Guest User

BluescreenWin7

a guest
Sep 7th, 2013
185
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. WARNING: Whitespace at start of path element
  2. WARNING: Whitespace at start of path element
  3.  
  4. Microsoft (R) Windows Debugger Version 6.2.9200.20512 AMD64
  5. Copyright (c) Microsoft Corporation. All rights reserved.
  6.  
  7.  
  8. Loading Dump File [C:\Windows\Minidump\090713-11356-01.dmp]
  9. Mini Kernel Dump File: Only registers and stack trace are available
  10.  
  11. Mini Kernel Dump does not have process information
  12. WARNING: Whitespace at start of path element
  13. WARNING: Whitespace at start of path element
  14. Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
  15. Executable search path is: c:\windows\System32; c:\windows\system\System32; http://www.alexander.com/SymServe
  16. Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
  17. Product: WinNt, suite: TerminalServer SingleUserTS
  18. Built by: 7601.18205.amd64fre.win7sp1_gdr.130708-1532
  19. Machine Name:
  20. Kernel base = 0xfffff800`03450000 PsLoadedModuleList = 0xfffff800`036936d0
  21. Debug session time: Sat Sep 7 14:06:38.213 2013 (UTC + 2:00)
  22. System Uptime: 0 days 9:39:29.415
  23. Loading Kernel Symbols
  24. ................................................Unable to load image Unknown_Module_00000000`00000000, Win32 error 0n2
  25. *** WARNING: Unable to verify timestamp for Unknown_Module_00000000`00000000
  26. Unable to add module at 00000000`00000000
  27.  
  28. Loading User Symbols
  29. Loading unloaded module list
  30. .Missing image name, possible paged-out or corrupt data.
  31. .Missing image name, possible paged-out or corrupt data.
  32. .
  33. *******************************************************************************
  34. * *
  35. * Bugcheck Analysis *
  36. * *
  37. *******************************************************************************
  38.  
  39. Use !analyze -v to get detailed debugging information.
  40.  
  41. BugCheck D1, {3fe00, 2, 1, fffff88006c748fc}
  42.  
  43. Probably caused by : ntkrnlmp.exe ( nt!KiPageFault+260 )
  44.  
  45. Followup: MachineOwner
  46. ---------
  47.  
  48. 0: kd> !analyze -v
  49. *******************************************************************************
  50. * *
  51. * Bugcheck Analysis *
  52. * *
  53. *******************************************************************************
  54.  
  55. DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
  56. An attempt was made to access a pageable (or completely invalid) address at an
  57. interrupt request level (IRQL) that is too high. This is usually
  58. caused by drivers using improper addresses.
  59. If kernel debugger is available get stack backtrace.
  60. Arguments:
  61. Arg1: 000000000003fe00, memory referenced
  62. Arg2: 0000000000000002, IRQL
  63. Arg3: 0000000000000001, value 0 = read operation, 1 = write operation
  64. Arg4: fffff88006c748fc, address which referenced memory
  65.  
  66. Debugging Details:
  67. ------------------
  68.  
  69.  
  70. WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800036fd100
  71. GetUlongFromAddress: unable to read from fffff800036fd1c0
  72. 000000000003fe00 Nonpaged pool
  73.  
  74. CURRENT_IRQL: 2
  75.  
  76. FAULTING_IP:
  77. +0
  78. fffff880`06c748fc ?? ???
  79.  
  80. CUSTOMER_CRASH_COUNT: 1
  81.  
  82. DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
  83.  
  84. BUGCHECK_STR: 0xD1
  85.  
  86. TAG_NOT_DEFINED_c000000f: FFFFF80000BA2FB0
  87.  
  88. TRAP_FRAME: fffff80000ba27f0 -- (.trap 0xfffff80000ba27f0)
  89. NOTE: The trap frame does not contain all registers.
  90. Some register values may be zeroed or incorrect.
  91. rax=000000000003fe00 rbx=0000000000000000 rcx=fffffa800717b220
  92. rdx=000000004f444648 rsi=0000000000000000 rdi=0000000000000000
  93. rip=fffff88006c748fc rsp=fffff80000ba2980 rbp=fffffa80071726a0
  94. r8=000000004f444648 r9=000000000003fe00 r10=0000000000000005
  95. r11=0000000000000005 r12=0000000000000000 r13=0000000000000000
  96. r14=0000000000000000 r15=0000000000000000
  97. iopl=0 nv up ei pl nz na po nc
  98. fffff880`06c748fc ?? ???
  99. Resetting default scope
  100.  
  101. LAST_CONTROL_TRANSFER: from fffff800034c5129 to fffff800034c5b80
  102.  
  103. STACK_TEXT:
  104. fffff800`00ba26a8 fffff800`034c5129 : 00000000`0000000a 00000000`0003fe00 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
  105. fffff800`00ba26b0 fffff800`034c3da0 : fffff800`03643080 00000000`00000002 fffff800`00ba2850 fffffa80`08c26ee0 : nt!KiBugCheckDispatch+0x69
  106. fffff800`00ba27f0 fffff880`06c748fc : 00000000`0000000f fffffa80`00000200 fffffa80`08e2bea8 00000000`00000000 : nt!KiPageFault+0x260
  107. fffff800`00ba2980 00000000`0000000f : fffffa80`00000200 fffffa80`08e2bea8 00000000`00000000 fffffa80`0d8c9f98 : 0xfffff880`06c748fc
  108. fffff800`00ba2988 fffffa80`00000200 : fffffa80`08e2bea8 00000000`00000000 fffffa80`0d8c9f98 fffff880`0a5ba880 : 0xf
  109. fffff800`00ba2990 fffffa80`08e2bea8 : 00000000`00000000 fffffa80`0d8c9f98 fffff880`0a5ba880 fffffa80`0d8c9930 : 0xfffffa80`00000200
  110. fffff800`00ba2998 00000000`00000000 : fffffa80`0d8c9f98 fffff880`0a5ba880 fffffa80`0d8c9930 fffffa80`08e2bea8 : 0xfffffa80`08e2bea8
  111.  
  112.  
  113. STACK_COMMAND: kb
  114.  
  115. FOLLOWUP_IP:
  116. nt!KiPageFault+260
  117. fffff800`034c3da0 440f20c0 mov rax,cr8
  118.  
  119. SYMBOL_STACK_INDEX: 2
  120.  
  121. SYMBOL_NAME: nt!KiPageFault+260
  122.  
  123. FOLLOWUP_NAME: MachineOwner
  124.  
  125. MODULE_NAME: nt
  126.  
  127. IMAGE_NAME: ntkrnlmp.exe
  128.  
  129. DEBUG_FLR_IMAGE_TIMESTAMP: 51db806a
  130.  
  131. FAILURE_BUCKET_ID: X64_0xD1_nt!KiPageFault+260
  132.  
  133. BUCKET_ID: X64_0xD1_nt!KiPageFault+260
  134.  
  135. Followup: MachineOwner
  136. ---------
  137.  
  138. 0: kd> lmv
  139. start end module name
  140. fffff800`00bb1000 fffff800`00bbb000 kdcom (deferred)
  141. Mapped memory image file: c:\windows\system32\kdcom.dll
  142. Image path: kdcom.dll
  143. Image name: kdcom.dll
  144. Timestamp: Sat Feb 05 17:52:49 2011 (4D4D8061)
  145. CheckSum: 0000F59B
  146. ImageSize: 0000A000
  147. File version: 6.1.7601.17556
  148. Product version: 6.1.7601.17556
  149. File flags: 0 (Mask 3F)
  150. File OS: 40004 NT Win32
  151. File type: 3.A Driver
  152. File date: 00000000.00000000
  153. Translations: 0409.04b0
  154. CompanyName: Microsoft Corporation
  155. ProductName: Microsoft® Windows® Operating System
  156. InternalName: kdcom.dll
  157. OriginalFilename: kdcom.dll
  158. ProductVersion: 6.1.7601.17556
  159. FileVersion: 6.1.7601.17556 (win7sp1_gdr.110204-2120)
  160. FileDescription: Serial Kernel Debugger
  161. LegalCopyright: © Microsoft Corporation. All rights reserved.
  162. fffff800`03407000 fffff800`03450000 hal (deferred)
  163. Mapped memory image file: c:\windows\system32\hal.dll
  164. Image path: hal.dll
  165. Image name: hal.dll
  166. Timestamp: Sat Nov 20 14:00:25 2010 (4CE7C669)
  167. CheckSum: 000404C3
  168. ImageSize: 00049000
  169. File version: 6.1.7601.17514
  170. Product version: 6.1.7601.17514
  171. File flags: 0 (Mask 3F)
  172. File OS: 40004 NT Win32
  173. File type: 2.0 Dll
  174. File date: 00000000.00000000
  175. Translations: 0409.04b0
  176. CompanyName: Microsoft Corporation
  177. ProductName: Microsoft® Windows® Operating System
  178. InternalName: hal.dll
  179. OriginalFilename: hal.dll
  180. ProductVersion: 6.1.7601.17514
  181. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  182. FileDescription: Hardware Abstraction Layer DLL
  183. LegalCopyright: © Microsoft Corporation. All rights reserved.
  184. fffff800`03450000 fffff800`03a36000 nt (pdb symbols) c:\symbols\ntkrnlmp.pdb\DC9628D1EDEC4D779EA56D2438A16F4E2\ntkrnlmp.pdb
  185. Loaded symbol image file: ntkrnlmp.exe
  186. Mapped memory image file: c:\windows\system32\ntoskrnl.exe
  187. Image path: ntkrnlmp.exe
  188. Image name: ntkrnlmp.exe
  189. Timestamp: Tue Jul 09 05:15:54 2013 (51DB806A)
  190. CheckSum: 00556FD9
  191. ImageSize: 005E6000
  192. File version: 6.1.7601.18205
  193. Product version: 6.1.7601.18205
  194. File flags: 0 (Mask 3F)
  195. File OS: 40004 NT Win32
  196. File type: 1.0 App
  197. File date: 00000000.00000000
  198. Translations: 0409.04b0
  199. CompanyName: Microsoft Corporation
  200. ProductName: Microsoft® Windows® Operating System
  201. InternalName: ntkrnlmp.exe
  202. OriginalFilename: ntkrnlmp.exe
  203. ProductVersion: 6.1.7601.18205
  204. FileVersion: 6.1.7601.18205 (win7sp1_gdr.130708-1532)
  205. FileDescription: NT Kernel & System
  206. LegalCopyright: © Microsoft Corporation. All rights reserved.
  207. fffff880`00c23000 fffff880`00c30000 mcupdate (deferred)
  208. Image path: mcupdate.dll
  209. Image name: mcupdate.dll
  210. Timestamp: unavailable (00000000)
  211. CheckSum: 00000000
  212. ImageSize: 0000D000
  213. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  214. fffff880`00c30000 fffff880`00c44000 PSHED (deferred)
  215. Mapped memory image file: c:\windows\system32\PSHED.dll
  216. Image path: PSHED.dll
  217. Image name: PSHED.dll
  218. Timestamp: unavailable (00000000)
  219. CheckSum: 00000000
  220. ImageSize: 00014000
  221. File version: 6.1.7600.16385
  222. Product version: 6.1.7600.16385
  223. File flags: 0 (Mask 3F)
  224. File OS: 40004 NT Win32
  225. File type: 3.7 Driver
  226. File date: 00000000.00000000
  227. Translations: 0409.04b0
  228. CompanyName: Microsoft Corporation
  229. ProductName: Microsoft® Windows® Operating System
  230. InternalName: pshed.dll
  231. OriginalFilename: pshed.dll
  232. ProductVersion: 6.1.7600.16385
  233. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  234. FileDescription: Platform Specific Hardware Error Driver
  235. LegalCopyright: © Microsoft Corporation. All rights reserved.
  236. fffff880`00c44000 fffff880`00ca2000 CLFS (deferred)
  237. Mapped memory image file: c:\windows\system32\CLFS.SYS
  238. Image path: CLFS.SYS
  239. Image name: CLFS.SYS
  240. Timestamp: unavailable (00000000)
  241. CheckSum: 00000000
  242. ImageSize: 0005E000
  243. File version: 6.1.7600.16385
  244. Product version: 6.1.7600.16385
  245. File flags: 0 (Mask 3F)
  246. File OS: 40004 NT Win32
  247. File type: 3.7 Driver
  248. File date: 00000000.00000000
  249. Translations: 0000.04b0
  250. CompanyName: Microsoft Corporation
  251. ProductName: Microsoft® Windows® Operating System
  252. InternalName: clfs.sys
  253. OriginalFilename: Clfs.Sys
  254. ProductVersion: 6.1.7600.16385
  255. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  256. FileDescription: Common Log File System Driver
  257. LegalCopyright: © Microsoft Corporation. All rights reserved.
  258. fffff880`00ca2000 fffff880`00d62000 CI (deferred)
  259. Mapped memory image file: c:\windows\system32\CI.dll
  260. Image path: CI.dll
  261. Image name: CI.dll
  262. Timestamp: unavailable (00000000)
  263. CheckSum: 00000000
  264. ImageSize: 000C0000
  265. File version: 6.1.7601.17514
  266. Product version: 6.1.7601.17514
  267. File flags: 0 (Mask 3F)
  268. File OS: 40004 NT Win32
  269. File type: 3.7 Driver
  270. File date: 00000000.00000000
  271. Translations: 0409.04b0
  272. CompanyName: Microsoft Corporation
  273. ProductName: Microsoft® Windows® Operating System
  274. InternalName: ci.dll
  275. OriginalFilename: ci.dll
  276. ProductVersion: 6.1.7601.17514
  277. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  278. FileDescription: Code Integrity Module
  279. LegalCopyright: © Microsoft Corporation. All rights reserved.
  280. fffff880`00d62000 fffff880`00dbe000 volmgrx (deferred)
  281. Mapped memory image file: c:\windows\system32\drivers\volmgrx.sys
  282. Image path: volmgrx.sys
  283. Image name: volmgrx.sys
  284. Timestamp: unavailable (00000000)
  285. CheckSum: 00000000
  286. ImageSize: 0005C000
  287. File version: 6.1.7601.17514
  288. Product version: 6.1.7601.17514
  289. File flags: 0 (Mask 3F)
  290. File OS: 40004 NT Win32
  291. File type: 3.7 Driver
  292. File date: 00000000.00000000
  293. Translations: 0409.04b0
  294. CompanyName: Microsoft Corporation
  295. ProductName: Microsoft® Windows® Operating System
  296. InternalName: volmgrx.sys
  297. OriginalFilename: volmgrx.sys
  298. ProductVersion: 6.1.7601.17514
  299. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  300. FileDescription: Volume Manager Extension Driver
  301. LegalCopyright: © Microsoft Corporation. All rights reserved.
  302. fffff880`00dbe000 fffff880`00ded000 SCSIPORT (deferred)
  303. Mapped memory image file: c:\windows\system32\drivers\scsiport.sys
  304. Image path: SCSIPORT.SYS
  305. Image name: SCSIPORT.SYS
  306. Timestamp: unavailable (00000000)
  307. CheckSum: 00000000
  308. ImageSize: 0002F000
  309. File version: 6.1.7601.17514
  310. Product version: 6.1.7601.17514
  311. File flags: 0 (Mask 3F)
  312. File OS: 40004 NT Win32
  313. File type: 3.7 Driver
  314. File date: 00000000.00000000
  315. Translations: 0409.04b0
  316. CompanyName: Microsoft Corporation
  317. ProductName: Microsoft® Windows® Operating System
  318. InternalName: scsiport.sys
  319. OriginalFilename: scsiport.sys
  320. ProductVersion: 6.1.7601.17514
  321. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  322. FileDescription: SCSI Port Driver
  323. LegalCopyright: © Microsoft Corporation. All rights reserved.
  324. fffff880`00ded000 fffff880`00df6000 atapi (deferred)
  325. Mapped memory image file: c:\windows\system32\drivers\atapi.sys
  326. Image path: atapi.sys
  327. Image name: atapi.sys
  328. Timestamp: unavailable (00000000)
  329. CheckSum: 00000000
  330. ImageSize: 00009000
  331. File version: 6.1.7600.16385
  332. Product version: 6.1.7600.16385
  333. File flags: 0 (Mask 3F)
  334. File OS: 40004 NT Win32
  335. File type: 3.7 Driver
  336. File date: 00000000.00000000
  337. Translations: 0409.04b0
  338. CompanyName: Microsoft Corporation
  339. ProductName: Microsoft® Windows® Operating System
  340. InternalName: atapi.sys
  341. OriginalFilename: atapi.sys
  342. ProductVersion: 6.1.7600.16385
  343. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  344. FileDescription: ATAPI IDE Miniport Driver
  345. LegalCopyright: © Microsoft Corporation. All rights reserved.
  346. fffff880`00e00000 fffff880`00e10000 PCIIDEX (deferred)
  347. Mapped memory image file: c:\windows\system32\drivers\pciidex.sys
  348. Image path: PCIIDEX.SYS
  349. Image name: PCIIDEX.SYS
  350. Timestamp: unavailable (00000000)
  351. CheckSum: 00000000
  352. ImageSize: 00010000
  353. File version: 6.1.7600.16385
  354. Product version: 6.1.7600.16385
  355. File flags: 0 (Mask 3F)
  356. File OS: 40004 NT Win32
  357. File type: 3.7 Driver
  358. File date: 00000000.00000000
  359. Translations: 0000.04b0
  360. CompanyName: Microsoft Corporation
  361. ProductName: Microsoft® Windows® Operating System
  362. InternalName: pciidex.sys
  363. OriginalFilename: pciidex.sys
  364. ProductVersion: 6.1.7600.16385
  365. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  366. FileDescription: PCI IDE Bus Driver Extension
  367. LegalCopyright: © Microsoft Corporation. All rights reserved.
  368. fffff880`00e10000 fffff880`00e30000 jraid (deferred)
  369. Mapped memory image file: c:\windows\system32\drivers\jraid.sys
  370. Image path: jraid.sys
  371. Image name: jraid.sys
  372. Timestamp: unavailable (00000000)
  373. CheckSum: 00000000
  374. ImageSize: 00020000
  375. File version: 1.17.54.2
  376. Product version: 1.17.54.2
  377. File flags: 8 (Mask 3F) Private
  378. File OS: 40004 NT Win32
  379. File type: 3.7 Driver
  380. File date: 00000000.00000000
  381. Translations: 0409.04b0
  382. CompanyName: JMicron Technology Corp.
  383. ProductName: JMicron JMB36X RAID Driver
  384. InternalName: JRAID.SYS
  385. OriginalFilename: JRAID.SYS
  386. ProductVersion: 1.17.54.2
  387. FileVersion: 1.17.54.2 built by: WinDDK
  388. FileDescription: JMicron JMB36X RAID Driver
  389. LegalCopyright: Copyright (C) JMicron Technology Corp.
  390. fffff880`00e30000 fffff880`00e4a000 mountmgr (deferred)
  391. Mapped memory image file: c:\windows\system32\drivers\mountmgr.sys
  392. Image path: mountmgr.sys
  393. Image name: mountmgr.sys
  394. Timestamp: unavailable (00000000)
  395. CheckSum: 00000000
  396. ImageSize: 0001A000
  397. File version: 6.1.7601.17514
  398. Product version: 6.1.7601.17514
  399. File flags: 0 (Mask 3F)
  400. File OS: 40004 NT Win32
  401. File type: 3.7 Driver
  402. File date: 00000000.00000000
  403. Translations: 0409.04b0
  404. CompanyName: Microsoft Corporation
  405. ProductName: Microsoft® Windows® Operating System
  406. InternalName: mountmgr.sys
  407. OriginalFilename: mountmgr.sys
  408. ProductVersion: 6.1.7601.17514
  409. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  410. FileDescription: Mount Point Manager
  411. LegalCopyright: © Microsoft Corporation. All rights reserved.
  412. fffff880`00e50000 fffff880`00f12000 Wdf01000 (deferred)
  413. Mapped memory image file: c:\windows\system32\drivers\Wdf01000.sys
  414. Image path: Wdf01000.sys
  415. Image name: Wdf01000.sys
  416. Timestamp: unavailable (00000000)
  417. CheckSum: 00000000
  418. ImageSize: 000C2000
  419. File version: 1.11.9200.16384
  420. Product version: 1.11.9200.16384
  421. File flags: 0 (Mask 3F)
  422. File OS: 40004 NT Win32
  423. File type: 3.7 Driver
  424. File date: 00000000.00000000
  425. Translations: 0409.04b0
  426. CompanyName: Microsoft Corporation
  427. ProductName: Microsoft® Windows® Operating System
  428. InternalName: wdf01000.sys
  429. OriginalFilename: wdf01000.sys
  430. ProductVersion: 1.11.9200.16384
  431. FileVersion: 1.11.9200.16384 (win8_rtm.120725-1247)
  432. FileDescription: Kernel Mode Driver Framework Runtime
  433. LegalCopyright: © Microsoft Corporation. All rights reserved.
  434. fffff880`00f12000 fffff880`00f22000 WDFLDR (deferred)
  435. Mapped memory image file: c:\windows\system32\drivers\WdfLdr.sys
  436. Image path: WDFLDR.SYS
  437. Image name: WDFLDR.SYS
  438. Timestamp: unavailable (00000000)
  439. CheckSum: 00000000
  440. ImageSize: 00010000
  441. File version: 1.11.9200.16384
  442. Product version: 1.11.9200.16384
  443. File flags: 0 (Mask 3F)
  444. File OS: 40004 NT Win32
  445. File type: 3.7 Driver
  446. File date: 00000000.00000000
  447. Translations: 0000.04b0
  448. CompanyName: Microsoft Corporation
  449. ProductName: Microsoft® Windows® Operating System
  450. InternalName: wdfldr.sys
  451. OriginalFilename: wdfldr.sys
  452. ProductVersion: 1.11.9200.16384
  453. FileVersion: 1.11.9200.16384 (win8_rtm.120725-1247)
  454. FileDescription: Kernel Mode Driver Framework Loader
  455. LegalCopyright: © Microsoft Corporation. All rights reserved.
  456. fffff880`00f22000 fffff880`00f79000 ACPI (deferred)
  457. Mapped memory image file: c:\windows\system32\drivers\acpi.sys
  458. Image path: ACPI.sys
  459. Image name: ACPI.sys
  460. Timestamp: unavailable (00000000)
  461. CheckSum: 00000000
  462. ImageSize: 00057000
  463. File version: 6.1.7601.17514
  464. Product version: 6.1.7601.17514
  465. File flags: 0 (Mask 3F)
  466. File OS: 40004 NT Win32
  467. File type: 3.7 Driver
  468. File date: 00000000.00000000
  469. Translations: 0409.04b0
  470. CompanyName: Microsoft Corporation
  471. ProductName: Microsoft® Windows® Operating System
  472. InternalName: ACPI.sys
  473. OriginalFilename: ACPI.sys
  474. ProductVersion: 6.1.7601.17514
  475. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  476. FileDescription: ACPI Driver for NT
  477. LegalCopyright: © Microsoft Corporation. All rights reserved.
  478. fffff880`00f79000 fffff880`00f82000 WMILIB (deferred)
  479. Mapped memory image file: c:\windows\system32\drivers\wmilib.sys
  480. Image path: WMILIB.SYS
  481. Image name: WMILIB.SYS
  482. Timestamp: unavailable (00000000)
  483. CheckSum: 00000000
  484. ImageSize: 00009000
  485. File version: 6.1.7600.16385
  486. Product version: 6.1.7600.16385
  487. File flags: 0 (Mask 3F)
  488. File OS: 40004 NT Win32
  489. File type: 3.7 Driver
  490. File date: 00000000.00000000
  491. Translations: 0409.04b0
  492. CompanyName: Microsoft Corporation
  493. ProductName: Microsoft® Windows® Operating System
  494. InternalName: WmiLib.sys
  495. OriginalFilename: WmiLib.sys
  496. ProductVersion: 6.1.7600.16385
  497. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  498. FileDescription: WMILIB WMI support library Dll
  499. LegalCopyright: © Microsoft Corporation. All rights reserved.
  500. fffff880`00f82000 fffff880`00f8c000 msisadrv (deferred)
  501. Mapped memory image file: c:\windows\system32\drivers\msisadrv.sys
  502. Image path: msisadrv.sys
  503. Image name: msisadrv.sys
  504. Timestamp: unavailable (00000000)
  505. CheckSum: 00000000
  506. ImageSize: 0000A000
  507. File version: 6.1.7600.16385
  508. Product version: 6.1.7600.16385
  509. File flags: 0 (Mask 3F)
  510. File OS: 40004 NT Win32
  511. File type: 3.7 Driver
  512. File date: 00000000.00000000
  513. Translations: 0409.04b0
  514. CompanyName: Microsoft Corporation
  515. ProductName: Microsoft® Windows® Operating System
  516. InternalName: msisadrv.sys
  517. OriginalFilename: msisadrv.sys
  518. ProductVersion: 6.1.7600.16385
  519. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  520. FileDescription: ISA Driver
  521. LegalCopyright: © Microsoft Corporation. All rights reserved.
  522. fffff880`00f8c000 fffff880`00fbf000 pci (deferred)
  523. Mapped memory image file: c:\windows\system32\drivers\pci.sys
  524. Image path: pci.sys
  525. Image name: pci.sys
  526. Timestamp: unavailable (00000000)
  527. CheckSum: 00000000
  528. ImageSize: 00033000
  529. File version: 6.1.7601.17514
  530. Product version: 6.1.7601.17514
  531. File flags: 0 (Mask 3F)
  532. File OS: 40004 NT Win32
  533. File type: 2.0 Dll
  534. File date: 00000000.00000000
  535. Translations: 0409.04b0
  536. CompanyName: Microsoft Corporation
  537. ProductName: Microsoft® Windows® Operating System
  538. InternalName: pci.sys
  539. OriginalFilename: pci.sys
  540. ProductVersion: 6.1.7601.17514
  541. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  542. FileDescription: NT Plug and Play PCI Enumerator
  543. LegalCopyright: © Microsoft Corporation. All rights reserved.
  544. fffff880`00fbf000 fffff880`00fcc000 vdrvroot (deferred)
  545. Mapped memory image file: c:\windows\system32\drivers\vdrvroot.sys
  546. Image path: vdrvroot.sys
  547. Image name: vdrvroot.sys
  548. Timestamp: unavailable (00000000)
  549. CheckSum: 00000000
  550. ImageSize: 0000D000
  551. File version: 6.1.7600.16385
  552. Product version: 6.1.7600.16385
  553. File flags: 0 (Mask 3F)
  554. File OS: 40004 NT Win32
  555. File type: 2.0 Dll
  556. File date: 00000000.00000000
  557. Translations: 0409.04b0
  558. CompanyName: Microsoft Corporation
  559. ProductName: Microsoft® Windows® Operating System
  560. InternalName: vdrvroot.sys
  561. OriginalFilename: vdrvroot.sys
  562. ProductVersion: 6.1.7600.16385
  563. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  564. FileDescription: Virtual Drive Root Enumerator
  565. LegalCopyright: © Microsoft Corporation. All rights reserved.
  566. fffff880`00fcc000 fffff880`00fe1000 partmgr (deferred)
  567. Mapped memory image file: c:\windows\system32\drivers\partmgr.sys
  568. Image path: partmgr.sys
  569. Image name: partmgr.sys
  570. Timestamp: unavailable (00000000)
  571. CheckSum: 00000000
  572. ImageSize: 00015000
  573. File version: 6.1.7601.17796
  574. Product version: 6.1.7601.17796
  575. File flags: 0 (Mask 3F)
  576. File OS: 40004 NT Win32
  577. File type: 3.7 Driver
  578. File date: 00000000.00000000
  579. Translations: 0000.04b0
  580. CompanyName: Microsoft Corporation
  581. ProductName: Microsoft® Windows® Operating System
  582. InternalName: partmgr.sys
  583. OriginalFilename: partmgr.sys
  584. ProductVersion: 6.1.7601.17796
  585. FileVersion: 6.1.7601.17796 (win7sp1_gdr.120316-1742)
  586. FileDescription: Partition Management Driver
  587. LegalCopyright: © Microsoft Corporation. All rights reserved.
  588. fffff880`00fe1000 fffff880`00ff6000 volmgr (deferred)
  589. Mapped memory image file: c:\windows\system32\drivers\volmgr.sys
  590. Image path: volmgr.sys
  591. Image name: volmgr.sys
  592. Timestamp: unavailable (00000000)
  593. CheckSum: 00000000
  594. ImageSize: 00015000
  595. File version: 6.1.7601.17514
  596. Product version: 6.1.7601.17514
  597. File flags: 0 (Mask 3F)
  598. File OS: 40004 NT Win32
  599. File type: 3.7 Driver
  600. File date: 00000000.00000000
  601. Translations: 0409.04b0
  602. CompanyName: Microsoft Corporation
  603. ProductName: Microsoft® Windows® Operating System
  604. InternalName: volmgr.sys
  605. OriginalFilename: volmgr.sys
  606. ProductVersion: 6.1.7601.17514
  607. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  608. FileDescription: Volume Manager Driver
  609. LegalCopyright: © Microsoft Corporation. All rights reserved.
  610. fffff880`00ff6000 fffff880`00ffd000 pciide (deferred)
  611. Mapped memory image file: c:\windows\system32\drivers\pciide.sys
  612. Image path: pciide.sys
  613. Image name: pciide.sys
  614. Timestamp: unavailable (00000000)
  615. CheckSum: 00000000
  616. ImageSize: 00007000
  617. File version: 6.1.7600.16385
  618. Product version: 6.1.7600.16385
  619. File flags: 0 (Mask 3F)
  620. File OS: 40004 NT Win32
  621. File type: 3.7 Driver
  622. File date: 00000000.00000000
  623. Translations: 0409.04b0
  624. CompanyName: Microsoft Corporation
  625. ProductName: Microsoft® Windows® Operating System
  626. InternalName: pciide.sys
  627. OriginalFilename: pciide.sys
  628. ProductVersion: 6.1.7600.16385
  629. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  630. FileDescription: Generic PCI IDE Bus Driver
  631. LegalCopyright: © Microsoft Corporation. All rights reserved.
  632. fffff880`01000000 fffff880`0104c000 volsnap (deferred)
  633. Mapped memory image file: c:\windows\system32\drivers\volsnap.sys
  634. Image path: volsnap.sys
  635. Image name: volsnap.sys
  636. Timestamp: unavailable (00000000)
  637. CheckSum: 00000000
  638. ImageSize: 0004C000
  639. File version: 6.1.7601.17514
  640. Product version: 6.1.7601.17514
  641. File flags: 0 (Mask 3F)
  642. File OS: 40004 NT Win32
  643. File type: 3.7 Driver
  644. File date: 00000000.00000000
  645. Translations: 0409.04b0
  646. CompanyName: Microsoft Corporation
  647. ProductName: Microsoft® Windows® Operating System
  648. InternalName: volsnap.sys
  649. OriginalFilename: volsnap.sys
  650. ProductVersion: 6.1.7601.17514
  651. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  652. FileDescription: Volume Shadow Copy Driver
  653. LegalCopyright: © Microsoft Corporation. All rights reserved.
  654. fffff880`01053000 fffff880`0107d000 ataport (deferred)
  655. Mapped memory image file: c:\windows\system32\drivers\ataport.sys
  656. Image path: ataport.SYS
  657. Image name: ataport.SYS
  658. Timestamp: unavailable (00000000)
  659. CheckSum: 00000000
  660. ImageSize: 0002A000
  661. File version: 6.1.7601.17514
  662. Product version: 6.1.7601.17514
  663. File flags: 0 (Mask 3F)
  664. File OS: 40004 NT Win32
  665. File type: 3.7 Driver
  666. File date: 00000000.00000000
  667. Translations: 0000.04b0
  668. CompanyName: Microsoft Corporation
  669. ProductName: Microsoft® Windows® Operating System
  670. InternalName: ataport.sys
  671. OriginalFilename: ataport.sys
  672. ProductVersion: 6.1.7601.17514
  673. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  674. FileDescription: ATAPI Driver Extension
  675. LegalCopyright: © Microsoft Corporation. All rights reserved.
  676. fffff880`0107d000 fffff880`01088000 amdxata (deferred)
  677. Mapped memory image file: c:\windows\system32\drivers\amdxata.sys
  678. Image path: amdxata.sys
  679. Image name: amdxata.sys
  680. Timestamp: unavailable (00000000)
  681. CheckSum: 00000000
  682. ImageSize: 0000B000
  683. File version: 1.1.2.5
  684. Product version: 1.1.2.5
  685. File flags: 8 (Mask 3F) Private
  686. File OS: 40004 NT Win32
  687. File type: 3.7 Driver
  688. File date: 00000000.00000000
  689. Translations: 0000.04b0
  690. CompanyName: Advanced Micro Devices
  691. ProductName: Storage Filter Driver
  692. InternalName: vadd.sys
  693. OriginalFilename: vadd.sys
  694. ProductVersion: 1.1.2.5
  695. FileVersion: 1.1.2.5 (NT.091202-1659)
  696. FileDescription: Storage Filter Driver
  697. LegalCopyright: Copyright © 2008-2010 AMD, Inc.
  698. fffff880`01088000 fffff880`010d4000 fltmgr (deferred)
  699. Mapped memory image file: c:\windows\system32\drivers\fltMgr.sys
  700. Image path: fltmgr.sys
  701. Image name: fltmgr.sys
  702. Timestamp: unavailable (00000000)
  703. CheckSum: 00000000
  704. ImageSize: 0004C000
  705. File version: 6.1.7601.17514
  706. Product version: 6.1.7601.17514
  707. File flags: 0 (Mask 3F)
  708. File OS: 40004 NT Win32
  709. File type: 3.7 Driver
  710. File date: 00000000.00000000
  711. Translations: 0409.04b0
  712. CompanyName: Microsoft Corporation
  713. ProductName: Microsoft® Windows® Operating System
  714. InternalName: fltMgr.sys
  715. OriginalFilename: fltMgr.sys
  716. ProductVersion: 6.1.7601.17514
  717. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  718. FileDescription: Microsoft Filesystem Filter Manager
  719. LegalCopyright: © Microsoft Corporation. All rights reserved.
  720. fffff880`010d4000 fffff880`010e8000 fileinfo (deferred)
  721. Mapped memory image file: c:\windows\system32\drivers\fileinfo.sys
  722. Image path: fileinfo.sys
  723. Image name: fileinfo.sys
  724. Timestamp: unavailable (00000000)
  725. CheckSum: 00000000
  726. ImageSize: 00014000
  727. File version: 6.1.7600.16385
  728. Product version: 6.1.7600.16385
  729. File flags: 0 (Mask 3F)
  730. File OS: 40004 NT Win32
  731. File type: 3.7 Driver
  732. File date: 00000000.00000000
  733. Translations: 0409.04b0
  734. CompanyName: Microsoft Corporation
  735. ProductName: Microsoft® Windows® Operating System
  736. InternalName: FileInfo.sys
  737. OriginalFilename: FileInfo.sys
  738. ProductVersion: 6.1.7600.16385
  739. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  740. FileDescription: FileInfo Filter Driver
  741. LegalCopyright: © Microsoft Corporation. All rights reserved.
  742. fffff880`010e8000 fffff880`01146000 msrpc (deferred)
  743. Mapped memory image file: c:\windows\system32\drivers\msrpc.sys
  744. Image path: msrpc.sys
  745. Image name: msrpc.sys
  746. Timestamp: unavailable (00000000)
  747. CheckSum: 00000000
  748. ImageSize: 0005E000
  749. File version: 6.1.7601.17514
  750. Product version: 6.1.7601.17514
  751. File flags: 0 (Mask 3F)
  752. File OS: 40004 NT Win32
  753. File type: 3.7 Driver
  754. File date: 00000000.00000000
  755. Translations: 0409.04b0
  756. CompanyName: Microsoft Corporation
  757. ProductName: Microsoft® Windows® Operating System
  758. InternalName: krpcdd.sys
  759. OriginalFilename: krpcdd.sys
  760. ProductVersion: 6.1.7601.17514
  761. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  762. FileDescription: Kernel Remote Procedure Call Provider
  763. LegalCopyright: © Microsoft Corporation. All rights reserved.
  764. fffff880`01146000 fffff880`011b8000 cng (deferred)
  765. Mapped memory image file: c:\windows\system32\drivers\cng.sys
  766. Image path: cng.sys
  767. Image name: cng.sys
  768. Timestamp: unavailable (00000000)
  769. CheckSum: 00000000
  770. ImageSize: 00072000
  771. File version: 6.1.7601.17940
  772. Product version: 6.1.7601.17940
  773. File flags: 0 (Mask 3F)
  774. File OS: 40004 NT Win32
  775. File type: 3.7 Driver
  776. File date: 00000000.00000000
  777. Translations: 0409.04b0
  778. CompanyName: Microsoft Corporation
  779. ProductName: Microsoft® Windows® Operating System
  780. InternalName: cng.sys
  781. OriginalFilename: cng.sys
  782. ProductVersion: 6.1.7601.17940
  783. FileVersion: 6.1.7601.17940 (win7sp1_gdr.120824-0334)
  784. FileDescription: Kernel Cryptography, Next Generation
  785. LegalCopyright: © Microsoft Corporation. All rights reserved.
  786. fffff880`011b8000 fffff880`011f2000 rdyboost (deferred)
  787. Mapped memory image file: c:\windows\system32\drivers\rdyboost.sys
  788. Image path: rdyboost.sys
  789. Image name: rdyboost.sys
  790. Timestamp: unavailable (00000000)
  791. CheckSum: 00000000
  792. ImageSize: 0003A000
  793. File version: 6.1.7601.17514
  794. Product version: 6.1.7601.17514
  795. File flags: 0 (Mask 3F)
  796. File OS: 40004 NT Win32
  797. File type: 3.7 Driver
  798. File date: 00000000.00000000
  799. Translations: 0000.04b0
  800. CompanyName: Microsoft Corporation
  801. ProductName: Microsoft® Windows® Operating System
  802. InternalName: rdyboost.sys
  803. OriginalFilename: rdyboost.sys
  804. ProductVersion: 6.1.7601.17514
  805. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  806. FileDescription: ReadyBoost Driver
  807. LegalCopyright: © Microsoft Corporation. All rights reserved.
  808. fffff880`01205000 fffff880`013a7000 Ntfs (deferred)
  809. Mapped memory image file: c:\windows\system32\drivers\ntfs.sys
  810. Image path: Ntfs.sys
  811. Image name: Ntfs.sys
  812. Timestamp: unavailable (00000000)
  813. CheckSum: 00000000
  814. ImageSize: 001A2000
  815. File version: 6.1.7601.18127
  816. Product version: 6.1.7601.18127
  817. File flags: 0 (Mask 3F)
  818. File OS: 40004 NT Win32
  819. File type: 3.7 Driver
  820. File date: 00000000.00000000
  821. Translations: 0409.04b0
  822. CompanyName: Microsoft Corporation
  823. ProductName: Microsoft® Windows® Operating System
  824. InternalName: ntfs.sys
  825. OriginalFilename: ntfs.sys
  826. ProductVersion: 6.1.7601.18127
  827. FileVersion: 6.1.7601.18127 (win7sp1_gdr.130412-0013)
  828. FileDescription: NT File System Driver
  829. LegalCopyright: © Microsoft Corporation. All rights reserved.
  830. fffff880`013a7000 fffff880`013c2000 ksecdd (deferred)
  831. Mapped memory image file: c:\windows\system32\drivers\ksecdd.sys
  832. Image path: ksecdd.sys
  833. Image name: ksecdd.sys
  834. Timestamp: unavailable (00000000)
  835. CheckSum: 00000000
  836. ImageSize: 0001B000
  837. File version: 6.1.7601.17856
  838. Product version: 6.1.7601.17856
  839. File flags: 0 (Mask 3F)
  840. File OS: 40004 NT Win32
  841. File type: 3.7 Driver
  842. File date: 00000000.00000000
  843. Translations: 0409.04b0
  844. CompanyName: Microsoft Corporation
  845. ProductName: Microsoft® Windows® Operating System
  846. InternalName: ksecdd.sys
  847. OriginalFilename: ksecdd.sys
  848. ProductVersion: 6.1.7601.17856
  849. FileVersion: 6.1.7601.17856 (win7sp1_gdr.120601-1505)
  850. FileDescription: Kernel Security Support Provider Interface
  851. LegalCopyright: © Microsoft Corporation. All rights reserved.
  852. fffff880`013c2000 fffff880`013d3000 pcw (deferred)
  853. Mapped memory image file: c:\windows\system32\drivers\pcw.sys
  854. Image path: pcw.sys
  855. Image name: pcw.sys
  856. Timestamp: unavailable (00000000)
  857. CheckSum: 00000000
  858. ImageSize: 00011000
  859. File version: 6.1.7600.16385
  860. Product version: 6.1.7600.16385
  861. File flags: 0 (Mask 3F)
  862. File OS: 40004 NT Win32
  863. File type: 3.8 Driver
  864. File date: 00000000.00000000
  865. Translations: 0409.04b0
  866. CompanyName: Microsoft Corporation
  867. ProductName: Microsoft® Windows® Operating System
  868. InternalName: pcw.sys
  869. OriginalFilename: pcw.sys
  870. ProductVersion: 6.1.7600.16385
  871. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  872. FileDescription: Performance Counters for Windows Driver
  873. LegalCopyright: © Microsoft Corporation. All rights reserved.
  874. fffff880`013d3000 fffff880`013dd000 Fs_Rec (deferred)
  875. Mapped memory image file: c:\windows\system32\drivers\fs_rec.sys
  876. Image path: Fs_Rec.sys
  877. Image name: Fs_Rec.sys
  878. Timestamp: unavailable (00000000)
  879. CheckSum: 00000000
  880. ImageSize: 0000A000
  881. File version: 6.1.7601.17787
  882. Product version: 6.1.7601.17787
  883. File flags: 0 (Mask 3F)
  884. File OS: 40004 NT Win32
  885. File type: 3.7 Driver
  886. File date: 00000000.00000000
  887. Translations: 0409.04b0
  888. CompanyName: Microsoft Corporation
  889. ProductName: Microsoft® Windows® Operating System
  890. InternalName: fs_rec.sys
  891. OriginalFilename: fs_rec.sys
  892. ProductVersion: 6.1.7601.17787
  893. FileVersion: 6.1.7601.17787 (win7sp1_gdr.120229-1502)
  894. FileDescription: File System Recognizer Driver
  895. LegalCopyright: © Microsoft Corporation. All rights reserved.
  896. fffff880`01400000 fffff880`0142b000 ksecpkg (deferred)
  897. Mapped memory image file: c:\windows\system32\drivers\ksecpkg.sys
  898. Image path: ksecpkg.sys
  899. Image name: ksecpkg.sys
  900. Timestamp: unavailable (00000000)
  901. CheckSum: 00000000
  902. ImageSize: 0002B000
  903. File version: 6.1.7601.17940
  904. Product version: 6.1.7601.17940
  905. File flags: 0 (Mask 3F)
  906. File OS: 40004 NT Win32
  907. File type: 3.7 Driver
  908. File date: 00000000.00000000
  909. Translations: 0409.04b0
  910. CompanyName: Microsoft Corporation
  911. ProductName: Microsoft® Windows® Operating System
  912. InternalName: ksecpkg.sys
  913. OriginalFilename: ksecpkg.sys
  914. ProductVersion: 6.1.7601.17940
  915. FileVersion: 6.1.7601.17940 (win7sp1_gdr.120824-0334)
  916. FileDescription: Kernel Security Support Provider Interface Packages
  917. LegalCopyright: © Microsoft Corporation. All rights reserved.
  918. fffff880`0142b000 fffff880`01474000 fwpkclnt (deferred)
  919. Mapped memory image file: c:\windows\system32\drivers\FWPKCLNT.SYS
  920. Image path: fwpkclnt.sys
  921. Image name: fwpkclnt.sys
  922. Timestamp: unavailable (00000000)
  923. CheckSum: 00000000
  924. ImageSize: 00049000
  925. File version: 6.1.7601.18042
  926. Product version: 6.1.7601.18042
  927. File flags: 0 (Mask 3F)
  928. File OS: 40004 NT Win32
  929. File type: 2.0 Dll
  930. File date: 00000000.00000000
  931. Translations: 0409.04b0
  932. CompanyName: Microsoft Corporation
  933. ProductName: Microsoft® Windows® Operating System
  934. InternalName: fwpkclnt.sys
  935. OriginalFilename: fwpkclnt.sys
  936. ProductVersion: 6.1.7601.18042
  937. FileVersion: 6.1.7601.18042 (win7sp1_gdr.130102-1436)
  938. FileDescription: FWP/IPsec Kernel-Mode API
  939. LegalCopyright: © Microsoft Corporation. All rights reserved.
  940. fffff880`01474000 fffff880`01484000 vmstorfl (deferred)
  941. Mapped memory image file: c:\windows\system32\drivers\vmstorfl.sys
  942. Image path: vmstorfl.sys
  943. Image name: vmstorfl.sys
  944. Timestamp: unavailable (00000000)
  945. CheckSum: 00000000
  946. ImageSize: 00010000
  947. File version: 6.1.7601.17514
  948. Product version: 6.1.7601.17514
  949. File flags: 0 (Mask 3F)
  950. File OS: 40004 NT Win32
  951. File type: 3.7 Driver
  952. File date: 00000000.00000000
  953. Translations: 0409.04b0
  954. CompanyName: Microsoft Corporation
  955. ProductName: Microsoft® Windows® Operating System
  956. InternalName: vmstorfl.sys
  957. OriginalFilename: vmstorfl.sys
  958. ProductVersion: 6.1.7601.17514
  959. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  960. FileDescription: Virtual Storage Filter Driver
  961. LegalCopyright: © Microsoft Corporation. All rights reserved.
  962. fffff880`01484000 fffff880`0148c000 spldr (deferred)
  963. Mapped memory image file: c:\windows\system32\drivers\spldr.sys
  964. Image path: spldr.sys
  965. Image name: spldr.sys
  966. Timestamp: unavailable (00000000)
  967. CheckSum: 00000000
  968. ImageSize: 00008000
  969. File version: 6.1.7127.0
  970. Product version: 6.1.7127.0
  971. File flags: 8 (Mask 3F) Private
  972. File OS: 40004 NT Win32
  973. File type: 3.0 Driver
  974. File date: 00000000.00000000
  975. Translations: 0409.04b0
  976. CompanyName: Microsoft Corporation
  977. ProductName: Microsoft® Windows® Operating System
  978. InternalName: spldr.sys
  979. OriginalFilename: spldr.sys
  980. ProductVersion: 6.1.7127.0
  981. FileVersion: 6.1.7127.0 (fbl_security_bugfix(sepbld-s).090511-0943)
  982. FileDescription: loader for security processor
  983. LegalCopyright: © Microsoft Corporation. All rights reserved.
  984. fffff880`0148c000 fffff880`0149e000 mup (deferred)
  985. Mapped memory image file: c:\windows\system32\drivers\mup.sys
  986. Image path: mup.sys
  987. Image name: mup.sys
  988. Timestamp: unavailable (00000000)
  989. CheckSum: 00000000
  990. ImageSize: 00012000
  991. File version: 6.1.7600.16385
  992. Product version: 6.1.7600.16385
  993. File flags: 0 (Mask 3F)
  994. File OS: 40004 NT Win32
  995. File type: 3.6 Driver
  996. File date: 00000000.00000000
  997. Translations: 0409.04b0
  998. CompanyName: Microsoft Corporation
  999. ProductName: Microsoft® Windows® Operating System
  1000. InternalName: MUP.SYS
  1001. OriginalFilename: MUP.SYS
  1002. ProductVersion: 6.1.7600.16385
  1003. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1004. FileDescription: Multiple UNC Provider Driver
  1005. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1006. fffff880`0149e000 fffff880`014a7000 hwpolicy (deferred)
  1007. Mapped memory image file: c:\windows\system32\drivers\hwpolicy.sys
  1008. Image path: hwpolicy.sys
  1009. Image name: hwpolicy.sys
  1010. Timestamp: unavailable (00000000)
  1011. CheckSum: 00000000
  1012. ImageSize: 00009000
  1013. File version: 6.1.7601.17514
  1014. Product version: 6.1.7601.17514
  1015. File flags: 0 (Mask 3F)
  1016. File OS: 40004 NT Win32
  1017. File type: 2.0 Dll
  1018. File date: 00000000.00000000
  1019. Translations: 0409.04b0
  1020. CompanyName: Microsoft Corporation
  1021. ProductName: Microsoft® Windows® Operating System
  1022. InternalName: hwpolicy.sys
  1023. OriginalFilename: hwpolicy.sys
  1024. ProductVersion: 6.1.7601.17514
  1025. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1026. FileDescription: Hardware Policy Driver
  1027. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1028. fffff880`014ab000 fffff880`0159d000 ndis (deferred)
  1029. Mapped memory image file: c:\windows\system32\drivers\ndis.sys
  1030. Image path: ndis.sys
  1031. Image name: ndis.sys
  1032. Timestamp: unavailable (00000000)
  1033. CheckSum: 00000000
  1034. ImageSize: 000F2000
  1035. File version: 6.1.7601.17939
  1036. Product version: 6.1.7601.17939
  1037. File flags: 0 (Mask 3F)
  1038. File OS: 40004 NT Win32
  1039. File type: 3.6 Driver
  1040. File date: 00000000.00000000
  1041. Translations: 0409.04b0
  1042. CompanyName: Microsoft Corporation
  1043. ProductName: Microsoft® Windows® Operating System
  1044. InternalName: NDIS.SYS
  1045. OriginalFilename: NDIS.SYS
  1046. ProductVersion: 6.1.7601.17939
  1047. FileVersion: 6.1.7601.17939 (win7sp1_gdr.120822-0331)
  1048. FileDescription: NDIS 6.20 driver
  1049. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1050. fffff880`0159d000 fffff880`015fd000 NETIO (deferred)
  1051. Mapped memory image file: c:\windows\system32\drivers\netio.sys
  1052. Image path: NETIO.SYS
  1053. Image name: NETIO.SYS
  1054. Timestamp: unavailable (00000000)
  1055. CheckSum: 00000000
  1056. ImageSize: 00060000
  1057. File version: 6.1.7601.17939
  1058. Product version: 6.1.7601.17939
  1059. File flags: 0 (Mask 3F)
  1060. File OS: 40004 NT Win32
  1061. File type: 3.6 Driver
  1062. File date: 00000000.00000000
  1063. Translations: 0409.04b0
  1064. CompanyName: Microsoft Corporation
  1065. ProductName: Microsoft® Windows® Operating System
  1066. InternalName: netio.sys
  1067. OriginalFilename: netio.sys
  1068. ProductVersion: 6.1.7601.17939
  1069. FileVersion: 6.1.7601.17939 (win7sp1_gdr.120822-0331)
  1070. FileDescription: Network I/O Subsystem
  1071. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1072. fffff880`01600000 fffff880`01800000 tcpip (deferred)
  1073. Mapped memory image file: c:\windows\system32\drivers\tcpip.sys
  1074. Image path: tcpip.sys
  1075. Image name: tcpip.sys
  1076. Timestamp: unavailable (00000000)
  1077. CheckSum: 00000000
  1078. ImageSize: 00200000
  1079. File version: 6.1.7601.18203
  1080. Product version: 6.1.7601.18203
  1081. File flags: 0 (Mask 3F)
  1082. File OS: 40004 NT Win32
  1083. File type: 3.6 Driver
  1084. File date: 00000000.00000000
  1085. Translations: 0409.04b0
  1086. CompanyName: Microsoft Corporation
  1087. ProductName: Microsoft® Windows® Operating System
  1088. InternalName: tcpip.sys
  1089. OriginalFilename: tcpip.sys
  1090. ProductVersion: 6.1.7601.18203
  1091. FileVersion: 6.1.7601.18203 (win7sp1_gdr.130705-1535)
  1092. FileDescription: TCP/IP Driver
  1093. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1094. fffff880`01891000 fffff880`018cb000 fvevol (deferred)
  1095. Mapped memory image file: c:\windows\system32\drivers\fvevol.sys
  1096. Image path: fvevol.sys
  1097. Image name: fvevol.sys
  1098. Timestamp: unavailable (00000000)
  1099. CheckSum: 00000000
  1100. ImageSize: 0003A000
  1101. File version: 6.1.7601.18062
  1102. Product version: 6.1.7601.18062
  1103. File flags: 0 (Mask 3F)
  1104. File OS: 40004 NT Win32
  1105. File type: 3.7 Driver
  1106. File date: 00000000.00000000
  1107. Translations: 0000.04b0
  1108. CompanyName: Microsoft Corporation
  1109. ProductName: Microsoft® Windows® Operating System
  1110. InternalName: FVEVOL.SYS
  1111. OriginalFilename: FVEVOL.SYS
  1112. ProductVersion: 6.1.7601.18062
  1113. FileVersion: 6.1.7601.18062 (win7sp1_gdr.130123-1433)
  1114. FileDescription: BitLocker Drive Encryption Driver
  1115. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1116. fffff880`018cb000 fffff880`018e1000 disk (deferred)
  1117. Mapped memory image file: c:\windows\system32\drivers\disk.sys
  1118. Image path: disk.sys
  1119. Image name: disk.sys
  1120. Timestamp: unavailable (00000000)
  1121. CheckSum: 00000000
  1122. ImageSize: 00016000
  1123. File version: 6.1.7600.16385
  1124. Product version: 6.1.7600.16385
  1125. File flags: 0 (Mask 3F)
  1126. File OS: 40004 NT Win32
  1127. File type: 3.7 Driver
  1128. File date: 00000000.00000000
  1129. Translations: 0000.04b0
  1130. CompanyName: Microsoft Corporation
  1131. ProductName: Microsoft® Windows® Operating System
  1132. InternalName: disk.sys
  1133. OriginalFilename: disk.sys
  1134. ProductVersion: 6.1.7600.16385
  1135. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1136. FileDescription: PnP Disk Driver
  1137. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1138. fffff880`018e1000 fffff880`01911000 CLASSPNP (deferred)
  1139. Mapped memory image file: c:\windows\system32\drivers\Classpnp.sys
  1140. Image path: CLASSPNP.SYS
  1141. Image name: CLASSPNP.SYS
  1142. Timestamp: unavailable (00000000)
  1143. CheckSum: 00000000
  1144. ImageSize: 00030000
  1145. File version: 6.1.7601.17514
  1146. Product version: 6.1.7601.17514
  1147. File flags: 0 (Mask 3F)
  1148. File OS: 40004 NT Win32
  1149. File type: 3.7 Driver
  1150. File date: 00000000.00000000
  1151. Translations: 0000.04b0
  1152. CompanyName: Microsoft Corporation
  1153. ProductName: Microsoft® Windows® Operating System
  1154. InternalName: Classpnp.sys
  1155. OriginalFilename: Classpnp.sys
  1156. ProductVersion: 6.1.7601.17514
  1157. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1158. FileDescription: SCSI Class System Dll
  1159. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1160. fffff880`01911000 fffff880`01919000 AtiPcie (deferred)
  1161. Mapped memory image file: c:\windows\system32\drivers\AtiPcie.sys
  1162. Image path: AtiPcie.sys
  1163. Image name: AtiPcie.sys
  1164. Timestamp: unavailable (00000000)
  1165. CheckSum: 00000000
  1166. ImageSize: 00008000
  1167. File version: 1.3.0.49
  1168. Product version: 1.3.0.49
  1169. File flags: 8 (Mask 3F) Private
  1170. File OS: 40004 NT Win32
  1171. File type: 3.7 Driver
  1172. File date: 00000000.00000000
  1173. Translations: 0409.04b0
  1174. CompanyName: Advanced Micro Devices Inc.
  1175. ProductName: AMD PCIE Filter Driver
  1176. InternalName: Atipcie.sys
  1177. OriginalFilename: Atipcie.sys
  1178. ProductVersion: 1.3.0.49
  1179. FileVersion: 1.3.0.49 built by: WinDDK
  1180. FileDescription: AMD PCIE Filter Driver for ATI PCIE chipset
  1181. LegalCopyright: Copyright© AMD Inc. 2006-2009
  1182.  
  1183. Unloaded modules:
  1184. 0017001c`0000003b 0017001c`0000003c Unknown_Module_0017001c`0000003b
  1185. Timestamp: unavailable (00000000)
  1186. Checksum: 00000000
  1187. ImageSize: 00000001
  1188. Missing image name, possible paged-out or corrupt data.
  1189. 00000004`00000007 00000004`00000007 Unknown_Module_00000004`00000007
  1190. Timestamp: unavailable (00000000)
  1191. Checksum: 00000000
  1192. ImageSize: 00000000
  1193. Missing image name, possible paged-out or corrupt data.
  1194. 00090008`00070006 00090008`000b000a Unknown_Module_00090008`00070006
  1195. Timestamp: unavailable (00000000)
  1196. Checksum: 00000000
  1197. ImageSize: 00040004
RAW Paste Data