Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

computer crashes during all malware removal attempts


  • This topic is locked This topic is locked
20 replies to this topic

#1 kaikai747

kaikai747

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:11:45 AM

Posted 28 October 2012 - 08:52 PM

I've exhausted all my options. My computer first started crashing randomly. After rebooting and crashing and attempting to restore the computer, it still crashes during rkill, malwarebytes, and even combofix. It usually requires a chkdsk upon reboot which I allow it to do but takes about 20 minutes every reboot. I am able to get it rebooted to a factory installed version of XP but the malware remains. Any time I attempt to go to many of the anti malware websites and links, it will crash or freeze up the browser. I followed your specific instructions and will successfully post the DDS file and attach the ATTACH file but unfortunately, the computer crashes just as it displays the rootkit results in GMER so it will not allow me to save the file to paste it or copy it here for you. Here are the files. Please advise what I should do. Thank you for your help!


DDS (Ver_2012-10-19.01) - NTFS_x86
Internet Explorer: 6.0.2900.2180
Run by Owner at 11:09:28 on 2012-10-28
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1918.1623 [GMT -10:00]
.
.
============== Running Processes ================
.
C:\WINDOWS\system32\savedump.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\BigFix\BigFix.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.gatewaybiz.com
uSearch Bar = hxxp://www.google.com/ie
mStart Page = hxxp://www.gatewaybiz.com
mDefault_Page_URL = hxxp://www.gatewaybiz.com
mSearchAssistant = hxxp://www.google.com/ie
BHO: AcroIEHlprObj Class: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
TB: &Google: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
TB: &Google: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
mRun: [ehTray] c:\windows\ehome\ehtray.exe
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [KernelFaultCheck] c:\windows\system32\dumprep 0 -k
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\bigfix.lnk - c:\program files\bigfix\BigFix.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab
DPF: {CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{A8A8E853-9822-4971-928F-2C5D31929C77} : DHCPNameServer = 192.168.2.1
.
============= SERVICES / DRIVERS ===============
.
R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
S3 87520195;87520195; [x]
S3 mbamchameleon;mbamchameleon;c:\windows\system32\drivers\mbamchameleon.sys [2012-10-28 35144]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2012-10-28 40776]
.
=============== File Associations ===============
.
ShellExec: pi11.exe: Open="c:\program files\microsoft digital image 2006\pi.exe" "%1"
.
=============== Created Last 30 ================
.
2012-10-28 21:01:19 -------- d-sh--w- C:\found.001
2012-10-28 20:50:04 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-10-28 20:34:18 -------- d-sh--w- C:\found.000
2012-10-28 19:38:56 13952 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2012-10-28 14:00:20 35144 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2012-10-28 13:55:58 -------- d-----w- c:\documents and settings\owner\application data\Malwarebytes
2012-10-28 13:55:50 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
2012-10-28 13:55:49 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-10-28 13:55:49 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-10-28 12:04:01 -------- d-----w- c:\program files\test
2012-10-28 11:58:06 -------- d-----w- c:\documents and settings\owner\local settings\application data\Adobe
2012-10-28 11:57:51 -------- d-----w- c:\documents and settings\owner\local settings\application data\Google
2012-10-28 09:17:22 471298 ----a-w- c:\windows\wallpg.exe
2012-10-28 09:12:54 -------- d-----w- c:\windows\system32\ReinstallBackups
2012-10-28 09:11:49 5504 ----a-w- c:\windows\system32\drivers\MSTEE.sys
2012-10-28 09:10:46 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2012-10-28 09:09:59 53248 ----a-w- c:\windows\system32\drivers\1394bus.sys
2012-10-28 09:09:53 -------- d-----w- c:\program files\CONEXANT
2012-10-28 09:09:30 17024 ----a-w- c:\windows\system32\drivers\usbohci.sys
2012-10-28 09:09:28 7168 ----a-w- c:\windows\system32\hccoin.dll
2012-10-28 09:09:28 26624 ----a-w- c:\windows\system32\drivers\usbehci.sys
2012-10-28 08:37:20 90112 ----a-w- c:\windows\DUMP2e14.tmp
2012-10-28 07:36:23 -------- d-----w- c:\windows\creator
2012-10-28 07:33:59 49209 ----a-w- c:\windows\system32\usrv80a.dll
2012-10-28 07:32:53 15360 ----a-w- c:\windows\system32\pjlmon.dll
2012-10-28 07:31:57 23808 ----a-w- c:\windows\system32\drivers\usbcamd.sys
2012-10-28 07:27:05 -------- d-----w- C:\My Backup -- 12-10-28 1227AM
2012-10-28 07:18:22 -------- d-----w- C:\My Backup -- 12-10-28 1218AM
.
==================== Find3M ====================
.
.
============= FINISH: 11:09:55.12 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 oneof4

oneof4

  • Malware Response Team
  • 3,779 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Collective
  • Local time:05:45 PM

Posted 30 October 2012 - 05:19 PM

Hello kaikai747, and :welcome: to the Virus/Trojan/Spyware/Malware Removal forum.

I am oneof4, and I am here to help you!

  • I ask that you refrain from running tools other than those I suggest to you while I am cleaning up your computer. The reason for this is so I know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.
  • Please perform all steps in the order received and do not proceed if you need clarification.
  • Please copy and paste all logs into your post unless directed otherwise. Please do not re-run any programs I suggest. If you encounter problems please stop and tell me about it. When your computer is clean I will alert you of such. I will also provide you with detailed suggestions for prevention.
  • At the top right-center of the topic you will see a button called Watch Topic. If you click on this, another page will open. Please choose Immediate Notification and then clicking on Proceed you will be advised when we respond to your topic and facilitate the cleaning of your machine.
  • If after 5 days you have not replied to this topic, I will assume it has been abandoned, and I will close it.
  • I would also like to inform you that most of us here at Bleeping Computer offer our expert assistance out of the goodness of our hearts. :heart: Please be courteous and appreciative for the assistance provided!
  • Again I would like to remind you to make no further changes to your computer unless I direct you to do so. Your computer fix will be based on the current condition of your computer! Any changes might delay my ability to help you.

Give me some time to look over your logs, and I will return with your first set of instructions.

Best Regards,
oneof4.


#3 oneof4

oneof4

  • Malware Response Team
  • 3,779 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Collective
  • Local time:05:45 PM

Posted 31 October 2012 - 04:44 PM

Hello kaikai747, :)

Looking over your logs, I do not see any malware issues present. However, there is evidence that a system issue is definitely present, plus there are some update related issues that need addressing:

First the system issues:

Download BlueScreenView
No installation required.
Double click on BlueScreenView.exe file to run the program.
When scanning is done, go Edit > Select All.
Go File > Save Selected Items, and save the report as BSOD.txt.
Open BSOD.txt in Notepad, copy all content, and paste it into your next reply.

==========

Now for the updates:

Your Microsoft Windows installation is out of date. Microsoft continually releases security and stability updates for its supported operating systems and you should always apply these to help keep your PC secure. Out-of-date Windows installations represent a risk to your system and are also a conduit for the spread of malware.

You should visit Windows Update to check for the latest updates to your system. The latest service pack (SP3) can be obtained directly from Microsoft here.

==========

Important Note: Your version of Java is out of date. Older versions have vulnerabilities that malicious sites can use to exploit and infect your system.Please follow these steps to remove older version Java components and update:
  • Download the latest version of Java Runtime Environment (JRE) Version 6 and save it to your desktop.
  • Select your Platform.
  • Under Which should I choose?, check the box for Windows Offline Installation and save the file to your desktop.
  • Close any programs you may have running - especially your web browser.
Go to Posted Image > Control Panel, double-click on Add/Remove Programs or Programs and Features in Vista/Windows 7 and remove all older versions of Java.
  • Check (highlight) any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button and follow the onscreen instructions for the Java uninstaller.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-6u37-windows-i586.exe (or jre-6u37-windows-x64.exe for 64-bit) to install the newest version.
  • If using Windows 7 or Vista and the installer refuses to launch due to insufficient user permissions, then Run As Administrator.
  • When the Java Setup - Welcome window opens, click the Install > button.
  • If offered to install a Toolbar, just uncheck the box before continuing unless you want it.
  • The McAfee Security Scan Plus tool is installed by default unless you uncheck the McAfee installation box when updating Java.
-- Java is updated frequently. If you want to be automatically notified of future updates, just turn on the Java Automatic Update feature and you will not have to remember to update when Java releases a new version.

Note: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications but it's not necessary.
To disable the JQS service if you don't want to use it:
  • Go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter.
  • Click Ok and reboot your computer.

==========

Your version of Adobe Reader is out of date. Older versions have vulnerabilities that malicious sites can use to exploit and infect your system. Please follow these steps to remove older version Adobe components and update:
  • Download the latest version of Adobe Reader Version X. and save it to your desktop.
  • Uncheck the "Free McAfee Security plan Plus" option or any other Toolbar you are offered
  • Click the download button at the bottom.
  • If you use Internet Explorer and do not wish to install the ActiveX element, simply click on the click here to download link on the next page.
  • Remove all older version of Adobe Reader: Go to Add/remove and uninstall all versions of Adobe Reader, Acrobat Reader and Adobe Acrobat.
    If you are unsure of how to use Add or Remove Programs, the please see this tutorial:How To Remove An Installed Program From Your Computer
  • Then from your desktop double-click on Adobe Reader to install the newest version.
    If using Windows Vista and the installer refuses to launch due to insufficient user permissions, then Run As Administrator.
  • When the "Adobe Setup - Welcome" window opens, click the Install > button.
  • If offered to install a Toolbar, just uncheck the box before continuing unless you want it.
Your Adobe Reader is now up to date!

==========

Things I need to see in your next reply:

  • BSOD.txt
  • How are things running after the updates?

Best Regards,
oneof4.


#4 oneof4

oneof4

  • Malware Response Team
  • 3,779 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Collective
  • Local time:05:45 PM

Posted 03 November 2012 - 06:16 AM

Do you still need help?

Best Regards,
oneof4.


#5 kaikai747

kaikai747
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:11:45 AM

Posted 04 November 2012 - 06:15 AM

==================================================
Dump File : Mini102812-40.dmp
Crash Time : 10/28/2012 7:33:10 PM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x8054a10d
Parameter 3 : 0xb6f5a83c
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+7310d
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+7310d
Stack Address 1 : ntoskrnl.exe+7375f
Stack Address 2 : ntoskrnl.exe+e77b0
Stack Address 3 : ntoskrnl.exe+e7b9f
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-40.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-39.dmp
Crash Time : 10/28/2012 6:23:30 PM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x805dd29f
Parameter 3 : 0xba247970
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+10629f
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+10629f
Stack Address 1 : ntoskrnl.exe+106c11
Stack Address 2 : ntoskrnl.exe+1087cf
Stack Address 3 : win32k.sys+4456e
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-39.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-38.dmp
Crash Time : 10/28/2012 5:10:00 PM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x8054a168
Parameter 3 : 0xb9848430
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+73168
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+73168
Stack Address 1 : ntoskrnl.exe+7375f
Stack Address 2 : win32k.sys+29ef
Stack Address 3 : win32k.sys+5969
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-38.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-37.dmp
Crash Time : 10/28/2012 3:16:56 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0xfa5631e0
Parameter 2 : 0x0000001c
Parameter 3 : 0x00000000
Parameter 4 : 0x80502b19
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+2bb19
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+2bb19
Stack Address 1 :
Stack Address 2 :
Stack Address 3 : ntoskrnl.exe+6960c
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-37.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-36.dmp
Crash Time : 10/28/2012 2:52:39 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x9f55f008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-36.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-35.dmp
Crash Time : 10/28/2012 1:43:46 PM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x10000050
Parameter 1 : 0xf1b634b8
Parameter 2 : 0x00000001
Parameter 3 : 0x80525788
Parameter 4 : 0x00000002
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4e788
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4e788
Stack Address 1 : ntoskrnl.exe+6960c
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-35.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-34.dmp
Crash Time : 10/28/2012 11:20:33 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0xa755c008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-34.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-33.dmp
Crash Time : 10/28/2012 11:17:19 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x9356e008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+42776
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-33.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-32.dmp
Crash Time : 10/28/2012 11:14:38 AM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x8054a168
Parameter 3 : 0xb6f42a60
Parameter 4 : 0x00000000
Caused By Driver : hal.dll
Caused By Address : hal.dll+2400
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+73168
Stack Address 1 : ntoskrnl.exe+7375f
Stack Address 2 : win32k.sys+29ef
Stack Address 3 : win32k.sys+31028
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-32.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-31.dmp
Crash Time : 10/28/2012 11:05:51 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x91539008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-31.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-30.dmp
Crash Time : 10/28/2012 10:47:20 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x91538008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-30.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-29.dmp
Crash Time : 10/28/2012 10:42:28 AM
Bug Check String : NTFS_FILE_SYSTEM
Bug Check Code : 0x00000024
Parameter 1 : 0x001902fe
Parameter 2 : 0xba50ba3c
Parameter 3 : 0xba50b738
Parameter 4 : 0x8054a10d
Caused By Driver : hal.dll
Caused By Address : hal.dll+2f63
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+22c37
Stack Address 1 : Ntfs.sys+e051
Stack Address 2 : Ntfs.sys+556f8
Stack Address 3 : ntoskrnl.exe+60757
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-29.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-28.dmp
Crash Time : 10/28/2012 10:20:14 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x10000050
Parameter 1 : 0xa10e6810
Parameter 2 : 0x00000001
Parameter 3 : 0x8054a168
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+73168
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+73168
Stack Address 1 : ntoskrnl.exe+7375f
Stack Address 2 : ntoskrnl.exe+147c4c
Stack Address 3 : ntoskrnl.exe+60757
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-28.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-27.dmp
Crash Time : 10/28/2012 10:14:28 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x9d55c008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+3b724
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-27.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-26.dmp
Crash Time : 10/28/2012 10:08:30 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x8cca1008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-26.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-25.dmp
Crash Time : 10/28/2012 10:04:56 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x9cc83008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-25.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-24.dmp
Crash Time : 10/28/2012 9:57:53 AM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x805298e3
Parameter 3 : 0xb704aa88
Parameter 4 : 0x00000000
Caused By Driver : win32k.sys
Caused By Address : win32k.sys+2ed2
File Description : Multi-User Win32 Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+528e3
Stack Address 1 : ntoskrnl.exe+7368d
Stack Address 2 : win32k.sys+29ef
Stack Address 3 : win32k.sys+31028
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-24.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-23.dmp
Crash Time : 10/28/2012 9:55:46 AM
Bug Check String : NTFS_FILE_SYSTEM
Bug Check Code : 0x00000024
Parameter 1 : 0x001902fe
Parameter 2 : 0xba503ac8
Parameter 3 : 0xba5037c4
Parameter 4 : 0xb9d36656
Caused By Driver : Ntfs.sys
Caused By Address : Ntfs.sys+33656
File Description : NT File System Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+22c37
Stack Address 1 : Ntfs.sys+e051
Stack Address 2 : Ntfs.sys+556f8
Stack Address 3 : ntoskrnl.exe+60757
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-23.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-22.dmp
Crash Time : 10/28/2012 9:54:01 AM
Bug Check String : BAD_POOL_CALLER
Bug Check Code : 0x000000c2
Parameter 1 : 0x00000007
Parameter 2 : 0x00000cd4
Parameter 3 : 0xe113ddd0
Parameter 4 : 0xe113ddd0
Caused By Driver : Ntfs.sys
Caused By Address : Ntfs.sys+d6f8
File Description : NT File System Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+22c37
Stack Address 1 : ntoskrnl.exe+73583
Stack Address 2 : Ntfs.sys+d6f8
Stack Address 3 : Ntfs.sys+333c0
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-22.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-21.dmp
Crash Time : 10/28/2012 9:44:32 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x10000050
Parameter 1 : 0xa2853c18
Parameter 2 : 0x00000001
Parameter 3 : 0x8054a10d
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+7310d
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+7310d
Stack Address 1 : ntoskrnl.exe+7375f
Stack Address 2 : ntoskrnl.exe+ec58a
Stack Address 3 : ntoskrnl.exe+e6d10
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-21.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-20.dmp
Crash Time : 10/28/2012 9:06:45 AM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x80633356
Parameter 3 : 0xb6f62bf0
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+15c356
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+15c356
Stack Address 1 : ntoskrnl.exe+15ca36
Stack Address 2 : ntoskrnl.exe+15cb2c
Stack Address 3 : ntoskrnl.exe+15cf0c
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-20.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-19.dmp
Crash Time : 10/28/2012 9:05:51 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x10000050
Parameter 1 : 0xa109f890
Parameter 2 : 0x00000001
Parameter 3 : 0x8054a168
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+73168
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+73168
Stack Address 1 : ntoskrnl.exe+7375f
Stack Address 2 : win32k.sys+29ef
Stack Address 3 : win32k.sys+ee83
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-19.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-18.dmp
Crash Time : 10/28/2012 7:53:17 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x98c30008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-18.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-17.dmp
Crash Time : 10/28/2012 6:41:46 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0xa6c1a008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-17.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-16.dmp
Crash Time : 10/28/2012 5:30:25 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0xa9b4f6d8
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x80514547
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+3d547
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+3d547
Stack Address 1 : ntoskrnl.exe+3e4b7
Stack Address 2 : ntoskrnl.exe+3e67d
Stack Address 3 : ntoskrnl.exe+48347
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-16.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-15.dmp
Crash Time : 10/28/2012 4:36:08 AM
Bug Check String : BAD_POOL_CALLER
Bug Check Code : 0x000000c2
Parameter 1 : 0x00000043
Parameter 2 : 0xc0000000
Parameter 3 : 0x00000000
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+22c37
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+22c37
Stack Address 1 : ntoskrnl.exe+70c2d
Stack Address 2 : ntoskrnl.exe+7349a
Stack Address 3 : win32k.sys+29ef
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-15.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-14.dmp
Crash Time : 10/28/2012 4:33:00 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x10000050
Parameter 1 : 0xd8b8c204
Parameter 2 : 0x00000000
Parameter 3 : 0xb9d363aa
Parameter 4 : 0x00000000
Caused By Driver : Ntfs.sys
Caused By Address : Ntfs.sys+333aa
File Description : NT File System Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : Ntfs.sys+333aa
Stack Address 1 : Ntfs.sys+27cb4
Stack Address 2 : Ntfs.sys+27a9
Stack Address 3 : Ntfs.sys+27a9b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-14.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-13.dmp
Crash Time : 10/28/2012 4:29:59 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x8cc9c008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+3b724
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-13.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-12.dmp
Crash Time : 10/28/2012 4:07:28 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0xc00bb9b8
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x80510a6a
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+39a6a
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+39a6a
Stack Address 1 : ntoskrnl.exe+d7c1b
Stack Address 2 : ntoskrnl.exe+3b655
Stack Address 3 : ntoskrnl.exe+f9ed7
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-12.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-11.dmp
Crash Time : 10/28/2012 3:50:28 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x90ca7008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-11.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-10.dmp
Crash Time : 10/28/2012 3:42:51 AM
Bug Check String : SYSTEM_THREAD_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000007e
Parameter 1 : 0xc0000005
Parameter 2 : 0x805c0fa3
Parameter 3 : 0xba50bb98
Parameter 4 : 0xba50b894
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+e9fa3
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+e9fa3
Stack Address 1 : ntoskrnl.exe+ea0af
Stack Address 2 : ntoskrnl.exe+11f980
Stack Address 3 : ntoskrnl.exe+e2e11
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-10.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-09.dmp
Crash Time : 10/28/2012 3:23:06 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x10000050
Parameter 1 : 0xf1ce7d80
Parameter 2 : 0x00000001
Parameter 3 : 0x8054a168
Parameter 4 : 0x00000002
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+73168
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+73168
Stack Address 1 : ntoskrnl.exe+7375f
Stack Address 2 : win32k.sys+29ef
Stack Address 3 : win32k.sys+4a4a
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-09.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-08.dmp
Crash Time : 10/28/2012 3:22:07 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x90cb2008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+42776
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-08.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-07.dmp
Crash Time : 10/28/2012 2:50:29 AM
Bug Check String : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code : 0x10000050
Parameter 1 : 0x80000008
Parameter 2 : 0x00000000
Parameter 3 : 0xb9d27d46
Parameter 4 : 0x00000000
Caused By Driver : Ntfs.sys
Caused By Address : Ntfs.sys+24d46
File Description : NT File System Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : Ntfs.sys+24d46
Stack Address 1 : Ntfs.sys+24bee
Stack Address 2 : Ntfs.sys+23f73
Stack Address 3 : Ntfs.sys+25f64
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-07.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-06.dmp
Crash Time : 10/28/2012 2:47:14 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x8acb1008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-06.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-05.dmp
Crash Time : 10/28/2012 2:33:03 AM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x80525788
Parameter 3 : 0xb6cbec30
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4e788
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4e788
Stack Address 1 : ntoskrnl.exe+6960c
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-05.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-04.dmp
Crash Time : 10/28/2012 2:31:39 AM
Bug Check String : NTFS_FILE_SYSTEM
Bug Check Code : 0x00000024
Parameter 1 : 0x001902fe
Parameter 2 : 0xba4fb888
Parameter 3 : 0xba4fb584
Parameter 4 : 0xb9d03a71
Caused By Driver : Ntfs.sys
Caused By Address : Ntfs.sys+a71
File Description : NT File System Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+22c37
Stack Address 1 : Ntfs.sys+e051
Stack Address 2 : Ntfs.sys+55d2a
Stack Address 3 : ntoskrnl.exe+60757
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-04.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-03.dmp
Crash Time : 10/28/2012 2:07:25 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0xa6c4f008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-03.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-02.dmp
Crash Time : 10/28/2012 2:02:06 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0x96c0b008
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x805229eb
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+4b9eb
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+4b9eb
Stack Address 1 : ntoskrnl.exe+4bf22
Stack Address 2 : ntoskrnl.exe+4c096
Stack Address 3 : ntoskrnl.exe+4232b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-02.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

==================================================
Dump File : Mini102812-01.dmp
Crash Time : 10/27/2012 11:21:13 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x1000000a
Parameter 1 : 0xc889d444
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x806e4a16
Caused By Driver : hal.dll
Caused By Address : hal.dll+2a16
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : hal.dll+2a16
Stack Address 1 : Ntfs.sys+20888
Stack Address 2 : ntoskrnl.exe+d739
Stack Address 3 : ntoskrnl.exe+10041
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini102812-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 2600
Dump File Size : 90,112
==================================================

#6 kaikai747

kaikai747
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:11:45 AM

Posted 04 November 2012 - 06:29 AM

when I try to access windows update, I get an error message... i tried to download sp3 directly but the computer restarts during the download. I will try to post the error message from windows update as well.

#7 kaikai747

kaikai747
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:11:45 AM

Posted 04 November 2012 - 06:30 AM

[Error number: 0x80244019]
The website has encountered a problem and cannot display the page you are trying to view. The options provided below might help you solve the problem.
For self-help options:

Frequently Asked Questions

Find Solutions

Windows Update Newsgroup
For assisted support options:

Microsoft Online Assisted Support (no-cost for Windows Update issues)

#8 kaikai747

kaikai747
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:11:45 AM

Posted 04 November 2012 - 06:37 AM

also as it restarts it gives an error message: "Windows - Corrupt File. The file or directory \ is corrupt and unreadable, Please run the Chkdsk utility." Should I attempt to run chkdsk or ignore? I tried to download the sp3 again from Microsoft with no luck. Do you want me to try all of the other updates anyway? Thank you so much for your help. Would be nice to salvage some files on here, mostly my Outlook email file as well as other work and personal files. Thanks again. I will keep trying to get SP3 on the machine until I hear from you what to do next.

#9 kaikai747

kaikai747
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:11:45 AM

Posted 04 November 2012 - 06:56 AM

one more note, I did have the latest windows xp version on my system however I had to use the CD and that put the old original version on here to get it to reboot up properly. Just fyi. Thanks and I will wait for your reply. I've tried to download the sp3 or any windows update but it crashes at about 30% to 65% at the most of the file downloaded either by trying run or save.

#10 kaikai747

kaikai747
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:11:45 AM

Posted 04 November 2012 - 06:58 AM

and the recovery from the cd was BEFORE all of these. I am following all of your instructions and not running any other programs unless you instruct me to do so. Thanks!

#11 oneof4

oneof4

  • Malware Response Team
  • 3,779 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Collective
  • Local time:05:45 PM

Posted 04 November 2012 - 08:50 PM

Hey :)

Hold off on any updates at this point, until we nail down the cause of the BSOD's.

Best Regards,
oneof4.


#12 oneof4

oneof4

  • Malware Response Team
  • 3,779 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Collective
  • Local time:05:45 PM

Posted 04 November 2012 - 10:53 PM

Hello kaikai747, :)

Give this scan a try:

Please download aswMBR ( 511KB ) to your desktop. (If the pc won't let you download it, try downloading it to a usb drive from a different computer, if you have access to one. Then drag and drop it onto the Desktop of the faulty computer.)
  • Double click the aswMBR.exe icon to run it
  • Click the Scan button to start the scan
  • On completion of the scan, click the save log button, save it to your desktop and post it in your next reply.

Best Regards,
oneof4.


#13 oneof4

oneof4

  • Malware Response Team
  • 3,779 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Collective
  • Local time:05:45 PM

Posted 07 November 2012 - 09:09 PM

Are you still with us?

Best Regards,
oneof4.


#14 etavares

etavares

    Bleepin' Remover


  • Malware Response Team
  • 15,514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:45 PM

Posted 12 November 2012 - 08:07 AM

Due to the lack of feedback, this topic is now closed.In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days. Please include a link to your topic in the Private Message. Thank you.


If I don't respond within 2 days, please feel free to PM me.
Please don't ask for help via PM. The forums are there for a reason. Please post in the forums so others may benefit as well.

Posted Image
Unified Network of Instructors and Trusted Eliminators
 


#15 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:05:45 PM

Posted 12 November 2012 - 10:42 PM

This topic has been re-opened at the request of the person who originally posted. Please be patient!

Edited by bloopie, 13 November 2012 - 10:36 AM.
Mod Edit: Reopened the Topic. ~bloopie





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users