Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- WARNING: Whitespace at start of path element
- WARNING: Whitespace at start of path element
- Microsoft (R) Windows Debugger Version 6.2.9200.20512 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- Loading Dump File [C:\Windows\Minidump\090713-11356-01.dmp]
- Mini Kernel Dump File: Only registers and stack trace are available
- Mini Kernel Dump does not have process information
- WARNING: Whitespace at start of path element
- WARNING: Whitespace at start of path element
- Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
- Executable search path is: c:\windows\System32; c:\windows\system\System32; http://www.alexander.com/SymServe
- Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 7601.18205.amd64fre.win7sp1_gdr.130708-1532
- Machine Name:
- Kernel base = 0xfffff800`03450000 PsLoadedModuleList = 0xfffff800`036936d0
- Debug session time: Sat Sep 7 14:06:38.213 2013 (UTC + 2:00)
- System Uptime: 0 days 9:39:29.415
- Loading Kernel Symbols
- ................................................Unable to load image Unknown_Module_00000000`00000000, Win32 error 0n2
- *** WARNING: Unable to verify timestamp for Unknown_Module_00000000`00000000
- Unable to add module at 00000000`00000000
- Loading User Symbols
- Loading unloaded module list
- .Missing image name, possible paged-out or corrupt data.
- .Missing image name, possible paged-out or corrupt data.
- .
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- Use !analyze -v to get detailed debugging information.
- BugCheck D1, {3fe00, 2, 1, fffff88006c748fc}
- Probably caused by : ntkrnlmp.exe ( nt!KiPageFault+260 )
- Followup: MachineOwner
- ---------
- 0: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
- An attempt was made to access a pageable (or completely invalid) address at an
- interrupt request level (IRQL) that is too high. This is usually
- caused by drivers using improper addresses.
- If kernel debugger is available get stack backtrace.
- Arguments:
- Arg1: 000000000003fe00, memory referenced
- Arg2: 0000000000000002, IRQL
- Arg3: 0000000000000001, value 0 = read operation, 1 = write operation
- Arg4: fffff88006c748fc, address which referenced memory
- Debugging Details:
- ------------------
- WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800036fd100
- GetUlongFromAddress: unable to read from fffff800036fd1c0
- 000000000003fe00 Nonpaged pool
- CURRENT_IRQL: 2
- FAULTING_IP:
- +0
- fffff880`06c748fc ?? ???
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
- BUGCHECK_STR: 0xD1
- TAG_NOT_DEFINED_c000000f: FFFFF80000BA2FB0
- TRAP_FRAME: fffff80000ba27f0 -- (.trap 0xfffff80000ba27f0)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=000000000003fe00 rbx=0000000000000000 rcx=fffffa800717b220
- rdx=000000004f444648 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff88006c748fc rsp=fffff80000ba2980 rbp=fffffa80071726a0
- r8=000000004f444648 r9=000000000003fe00 r10=0000000000000005
- r11=0000000000000005 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei pl nz na po nc
- fffff880`06c748fc ?? ???
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff800034c5129 to fffff800034c5b80
- STACK_TEXT:
- fffff800`00ba26a8 fffff800`034c5129 : 00000000`0000000a 00000000`0003fe00 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
- fffff800`00ba26b0 fffff800`034c3da0 : fffff800`03643080 00000000`00000002 fffff800`00ba2850 fffffa80`08c26ee0 : nt!KiBugCheckDispatch+0x69
- fffff800`00ba27f0 fffff880`06c748fc : 00000000`0000000f fffffa80`00000200 fffffa80`08e2bea8 00000000`00000000 : nt!KiPageFault+0x260
- fffff800`00ba2980 00000000`0000000f : fffffa80`00000200 fffffa80`08e2bea8 00000000`00000000 fffffa80`0d8c9f98 : 0xfffff880`06c748fc
- fffff800`00ba2988 fffffa80`00000200 : fffffa80`08e2bea8 00000000`00000000 fffffa80`0d8c9f98 fffff880`0a5ba880 : 0xf
- fffff800`00ba2990 fffffa80`08e2bea8 : 00000000`00000000 fffffa80`0d8c9f98 fffff880`0a5ba880 fffffa80`0d8c9930 : 0xfffffa80`00000200
- fffff800`00ba2998 00000000`00000000 : fffffa80`0d8c9f98 fffff880`0a5ba880 fffffa80`0d8c9930 fffffa80`08e2bea8 : 0xfffffa80`08e2bea8
- STACK_COMMAND: kb
- FOLLOWUP_IP:
- nt!KiPageFault+260
- fffff800`034c3da0 440f20c0 mov rax,cr8
- SYMBOL_STACK_INDEX: 2
- SYMBOL_NAME: nt!KiPageFault+260
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 51db806a
- FAILURE_BUCKET_ID: X64_0xD1_nt!KiPageFault+260
- BUCKET_ID: X64_0xD1_nt!KiPageFault+260
- Followup: MachineOwner
- ---------
- 0: kd> lmv
- start end module name
- fffff800`00bb1000 fffff800`00bbb000 kdcom (deferred)
- Mapped memory image file: c:\windows\system32\kdcom.dll
- Image path: kdcom.dll
- Image name: kdcom.dll
- Timestamp: Sat Feb 05 17:52:49 2011 (4D4D8061)
- CheckSum: 0000F59B
- ImageSize: 0000A000
- File version: 6.1.7601.17556
- Product version: 6.1.7601.17556
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.A Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: kdcom.dll
- OriginalFilename: kdcom.dll
- ProductVersion: 6.1.7601.17556
