100
  110. STACK_COMMAND: kb
  111. CHKIMG_EXTENSION: !chkimg -lo 50 -d !hal
  112. fffff8016415f37a - hal!HalPerformEndOfInterrupt+1a
  113. [ 00:90 ]
  114. fffff8016415f457-fffff8016415f458 2 bytes - hal!HalPutScatterGatherList+67 (+0xdd)
  115. [ 48 ff:4c 8b ]
  116. fffff8016415f45e-fffff8016415f461 4 bytes - hal!HalPutScatterGatherList+6e (+0x07)
  117. [ 0f 1f 44 00:e8 3d fc 40 ]
  118. 7 errors : !hal (fffff8016415f37a-fffff8016415f461)
  119. MODULE_NAME: memory_corruption
  120.  
  121. IMAGE_NAME: memory_corruption
  122.  
  123. FOLLOWUP_NAME: memory_corruption
  124. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  125. MEMORY_CORRUPTOR: LARGE
  126. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  127. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  128. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  129. TARGET_TIME: 2020-07-27T11:57:52.000Z
  130. SUITE_MASK: 784
  131. PRODUCT_TYPE: 1
  132. USER_LCID: 0
  133. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  134. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  135. Followup: memory_corruption
  136.  
  137. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  138.  
  139. Aug 22 2012 - AsIO.sys - ASUS Input Output driver http://www.asus.com/
  140. Mar 19 2015 - amd_sata.sys - AMD SATA Controller AHCI Device driver http://support.amd.com/
  141. Mar 19 2015 - amd_xata.sys - AMD Stor Filter driver http://support.amd.com/
  142. Mar 31 2015 - HWiNFO64A.SYS - HWiNFO AMD64 Kernel driver https://www.hwinfo.com/
  143. Mar 14 2016 - amdgpio3.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  144. Aug 02 2017 - Oculus_ViGEmBus.sys - Oculus Virtual Gamepad Emulation Bus driver
  145. Feb 12 2018 - msio64.sys - MSI Gaming App driver
  146. Mar 26 2019 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  147. Apr 09 2019 - AsIO2.sys - Asus Input Output driver
  148. Apr 22 2019 - GLCKIO2.sys - ASUS RGB driver
  149. Apr 22 2019 - OCULUSUD.sys - Oculus VR Headset driver
  150. Apr 25 2019 - mbae64.sys - Malwarebytes driver https://www.malwarebytes.com/
  151. Jun 06 2019 - IUProcessFilter.sys - IObit Uninstaller driver (IObit Information Technology)
  152. Sep 05 2019 - e1r65x64.sys - Intel(R) Gigabit Adapter NDIS 6.x driver https://downloadcenter.intel.com/
  153. Oct 14 2019 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  154. Nov 06 2019 - IUFileFilter.sys - IObit Uninstaller driver (IObit)
  155. Nov 06 2019 - IURegistryFilter.sys - IObit Uninstaller driver (IObit Information Technology)
  156. Nov 15 2019 - AtihdWT6.sys - AMD High Definition Audio Function driver http://support.amd.com/
  157. Nov 20 2019 - mbamswissarmy.sys - MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
  158. Nov 27 2019 - teVirtualMIDI64.sys - teVirtualMIDI - Virtual MIDI driver (Tobias Erichsen)
  159. Dec 05 2019 - cpuz149_x64.sys - CPUID driver
  160. Jan 14 2020 - amdgpio2.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  161. Jan 16 2020 - amdkmpfd.sys - AMD Kernel Miniport Filter driver
  162. Feb 10 2020 - bcmwl63a.sys - Broadcom 802 11 Network Adapter Wireless driver http://www.broadcom.com/support/
  163. Feb 14 2020 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
  164. Mar 06 2020 - amdpsp.sys - Advanced Micro Devices, Inc http://support.amd.com/
  165. Mar 26 2020 - amdxe.sys - AMD Link Xinput Emulation driver
  166. Apr 10 2020 - AMDPCIDev.sys - Advanced Micro Devices PCI Device driver
  167. May 07 2020 - CorsairGamingAudio64.sys - Corsair Gaming Audio 64-bit driver
  168. May 28 2020 - oculusvad.sys - Oculus VAD driver
  169. Jun 04 2020 - MbamChameleon.sys - Malwarebytes Anti-Malware Chameleon driver https://www.malwarebytes.com/
  170. Jun 09 2020 - amdlog.sys - AMD LOG driver
  171. Jun 10 2020 - amdkmdag.sys - AMD Graphics driver
  172. Jun 22 2020 - mwac.sys - Malwarebytes Web Access Control http://www.malwarebytes.org/
  173. Jun 30 2020 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  174. Jun 30 2020 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  175. Jul 07 2020 - mbam.sys - Malwarebytes Anti-Malware https://www.malwarebytes.com/
  176. Jul 17 2020 - farflt.sys - Malwarebytes Anti-RansomWare SDK http://www.malwarebytes.org/
  177.  
  178. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  179.  
  180. Image path: \SystemRoot\SysWow64\drivers\AsIO.sys
  181. Image name: AsIO.sys
  182. Search : https://www.google.com/search?q=AsIO.sys
  183. ADA Info : ASUS Input Output driver http://www.asus.com/
  184. Timestamp : Wed Aug 22 2012
  185.  
  186. Image path: \SystemRoot\System32\drivers\amd_sata.sys
  187. Image name: amd_sata.sys
  188. Search : https://www.google.com/search?q=amd_sata.sys
  189. ADA Info : AMD SATA Controller AHCI Device driver http://support.amd.com/
  190. Timestamp : Thu Mar 19 2015
  191.  
  192. Image path: \SystemRoot\System32\drivers\amd_xata.sys
  193. Image name: amd_xata.sys
  194. Search : https://www.google.com/search?q=amd_xata.sys
  195. ADA Info : AMD Stor Filter driver http://support.amd.com/
  196. Timestamp : Thu Mar 19 2015
  197.  
  198. Image path: \??\C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS
  199. Image name: HWiNFO64A.SYS
  200. Search : https://www.google.com/search?q=HWiNFO64A.SYS
  201. ADA Info : HWiNFO AMD64 Kernel driver https://www.hwinfo.com/
  202. Timestamp : Tue Mar 31 2015
  203.  
  204. Image path: \SystemRoot\System32\drivers\amdgpio3.sys
  205. Image name: amdgpio3.sys
  206. Search : https://www.google.com/search?q=amdgpio3.sys
  207. ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  208. Timestamp : Mon Mar 14 2016
  209.  
  210. Image path: \SystemRoot\System32\drivers\Oculus_ViGEmBus.sys
  211. Image name: Oculus_ViGEmBus.sys
  212. Search : https://www.google.com/search?q=Oculus_ViGEmBus.sys
  213. ADA Info : Oculus Virtual Gamepad Emulation Bus driver
  214. Timestamp : Wed Aug 2 2017
  215.  
  216. Image path: \??\C:\Program Files\Patriot\Aac_Patriot Viper RGB\msio64.sys
  217. Image name: msio64.sys
  218. Search : https://www.google.com/search?q=msio64.sys
  219. ADA Info : MSI Gaming App driver
  220. Timestamp : Mon Feb 12 2018
  221.  
  222. Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
  223. Image name: RTKVHD64.sys
  224. Search : https://www.google.com/search?q=RTKVHD64.sys
  225. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  226. Timestamp : Tue Mar 26 2019
  227.  
  228. Image path: \??\C:\WINDOWS\system32\drivers\AsIO2.sys
  229. Image name: AsIO2.sys
  230. Search : https://www.google.com/search?q=AsIO2.sys
  231. ADA Info : Asus Input Output driver
  232. Timestamp : Tue Apr 9 2019
  233.  
  234. Image path: \??\C:\WINDOWS\system32\drivers\GLCKIO2.sys
  235. Image name: GLCKIO2.sys
  236. Search : https://www.google.com/search?q=GLCKIO2.sys
  237. ADA Info : ASUS RGB driver
  238. Timestamp : Mon Apr 22 2019
  239.  
  240. Image path: \SystemRoot\System32\drivers\OCULUSUD.sys
  241. Image name: OCULUSUD.sys
  242. Search : https://www.google.com/search?q=OCULUSUD.sys
  243. ADA Info : Oculus VR Headset driver
  244. Timestamp : Mon Apr 22 2019
  245.  
  246. Image path: \??\C:\WINDOWS\system32\drivers\mbae64.sys
  247. Image name: mbae64.sys
  248. Search : https://www.google.com/search?q=mbae64.sys
  249. ADA Info : Malwarebytes driver https://www.malwarebytes.com/
  250. Timestamp : Thu Apr 25 2019
  251.  
  252. Image path: \??\D:\Programs I want\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys
  253. Image name: IUProcessFilter.sys
  254. Search : https://www.google.com/search?q=IUProcessFilter.sys
  255. ADA Info : IObit Uninstaller driver (IObit Information Technology)
  256. Timestamp : Thu Jun 6 2019
  257.  
  258. Image path: \SystemRoot\system32\DRIVERS\e1r65x64.sys
  259. Image name: e1r65x64.sys
  260. Search : https://www.google.com/search?q=e1r65x64.sys
  261. ADA Info : Intel(R) Gigabit Adapter NDIS 6.x driver https://downloadcenter.intel.com/
  262. Timestamp : Thu Sep 5 2019
  263.  
  264. Image path: \??\C:\WINDOWS\system32\drivers\ene.sys
  265. Image name: ene.sys
  266. Search : https://www.google.com/search?q=ene.sys
  267. ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  268. Timestamp : Mon Oct 14 2019
  269.  
  270. Image path: \??\D:\Programs I want\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys
  271. Image name: IUFileFilter.sys
  272. Search : https://www.google.com/search?q=IUFileFilter.sys
  273. ADA Info : IObit Uninstaller driver (IObit)
  274. Timestamp : Wed Nov 6 2019
  275.  
  276. Image path: \??\D:\Programs I want\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys
  277. Image name: IURegistryFilter.sys
  278. Search : https://www.google.com/search?q=IURegistryFilter.sys
  279. ADA Info : IObit Uninstaller driver (IObit Information Technology)
  280. Timestamp : Wed Nov 6 2019
  281.  
  282. Image path: \SystemRoot\system32\drivers\AtihdWT6.sys
  283. Image name: AtihdWT6.sys
  284. Search : https://www.google.com/search?q=AtihdWT6.sys
  285. ADA Info : AMD High Definition Audio Function driver http://support.amd.com/
  286. Timestamp : Fri Nov 15 2019
  287.  
  288. Image path: \SystemRoot\System32\Drivers\mbamswissarmy.sys
  289. Image name: mbamswissarmy.sys
  290. Search : https://www.google.com/search?q=mbamswissarmy.sys
  291. ADA Info : MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
  292. Timestamp : Wed Nov 20 2019
  293.  
  294. Image path: \SystemRoot\System32\drivers\teVirtualMIDI64.sys
  295. Image name: teVirtualMIDI64.sys
  296. Search : https://www.google.com/search?q=teVirtualMIDI64.sys
  297. ADA Info : teVirtualMIDI - Virtual MIDI driver (Tobias Erichsen)
  298. Timestamp : Wed Nov 27 2019
  299.  
  300. Image path: \??\C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys
  301. Image name: cpuz149_x64.sys
  302. Search : https://www.google.com/search?q=cpuz149_x64.sys
  303. ADA Info : CPUID driver
  304. Timestamp : Thu Dec 5 2019
  305.  
  306. Image path: \SystemRoot\System32\drivers\amdgpio2.sys
  307. Image name: amdgpio2.sys
  308. Search : https://www.google.com/search?q=amdgpio2.sys
  309. ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  310. Timestamp : Tue Jan 14 2020
  311.  
  312. Image path: \SystemRoot\System32\drivers\amdkmpfd.sys
  313. Image name: amdkmpfd.sys
  314. Search : https://www.google.com/search?q=amdkmpfd.sys
  315. ADA Info : AMD Kernel Miniport Filter driver
  316. Timestamp : Thu Jan 16 2020
  317.  
  318. Image path: \SystemRoot\system32\DRIVERS\bcmwl63a.sys
  319. Image name: bcmwl63a.sys
  320. Search : https://www.google.com/search?q=bcmwl63a.sys
  321. ADA Info : Broadcom 802 11 Network Adapter Wireless driver http://www.broadcom.com/support/
  322. Timestamp : Mon Feb 10 2020
  323.  
  324. Image path: \??\C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
  325. Image name: CorsairLLAccess64.sys
  326. Search : https://www.google.com/search?q=CorsairLLAccess64.sys
  327. ADA Info : CORSAIR iCUE Software driver
  328. Timestamp : Fri Feb 14 2020
  329.  
  330. Image path: \SystemRoot\System32\drivers\amdpsp.sys
  331. Image name: amdpsp.sys
  332. Search : https://www.google.com/search?q=amdpsp.sys
  333. ADA Info : Advanced Micro Devices, Inc http://support.amd.com/
  334. Timestamp : Fri Mar 6 2020
  335.  
  336. Image path: \SystemRoot\System32\drivers\amdxe.sys
  337. Image name: amdxe.sys
  338. Search : https://www.google.com/search?q=amdxe.sys
  339. ADA Info : AMD Link Xinput Emulation driver
  340. Timestamp : Thu Mar 26 2020
  341.  
  342. Image path: \SystemRoot\System32\drivers\AMDPCIDev.sys
  343. Image name: AMDPCIDev.sys
  344. Search : https://www.google.com/search?q=AMDPCIDev.sys
  345. ADA Info : Advanced Micro Devices PCI Device driver
  346. Timestamp : Fri Apr 10 2020
  347.  
  348. Image path: \SystemRoot\system32\DRIVERS\CorsairGamingAudio64.sys
  349. Image name: CorsairGamingAudio64.sys
  350. Search : https://www.google.com/search?q=CorsairGamingAudio64.sys
  351. ADA Info : Corsair Gaming Audio 64-bit driver
  352. Timestamp : Thu May 7 2020
  353.  
  354. Image path: \SystemRoot\System32\drivers\oculusvad.sys
  355. Image name: oculusvad.sys
  356. Search : https://www.google.com/search?q=oculusvad.sys
  357. ADA Info : Oculus VAD driver
  358. Timestamp : Thu May 28 2020
  359.  
  360. Image path: \SystemRoot\System32\Drivers\MbamChameleon.sys
  361. Image name: MbamChameleon.sys
  362. Search : https://www.google.com/search?q=MbamChameleon.sys
  363. ADA Info : Malwarebytes Anti-Malware Chameleon driver https://www.malwarebytes.com/
  364. Timestamp : Thu Jun 4 2020
  365.  
  366. Image path: \SystemRoot\System32\drivers\amdlog.sys
  367. Image name: amdlog.sys
  368. Search : https://www.google.com/search?q=amdlog.sys
  369. ADA Info : AMD LOG driver
  370. Timestamp : Tue Jun 9 2020
  371.  
  372. Image path: \SystemRoot\System32\DriverStore\FileRepository\c0356490.inf_amd64_d882b4516d9b62a0\B356520\amdkmdag.sys
  373. Image name: amdkmdag.sys
  374. Search : https://www.google.com/search?q=amdkmdag.sys
  375. ADA Info : AMD Graphics driver
  376. Timestamp : Wed Jun 10 2020
  377.  
  378. Image path: \SystemRoot\system32\DRIVERS\mwac.sys
  379. Image name: mwac.sys
  380. Search : https://www.google.com/search?q=mwac.sys
  381. ADA Info : Malwarebytes Web Access Control http://www.malwarebytes.org/
  382. Timestamp : Mon Jun 22 2020
  383.  
  384. Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
  385. Image name: CorsairVBusDriver.sys
  386. Search : https://www.google.com/search?q=CorsairVBusDriver.sys
  387. ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  388. Timestamp : Tue Jun 30 2020
  389.  
  390. Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
  391. Image name: CorsairVHidDriver.sys
  392. Search : https://www.google.com/search?q=CorsairVHidDriver.sys
  393. ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
  394. Timestamp : Tue Jun 30 2020
  395.  
  396. Image path: \??\C:\WINDOWS\system32\DRIVERS\mbam.sys
  397. Image name: mbam.sys
  398. Search : https://www.google.com/search?q=mbam.sys
  399. ADA Info : Malwarebytes Anti-Malware https://www.malwarebytes.com/
  400. Timestamp : Tue Jul 7 2020
  401.  
  402. Image path: \SystemRoot\system32\DRIVERS\farflt.sys
  403. Image name: farflt.sys
  404. Search : https://www.google.com/search?q=farflt.sys
  405. ADA Info : Malwarebytes Anti-RansomWare SDK http://www.malwarebytes.org/
  406. Timestamp : Fri Jul 17 2020
  407.  
  408. ====================== Dump #1: MICROSOFT DRIVERS ======================
  409.  
  410. ACPI.sys ACPI Driver for NT (Microsoft)
  411. acpiex.sys ACPIEx Driver (Microsoft)
  412. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  413. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  414. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  415. ahcache.sys Application Compatibility Cache (Microsoft)
  416. amdppm.sys Processor Device Driver
  417. bam.sys BAM Kernal driver (Microsoft)
  418. BasicDisplay.sys Basic Display driver (Microsoft)
  419. BasicRender.sys Basic Render driver (Microsoft)
  420. Beep.SYS BEEP driver (Microsoft)
  421. bindflt.sys Windows Bind Filter driver (Microsoft)
  422. BOOTVID.dll VGA Boot Driver (Microsoft)
  423. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  424. cdd.dll Canonical Display Driver (Microsoft)
  425. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  426. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  427. CI.dll Code Integrity Module (Microsoft)
  428. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  429. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  430. CLFS.SYS Common Log File System Driver (Microsoft)
  431. clipsp.sys CLIP Service (Microsoft)
  432. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  433. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  434. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  435. condrv.sys Console Driver (Microsoft)
  436. crashdmp.sys Crash Dump driver (Microsoft)
  437. dfsc.sys DFS Namespace Client Driver (Microsoft)
  438. disk.sys PnP Disk Driver (Microsoft)
  439. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  440. dump_amd_sata.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  441. dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  442. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  443. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  444. dxgmms2.sys DirectX Graphics MMS
  445. EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
  446. fastfat.SYS Fast FAT File System Driver (Microsoft)
  447. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  448. fileinfo.sys FileInfo Filter Driver (Microsoft)
  449. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  450. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  451. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  452. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  453. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  454. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  455. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  456. HIDCLASS.SYS Hid Class Library (Microsoft)
  457. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  458. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  459. HTTP.sys HTTP Protocol Stack (Microsoft)
  460. intelpep.sys Intel Power Engine Plugin (Microsoft)
  461. iorate.sys I/O rate control Filter (Microsoft)
  462. kbdclass.sys Keyboard Class Driver (Microsoft)
  463. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  464. kd.dll Local Kernal Debugger (Microsoft)
  465. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  466. ks.sys Kernal CSA Library (Microsoft)
  467. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  468. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  469. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  470. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  471. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  472. mcupdate_AuthenticAMD.dll AMD Microcode Update Library (Microsoft)
  473. mmcss.sys MMCSS Driver (Microsoft)
  474. monitor.sys Monitor Driver (Microsoft)
  475. mouclass.sys Mouse Class Driver (Microsoft)
  476. mouhid.sys HID Mouse Filter Driver (Microsoft)
  477. mountmgr.sys Mount Point Manager (Microsoft)
  478. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  479. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  480. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  481. Msfs.SYS Mailslot driver (Microsoft)
  482. msgpioclx.sys GPIO Class Extension Driver (Microsoft)
  483. msisadrv.sys ISA Driver (Microsoft)
  484. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  485. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  486. mssmbios.sys System Management BIOS driver (Microsoft)
  487. mup.sys Multiple UNC Provider driver (Microsoft)
  488. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  489. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  490. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  491. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  492. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  493. NDProxy.sys NDIS Proxy driver (Microsoft)
  494. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  495. netbios.sys NetBIOS Interface driver (Microsoft)
  496. netbt.sys MBT Transport driver (Microsoft)
  497. NETIO.SYS Network I/O Subsystem (Microsoft)
  498. Npfs.SYS NPFS driver (Microsoft)
  499. npsvctrig.sys Named pipe service triggers (Microsoft)
  500. nsiproxy.sys NSI Proxy driver (Microsoft)
  501. Ntfs.sys NT File System Driver (Microsoft)
  502. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  503. ntosext.sys NTOS Extension Host driver (Microsoft)
  504. Null.SYS NULL Driver (Microsoft)
  505. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  506. pacer.sys QoS Packet Scheduler (Microsoft)
  507. partmgr.sys Partition driver (Microsoft)
  508. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  509. pcw.sys Performance Counter Driver (Microsoft)
  510. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  511. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  512. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  513. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  514. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  515. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  516. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  517. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  518. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  519. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  520. rdyboost.sys ReadyBoost Driver (Microsoft)
  521. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  522. serenum.sys Serial Port Enumerator (Microsoft)
  523. serial.sys Serial Device Driver
  524. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  525. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  526. spaceport.sys Storage Spaces driver (Microsoft)
  527. srv2.sys Smb 2.0 Server driver (Microsoft)
  528. srvnet.sys Server Network driver (Microsoft)
  529. storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
  530. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  531. storqosflt.sys Storage QoS Filter driver (Microsoft)
  532. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  533. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  534. tcpip.sys TCP/IP Protocol driver (Microsoft)
  535. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  536. TDI.SYS TDI Wrapper driver (Microsoft)
  537. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  538. tm.sys Kernel Transaction Manager driver (Microsoft)
  539. ucx01000.sys USB Controller Extension (Microsoft)
  540. UEFI.sys UEFI NT driver (Microsoft)
  541. umbus.sys User-Mode Bus Enumerator (Microsoft)
  542. usbaudio.sys USB Audio Class Driver (Microsoft)
  543. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  544. USBD.SYS Universal Serial Bus Driver (Microsoft)
  545. UsbHub3.sys USB3 HUB driver (Microsoft)
  546. usbser.sys USB Serial driver (Microsoft)
  547. usbvideo.sys USB Video Class Driver (Microsoft)
  548. USBXHCI.SYS USB XHCI driver (Microsoft)
  549. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  550. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  551. volmgr.sys Volume Manager Driver (Microsoft)
  552. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  553. volsnap.sys Volume Shadow Copy driver (Microsoft)
  554. volume.sys Volume driver (Microsoft)
  555. vwifibus.sys Virtual Wireless Bus driver (Microsoft)
  556. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  557. vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
  558. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  559. watchdog.sys Watchdog driver (Microsoft)
  560. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  561. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  562. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  563. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  564. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  565. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  566. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  567. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  568. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  569. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  570. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  571. winquic.sys QUIC Transport Protocol driver (Microsoft)
  572. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  573. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  574. Wof.sys Windows Overlay Filter (Microsoft)
  575. WppRecorder.sys WPP Trace Recorder (Microsoft)
  576. WSDPrint.sys Web Services Print Device driver (Microsoft)
  577. WSDScan.sys Web Service Based Scan Device driver (Microsoft)
  578.  
  579. ====================== Dump #1: UNLOADED MODULES =======================
  580.  
  581. fffff801`b1980000 fffff801`b1994000 mbam.sys
  582. fffff801`b18f0000 fffff801`b1924000 farflt.sys
  583. fffff801`b18b0000 fffff801`b18d3000 mwac.sys
  584. fffff801`b1a60000 fffff801`b1a71000 MSKSSRV.sys
  585. fffff801`668b0000 fffff801`66918000 WdFilter.sys
  586. fffff801`b1a90000 fffff801`b1aa1000 MpKslDrv.sys
  587. fffff801`b1890000 fffff801`b18a6000 WdNisDrv.sys
  588. fffff801`b1a00000 fffff801`b1a11000 MSKSSRV.sys
  589. fffff801`75a10000 fffff801`75a1a000 CorsairVHidD
  590. fffff801`b1860000 fffff801`b186e000 WSDScan.sys
  591. fffff801`b1850000 fffff801`b185e000 WSDPrint.sys
  592. fffff801`6e690000 fffff801`6e69f000 dump_storpor
  593. fffff801`6e6c0000 fffff801`6e6de000 dump_amd_sat
  594. fffff801`6e700000 fffff801`6e71e000 dump_dumpfve
  595. fffff801`6e350000 fffff801`6e36e000 dam.sys
  596. fffff801`66390000 fffff801`663a1000 WdBoot.sys
  597. fffff801`66380000 fffff801`66389000 MbamElam.sys
  598. fffff801`674b0000 fffff801`674c1000 hwpolicy.sys
  599.  
  600. ====================== Dump #1: BIOS INFORMATION =======================
  601.  
  602. [SMBIOS Data Tables v3.1]
  603. [DMI Version - 0]
  604. [2.0 Calling Convention - No]
  605. [Table Size - 2505 bytes]
  606. [BIOS Information (Type 0) - Length 26 - Handle 0000h]
  607. Vendor American Megatrends Inc.
  608. BIOS Version 5406
  609. BIOS Starting Address Segment f000
  610. BIOS Release Date 11/13/2019
  611. BIOS ROM Size 1000000
  612. BIOS Characteristics
  613. 07: - PCI Supported
  614. 10: - APM Supported
  615. 11: - Upgradeable FLASH BIOS
  616. 12: - BIOS Shadowing Supported
  617. 15: - CD-Boot Supported
  618. 16: - Selectable Boot Supported
  619. 17: - BIOS ROM Socketed
  620. 19: - EDD Supported
  621. 23: - 1.2MB Floppy Supported
  622. 24: - 720KB Floppy Supported
  623. 25: - 2.88MB Floppy Supported
  624. 26: - Print Screen Device Supported
  625. 27: - Keyboard Services Supported
  626. 28: - Serial Services Supported
  627. 29: - Printer Services Supported
  628. 32: - BIOS Vendor Reserved
  629. BIOS Characteristic Extensions
  630. 00: - ACPI Supported
  631. 01: - USB Legacy Supported
  632. 08: - BIOS Boot Specification Supported
  633. 10: - Specification Reserved
  634. 11: - Specification Reserved
  635. BIOS Major Revision 5
  636. BIOS Minor Revision 13
  637. EC Firmware Major Revision 255
  638. EC Firmware Minor Revision 255
  639. [System Information (Type 1) - Length 27 - Handle 0001h]
  640. Manufacturer System manufacturer
  641. Product Name System Product Name
  642. Version System Version
  643. UUID 00000000-0000-0000-0000-000000000000
  644. Wakeup Type Power Switch
  645. SKUNumber SKU
  646. [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
  647. Manufacturer ASUSTeK COMPUTER INC.
  648. Product ROG STRIX B350-F GAMING
  649. Version Rev X.0x
  650. Feature Flags 09h
  651. -164579616: - -164579568: - «/9ú
  652. Location Default string
  653. Chassis Handle 0003h
  654. Board Type 0ah - Processor/Memory Module
  655. Number of Child Handles 0
  656. [System Enclosure (Type 3) - Length 22 - Handle 0003h]
  657. Manufacturer Default string
  658. Chassis Type Desktop
  659. Version Default string
  660. Bootup State Safe
  661. Power Supply State Safe
  662. Thermal State Safe
  663. Security Status None
  664. OEM Defined 0
  665. Height 0U
  666. Number of Power Cords 1
  667. Number of Contained Elements 0
  668. Contained Element Size 3
  669. [Onboard Devices Information (Type 10) - Length 6 - Handle 0020h]
  670. Number of Devices 1
  671. 01: Type Video [enabled]
  672. [OEM Strings (Type 11) - Length 5 - Handle 0021h]
  673. Number of Strings 8
  674. 1 Default string
  675. 2 Default string
  676. 3 CHOPIN
  677. 4 Default string
  678. 5 FFFFFFFFFFFFF
  679. 6 FFFFFFFFFFFFF
  680. 7 FFFFFFFFFFFFF
  681. 8 Default string
  682. [System Configuration Options (Type 12) - Length 5 - Handle 0022h]
  683. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0026h]
  684. [Physical Memory Array (Type 16) - Length 23 - Handle 0027h]
  685. Location 03h - SystemBoard/Motherboard
  686. Use 03h - System Memory
  687. Memory Error Correction 03h - None
  688. Maximum Capacity 134217728KB
  689. Memory Error Inf Handle 0026h
  690. Number of Memory Devices 4
  691. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0028h]
  692. Starting Address 00000000h
  693. Ending Address 0037ffffh
  694. Memory Array Handle 0027h
  695. Partition Width 02
  696. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0029h]
  697. Starting Address 00400000h
  698. Ending Address 0107ffffh
  699. Memory Array Handle 0027h
  700. Partition Width 02
  701. [Cache Information (Type 7) - Length 19 - Handle 002ah]
  702. Socket Designation L1 - Cache
  703. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  704. Maximum Cache Size 0180h - 384K
  705. Installed Size 0180h - 384K
  706. Supported SRAM Type 0010h - Pipeline-Burst
  707. Current SRAM Type 0010h - Pipeline-Burst
  708. Cache Speed 1ns
  709. Error Correction Type Specification Reserved
  710. System Cache Type Unified
  711. Associativity 8-way Set-Associative
  712. [Cache Information (Type 7) - Length 19 - Handle 002bh]
  713. Socket Designation L2 - Cache
  714. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  715. Maximum Cache Size 0c00h - 3072K
  716. Installed Size 0c00h - 3072K
  717. Supported SRAM Type 0010h - Pipeline-Burst
  718. Current SRAM Type 0010h - Pipeline-Burst
  719. Cache Speed 1ns
  720. Error Correction Type Specification Reserved
  721. System Cache Type Unified
  722. Associativity 8-way Set-Associative
  723. [Cache Information (Type 7) - Length 19 - Handle 002ch]
  724. Socket Designation L3 - Cache
  725. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  726. Maximum Cache Size 8200h - 32768K
  727. Installed Size 8200h - 32768K
  728. Supported SRAM Type 0010h - Pipeline-Burst
  729. Current SRAM Type 0010h - Pipeline-Burst
  730. Cache Speed 1ns
  731. Error Correction Type Specification Reserved
  732. System Cache Type Unified
  733. Associativity 16-way Set-Associative
  734. [Processor Information (Type 4) - Length 48 - Handle 002dh]
  735. Socket Designation AM4
  736. Processor Type Central Processor
  737. Processor Family 6bh - Specification Reserved
  738. Processor Manufacturer Advanced Micro Devices, Inc.
  739. Processor ID 100f8700fffb8b17
  740. Processor Version AMD Ryzen 5 3600 6-Core Processor
  741. Processor Voltage 8bh - 1.1V
  742. External Clock 100MHz
  743. Max Speed 4200MHz
  744. Current Speed 3600MHz
  745. Status Enabled Populated
  746. Processor Upgrade Specification Reserved
  747. L1 Cache Handle 002ah
  748. L2 Cache Handle 002bh
  749. L3 Cache Handle 002ch
  750. Part Number Unknown
  751. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 002eh]
  752. [Memory Device (Type 17) - Length 40 - Handle 002fh]
  753. Physical Memory Array Handle 0027h
  754. Memory Error Info Handle 002eh
  755. Total Width 64 bits
  756. Data Width 64 bits
  757. Size 8192MB
  758. Form Factor 09h - DIMM
  759. Device Locator DIMM_A1
  760. Bank Locator BANK 0
  761. Memory Type 1ah - Specification Reserved
  762. Type Detail 4080h - Synchronous
  763. Speed 3200MHz
  764. Manufacturer Corsair
  765. Part Number CMW16GX4M2C3200C16
  766. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0030h]
  767. Starting Address 00000000h
  768. Ending Address 00ffffffh
  769. Memory Device Handle 002fh
  770. Mem Array Mapped Adr Handle 0029h
  771. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0031h]
  772. [Memory Device (Type 17) - Length 40 - Handle 0032h]
  773. Physical Memory Array Handle 0027h
  774. Memory Error Info Handle 0031h
  775. Form Factor 02h - Unknown
  776. Device Locator DIMM_A2
  777. Bank Locator BANK 1
  778. Memory Type 02h - Unknown
  779. Type Detail 0004h - Unknown
  780. Speed 0MHz
  781. Manufacturer Unknown
  782. Part Number Unknown
  783. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0033h]
  784. [Memory Device (Type 17) - Length 40 - Handle 0034h]
  785. Physical Memory Array Handle 0027h
  786. Memory Error Info Handle 0033h
  787. Total Width 64 bits
  788. Data Width 64 bits
  789. Size 8192MB
  790. Form Factor 09h - DIMM
  791. Device Locator DIMM_B1
  792. Bank Locator BANK 2
  793. Memory Type 1ah - Specification Reserved
  794. Type Detail 4080h - Synchronous
  795. Speed 3200MHz
  796. Manufacturer Corsair
  797. Part Number CMW16GX4M2C3200C16
  798. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0035h]
  799. Starting Address 00000000h
  800. Ending Address 00ffffffh
  801. Memory Device Handle 0034h
  802. Mem Array Mapped Adr Handle 0029h
  803. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0036h]
  804. [Memory Device (Type 17) - Length 40 - Handle 0037h]
  805. Physical Memory Array Handle 0027h
  806. Memory Error Info Handle 0036h
  807. Form Factor 02h - Unknown
  808. Device Locator DIMM_B2
  809. Bank Locator BANK 3
  810. Memory Type 02h - Unknown
  811. Type Detail 0004h - Unknown
  812. Speed 0MHz
  813. Manufacturer Unknown
  814. Part Number Unknown
  815.  
  816. ========================== Dump #1: Extra #1 ===========================
  817.  
  818. 9: kd> !verifier
  819. Verify Flags Level 0x00000000
  820. STANDARD FLAGS:
  821. [X] (0x00000000) Automatic Checks
  822. [ ] (0x00000001) Special pool
  823. [ ] (0x00000002) Force IRQL checking
  824. [ ] (0x00000008) Pool tracking
  825. [ ] (0x00000010) I/O verification
  826. [ ] (0x00000020) Deadlock detection
  827. [ ] (0x00000080) DMA checking
  828. [ ] (0x00000100) Security checks
  829. [ ] (0x00000800) Miscellaneous checks
  830. [ ] (0x00020000) DDI compliance checking
  831. ADDITIONAL FLAGS:
  832. [ ] (0x00000004) Randomized low resources simulation
  833. [ ] (0x00000200) Force pending I/O requests
  834. [ ] (0x00000400) IRP logging
  835. [ ] (0x00002000) Invariant MDL checking for stack
  836. [ ] (0x00004000) Invariant MDL checking for driver
  837. [ ] (0x00008000) Power framework delay fuzzing
  838. [ ] (0x00010000) Port/miniport interface checking
  839. [ ] (0x00040000) Systematic low resources simulation
  840. [ ] (0x00080000) DDI compliance checking (additional)
  841. [ ] (0x00200000) NDIS/WIFI verification
  842. [ ] (0x00800000) Kernel synchronization delay fuzzing
  843. [ ] (0x01000000) VM switch verification
  844. [ ] (0x02000000) Code integrity checks
  845. [X] Indicates flag is enabled
  846. Summary of All Verifier Statistics
  847. RaiseIrqls 0x0
  848. AcquireSpinLocks 0x0
  849. Synch Executions 0x0
  850. Trims 0x0
  851. Pool Allocations Attempted 0x0
  852. Pool Allocations Succeeded 0x0
  853. Pool Allocations Succeeded SpecialPool 0x0
  854. Pool Allocations With NO TAG 0x0
  855. Pool Allocations Failed 0x0
  856. Current paged pool allocations 0x0 for 00000000 bytes
  857. Peak paged pool allocations 0x0 for 00000000 bytes
  858. Current nonpaged pool allocations 0x0 for 00000000 bytes
  859. Peak nonpaged pool allocations 0x0 for 00000000 bytes
  860.  
  861. ========================== Dump #1: Extra #2 ===========================
  862.  
  863. 9: kd> !thread
  864. THREAD ffffd5810de91340 Cid 0000.0000 Teb: 0000000000000000 Win32Thread: 0000000000000000 RUNNING on processor 9
  865. Not impersonating
  866. GetUlongFromAddress: unable to read from fffff8016462ca14
  867. Owning Process fffff8016478e9c0 Image: System Process
  868. Attached Process ffffae846be7c040 Image: System
  869. fffff78000000000: Unable to get shared data
  870. Wait Start TickCount 121007
  871. Context Switch Count 3103137 IdealProcessor: 9
  872. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  873. UserTime 00:00:00.000
  874. KernelTime 00:00:00.000
  875. Win32 Start Address nt!KiIdleLoop (0xfffff801643c5e70)
  876. Stack Init ffffc30d1ea99c90 Current ffffc30d1ea99c20
  877. Base ffffc30d1ea9a000 Limit ffffc30d1ea94000 Call 0000000000000000
  878. Priority 0 BasePriority 0 PriorityDecrement 0 IoPriority 0 PagePriority 0
  879. Child-SP RetAddr : Args to Child : Call Site
  880. ffffc30d`1ea99828 00000001`00000301 : 00000000`ffffffff ffffffff`00240000 00000007`00000000 00000000`00000003 : nt!KeBugCheckEx
  881. ffffc30d`1ea99830 00000000`ffffffff : ffffffff`00240000 00000007`00000000 00000000`00000003 ffffae84`723c6108 : 0x00000001`00000301
  882. ffffc30d`1ea99838 ffffffff`00240000 : 00000007`00000000 00000000`00000003 ffffae84`723c6108 fffff801`ffffffff : 0xffffffff
  883. ffffc30d`1ea99840 00000007`00000000 : 00000000`00000003 ffffae84`723c6108 fffff801`ffffffff 00000000`00000002 : 0xffffffff`00240000
  884. ffffc30d`1ea99848 00000000`00000003 : ffffae84`723c6108 fffff801`ffffffff 00000000`00000002 00000000`00000001 : 0x00000007`00000000
  885. ffffc30d`1ea99850 ffffae84`723c6108 : fffff801`ffffffff 00000000`00000002 00000000`00000001 ffffae84`723df910 : 0x3
  886. ffffc30d`1ea99858 fffff801`ffffffff : 00000000`00000002 00000000`00000001 ffffae84`723df910 ffffae84`723c6100 : 0xffffae84`723c6108
  887. ffffc30d`1ea99860 00000000`00000002 : 00000000`00000001 ffffae84`723df910 ffffae84`723c6100 00000000`00000000 : 0xfffff801`ffffffff
  888. ffffc30d`1ea99868 00000000`00000001 : ffffae84`723df910 ffffae84`723c6100 00000000`00000000 00000000`00000001 : 0x2
  889. ffffc30d`1ea99870 ffffae84`723df910 : ffffae84`723c6100 00000000`00000000 00000000`00000001 00000000`00000000 : 0x1
  890. ffffc30d`1ea99878 ffffae84`723c6100 : 00000000`00000000 00000000`00000001 00000000`00000000 00000000`00000000 : 0xffffae84`723df910
  891. ffffc30d`1ea99880 00000000`00000000 : 00000000`00000001 00000000`00000000 00000000`00000000 ffffae84`6e4b5100 : 0xffffae84`723c6100
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement