Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

BSOD thoughts?


  • Please log in to reply
9 replies to this topic

#1 karnakrook

karnakrook

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:07:18 PM

Posted 07 October 2013 - 03:11 PM

100713-15428-01.dmp    10/7/2013 8:51:49 AM    SYSTEM_SERVICE_EXCEPTION    0x0000003b    00000000`c0000005    fffff800`0306a7d7    fffff880`0899e230    00000000`00000000    ntoskrnl.exe    ntoskrnl.exe+75b80    NT Kernel & System    Microsoft® Windows® Operating System    Microsoft Corporation    6.1.7601.18229 (win7sp1_gdr.130801-1533)    x64    ntoskrnl.exe+75b80                    C:\Windows\Minidump\100713-15428-01.dmp    8    15    7601    282,336    


So here is my latest bsod details, I have done the following:

Checked all drivers (all are up to date)

ran memtest 23 times! clean

bsod occurs most frequently at start-up

Computer specs as follows:

Motherboard: Gigabyte X58A-UD5

Proccessor: Intel i7 cpu 930@2.80 ghz

Ram 6.00 Gb DDR3

Video: NVIDIA GeForce GTS 250

Windows 7 Enterprise 64 bit

 

Any help would be appreciated.



BC AdBot (Login to Remove)

 


#2 hamluis

hamluis

    Moderator


  • Moderator
  • 55,734 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:06:18 PM

Posted 07 October 2013 - 03:28 PM

Please download MiniToolBox  , save it to your desktop and run it.

 

Checkmark the following checkboxes:

  List last 10 Event Viewer log

  List Installed Programs

  List Users, Partitions and Memory size.

 

Click Go and paste the content into your next post.

 

Also...please Publish a Snapshot using Speccy - http://www.bleepingcomputer.com/forums/topic323892.html/page__p__1797792#entry1797792 , taking care to post the link of the snapshot in your next post.

 

Louis



#3 karnakrook

karnakrook
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:07:18 PM

Posted 07 October 2013 - 03:48 PM

MiniToolBox by Farbar  Version: 13-07-2013
Ran by rmizer (administrator) on 07-10-2013 at 16:45:10
Running from "C:\Users\rmizer\Desktop"
Microsoft Windows 7 Enterprise  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (10/07/2013 00:49:33 PM) (Source: Customer Experience Improvement Program) (User: )
Description: 90080108

Error: (10/07/2013 11:20:34 AM) (Source: Customer Experience Improvement Program) (User: )
Description: 90080108

Error: (10/07/2013 09:52:38 AM) (Source: Customer Experience Improvement Program) (User: )
Description: 80004005

Error: (10/07/2013 08:53:31 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/07/2013 08:52:23 AM) (Source: Application Error) (User: )
Description: Faulting application name: loggingserver.exe, version: 17.0.1.12, time stamp: 0x51d41c91
Faulting module name: ntdll.dll, version: 6.1.7601.18229, time stamp: 0x51fb1072
Exception code: 0xc0000005
Fault offset: 0x000332cd
Faulting process id: 0x8e8
Faulting application start time: 0xloggingserver.exe0
Faulting application path: loggingserver.exe1
Faulting module path: loggingserver.exe2
Report Id: loggingserver.exe3

Error: (10/07/2013 08:49:46 AM) (Source: Application Error) (User: )
Description: Faulting application name: loggingserver.exe, version: 17.0.1.12, time stamp: 0x51d41c91
Faulting module name: ntdll.dll, version: 6.1.7601.18229, time stamp: 0x51fb1072
Exception code: 0xc0000005
Fault offset: 0x000332b0
Faulting process id: 0x96c
Faulting application start time: 0xloggingserver.exe0
Faulting application path: loggingserver.exe1
Faulting module path: loggingserver.exe2
Report Id: loggingserver.exe3

Error: (10/05/2013 09:43:58 AM) (Source: Customer Experience Improvement Program) (User: )
Description: 80004005

Error: (10/05/2013 09:03:27 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/05/2013 09:02:15 AM) (Source: Application Error) (User: )
Description: Faulting application name: loggingserver.exe, version: 17.0.1.12, time stamp: 0x51d41c91
Faulting module name: ntdll.dll, version: 6.1.7601.18229, time stamp: 0x51fb1072
Exception code: 0xc0000005
Fault offset: 0x000332b0
Faulting process id: 0x8b0
Faulting application start time: 0xloggingserver.exe0
Faulting application path: loggingserver.exe1
Faulting module path: loggingserver.exe2
Report Id: loggingserver.exe3

Error: (10/05/2013 08:59:23 AM) (Source: Application Error) (User: )
Description: Faulting application name: loggingserver.exe, version: 17.0.1.12, time stamp: 0x51d41c91
Faulting module name: ntdll.dll, version: 6.1.7601.18229, time stamp: 0x51fb1072
Exception code: 0xc0000005
Fault offset: 0x000332b0
Faulting process id: 0x904
Faulting application start time: 0xloggingserver.exe0
Faulting application path: loggingserver.exe1
Faulting module path: loggingserver.exe2
Report Id: loggingserver.exe3


System errors:
=============
Error: (10/07/2013 04:39:06 PM) (Source: Microsoft-Windows-GroupPolicy) (User: MVLIBRARY)
Description: The processing of Group Policy failed. Windows could not determine if the user and computer accounts are in the same forest. Ensure the user domain name matches the name of a trusted domain that resides in the same forest as the computer account.

Error: (10/07/2013 03:03:06 PM) (Source: Microsoft-Windows-GroupPolicy) (User: MVLIBRARY)
Description: The processing of Group Policy failed. Windows could not determine if the user and computer accounts are in the same forest. Ensure the user domain name matches the name of a trusted domain that resides in the same forest as the computer account.

Error: (10/07/2013 01:33:06 PM) (Source: Microsoft-Windows-GroupPolicy) (User: MVLIBRARY)
Description: The processing of Group Policy failed. Windows could not determine if the user and computer accounts are in the same forest. Ensure the user domain name matches the name of a trusted domain that resides in the same forest as the computer account.

Error: (10/07/2013 11:57:06 AM) (Source: Microsoft-Windows-GroupPolicy) (User: MVLIBRARY)
Description: The processing of Group Policy failed. Windows could not determine if the user and computer accounts are in the same forest. Ensure the user domain name matches the name of a trusted domain that resides in the same forest as the computer account.

Error: (10/07/2013 10:27:06 AM) (Source: Microsoft-Windows-GroupPolicy) (User: MVLIBRARY)
Description: The processing of Group Policy failed. Windows could not determine if the user and computer accounts are in the same forest. Ensure the user domain name matches the name of a trusted domain that resides in the same forest as the computer account.

Error: (10/07/2013 08:55:29 AM) (Source: Service Control Manager) (User: )
Description: The Windows Time service terminated with the following error:
%%1792

Error: (10/07/2013 08:55:29 AM) (Source: Microsoft-Windows-Time-Service) (User: NT AUTHORITY)
Description: The time service encountered an error and was forced to shut down. The error was: 0x80070700: An attempt was made to logon, but the network logon service was not started.

Error: (10/07/2013 08:54:35 AM) (Source: Service Control Manager) (User: )
Description: The NVIDIA Update Service Daemon service failed to start due to the following error:
%%1069

Error: (10/07/2013 08:54:35 AM) (Source: Service Control Manager) (User: )
Description: The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error:
%%1330

To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).

Error: (10/07/2013 08:53:07 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)


Microsoft Office Sessions:
=========================
Error: (10/07/2013 00:49:33 PM) (Source: Customer Experience Improvement Program)(User: )
Description: 90080108

Error: (10/07/2013 11:20:34 AM) (Source: Customer Experience Improvement Program)(User: )
Description: 90080108

Error: (10/07/2013 09:52:38 AM) (Source: Customer Experience Improvement Program)(User: )
Description: 80004005

Error: (10/07/2013 08:53:31 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/07/2013 08:52:23 AM) (Source: Application Error)(User: )
Description: loggingserver.exe17.0.1.1251d41c91ntdll.dll6.1.7601.1822951fb1072c0000005000332cd8e801cec35c02bfabf7C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\loggingserver.exeC:\Windows\SysWOW64\ntdll.dll49b63589-2f4f-11e3-8ca5-6cf04955559a

Error: (10/07/2013 08:49:46 AM) (Source: Application Error)(User: )
Description: loggingserver.exe17.0.1.1251d41c91ntdll.dll6.1.7601.1822951fb1072c0000005000332b096c01cec35bade2739fC:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\loggingserver.exeC:\Windows\SysWOW64\ntdll.dllf1553509-2f4e-11e3-9350-6cf04955559a

Error: (10/05/2013 09:43:58 AM) (Source: Customer Experience Improvement Program)(User: )
Description: 80004005

Error: (10/05/2013 09:03:27 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/05/2013 09:02:15 AM) (Source: Application Error)(User: )
Description: loggingserver.exe17.0.1.1251d41c91ntdll.dll6.1.7601.1822951fb1072c0000005000332b08b001cec1cb11a75f2aC:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\loggingserver.exeC:\Windows\SysWOW64\ntdll.dll5ac1653b-2dbe-11e3-91e3-6cf04955559a

Error: (10/05/2013 08:59:23 AM) (Source: Application Error)(User: )
Description: loggingserver.exe17.0.1.1251d41c91ntdll.dll6.1.7601.1822951fb1072c0000005000332b090401cec1cab1e7be5aC:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.12\loggingserver.exeC:\Windows\SysWOW64\ntdll.dllf42e9262-2dbd-11e3-9aca-6cf04955559a


CodeIntegrity Errors:
===================================
  Date: 2013-04-08 15:12:59.334
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-04-08 15:12:59.302
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


=========================== Installed Programs ============================

7-Zip 9.30 (x64 edition) (Version: 9.30.00.0)
ABC Inventory Software (Version: 3.12.3001)
Adobe AIR (Version: 3.8.0.1430)
Adobe Flash Player 11 ActiveX (Version: 11.8.800.175)
Adobe Flash Player 11 Plugin (Version: 11.8.800.168)
Adobe Reader XI (11.0.04) (Version: 11.0.04)
Adobe Shockwave Player 12.0 (Version: 12.0.4.144)
avast! Endpoint Protection Suite (Version: 8.0.1490.0)
Carambis Software Updater (Version: 2.0.0.1319)
CCleaner (Version: 4.02)
CompTIA A+ 220-801 and 220-802 Simulator (Version: 1.3.0)
CompTIA A+ 220-801 and 220-802 Simulator (Version: 1.3.0.8)
CPUID CPU-Z 1.66.1
Data Lifeguard Diagnostic for Windows 1.24
DVD Decrypter (Remove Only)
DVD Shrink 3.2
Genesys USB Mass Storage Device (Version: 2.5.0.0)
Google Chrome (Version: 29.0.1547.76)
Google Update Helper (Version: 1.3.21.153)
Intel® Matrix Storage Manager
Inventoria Stock Manager (Version: 3.42)
Iomega Encryption (Version: 1.03.0001)
iVMS-4000(v2.0) (Version: 1.00.0000)
iVMS-4200 PCNVR(v1.02) (Version: 1.02.00.03)
Java 7 Update 40 (Version: 7.0.400)
Java Auto Updater (Version: 2.1.9.8)
JMicron JMB36X Driver (Version: 1.17.65.11)
K-Lite Codec Pack 10.0.0 Standard (Version: 10.0.0)
Launchy 2.5
LibreOffice 4.1.2.2 (Version: 4.1.2.2)
LookInMyPC
Malwarebytes Anti-Malware version 1.75.0.1300 (Version: 1.75.0.1300)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Camera Codec Pack (Version: 16.4.1970.0624)
Microsoft Office Access Runtime (English) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2008 Native Client (Version: 10.1.2531.0)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft XNA Framework Redistributable 4.0 (Version: 4.0.20823.0)
MiniTool Partition Wizard Home Edition 7.8
Mozilla Firefox 23.0.1 (x86 en-US) (Version: 23.0.1)
Mozilla Maintenance Service (Version: 23.0.1)
Mozilla Thunderbird 17.0.8 (x86 en-US) (Version: 17.0.8)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
NVIDIA 3D Vision Controller Driver 314.22 (Version: 314.22)
NVIDIA 3D Vision Driver 314.22 (Version: 314.22)
NVIDIA Control Panel 314.22 (Version: 314.22)
NVIDIA Graphics Driver 314.22 (Version: 314.22)
NVIDIA Install Application (Version: 2.1002.115.743)
NVIDIA PhysX (Version: 9.12.1031)
NVIDIA PhysX System Software 9.12.1031 (Version: 9.12.1031)
NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.1422)
NVIDIA Update 1.12.12 (Version: 1.12.12)
NVIDIA Update Components (Version: 1.12.12)
ON_OFF Charge B10.0427.1 (Version: 1.00.0001)
Open Freely (Version: 1.0)
PocketCloud Windows Companion (Version: 2.5.13)
Polaris Clients 4.1 (Version: 4.1.807)
Realtek Ethernet Controller Driver (Version: 7.56.316.2012)
RemoteComms External Disk Access (Version: 1.25.0003)
Renesas Electronics USB 3.0 Host Controller Driver (Version: 2.0.30.0)
SkyTools 3 Starter Edition (Version: )
SlimDrivers (Version: 2.2.29035)
Smart Dual Lan (Version: 1.00.0000)
Smart-X7 7.80
Spiceworks (Version: 7.0.01234)
swMSM (Version: 12.0.0.1)
Synergy (Version: 1.4.12)
System Requirements Lab for Intel (Version: 4.5.13.0)
Tinc 1.0.20 (Version: 1.0.20)
Ubiquiti UniFi (remove only)
UltraVnc (Version: 1.1.9.1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
VLC media player 2.0.8 (Version: 2.0.8)
VS 2008 CRT Package (Version: 1.1.0)
Wajam (Version: 1.80)
Windows 7 Upgrade Advisor (Version: 2.0.5000.0)
WinPcap 4.1.2 (Version: 4.1.0.2001)
WinX HD Video Converter Deluxe 3.12.6
Wise Registry Cleaner 7.82 (Version: 7.82)
Wondershare Streaming Audio Recorder(Build 2.1.1.1) (Version: 2.1.1.1)
XAMPP (Version: 1.8.2-2)

========================= Memory info: ===================================

Percentage of memory in use: 35%
Total physical RAM: 6142.48 MB
Available physical RAM: 3944.85 MB
Total Pagefile: 12283.15 MB
Available Pagefile: 9973.96 MB
Total Virtual: 4095.88 MB
Available Virtual: 3957.4 MB

========================= Partitions: =====================================

2 Drive c: () (Fixed) (Total:139.73 GB) (Free:14.1 GB) NTFS
3 Drive d: (Tech-Data) (Fixed) (Total:1397.16 GB) (Free:1390.84 GB) NTFS

========================= Users: ========================================

User accounts for \\TECHSUPPORT01

Administrator            Guest                    mvtechs                  
UpdatusUser              


**** End of log ****
 



#4 karnakrook

karnakrook
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:07:18 PM

Posted 07 October 2013 - 03:57 PM

http://speccy.piriform.com/results/nltiLUUsXrmmdyfSfS2Fb8C



#5 hamluis

hamluis

    Moderator


  • Moderator
  • 55,734 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:06:18 PM

Posted 07 October 2013 - 05:41 PM

Is this system part of a domain?

 

Windows install Feb 2013, first critical update in Apr 2013?

 

Please remove Wise Registry Cleaner.

 

Please remove AVG whatever, you have Avast as your AV.  See http://www.avg.com/ww-en/faq.num-5200 .

 

I would also remove Carambis Software Updater and any toolbars it may have installed.  FWIW:  Just about any program requiing updates...will have its own updating mechanixm which is installed along with other program files.

 

You may want to run the chkdsk /r command, followed by the sfc /scannow command...after removing suggested items.

 

Louis



#6 karnakrook

karnakrook
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:07:18 PM

Posted 08 October 2013 - 02:00 PM

I do not have avg, only avast. the software updater and registry cleaner were put on after the bsod. No toolbars were installed.  I will remove these items, but there not causing the issue.



#7 hamluis

hamluis

    Moderator


  • Moderator
  • 55,734 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:06:18 PM

Posted 08 October 2013 - 02:52 PM

OK...I'm willing to let you tell us...just what is causing the issue. 

 

That would save a lot of time that we could put to better use trying to help someone else.

 

Louis



#8 karnakrook

karnakrook
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:07:18 PM

Posted 08 October 2013 - 03:14 PM

Okay, I am not sure why the attitude. There is no avg on the machine, it is not in the list of software on the machine.  The Bsod were occuring prior to the mentioned software updater and registry cleaner. I was not trying to be all knowing. I wanted to let you know that these were not causing the problem.  If I knew what it was I would not post here to waste time. I ran the chkdsk/r and came back clean. I will run the next one and let you know the results.  The bsod primarily occur on start up.   I am really looking for help and appreciate the time people put into answering these questions. 



#9 hamluis

hamluis

    Moderator


  • Moderator
  • 55,734 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:06:18 PM

Posted 09 October 2013 - 07:19 AM

Post a new Speccy snapshot, please.

 

Louis



#10 TsVk!

TsVk!

    penguin farmer


  • Members
  • 6,232 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Antipodes
  • Local time:09:18 AM

Posted 09 October 2013 - 09:51 PM

AVG is still causing issues from a previous installation, it was not fully removed... Your machine believes it is part of a domain also. Probably good to fix this also

 

Your machine has an administrator user called MVLIBRARY trying to apply group policy, maybe a local library that you joined to the domain? rather than connecting as a user?... If you know nothing of this it is likely you are infected with malware.

 

Blue Screen View can help you understand the dump files better also... have a go with that. If you can't make head nor tail of the issue please share back what this application says.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users