Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

BSOD


  • Please log in to reply
3 replies to this topic

#1 geezup

geezup

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:06:53 AM

Posted 05 May 2011 - 11:33 AM

Hey everyone nice to meet ya all :)
I have a windows xp sp3 that keeps bsod on me. I have run the online antivirus and nothiing




Microsoft ® Windows Debugger Version 6.12.0002.633 X86
Copyright © Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Documents and Settings\GREGORY.DRON\Desktop\Mini050411-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: C:\WINDOWS\Symbols
Executable search path is:
Unable to load image ntoskrnl.exe, Win32 error 0n2
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
Windows XP Kernel Version 2600 (Service Pack 3) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Machine Name:
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
Debug session time: Wed May 4 01:54:20.930 2011 (UTC - 4:00)
System Uptime: 2 days 4:59:39.350
Unable to load image ntoskrnl.exe, Win32 error 0n2
*** WARNING: Unable to verify timestamp for ntoskrnl.exe
Loading Kernel Symbols
...............................................................
................................................................
............................
Loading User Symbols
Loading unloaded module list
..................................................
Unable to load image HPZid412.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for HPZid412.sys
*** ERROR: Module load completed but symbols could not be loaded for HPZid412.sys
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 1000007E, {c0000005, b8c0b18e, a1b96bd4, a1b968d0}

Probably caused by : HPZid412.sys ( HPZid412+918e )

Followup: MachineOwner
---------

1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: b8c0b18e, The address that the exception occurred at
Arg3: a1b96bd4, Exception Record Address
Arg4: a1b968d0, Context Record Address

Debugging Details:
------------------


EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

FAULTING_IP:
HPZid412+918e
b8c0b18e 668b4c1030 mov cx,word ptr [eax+edx+30h]

EXCEPTION_RECORD: a1b96bd4 -- (.exr 0xffffffffa1b96bd4)
ExceptionAddress: b8c0b18e (HPZid412+0x0000918e)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 00000068
Attempt to read from address 00000068

CONTEXT: a1b968d0 -- (.cxr 0xffffffffa1b968d0)
eax=00000000 ebx=f8d2eb01 ecx=83b23180 edx=00000038 esi=83b231c0 edi=00000000
eip=b8c0b18e esp=a1b96c9c ebp=83b231bc iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202
HPZid412+0x918e:
b8c0b18e 668b4c1030 mov cx,word ptr [eax+edx+30h] ds:0023:00000068=????
Resetting default scope

CUSTOMER_CRASH_COUNT: 1

PROCESS_NAME: System

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_PARAMETER1: 00000000

EXCEPTION_PARAMETER2: 00000068

READ_ADDRESS: 00000068

FOLLOWUP_IP:
HPZid412+918e
b8c0b18e 668b4c1030 mov cx,word ptr [eax+edx+30h]

BUGCHECK_STR: 0x7E

DEFAULT_BUCKET_ID: NULL_CLASS_PTR_DEREFERENCE

LAST_CONTROL_TRANSFER: from ff9e3e28 to b8c0b18e

STACK_TEXT:
WARNING: Stack unwind information not available. Following frames may be wrong.
a1b96c98 ff9e3e28 87c0ff14 ba748634 f8d2ebe8 HPZid412+0x918e
a1b96c9c 87c0ff14 ba748634 f8d2ebe8 00000000 0xff9e3e28
a1b96ca0 ba748634 f8d2ebe8 00000000 00000000 0x87c0ff14
a1b96ca4 f8d2ebe8 00000000 00000000 00000000 0xba748634
a1b96ca8 00000000 00000000 00000000 b8c08b5c 0xf8d2ebe8


SYMBOL_STACK_INDEX: 0

SYMBOL_NAME: HPZid412+918e

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: HPZid412

IMAGE_NAME: HPZid412.sys

DEBUG_FLR_IMAGE_TIMESTAMP: 435898b3

STACK_COMMAND: .cxr 0xffffffffa1b968d0 ; kb

FAILURE_BUCKET_ID: 0x7E_HPZid412+918e

BUCKET_ID: 0x7E_HPZid412+918e

Followup: MachineOwner
---------

1: kd> lmvm HPZid412
start end module name
b8c02000 b8c0e300 HPZid412 T (no symbols)
Loaded symbol image file: HPZid412.sys
Image path: HPZid412.sys
Image name: HPZid412.sys
Timestamp: Fri Oct 21 03:28:51 2005 (435898B3)
CheckSum: 00016328
ImageSize: 0000C300
Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
1: kd> .exr 0xffffffffa1b96bd4
ExceptionAddress: b8c0b18e (HPZid412+0x0000918e)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 00000068
Attempt to read from address 00000068
1: kd> .cxr 0xffffffffa1b968d0
eax=00000000 ebx=f8d2eb01 ecx=83b23180 edx=00000038 esi=83b231c0 edi=00000000
eip=b8c0b18e esp=a1b96c9c ebp=83b231bc iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010202
HPZid412+0x918e:
b8c0b18e 668b4c1030 mov cx,word ptr [eax+edx+30h] ds:0023:00000068=????

BC AdBot (Login to Remove)

 


#2 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,738 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:04:53 AM

Posted 05 May 2011 - 12:57 PM

Download BlueScreenView (in Zip file)
No installation required.
Unzip downloaded file and double click on BlueScreenView.exe file to run the program.
When scanning is done, go Edit>Select All.
Go File>Save Selected Items, and save the report as BSOD.txt.
Open BSOD.txt in Notepad, copy all content, and paste it into your next reply.

My Website

My help doesn't cost a penny, but if you'd like to consider a donation, click DONATE

 


#3 geezup

geezup
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:06:53 AM

Posted 05 May 2011 - 02:17 PM

==================================================
Dump File : Mini050411-01.dmp
Crash Time : 5/4/2011 10:06:24 AM
Bug Check String : SYSTEM_THREAD_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000007e
Parameter 1 : 0xc0000005
Parameter 2 : 0xb8c0b18e
Parameter 3 : 0xa1b96bd4
Parameter 4 : 0xa1b968d0
Caused By Driver : HPZid412.sys
Caused By Address : HPZid412.sys+918e
File Description :
Product Name :
Company :
File Version :
Processor : 32-bit
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini050411-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini050111-01.dmp
Crash Time : 5/1/2011 8:55:26 PM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0xb827d5b3
Parameter 3 : 0x9ab03b00
Parameter 4 : 0x00000000
Caused By Driver : ctaud2k.sys
Caused By Address : ctaud2k.sys+b5b3
File Description :
Product Name :
Company :
File Version :
Processor : 32-bit
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini050111-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

#4 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,738 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:04:53 AM

Posted 05 May 2011 - 02:22 PM

Bluescreened just twice?
HPZid412.sys seems to be a part of your printer driver.
ctaud2k.sys is your audio driver

My Website

My help doesn't cost a penny, but if you'd like to consider a donation, click DONATE

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users