- FileVersion: 6.1.7601.17556 (win7sp1_gdr.110204-2120)
- FileDescription: Serial Kernel Debugger
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff800`03407000 fffff800`03450000 hal (deferred)
- Mapped memory image file: c:\windows\system32\hal.dll
- Image path: hal.dll
- Image name: hal.dll
- Timestamp: Sat Nov 20 14:00:25 2010 (4CE7C669)
- CheckSum: 000404C3
- ImageSize: 00049000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: hal.dll
- OriginalFilename: hal.dll
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Hardware Abstraction Layer DLL
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff800`03450000 fffff800`03a36000 nt (pdb symbols) c:\symbols\ntkrnlmp.pdb\DC9628D1EDEC4D779EA56D2438A16F4E2\ntkrnlmp.pdb
- Loaded symbol image file: ntkrnlmp.exe
- Mapped memory image file: c:\windows\system32\ntoskrnl.exe
- Image path: ntkrnlmp.exe
- Image name: ntkrnlmp.exe
- Timestamp: Tue Jul 09 05:15:54 2013 (51DB806A)
- CheckSum: 00556FD9
- ImageSize: 005E6000
- File version: 6.1.7601.18205
- Product version: 6.1.7601.18205
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 1.0 App
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ntkrnlmp.exe
- OriginalFilename: ntkrnlmp.exe
- ProductVersion: 6.1.7601.18205
- FileVersion: 6.1.7601.18205 (win7sp1_gdr.130708-1532)
- FileDescription: NT Kernel & System
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00c23000 fffff880`00c30000 mcupdate (deferred)
- Image path: mcupdate.dll
- Image name: mcupdate.dll
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0000D000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`00c30000 fffff880`00c44000 PSHED (deferred)
- Mapped memory image file: c:\windows\system32\PSHED.dll
- Image path: PSHED.dll
- Image name: PSHED.dll
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00014000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pshed.dll
- OriginalFilename: pshed.dll
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Platform Specific Hardware Error Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00c44000 fffff880`00ca2000 CLFS (deferred)
- Mapped memory image file: c:\windows\system32\CLFS.SYS
- Image path: CLFS.SYS
- Image name: CLFS.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0005E000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: clfs.sys
- OriginalFilename: Clfs.Sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Common Log File System Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00ca2000 fffff880`00d62000 CI (deferred)
- Mapped memory image file: c:\windows\system32\CI.dll
- Image path: CI.dll
- Image name: CI.dll
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 000C0000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ci.dll
- OriginalFilename: ci.dll
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Code Integrity Module
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00d62000 fffff880`00dbe000 volmgrx (deferred)
- Mapped memory image file: c:\windows\system32\drivers\volmgrx.sys
- Image path: volmgrx.sys
- Image name: volmgrx.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0005C000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: volmgrx.sys
- OriginalFilename: volmgrx.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Volume Manager Extension Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00dbe000 fffff880`00ded000 SCSIPORT (deferred)
- Mapped memory image file: c:\windows\system32\drivers\scsiport.sys
- Image path: SCSIPORT.SYS
- Image name: SCSIPORT.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0002F000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: scsiport.sys
- OriginalFilename: scsiport.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: SCSI Port Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00ded000 fffff880`00df6000 atapi (deferred)
- Mapped memory image file: c:\windows\system32\drivers\atapi.sys
- Image path: atapi.sys
- Image name: atapi.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: atapi.sys
- OriginalFilename: atapi.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: ATAPI IDE Miniport Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00e00000 fffff880`00e10000 PCIIDEX (deferred)
- Mapped memory image file: c:\windows\system32\drivers\pciidex.sys
- Image path: PCIIDEX.SYS
- Image name: PCIIDEX.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00010000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pciidex.sys
- OriginalFilename: pciidex.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: PCI IDE Bus Driver Extension
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00e10000 fffff880`00e30000 jraid (deferred)
- Mapped memory image file: c:\windows\system32\drivers\jraid.sys
- Image path: jraid.sys
- Image name: jraid.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00020000
- File version: 1.17.54.2
- Product version: 1.17.54.2
- File flags: 8 (Mask 3F) Private
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: JMicron Technology Corp.
- ProductName: JMicron JMB36X RAID Driver
- InternalName: JRAID.SYS
- OriginalFilename: JRAID.SYS
- ProductVersion: 1.17.54.2
- FileVersion: 1.17.54.2 built by: WinDDK
- FileDescription: JMicron JMB36X RAID Driver
- LegalCopyright: Copyright (C) JMicron Technology Corp.
- fffff880`00e30000 fffff880`00e4a000 mountmgr (deferred)
- Mapped memory image file: c:\windows\system32\drivers\mountmgr.sys
- Image path: mountmgr.sys
- Image name: mountmgr.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0001A000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: mountmgr.sys
- OriginalFilename: mountmgr.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Mount Point Manager
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00e50000 fffff880`00f12000 Wdf01000 (deferred)
- Mapped memory image file: c:\windows\system32\drivers\Wdf01000.sys
- Image path: Wdf01000.sys
- Image name: Wdf01000.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 000C2000
- File version: 1.11.9200.16384
- Product version: 1.11.9200.16384
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: wdf01000.sys
- OriginalFilename: wdf01000.sys
- ProductVersion: 1.11.9200.16384
- FileVersion: 1.11.9200.16384 (win8_rtm.120725-1247)
- FileDescription: Kernel Mode Driver Framework Runtime
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00f12000 fffff880`00f22000 WDFLDR (deferred)
- Mapped memory image file: c:\windows\system32\drivers\WdfLdr.sys
- Image path: WDFLDR.SYS
- Image name: WDFLDR.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00010000
- File version: 1.11.9200.16384
- Product version: 1.11.9200.16384
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: wdfldr.sys
- OriginalFilename: wdfldr.sys
- ProductVersion: 1.11.9200.16384
- FileVersion: 1.11.9200.16384 (win8_rtm.120725-1247)
- FileDescription: Kernel Mode Driver Framework Loader
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00f22000 fffff880`00f79000 ACPI (deferred)
- Mapped memory image file: c:\windows\system32\drivers\acpi.sys
- Image path: ACPI.sys
- Image name: ACPI.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00057000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ACPI.sys
- OriginalFilename: ACPI.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: ACPI Driver for NT
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00f79000 fffff880`00f82000 WMILIB (deferred)
- Mapped memory image file: c:\windows\system32\drivers\wmilib.sys
- Image path: WMILIB.SYS
- Image name: WMILIB.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: WmiLib.sys
- OriginalFilename: WmiLib.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: WMILIB WMI support library Dll
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00f82000 fffff880`00f8c000 msisadrv (deferred)
- Mapped memory image file: c:\windows\system32\drivers\msisadrv.sys
- Image path: msisadrv.sys
- Image name: msisadrv.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0000A000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: msisadrv.sys
- OriginalFilename: msisadrv.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: ISA Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00f8c000 fffff880`00fbf000 pci (deferred)
- Mapped memory image file: c:\windows\system32\drivers\pci.sys
- Image path: pci.sys
- Image name: pci.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00033000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pci.sys
- OriginalFilename: pci.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: NT Plug and Play PCI Enumerator
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00fbf000 fffff880`00fcc000 vdrvroot (deferred)
- Mapped memory image file: c:\windows\system32\drivers\vdrvroot.sys
- Image path: vdrvroot.sys
- Image name: vdrvroot.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0000D000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: vdrvroot.sys
- OriginalFilename: vdrvroot.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Virtual Drive Root Enumerator
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00fcc000 fffff880`00fe1000 partmgr (deferred)
- Mapped memory image file: c:\windows\system32\drivers\partmgr.sys
- Image path: partmgr.sys
- Image name: partmgr.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00015000
- File version: 6.1.7601.17796
- Product version: 6.1.7601.17796
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: partmgr.sys
- OriginalFilename: partmgr.sys
- ProductVersion: 6.1.7601.17796
- FileVersion: 6.1.7601.17796 (win7sp1_gdr.120316-1742)
- FileDescription: Partition Management Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00fe1000 fffff880`00ff6000 volmgr (deferred)
- Mapped memory image file: c:\windows\system32\drivers\volmgr.sys
- Image path: volmgr.sys
- Image name: volmgr.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00015000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: volmgr.sys
- OriginalFilename: volmgr.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Volume Manager Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00ff6000 fffff880`00ffd000 pciide (deferred)
- Mapped memory image file: c:\windows\system32\drivers\pciide.sys
- Image path: pciide.sys
- Image name: pciide.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00007000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pciide.sys
- OriginalFilename: pciide.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Generic PCI IDE Bus Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01000000 fffff880`0104c000 volsnap (deferred)
- Mapped memory image file: c:\windows\system32\drivers\volsnap.sys
- Image path: volsnap.sys
- Image name: volsnap.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0004C000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: volsnap.sys
- OriginalFilename: volsnap.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Volume Shadow Copy Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01053000 fffff880`0107d000 ataport (deferred)
- Mapped memory image file: c:\windows\system32\drivers\ataport.sys
- Image path: ataport.SYS
- Image name: ataport.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0002A000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ataport.sys
- OriginalFilename: ataport.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: ATAPI Driver Extension
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0107d000 fffff880`01088000 amdxata (deferred)
- Mapped memory image file: c:\windows\system32\drivers\amdxata.sys
- Image path: amdxata.sys
- Image name: amdxata.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0000B000
- File version: 1.1.2.5
- Product version: 1.1.2.5
- File flags: 8 (Mask 3F) Private
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Advanced Micro Devices
- ProductName: Storage Filter Driver
- InternalName: vadd.sys
- OriginalFilename: vadd.sys
- ProductVersion: 1.1.2.5
- FileVersion: 1.1.2.5 (NT.091202-1659)
- FileDescription: Storage Filter Driver
- LegalCopyright: Copyright © 2008-2010 AMD, Inc.
- fffff880`01088000 fffff880`010d4000 fltmgr (deferred)
- Mapped memory image file: c:\windows\system32\drivers\fltMgr.sys
- Image path: fltmgr.sys
- Image name: fltmgr.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0004C000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: fltMgr.sys
- OriginalFilename: fltMgr.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Microsoft Filesystem Filter Manager
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`010d4000 fffff880`010e8000 fileinfo (deferred)
- Mapped memory image file: c:\windows\system32\drivers\fileinfo.sys
- Image path: fileinfo.sys
- Image name: fileinfo.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00014000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: FileInfo.sys
- OriginalFilename: FileInfo.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: FileInfo Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`010e8000 fffff880`01146000 msrpc (deferred)
- Mapped memory image file: c:\windows\system32\drivers\msrpc.sys
- Image path: msrpc.sys
- Image name: msrpc.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0005E000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: krpcdd.sys
- OriginalFilename: krpcdd.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Kernel Remote Procedure Call Provider
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01146000 fffff880`011b8000 cng (deferred)
- Mapped memory image file: c:\windows\system32\drivers\cng.sys
- Image path: cng.sys
- Image name: cng.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00072000
- File version: 6.1.7601.17940
- Product version: 6.1.7601.17940
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: cng.sys
- OriginalFilename: cng.sys
- ProductVersion: 6.1.7601.17940
- FileVersion: 6.1.7601.17940 (win7sp1_gdr.120824-0334)
- FileDescription: Kernel Cryptography, Next Generation
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`011b8000 fffff880`011f2000 rdyboost (deferred)
- Mapped memory image file: c:\windows\system32\drivers\rdyboost.sys
- Image path: rdyboost.sys
- Image name: rdyboost.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0003A000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: rdyboost.sys
- OriginalFilename: rdyboost.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: ReadyBoost Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01205000 fffff880`013a7000 Ntfs (deferred)
- Mapped memory image file: c:\windows\system32\drivers\ntfs.sys
- Image path: Ntfs.sys
- Image name: Ntfs.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 001A2000
- File version: 6.1.7601.18127
- Product version: 6.1.7601.18127
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ntfs.sys
- OriginalFilename: ntfs.sys
- ProductVersion: 6.1.7601.18127
- FileVersion: 6.1.7601.18127 (win7sp1_gdr.130412-0013)
- FileDescription: NT File System Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`013a7000 fffff880`013c2000 ksecdd (deferred)
- Mapped memory image file: c:\windows\system32\drivers\ksecdd.sys
- Image path: ksecdd.sys
- Image name: ksecdd.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0001B000
- File version: 6.1.7601.17856
- Product version: 6.1.7601.17856
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ksecdd.sys
- OriginalFilename: ksecdd.sys
- ProductVersion: 6.1.7601.17856
- FileVersion: 6.1.7601.17856 (win7sp1_gdr.120601-1505)
- FileDescription: Kernel Security Support Provider Interface
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`013c2000 fffff880`013d3000 pcw (deferred)
- Mapped memory image file: c:\windows\system32\drivers\pcw.sys
- Image path: pcw.sys
- Image name: pcw.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00011000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.8 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pcw.sys
- OriginalFilename: pcw.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Performance Counters for Windows Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`013d3000 fffff880`013dd000 Fs_Rec (deferred)
- Mapped memory image file: c:\windows\system32\drivers\fs_rec.sys
- Image path: Fs_Rec.sys
- Image name: Fs_Rec.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0000A000
- File version: 6.1.7601.17787
- Product version: 6.1.7601.17787
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: fs_rec.sys
- OriginalFilename: fs_rec.sys
- ProductVersion: 6.1.7601.17787
- FileVersion: 6.1.7601.17787 (win7sp1_gdr.120229-1502)
- FileDescription: File System Recognizer Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01400000 fffff880`0142b000 ksecpkg (deferred)
- Mapped memory image file: c:\windows\system32\drivers\ksecpkg.sys
- Image path: ksecpkg.sys
- Image name: ksecpkg.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0002B000
- File version: 6.1.7601.17940
- Product version: 6.1.7601.17940
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ksecpkg.sys
- OriginalFilename: ksecpkg.sys
- ProductVersion: 6.1.7601.17940
- FileVersion: 6.1.7601.17940 (win7sp1_gdr.120824-0334)
- FileDescription: Kernel Security Support Provider Interface Packages
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0142b000 fffff880`01474000 fwpkclnt (deferred)
- Mapped memory image file: c:\windows\system32\drivers\FWPKCLNT.SYS
- Image path: fwpkclnt.sys
- Image name: fwpkclnt.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00049000
- File version: 6.1.7601.18042
- Product version: 6.1.7601.18042
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: fwpkclnt.sys
- OriginalFilename: fwpkclnt.sys
- ProductVersion: 6.1.7601.18042
- FileVersion: 6.1.7601.18042 (win7sp1_gdr.130102-1436)
- FileDescription: FWP/IPsec Kernel-Mode API
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01474000 fffff880`01484000 vmstorfl (deferred)
- Mapped memory image file: c:\windows\system32\drivers\vmstorfl.sys
- Image path: vmstorfl.sys
- Image name: vmstorfl.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00010000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: vmstorfl.sys
- OriginalFilename: vmstorfl.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Virtual Storage Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01484000 fffff880`0148c000 spldr (deferred)
- Mapped memory image file: c:\windows\system32\drivers\spldr.sys
- Image path: spldr.sys
- Image name: spldr.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00008000
- File version: 6.1.7127.0
- Product version: 6.1.7127.0
- File flags: 8 (Mask 3F) Private
- File OS: 40004 NT Win32
- File type: 3.0 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: spldr.sys
- OriginalFilename: spldr.sys
- ProductVersion: 6.1.7127.0
- FileVersion: 6.1.7127.0 (fbl_security_bugfix(sepbld-s).090511-0943)
- FileDescription: loader for security processor
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0148c000 fffff880`0149e000 mup (deferred)
- Mapped memory image file: c:\windows\system32\drivers\mup.sys
- Image path: mup.sys
- Image name: mup.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00012000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: MUP.SYS
- OriginalFilename: MUP.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Multiple UNC Provider Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0149e000 fffff880`014a7000 hwpolicy (deferred)
- Mapped memory image file: c:\windows\system32\drivers\hwpolicy.sys
- Image path: hwpolicy.sys
- Image name: hwpolicy.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00009000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: hwpolicy.sys
- OriginalFilename: hwpolicy.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Hardware Policy Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`014ab000 fffff880`0159d000 ndis (deferred)
- Mapped memory image file: c:\windows\system32\drivers\ndis.sys
- Image path: ndis.sys
- Image name: ndis.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 000F2000
- File version: 6.1.7601.17939
- Product version: 6.1.7601.17939
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: NDIS.SYS
- OriginalFilename: NDIS.SYS
- ProductVersion: 6.1.7601.17939
- FileVersion: 6.1.7601.17939 (win7sp1_gdr.120822-0331)
- FileDescription: NDIS 6.20 driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0159d000 fffff880`015fd000 NETIO (deferred)
- Mapped memory image file: c:\windows\system32\drivers\netio.sys
- Image path: NETIO.SYS
- Image name: NETIO.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00060000
- File version: 6.1.7601.17939
- Product version: 6.1.7601.17939
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: netio.sys
- OriginalFilename: netio.sys
- ProductVersion: 6.1.7601.17939
- FileVersion: 6.1.7601.17939 (win7sp1_gdr.120822-0331)
- FileDescription: Network I/O Subsystem
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01600000 fffff880`01800000 tcpip (deferred)
- Mapped memory image file: c:\windows\system32\drivers\tcpip.sys
- Image path: tcpip.sys
- Image name: tcpip.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00200000
- File version: 6.1.7601.18203
- Product version: 6.1.7601.18203
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: tcpip.sys
- OriginalFilename: tcpip.sys
- ProductVersion: 6.1.7601.18203
- FileVersion: 6.1.7601.18203 (win7sp1_gdr.130705-1535)
- FileDescription: TCP/IP Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01891000 fffff880`018cb000 fvevol (deferred)
- Mapped memory image file: c:\windows\system32\drivers\fvevol.sys
- Image path: fvevol.sys
- Image name: fvevol.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 0003A000
- File version: 6.1.7601.18062
- Product version: 6.1.7601.18062
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: FVEVOL.SYS
- OriginalFilename: FVEVOL.SYS
- ProductVersion: 6.1.7601.18062
- FileVersion: 6.1.7601.18062 (win7sp1_gdr.130123-1433)
- FileDescription: BitLocker Drive Encryption Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`018cb000 fffff880`018e1000 disk (deferred)
- Mapped memory image file: c:\windows\system32\drivers\disk.sys
- Image path: disk.sys
- Image name: disk.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00016000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: disk.sys
- OriginalFilename: disk.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: PnP Disk Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`018e1000 fffff880`01911000 CLASSPNP (deferred)
- Mapped memory image file: c:\windows\system32\drivers\Classpnp.sys
- Image path: CLASSPNP.SYS
- Image name: CLASSPNP.SYS
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00030000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: Classpnp.sys
- OriginalFilename: Classpnp.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: SCSI Class System Dll
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01911000 fffff880`01919000 AtiPcie (deferred)
- Mapped memory image file: c:\windows\system32\drivers\AtiPcie.sys
- Image path: AtiPcie.sys
- Image name: AtiPcie.sys
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00008000
- File version: 1.3.0.49
- Product version: 1.3.0.49
- File flags: 8 (Mask 3F) Private
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Advanced Micro Devices Inc.
- ProductName: AMD PCIE Filter Driver
- InternalName: Atipcie.sys
- OriginalFilename: Atipcie.sys
- ProductVersion: 1.3.0.49
- FileVersion: 1.3.0.49 built by: WinDDK
- FileDescription: AMD PCIE Filter Driver for ATI PCIE chipset
- LegalCopyright: Copyright© AMD Inc. 2006-2009
- Unloaded modules:
- 0017001c`0000003b 0017001c`0000003c Unknown_Module_0017001c`0000003b
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00000001
- Missing image name, possible paged-out or corrupt data.
- 00000004`00000007 00000004`00000007 Unknown_Module_00000004`00000007
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00000000
- Missing image name, possible paged-out or corrupt data.
- 00090008`00070006 00090008`000b000a Unknown_Module_00090008`00070006
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00040004
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement