Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

BSOD Memory_Management issue with ntoskrnl.exe, ntkrnl.exe


  • Please log in to reply
16 replies to this topic

#1 MsImAQuickStudy

MsImAQuickStudy

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 22 November 2016 - 12:57 PM

Hi everyone, hopefully someone can help me out with this issue. 

 

Since the past month or so I've been getting the BSoD more and more frequently. At first it was a couple of times, now it's increased to once a day.

My PC is still running, but every so often crashes with a BSoD with the MEMORY MANAGEMENT cause. Now I'm not entirely sure but I believe it started around the time I did a massive bunch of updates after they kept failing (every time I shut down my PC it would shut down and update).

 

I've scanned my RAM for issues with Windows Memory Diagnostic which encountered no issues. I'll scan using Memtest86 soon but I somewhat doubt my RAM is failing since the RAM is only about a year old (as is the rest of my pc, which I built myself). I don't overclock anything, as I don't need it and my CPU/GPU aren't made for it. It ran smoothly before the crashes.

 

I'm not encountering issues during any specific tasks, I can still comfortably play Skyrim SE or Witcher on Ultra with no issues whatsoever - which leads me to believe that heat issues shouldn't be the case. 

 

 

However, one thing I did encounter was that, previously, my pc's Sleep mode was greyed out. I had the usual Shut down, Restart and Switch User related options, and top of the list was 'Hibernate'. This worked absolutely fine other than the fact that I quite simply couldn't let my PC sleep, it would continuously run. Now, Hibernate has disappeared and Sleep has appeared as an option. 

Now I'm not sure if it's related, but it does seem that the crashes occur when my PC has been asleep. It refused to wake up once (black screen), and has crashed either upon waking up or shortly after a few times. 

 

I'm unsure of what causes the issue or how to fix it at this point, as I can't find any obvious causes.

 

Summary:

- BSoD due to Memory_management

- More frequently occuring since about a month ago

- Happens irregularly, can still run games, no overheating issues I'm aware of

- Sleep mode issue possible?

 

Measures I've taken so far:

-Virus scan, using MalwareBytes and Panda AV

-Perform any remaining updates (GPU drivers and some recommended updates)

-Scan RAM with Memory Diagnostics

-Run chkdsk

-Attempted to repair Windows 7 using the original installation disc, which failed as it told me it doesn't match the version of Windows I have installed (which is incorrect)

 

 

I'll add some extra information in case it helps:

9 critical errors have occured since June 2016, of which 7 since 16/10/2016 (basically the amount of times it's crashed)

6 BugCheck reports were created between 16/10/2016 and 22/11/2016 after rebooting post-BSoD

The bunch of updates was installed 13-10-2016

Minor issue?: Avast seems to still have some traces left on my PC despite uninstalling and tries to launch according to Event Viewer

 

 

WhoCrashed report:

Crash dump directory: C:\Windows\Minidump

Crash dumps are enabled on your computer.

On Tue 22/11/2016 16:05:21 your computer crashed
crash dump file: C:\Windows\Minidump\112216-11029-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0x70400)
Bugcheck code: 0x1A (0x888A, 0xFFFFF8A0283DC298, 0xFFFFF680000D46FB, 0xFFFFFA8007D10ED0)
Error: MEMORY_MANAGEMENT
file path: C:\Windows\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that a severe memory management error occurred.
This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. This problem might also be caused because of overheating (thermal issue).
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.



On Tue 22/11/2016 16:05:21 your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: ntkrnlmp.exe (nt!KeBugCheckEx+0x0)
Bugcheck code: 0x1A (0x888A, 0xFFFFF8A0283DC298, 0xFFFFF680000D46FB, 0xFFFFFA8007D10ED0)
Error: MEMORY_MANAGEMENT
Bug check description: This indicates that a severe memory management error occurred.
This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. This problem might also be caused because of overheating (thermal issue).
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. 



BC AdBot (Login to Remove)

 


#2 hamluis

hamluis

    Moderator


  • Moderator
  • 55,857 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:02:24 AM

Posted 22 November 2016 - 01:27 PM

Please download MiniToolBox  , save it to your desktop and run it.
 
Checkmark the following checkboxes:
  List last 10 Event Viewer log
  List Installed Programs
  List Users, Partitions and Memory size.
 
Click Go and paste the content into your next post.
 
Also...please Publish a Snapshot using Speccy taking care to post the link of the snapshot in your next post.

   Go to Piriform's website, and download the free version on the left.  Click Download from Piriform.com (the FileHippo link requires an extra click). Or if you want to use a portable version of Speccy (which doesn't require installation), click the builds page link and download the portable version. You will now be asked where you want to save the file. The best place to put it is the Desktop, as it will be easy to find later.

    After the file finishes downloading, you are ready to run Speccy. If you downloaded the installer, simply double-click on it and follow the prompts until installation is complete. If you downloaded the portable version, you will need to unzip it before use. Right-click the ZIP file and click Extract all. Click Next. Open up the extracted folder and double-click on Speccy.
 
     Once inside Speccy, it will look similar to this (with your computer's specifications, of course): p22004369.gif

     Now, at the top, click File > Publish Snapshot. You will see the following prompt:

p22004371.gif

     Click Yes > then Copy to Clipboard

p22004372.gif

Now, once you are back in the forum topic you are posting in, click the p22004370.gif button. Right-click in the empty space of the Reply box and click Paste. Then, click Add Reply below the Reply box.

 

Louis



#3 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 22 November 2016 - 01:41 PM

Thank you for responding so quickly!

 

Speccy snapshot:

http://speccy.piriform.com/results/M7vHPQPUB6dKeAoHIjxPh6I

 

MiniToolBox results:

 

MiniToolBox by Farbar  Version: 17-06-2016
Ran by Rose (administrator) on 22-11-2016 at 18:35:49
Running from "E:\Users\Rose\Downloads"
Microsoft Windows 7 Professional  Service Pack 1 (X64)
Model: G1.Sniper B5 Manufacturer: Gigabyte Technology Co., Ltd.
Boot Mode: Normal
***************************************************************************
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (11/22/2016 06:15:12 PM) (Source: PostgreSQL) (User: )
Description: Timed out waiting for server startup
 
Error: (11/22/2016 06:13:58 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (11/22/2016 06:13:25 PM) (Source: DbxSvc) (User: )
Description: Failed to connect to the driver: (-2147024894) The system cannot find the file specified.
 
Error: (11/22/2016 04:06:49 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (11/22/2016 04:06:15 PM) (Source: DbxSvc) (User: )
Description: Failed to connect to the driver: (-2147024894) The system cannot find the file specified.
 
Error: (11/22/2016 04:04:24 PM) (Source: Application Error) (User: )
Description: Faulting application name: netbeans64.exe, version: 8.0.0.0, time stamp: 0x536338cc
Faulting module name: ntdll.dll, version: 6.1.7601.23572, time stamp: 0x57fd0651
Exception code: 0xc0000026
Fault offset: 0x00000000000c8078
Faulting process id: 0x764
Faulting application start time: 0xnetbeans64.exe0
Faulting application path: netbeans64.exe1
Faulting module path: netbeans64.exe2
Report Id: netbeans64.exe3
 
Error: (11/22/2016 04:04:18 PM) (Source: Application Error) (User: )
Description: Faulting application name: java.exe, version: 8.0.600.27, time stamp: 0x55c10193
Faulting module name: ntdll.dll, version: 6.1.7601.23572, time stamp: 0x57fd0651
Exception code: 0xc0000005
Fault offset: 0x00000000000261c2
Faulting process id: 0x2f18
Faulting application start time: 0xjava.exe0
Faulting application path: java.exe1
Faulting module path: java.exe2
Report Id: java.exe3
 
Error: (11/22/2016 04:04:13 PM) (Source: Application Error) (User: )
Description: Faulting application name: netbeans64.exe, version: 8.0.0.0, time stamp: 0x536338cc
Faulting module name: ntdll.dll, version: 6.1.7601.23572, time stamp: 0x57fd0651
Exception code: 0xc0000026
Fault offset: 0x00000000000c8078
Faulting process id: 0x3328
Faulting application start time: 0xnetbeans64.exe0
Faulting application path: netbeans64.exe1
Faulting module path: netbeans64.exe2
Report Id: netbeans64.exe3
 
Error: (11/22/2016 04:04:08 PM) (Source: Application Error) (User: )
Description: Faulting application name: java.exe, version: 8.0.600.27, time stamp: 0x55c10193
Faulting module name: ntdll.dll, version: 6.1.7601.23572, time stamp: 0x57fd0651
Exception code: 0xc0000005
Fault offset: 0x00000000000261c2
Faulting process id: 0x3364
Faulting application start time: 0xjava.exe0
Faulting application path: java.exe1
Faulting module path: java.exe2
Report Id: java.exe3
 
Error: (11/22/2016 01:40:28 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
System errors:
=============
Error: (11/22/2016 06:13:57 PM) (Source: Service Control Manager) (User: )
Description: The VBoxAsw Support Driver service failed to start due to the following error: 
%%3 = The system cannot find the path specified.
 
Error: (11/22/2016 06:13:55 PM) (Source: Service Control Manager) (User: )
Description: The Origin Web Helper Service service failed to start due to the following error: 
%%1053 = The service did not respond to the start or control request in a timely fashion.
 
Error: (11/22/2016 06:13:55 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Origin Web Helper Service service to connect.
 
Error: (11/22/2016 06:13:24 PM) (Source: Service Control Manager) (User: )
Description: The Avast Antivirus service failed to start due to the following error: 
%%2 = The system cannot find the file specified.
 
Error: (11/22/2016 04:06:48 PM) (Source: Service Control Manager) (User: )
Description: The VBoxAsw Support Driver service failed to start due to the following error: 
%%3 = The system cannot find the path specified.
 
Error: (11/22/2016 04:06:46 PM) (Source: Service Control Manager) (User: )
Description: The Origin Web Helper Service service failed to start due to the following error: 
%%1053 = The service did not respond to the start or control request in a timely fashion.
 
Error: (11/22/2016 04:06:46 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Origin Web Helper Service service to connect.
 
Error: (11/22/2016 04:06:15 PM) (Source: Service Control Manager) (User: )
Description: The Avast Antivirus service failed to start due to the following error: 
%%2 = The system cannot find the file specified.
 
Error: (11/22/2016 04:06:15 PM) (Source: BugCheck) (User: )
Description: 0x0000001a (0x000000000000888a, 0xfffff8a0283dc298, 0xfffff680000d46fb, 0xfffffa8007d10ed0)C:\Windows\MEMORY.DMP112216-11029-01
 
Error: (11/22/2016 04:06:14 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 16:05:10 on ‎22/‎11/‎2016 was unexpected.
 
Microsoft Office Sessions:
=========================
Error: (11/22/2016 06:15:12 PM) (Source: PostgreSQL)(User: )
Description: Timed out waiting for server startup
 
Error: (11/22/2016 06:13:58 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (11/22/2016 06:13:25 PM) (Source: DbxSvc)(User: )
Description: (-2147024894) The system cannot find the file specified.
 
Error: (11/22/2016 04:06:49 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (11/22/2016 04:06:15 PM) (Source: DbxSvc)(User: )
Description: (-2147024894) The system cannot find the file specified.
 
Error: (11/22/2016 04:04:24 PM) (Source: Application Error)(User: )
Description: netbeans64.exe8.0.0.0536338ccntdll.dll6.1.7601.2357257fd0651c000002600000000000c807876401d244da146805ecE:\Program Files\NetBeans 8.0.2\bin\netbeans64.exeC:\Windows\SYSTEM32\ntdll.dll55f5448e-b0cd-11e6-b356-001a7dda7104
 
Error: (11/22/2016 04:04:18 PM) (Source: Application Error)(User: )
Description: java.exe8.0.600.2755c10193ntdll.dll6.1.7601.2357257fd0651c000000500000000000261c22f1801d244da14728d64E:\Program Files\Java\jdk1.8.0_60\jre\bin\java.exeC:\Windows\SYSTEM32\ntdll.dll52206071-b0cd-11e6-b356-001a7dda7104
 
Error: (11/22/2016 04:04:13 PM) (Source: Application Error)(User: )
Description: netbeans64.exe8.0.0.0536338ccntdll.dll6.1.7601.2357257fd0651c000002600000000000c8078332801d244da0df3dc0bE:\Program Files\NetBeans 8.0.2\bin\netbeans64.exeC:\Windows\SYSTEM32\ntdll.dll4f487da9-b0cd-11e6-b356-001a7dda7104
 
Error: (11/22/2016 04:04:08 PM) (Source: Application Error)(User: )
Description: java.exe8.0.600.2755c10193ntdll.dll6.1.7601.2357257fd0651c000000500000000000261c2336401d244da0e0c4667E:\Program Files\Java\jdk1.8.0_60\jre\bin\java.exeC:\Windows\SYSTEM32\ntdll.dll4c00242b-b0cd-11e6-b356-001a7dda7104
 
Error: (11/22/2016 01:40:28 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
CodeIntegrity Errors:
===================================
  Date: 2016-06-13 02:15:43.174
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Common Files\ATI Technologies\Multimedia\AMDMFTDecoder_64.dll because the set of per-page image hashes could not be found on the system.
 
=========================== Installed Programs ============================
µTorrent (HKCU\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.)
7-Zip 15.12 (HKLM-x32\...\7-Zip) (Version: 15.12 - Igor Pavlov)
7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov)
ACP Application (HKLM\...\{9310B421-0E5E-2B16-0B7D-DECA597B1A8A}) (Version: 2016.1115.1548.22 - Advanced Micro Devices, Inc.) Hidden
Active Directory Authentication Library for SQL Server (HKLM\...\{32C0D7B2-1046-43AC-98AD-B748E1910916}) (Version: 13.0.1601.5 - Microsoft Corporation) Hidden
Active Directory Authentication Library for SQL Server (x86) (HKLM-x32\...\{F40FA676-46B1-4609-85EF-D2F1F79E0C0E}) (Version: 13.0.1601.5 - Microsoft Corporation) Hidden
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated)
Adobe Flash Player ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 9.0.124.0 - Adobe Systems Incorporated)
Adobe Photoshop CS5.1 (HKLM-x32\...\{9158FF30-78D7-40EF-B83E-451AC5334640}) (Version: 12.1 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.6 - Advanced Micro Devices, Inc.)
AMD System Monitor (HKLM-x32\...\{6EFD0C42-4CC1-4716-A0CA-21C1A062CF34}) (Version: 1.0.9 - Advanced Micro Devices, Inc.)
Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{0E4C791E-B78E-477D-BD5A-CDD0985BA6EC}) (Version: 7.0.20622.1 - Microsoft Corporation)
Auslogics Disk Defrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 7.0.0.0 - Auslogics Labs Pty Ltd)
Azure AD Authentication Connected Service (HKLM-x32\...\{8A1AD070-269F-4A15-AAB5-76AB896EF195}) (Version: 14.0.25420 - Microsoft Corporation) Hidden
AzureTools.Notifications (HKLM-x32\...\{1E5CA362-39B6-4BD0-B9C0-69CF15F0FEA2}) (Version: 2.7.30611.1601 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for .NET 4.5 (HKLM-x32\...\{37E53780-3944-4A6A-842F-727128E8616E}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Brothers - A Tale of Two Sons (HKLM\...\Steam App 225080) (Version:  - Starbreeze Studios AB)
Catalyst Control Center Next Localization BR (HKLM\...\{6005B906-B595-7F33-1B59-1E05A46E623B}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{83361C37-1434-E391-F894-5F3211EEF7A8}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{BF6BDB3C-7A9E-7C7F-5943-CC33AAC2DB9D}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{6865D324-70F1-A062-FB20-A438B7A46520}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{7492F406-910F-BE82-5FAC-B8F0DC0ABD81}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{4999BF30-6DEA-0632-1755-A7C01060ACD3}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{4ACB556D-981C-F699-9823-104E59CD612F}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{B1C5C285-2FBD-6512-9BC3-B69C86F6CB2C}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{CD71A15C-327C-5FA5-3608-411C79053758}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{76FB6CCE-B77E-DF3A-82EB-D55524EAC430}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{DD5AAA15-8248-00BE-7F80-5621B4CA6326}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{675EEC57-6800-0F30-3613-D818953F769A}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{6BF5723F-1E4E-49AD-0F27-04DD277C6576}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{8E997F3E-579F-0E23-297C-A5AD49196ACE}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{E5B15269-9028-BCD1-8C15-44EE09304070}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{A7CC92C6-5898-2374-5435-974B2A0DEBBA}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{AA848BDC-3685-5DBA-4163-64D55E5E1FB8}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{C50FB932-3F5B-AD6D-6CF7-74DC9D8F071C}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{F2D8C74C-CC52-ED44-1110-FD3973F9D01B}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{AF2CA25D-9BA2-B27F-8362-C40D01608A12}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{DC3A5C2C-5845-616A-6D63-507C43E57348}) (Version: 2016.1115.1552.28539 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.24 - Piriform)
CPUID HWMonitor 1.29 (HKLM\...\CPUID HWMonitor_is1) (Version:  - )
Dota 2 (HKLM\...\Steam App 570) (Version:  - Valve)
Dotfuscator and Analytics Community Edition 5.22.0 (HKLM-x32\...\{60018889-9E0F-43E8-9B89-29E8C828B40A}) (Version: 5.22.0.3788 - PreEmptive Solutions) Hidden
Dropbox (HKLM-x32\...\Dropbox) (Version: 14.4.19 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.57.1 - Dropbox, Inc.) Hidden
Entity Framework 6.1.3 Tools  for Visual Studio 2015 Update 1 (HKLM-x32\...\{2A56910C-69C8-495D-8ED8-9080F0A14E58}) (Version: 14.0.41103.0 - Microsoft Corporation)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version:  - Obsidian Entertainment)
FileZilla Client 3.15.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.15.0.2 - Tim Kosse)
GlassFish Server Open Source Edition 4.1 (HKLM\...\nbi-glassfish-mod-4.1.0.13.0) (Version:  - )
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version:  - GOG.com)
Golf With Your Friends (HKLM\...\Steam App 431240) (Version:  - Blacklight Interactive)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.31.5 - Google Inc.) Hidden
GPU Temp version 1.0 (HKLM-x32\...\{8C8711FD-0FC8-4801-B33E-ED19BB0350B1}_is1) (Version: 1.0 - gputemp.com)
HWiNFO64 Version 5.02 (HKLM\...\HWiNFO64_is1) (Version: 5.02 - Martin Malík - REALiX)
IIS 10.0 Express (HKLM\...\{13FD7E30-D2F1-498D-ABC2-A4242DB6610E}) (Version: 10.0.1736 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version:  - )
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version:  - )
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4414 - Intel Corporation)
Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079F0}) (Version: 7.0.790 - Oracle)
Java 8 Update 101 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java SE Development Kit 8 Update 60 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180600}) (Version: 8.0.600.27 - Oracle Corporation)
Just Cause 2 (HKLM\...\Steam App 8190) (Version:  - Avalanche Studios)
Just Cause 2: Multiplayer Mod (HKLM\...\Steam App 259080) (Version:  - Avalanche Studios)
League of Legends (HKLM-x32\...\{DB179A5E-BDE5-4565-AE14-AA10C64C0572}) (Version: 3.0.1 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
Link Shell Extension (HKLM\...\HardlinkShellExt) (Version: 3.8.6.3 - Hermann Schinagl)
LOOT version 0.10.0 (HKLM-x32\...\{BF634210-A0D4-443F-A657-0DCE38040374}_is1) (Version: 0.10.0 - LOOT Team)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{034547E9-D8FA-49E7-8B9C-4C9861FB9146}) (Version: 4.6.00127 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 15.0.4875.1001 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities  (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL ScriptDom  (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 T-SQL Language Service  (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2016 LocalDB  (HKLM\...\{E359515A-92E6-4FA3-A2C9-E1BA02D8DE6E}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server 2016 Management Objects  (HKLM-x32\...\{0F1C8E2F-199A-4946-B3BF-0906DACFD032}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server 2016 Management Objects  (x64) (HKLM\...\{20EA85AA-2A1D-4F11-B09F-4BA2BF3C8989}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server 2016 T-SQL Language Service  (HKLM-x32\...\{8BFDE775-C5B8-46DB-84EF-43FFC8A2E8AD}) (Version: 13.0.14500.10 - Microsoft Corporation)
Microsoft SQL Server 2016 T-SQL ScriptDom  (HKLM\...\{D091DE8C-EA0F-49AF-8DE3-BD6C79737C6E}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (14.0.60519.0) (HKLM-x32\...\{4E27B0EF-7BAB-432A-AF3D-3FC8F3F7353F}) (Version: 14.0.60519.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{68BA34E8-9B9D-4A74-83F0-7D366B532D75}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{718FFB65-F6E4-4D62-861F-ED10ED32C936}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2016 (HKLM\...\{96EB5054-C775-4BEF-B7B9-AA96A295EDCD}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2016 (HKLM-x32\...\{84C23ECA-FE4D-494F-9247-3EBAD57E7F0C}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio Community 2015 (HKLM-x32\...\{4f075c79-8ee3-4c85-9408-828736d1f7f3}) (Version: 14.0.23107.178 - Microsoft Corporation)
Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Middle-earth: Shadow of Mordor (HKLM\...\Steam App 241930) (Version:  - Monolith Productions, Inc.)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
ModelSim-Altera Starter Edition 16.0.0.211 (HKLM-x32\...\ModelSim-Altera Starter Edition 16.0.0.211) (Version: 16.0 - Altera Corporation)
Mozilla Firefox 43.0.4 (x86 en-GB) (HKLM-x32\...\Mozilla Firefox 43.0.4 (x86 en-GB)) (Version: 43.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.4 - Mozilla)
MSBuild/NuGet Integration 14.0 (x86) (HKLM-x32\...\{128C1654-3B9E-4959-8BFB-CE6F09C0A01D}) (Version: 14.0.25420 - Microsoft Corporation) Hidden
Multi-Device Hybrid Apps using C# - Templates - ENU (HKLM-x32\...\{12D99739-FFD3-3761-8AA6-F929E0FE407E}) (Version: 14.0.23107 - Microsoft Corporation) Hidden
Need for Speed™ Most Wanted (HKLM-x32\...\{FB0127F3-985B-44CE-AE29-378CAF60B361}) (Version: 1.5.0.0 - Electronic Arts)
NetBeans IDE 8.0.2 (HKLM\...\nbi-nb-base-8.0.2.0.201411181905) (Version: 8.0.2 - NetBeans.org)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.9 - Black Tree Gaming)
NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version:  - )
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.3 - Notepad++ Team)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (HKLM\...\{90150000-008C-0000-1000-0000000FF1CE}) (Version: 15.0.4875.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-007E-0000-1000-0000000FF1CE}) (Version: 15.0.4875.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (HKLM\...\{90150000-008C-0409-1000-0000000FF1CE}) (Version: 15.0.4875.1001 - Microsoft Corporation) Hidden
Ori and the Blind Forest (HKLM-x32\...\Steam App 261570) (Version:  - Moon Studios GmbH)
Origin (HKLM-x32\...\Origin) (Version: 10.2.1.38915 - Electronic Arts, Inc.)
osu! (HKLM-x32\...\{c3afb8a2-8ecc-4498-b3df-0091c154990b}) (Version: latest - ppy Pty Ltd)
Panda Devices Agent (HKLM-x32\...\{DDE3DECA-9139-4A39-9276-143ECA1DB75E}) (Version: 1.06.00 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.07 - Panda Security) Hidden
Panda Free Antivirus (HKLM\...\{293AA48A-DFC2-4F7D-9ED7-1A0F25CB5368}) (Version: 8.04.00.0000 - Panda Security) Hidden
Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 16.0.2 - Panda Security)
PDF Settings CS5 (HKLM-x32\...\{A78FE97A-C0C8-49CE-89D0-EDD524A17392}) (Version: 10.0 - Adobe Systems Incorporated) Hidden
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.16.8-r118433-release - Plays.tv, LLC)
PostgreSQL 9.5  (HKLM\...\PostgreSQL 9.5) (Version: 9.5 - PostgreSQL Global Development Group)
PreEmptive Analytics Visual Studio Components (HKLM-x32\...\{436A18DD-5F2C-4B3C-985E-AD3C13B0CC25}) (Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
Prerequisites for SSDT  (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
Prerequisites for SSDT  (HKLM-x32\...\{B7E94916-7AE6-4F7F-A377-7A410A42BA19}) (Version: 13.0.1601.5 - Microsoft Corporation)
Private Internet Access Support Files (HKLM-x32\...\{7D72DAFF-DCB2-437B-BC22-4B2ABF21462B}) (Version: 1.0.0.0 - Private Internet Access)
Python 3.5 psycopg2-2.6.1 (HKLM\...\psycopg2-py3.5) (Version:  - )
Python 3.5.0 (64-bit) (HKCU\...\{6f2d05d2-5962-42fc-a3f7-8e8f31257582}) (Version: 3.5.150.0 - Python Software Foundation)
Python 3.5.0 Add to Path (64-bit) (HKLM\...\{810503AC-4E50-4A21-BD5A-BFA973480B35}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Core Interpreter (64-bit) (HKLM\...\{9D059C5B-80A5-46AA-BC8A-FD41E89D0A49}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Development Libraries (64-bit) (HKLM\...\{6EA6724A-71C6-43EE-BE9F-80E3C0DC8A4F}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Documentation (64-bit) (HKLM\...\{3B016F3B-917E-477F-920A-BBBA12E09F8B}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Executables (64-bit) (HKLM\...\{9C67D7CC-26D3-4535-9D0A-F4591AD9B11F}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Launcher (32-bit) (HKLM-x32\...\{A095BD6B-4F39-46A4-9AA1-8F7296492974}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 pip Bootstrap (64-bit) (HKLM\...\{6ADAF31E-EEE6-4251-BE5A-EFD7868D3930}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Standard Library (64-bit) (HKLM\...\{5741118B-D61A-4F27-BB80-0CAED22FE20B}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Tcl/Tk Support (64-bit) (HKLM\...\{47483182-8783-45CB-9120-77FDB241E2FF}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Test Suite (64-bit) (HKLM\...\{B2AB1292-01D1-4972-BF56-43531A2AA3BA}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Utility Scripts (64-bit) (HKLM\...\{2B5129D0-C4C1-4322-8888-D0B6CDA6DCD2}) (Version: 3.5.150.0 - Python Software Foundation) Hidden
Quartus Prime Lite Edition (Free) 16.0.0.211 (HKLM-x32\...\Quartus Prime Lite Edition (Free) 16.0.0.211) (Version: 16.0 - Altera Corporation)
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.7-r116720-release - Raptr, Inc)
Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 1.4.1 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.28549 - Razer Inc.)
Reader for PC (HKLM-x32\...\{D279DFB7-97A3-439D-8BE9-95D8AFA68562}) (Version: 2.4.01.10241 - Sony Corporation)
Rocket League (HKLM\...\Steam App 252950) (Version:  - Psyonix, Inc.)
Roguelands (HKLM\...\Steam App 364420) (Version:  - SmashGames)
Roslyn Language Services - x86 (HKLM-x32\...\{6970C7E1-F99D-388D-8903-DF8FCE677FED}) (Version: 14.0.25431 - Microsoft Corporation) Hidden
Roslyn Language Services - x86 (HKLM-x32\...\{6C1985E7-E1C5-3A95-86EF-2C62465F15C3}) (Version: 14.0.23107 - Microsoft Corporation) Hidden
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.61.0 - Samsung Electronics Co., Ltd.)
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version:  - 2K Games, Inc.)
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype Web Plugin (HKLM-x32\...\{27A9512F-B284-490A-97B7-40713556476D}) (Version: 7.21.0.159 - Skype Technologies S.A.)
Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16084.4 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16084.4 - Samsung Electronics Co., Ltd.)
Sniper Elite 3 (HKLM\...\Steam App 238090) (Version:  - Rebellion)
Spotify (HKCU\...\Spotify) (Version: 1.0.42.151.g19de0aa6 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Team Explorer for Microsoft Visual Studio 2015 Update 3.1 (HKLM-x32\...\{7A95671A-759E-3B83-B763-4289D1D24D73}) (Version: 14.102.25619 - Microsoft) Hidden
Terraria (HKLM-x32\...\Steam App 105600) (Version:  - Re-Logic)
Test Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{9EABBFE1-7EED-47D9-8FB8-21D7E4808057}) (Version: 14.0.23107 - Microsoft Corporation) Hidden
The Elder Scrolls Online (HKLM-x32\...\The Elder Scrolls Online) (Version: 1.0.0.0 - Zenimax Online Studios)
The Elder Scrolls Online: Tamriel Unlimited (HKLM\...\Steam App 306130) (Version:  - Zenimax Online Studios)
The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version:  - Bethesda Game Studios)
The Elder Scrolls V: Skyrim Special Edition (HKLM\...\Steam App 489830) (Version:  - Bethesda Game Studios)
The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.0.631 - Electronic Arts)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.23.24.1010 - Electronic Arts Inc.)
The Witcher 2 - Assassins of Kings Enhanced Edition (HKLM-x32\...\1207658930_is1) (Version: 3.5.0.26 - GOG.com)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.24.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Blood and Wine (HKLM-x32\...\Blood and Wine_is1) (Version: 1.24.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.24.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Hearts of Stone (HKLM-x32\...\Hearts of Stone_is1) (Version: 1.24.0.0 - GOG.com)
The Witcher Enhanced Edition Director's Cut (HKLM-x32\...\1207658924_is1) (Version: 2.1.0.15 - GOG.com)
TP-LINK Archer T2U_T2UH Driver (HKLM-x32\...\{95EF5DBB-C2DA-48AF-93B4-533333227486}) (Version: 1.3.1 - TP-LINK)
TP-LINK Archer T2U_T2UH Driver (HKLM-x32\...\{F2496892-5295-4208-AB93-21F1AFD07C97}) (Version: 1.3.1 - TP-LINK)
TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK)
TypeScript Power Tool (HKLM-x32\...\{465ACA24-B8D6-4FEC-A42D-9EFCB92CD560}) (Version: 1.8.34.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{BA5762C7-D35F-4725-A4BD-525854127018}) (Version: 1.8.36.0 - Microsoft Corporation) Hidden
Ultimate Chicken Horse (HKLM\...\Steam App 386940) (Version:  - Clever Endeavour Games)
Universal CRT Extension SDK (HKLM-x32\...\{1FBCBC17-4527-2340-0832-B1D49C41FF67}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (HKLM-x32\...\{284FA9A0-CEDD-81D3-5A19-5858E95FD0C4}) (Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{8BFBEC30-33CC-13B4-849F-3B036F27466A}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{ABD37F71-FC3F-F525-C7B3-BDD95F684C51}) (Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{33952D66-D503-10CA-DD8E-E365C15EB4E0}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{B048B812-32DE-3474-FA64-223B6A63AD47}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Update for  (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Virtual Breadboard (HKLM-x32\...\{B0E0936B-F2EC-43F3-A5F4-5C8E9C2BF766}) (Version: 5.44 - Virtual Breadboard)
Visual Studio 2015 Update 3 (KB3022398) (HKLM-x32\...\{7a68448b-9cf2-4049-bd73-5875f1aa7ba2}) (Version: 14.0.25420 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
VS Update core components (HKLM-x32\...\{B2918D01-1D89-34D3-87EF-A28121BC6EB7}) (Version: 14.0.25431 - Microsoft Corporation) Hidden
vs_update3notification (HKLM-x32\...\{AB3DF932-C990-34D4-BF43-970F760DA3CD}) (Version: 14.0.25431 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.0.17.0 (HKLM\...\VulkanRT1.0.17.0) (Version: 1.0.17.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.21.0 (HKLM\...\VulkanRT1.0.21.0) (Version: 1.0.21.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0-2) (Version: 1.0.26.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.)
Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.5-3 - Wacom Technology Corp.)
WCF Data Services 5.6.4 Runtime (HKLM-x32\...\{DB85E7BD-B2DD-43D4-B3C0-23D7B527B597}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{0A3B508E-5638-4471-BCC9-954E1868CB86}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden
Web Companion (HKLM-x32\...\{63dfb23b-fc1f-41de-9b5e-975be4d57544}) (Version: 2.3.1461.2844 - Lavasoft)
WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
WhoCrashed 5.53 (HKLM\...\WhoCrashed_is1) (Version:  - Resplendence Software Projects Sp.)
WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 4.1 - Sysprogs)
Windows Driver Package - Altera (WinUSB) JTAG cables  (02/11/2014,2014.02.11 ) (HKLM\...\6D27F566AFC20C2281F903D0D9620D335BBAF1AB) (Version: 02/11/2014,2014.02.11  - Altera)
 
========================= Memory info: ===================================
Percentage of memory in use: 20%
Total physical RAM: 16262.13 MB
Available physical RAM: 12866.04 MB
Total Virtual: 32522.44 MB
Available Virtual: 28167.34 MB
 
========================= Partitions: =====================================
1 Drive c: (Startup SSD) (Fixed) (Total:232.79 GB) (Free:65.4 GB) NTFS
2 Drive d: (GSP1RMCPRXFREO_EN_DVD) (CDROM) (Total:3.09 GB) (Free:0 GB) UDF
3 Drive e: (Main HDD) (Fixed) (Total:931.39 GB) (Free:502.07 GB) NTFS
 
========================= Users: ========================================
User accounts for \\ROSE-PC
 
Administrator            Guest                    Rose                     
Rose2                    
 
 
**** End of log ****

Edited by hamluis, 22 November 2016 - 03:43 PM.


#4 hamluis

hamluis

    Moderator


  • Moderator
  • 55,857 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:02:24 AM

Posted 22 November 2016 - 03:49 PM

Google

 

I would uninstall the Netbeans app and I would uninstall all versions of Java that you currently have installed...then go to the Java.com website and download/install the most current version of Java.

 

Sans NetBeans, see how the system performs.

 

Louis



#5 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 24 November 2016 - 11:11 AM

I've uninstalled and reinstalled Java, but I'm afraid Netbeans is incredibly vital to my uni coursework (Ironically I study computer science) so I can't uninstall it for a period of time long enough to test it thoroughly. 

 

Unfortunately it crashed again yesterday evening after going into sleep mode I believe, this time with both a memory management issue and NTFS issue reported. It's not looking good for my dear PC :( 



#6 hamluis

hamluis

    Moderator


  • Moderator
  • 55,857 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:02:24 AM

Posted 24 November 2016 - 12:34 PM

NTFS errors may indicate a problem with a file or the partition structure/file system.

 

Post the exact error message verbatim, please.

 

Louis



#7 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 24 November 2016 - 06:52 PM

Information retrieved from WhoCrashed: (turns out the memory management BSoD was from the day before, so the most recent issue was NTFS.

 

On Wed 23/11/2016 20:09:20 your computer crashed
crash dump file: C:\Windows\Minidump\112316-11996-01.dmp
This was probably caused by the following module: ntfs.sys (Ntfs+0x4211)
Bugcheck code: 0x24 (0x1904FB, 0xFFFFF8800B16B0A8, 0xFFFFF8800B16A900, 0xFFFFF8000322964D)
Error: NTFS_FILE_SYSTEM
file path: C:\Windows\system32\drivers\ntfs.sys
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT File System Driver
Bug check description: This indicates a problem occurred in the NTFS file system.
The crash took place in a standard Microsoft module. Your system configuration may be incorrect. Possibly this problem is caused by another driver on your system that cannot be identified at this time.



On Wed 23/11/2016 20:09:20 your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: ntfs.sys (Ntfs+0x4211)
Bugcheck code: 0x24 (0x1904FB, 0xFFFFF8800B16B0A8, 0xFFFFF8800B16A900, 0xFFFFF8000322964D)
Error: NTFS_FILE_SYSTEM
file path: C:\Windows\system32\drivers\ntfs.sys
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT File System Driver
Bug check description: This indicates a problem occurred in the NTFS file system.
The crash took place in a standard Microsoft module. Your system configuration may be incorrect. Possibly this problem is caused by another driver on your system that cannot be identified at this time. 

 

 

 

On Tue 22/11/2016 16:05:21 your computer crashed

crash dump file: C:\Windows\Minidump\112216-11029-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0x70400)
Bugcheck code: 0x1A (0x888A, 0xFFFFF8A0283DC298, 0xFFFFF680000D46FB, 0xFFFFFA8007D10ED0)
Error: MEMORY_MANAGEMENT
file path: C:\Windows\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that a severe memory management error occurred.
This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. This problem might also be caused because of overheating (thermal issue).
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.  



#8 hamluis

hamluis

    Moderator


  • Moderator
  • 55,857 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:02:24 AM

Posted 24 November 2016 - 08:00 PM

Moved topic from Win 7 to Crashes/BSODs forum.

 

Please comply with following guidance:  How to receive help diagnosing Blue Screens and Windows crashes - http://www.bleepingcomputer.com/forums/topic176011.html .

 

Louis



#9 JinXiang91

JinXiang91

  • Members
  • 97 posts
  • OFFLINE
  •  

Posted 24 November 2016 - 08:30 PM

Information retrieved from WhoCrashed: (turns out the memory management BSoD was from the day before, so the most recent issue was NTFS.

 

On Wed 23/11/2016 20:09:20 your computer crashed
crash dump file: C:\Windows\Minidump\112316-11996-01.dmp
This was probably caused by the following module: ntfs.sys (Ntfs+0x4211)
Bugcheck code: 0x24 (0x1904FB, 0xFFFFF8800B16B0A8, 0xFFFFF8800B16A900, 0xFFFFF8000322964D)
Error: NTFS_FILE_SYSTEM
file path: C:\Windows\system32\drivers\ntfs.sys
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT File System Driver
Bug check description: This indicates a problem occurred in the NTFS file system.
The crash took place in a standard Microsoft module. Your system configuration may be incorrect. Possibly this problem is caused by another driver on your system that cannot be identified at this time.



On Wed 23/11/2016 20:09:20 your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: ntfs.sys (Ntfs+0x4211)
Bugcheck code: 0x24 (0x1904FB, 0xFFFFF8800B16B0A8, 0xFFFFF8800B16A900, 0xFFFFF8000322964D)
Error: NTFS_FILE_SYSTEM
file path: C:\Windows\system32\drivers\ntfs.sys
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT File System Driver
Bug check description: This indicates a problem occurred in the NTFS file system.
The crash took place in a standard Microsoft module. Your system configuration may be incorrect. Possibly this problem is caused by another driver on your system that cannot be identified at this time. 

 

 

 

On Tue 22/11/2016 16:05:21 your computer crashed

crash dump file: C:\Windows\Minidump\112216-11029-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0x70400)
Bugcheck code: 0x1A (0x888A, 0xFFFFF8A0283DC298, 0xFFFFF680000D46FB, 0xFFFFFA8007D10ED0)
Error: MEMORY_MANAGEMENT
file path: C:\Windows\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that a severe memory management error occurred.
This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. This problem might also be caused because of overheating (thermal issue).
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.  

Hi,

Please run the test for your harddisk, 

http://www.seagate.com/files/www-content/support-content/downloads/seatools/_shared/downloads/SeaToolsforWindowsSetup.exe

Please upon completion of the test.

Thanks.



#10 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 25 November 2016 - 11:24 AM

For MEMORY.dump
 
Microsoft ® Windows Debugger Version 10.0.14321.1024 AMD64
Copyright © Microsoft Corporation. All rights reserved.
 
 
Loading Dump File [C:\Windows\MEMORY.DMP]
Kernel Summary Dump File: Kernel address space is available, User address space may not be available.
 
 
************* Symbol Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.23572.amd64fre.win7sp1_ldr.161011-0600
Machine Name:
Kernel base = 0xfffff800`03653000 PsLoadedModuleList = 0xfffff800`03895730
Debug session time: Fri Nov 25 15:40:11.508 2016 (UTC + 0:00)
System Uptime: 0 days 7:01:57.835
Loading Kernel Symbols
...............................................................
................................................................
....................................Page 3c1893 not present in the dump file. Type ".hh dbgerr004" for details
.Page 3bd2d1 not present in the dump file. Type ".hh dbgerr004" for details
...........................
......
Loading User Symbols
PEB is paged out (Peb.Ldr = 00000000`fffdf018).  Type ".hh dbgerr001" for details
Loading unloaded module list
.........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
Use !analyze -v to get detailed debugging information.
 
BugCheck 3B, {c0000005, fffff800036a72e3, fffff88006e0cc80, 0}
 
Page 3c1893 not present in the dump file. Type ".hh dbgerr004" for details
Page 3c1893 not present in the dump file. Type ".hh dbgerr004" for details
Page 3bd2d1 not present in the dump file. Type ".hh dbgerr004" for details
Page 3bd2d1 not present in the dump file. Type ".hh dbgerr004" for details
Probably caused by : ntkrnlmp.exe ( nt!RtlDeleteNoSplay+93 )
 
Followup:     MachineOwner
---------
 
windbg> .hh dbgerr004
3: kd> .ignore_missing_pages 1
Suppress kernel summary dump missing page error message
3: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800036a72e3, Address of the instruction which caused the bugcheck
Arg3: fffff88006e0cc80, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
 
Debugging Details:
------------------
 
 
DUMP_CLASS: 1
 
DUMP_QUALIFIER: 401
 
BUILD_VERSION_STRING:  7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
SYSTEM_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
SYSTEM_PRODUCT_NAME:  G1.Sniper B5
 
SYSTEM_SKU:  To be filled by O.E.M.
 
SYSTEM_VERSION:  To be filled by O.E.M.
 
BIOS_VENDOR:  American Megatrends Inc.
 
BIOS_VERSION:  F2
 
BIOS_DATE:  09/16/2014
 
BASEBOARD_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
BASEBOARD_PRODUCT:  G1.Sniper B5-CF
 
BASEBOARD_VERSION:  x.x
 
DUMP_TYPE:  1
 
BUGCHECK_P1: c0000005
 
BUGCHECK_P2: fffff800036a72e3
 
BUGCHECK_P3: fffff88006e0cc80
 
BUGCHECK_P4: 0
 
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
 
FAULTING_IP: 
nt!RtlDeleteNoSplay+93
fffff800`036a72e3 488909          mov     qword ptr [rcx],rcx
 
CONTEXT:  fffff88006e0cc80 -- (.cxr 0xfffff88006e0cc80)
rax=fffff8a024295ab8 rbx=fbfffa8011d06738 rcx=fbfff8a0242ab028
rdx=fbfffa8011d06738 rsi=fffffa8011d06730 rdi=fffff8a0165ace58
rip=fffff800036a72e3 rsp=fffff88006e0d660 rbp=fffffa8011d06738
 r8=fffff8a0165ace58  r9=ffffffffffffffff r10=fffff80003653000
r11=fffff8a024295ab8 r12=ffffffffffffffff r13=fffffa800d3d3684
r14=0000000000004000 r15=fffff88006e0d8f0
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
nt!RtlDeleteNoSplay+0x93:
fffff800`036a72e3 488909          mov     qword ptr [rcx],rcx ds:002b:fbfff8a0`242ab028=????????????????
Resetting default scope
 
CPU_COUNT: 4
 
CPU_MHZ: c78
 
CPU_VENDOR:  GenuineIntel
 
CPU_FAMILY: 6
 
CPU_MODEL: 3c
 
CPU_STEPPING: 3
 
CPU_MICROCODE: 6,3c,3,0 (F,M,S,R)  SIG: 1C'00000000 (cache) 12'00000000 (init)
 
DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT
 
BUGCHECK_STR:  0x3B
 
PROCESS_NAME:  chrome.exe
 
CURRENT_IRQL:  0
 
ANALYSIS_SESSION_HOST:  ROSE-PC
 
ANALYSIS_SESSION_TIME:  11-25-2016 16:01:38.0928
 
ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
 
LAST_CONTROL_TRANSFER:  from fffff8800100a633 to fffff800036a72e3
 
STACK_TEXT:  
fffff880`06e0d660 fffff880`0100a633 : fffff8a0`01794b30 00000000`000001d0 00000000`00000000 00000000`000007ff : nt!RtlDeleteNoSplay+0x93
fffff880`06e0d690 fffff880`010082c8 : fffff880`06e0d600 00000000`00000018 fffff880`06e0d8f0 00000000`00008000 : fltmgr!TreeUnlinkNoBalance+0x13
fffff880`06e0d6c0 fffff880`010262af : ffffffff`ffffffff fffffa80`0d3d3010 fffff880`6e664d46 fffff880`010289a1 : fltmgr!TreeUnlinkMulti+0x148
fffff880`06e0d710 fffff880`010289e9 : ffffffff`ffffffff fffffa80`11ceb6f0 fffffa80`0d3d3010 fffffa80`11d066a0 : fltmgr!DeleteNameCacheNodes+0x9f
fffff880`06e0d750 fffff880`010362bf : fffffa80`11ceb6f0 fffffa80`11d066a0 00000000`00000000 00000000`00000000 : fltmgr!PurgeStreamNameCache+0xa9
fffff880`06e0d790 fffff880`0102da10 : fffffa80`111427b0 fffffa80`0d3d3010 00000000`00000000 00000000`15000001 : fltmgr!FltpPurgeVolumeNameCache+0x7f
fffff880`06e0d7d0 fffff880`01028b9b : fffffa80`0d3d3010 fffff880`06e0d880 fffffa80`1505a360 00000000`00000000 : fltmgr! ?? ::NNGAKEGL::`string'+0x1a04
fffff880`06e0d810 fffff880`0100d79b : fffffa80`1481b368 fffffa80`103af620 fffffa80`142c8e40 fffff880`06e0d7e8 : fltmgr!FltpReinstateNameCachingAllFrames+0x4b
fffff880`06e0d840 fffff880`010046df : fffffa80`0d328de0 00000000`00000000 fffffa80`0d328d00 fffffa80`1481b010 : fltmgr! ?? ::FNODOBFM::`string'+0x2c62
fffff880`06e0d8d0 fffff800`039a598a : fffffa80`1481b3b0 fffff880`06e0db60 00000000`00000000 ffffffff`80000a10 : fltmgr!FltpDispatch+0xcf
fffff880`06e0d930 fffff800`036c2693 : 00000000`000008c8 00000000`02ffe228 00000000`02ffea50 fffff800`000000b4 : nt!NtSetInformationFile+0xf24
fffff880`06e0da70 00000000`7730bfaa : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`02ffe0d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7730bfaa
 
 
THREAD_SHA1_HASH_MOD_FUNC:  b4dd3be5a028acc860ff269c4cc1c75f3704b675
 
THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  9492628c581f4508242baaa817350e89feb85eb2
 
THREAD_SHA1_HASH_MOD:  d28087997329faedf00d2fb979d2724331779a95
 
FOLLOWUP_IP: 
nt!RtlDeleteNoSplay+93
fffff800`036a72e3 488909          mov     qword ptr [rcx],rcx
 
FAULT_INSTR_CODE:  48098948
 
SYMBOL_STACK_INDEX:  0
 
SYMBOL_NAME:  nt!RtlDeleteNoSplay+93
 
FOLLOWUP_NAME:  MachineOwner
 
MODULE_NAME: nt
 
IMAGE_NAME:  ntkrnlmp.exe
 
DEBUG_FLR_IMAGE_TIMESTAMP:  57fcfdf3
 
IMAGE_VERSION:  6.1.7601.23572
 
STACK_COMMAND:  .cxr 0xfffff88006e0cc80 ; kb
 
FAILURE_BUCKET_ID:  X64_0x3B_nt!RtlDeleteNoSplay+93
 
BUCKET_ID:  X64_0x3B_nt!RtlDeleteNoSplay+93
 
PRIMARY_PROBLEM_CLASS:  X64_0x3B_nt!RtlDeleteNoSplay+93
 
TARGET_TIME:  2016-11-25T15:40:11.000Z
 
OSBUILD:  7601
 
OSSERVICEPACK:  1000
 
SERVICEPACK_NUMBER: 0
 
OS_REVISION: 0
 
SUITE_MASK:  272
 
PRODUCT_TYPE:  1
 
OSPLATFORM_TYPE:  x64
 
OSNAME:  Windows 7
 
OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS
 
OS_LOCALE:  
 
USER_LCID:  0
 
OSBUILD_TIMESTAMP:  2016-10-11 15:57:55
 
BUILDDATESTAMP_STR:  161011-0600
 
BUILDLAB_STR:  win7sp1_ldr
 
BUILDOSVER_STR:  6.1.7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
ANALYSIS_SESSION_ELAPSED_TIME: 8df
 
ANALYSIS_SOURCE:  KM
 
FAILURE_ID_HASH_STRING:  km:x64_0x3b_nt!rtldeletenosplay+93
 
FAILURE_ID_HASH:  {649d6db5-2c6d-e727-e730-594ddd42da28}
 
Followup:     MachineOwner
---------
 
 
Minidump file 1 (22-11-2016)
 
 
Microsoft ® Windows Debugger Version 10.0.14321.1024 AMD64
Copyright © Microsoft Corporation. All rights reserved.
 
 
Loading Dump File [C:\Windows\Minidump\112216-11029-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
 
 
************* Symbol Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.23572.amd64fre.win7sp1_ldr.161011-0600
Machine Name:
Kernel base = 0xfffff800`03001000 PsLoadedModuleList = 0xfffff800`03243730
Debug session time: Tue Nov 22 16:05:21.681 2016 (UTC + 0:00)
System Uptime: 0 days 2:25:44.633
Loading Kernel Symbols
.
 
Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.
 
..............................................................
................................................................
...............................................................
Loading User Symbols
Loading unloaded module list
........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
Use !analyze -v to get detailed debugging information.
 
BugCheck 1A, {888a, fffff8a0283dc298, fffff680000d46fb, fffffa8007d10ed0}
 
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+32170 )
 
Followup:     MachineOwner
---------
 
0: kd> !analyse -v
No export analyse found
0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
MEMORY_MANAGEMENT (1a)
    # Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 000000000000888a, Internal memory management structures (likely the PTE or PFN) are corrupt.
Arg2: fffff8a0283dc298
Arg3: fffff680000d46fb
Arg4: fffffa8007d10ed0
 
Debugging Details:
------------------
 
 
DUMP_CLASS: 1
 
DUMP_QUALIFIER: 400
 
BUILD_VERSION_STRING:  7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
SYSTEM_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
SYSTEM_PRODUCT_NAME:  G1.Sniper B5
 
SYSTEM_SKU:  To be filled by O.E.M.
 
SYSTEM_VERSION:  To be filled by O.E.M.
 
BIOS_VENDOR:  American Megatrends Inc.
 
BIOS_VERSION:  F2
 
BIOS_DATE:  09/16/2014
 
BASEBOARD_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
BASEBOARD_PRODUCT:  G1.Sniper B5-CF
 
BASEBOARD_VERSION:  x.x
 
DUMP_TYPE:  2
 
BUGCHECK_P1: 888a
 
BUGCHECK_P2: fffff8a0283dc298
 
BUGCHECK_P3: fffff680000d46fb
 
BUGCHECK_P4: fffffa8007d10ed0
 
BUGCHECK_STR:  0x1a_888a
 
CPU_COUNT: 4
 
CPU_MHZ: c78
 
CPU_VENDOR:  GenuineIntel
 
CPU_FAMILY: 6
 
CPU_MODEL: 3c
 
CPU_STEPPING: 3
 
CPU_MICROCODE: 6,3c,3,0 (F,M,S,R)  SIG: 1C'00000000 (cache) 12'00000000 (init)
 
CUSTOMER_CRASH_COUNT:  1
 
DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT
 
PROCESS_NAME:  chrome.exe
 
CURRENT_IRQL:  2
 
ANALYSIS_SESSION_HOST:  ROSE-PC
 
ANALYSIS_SESSION_TIME:  11-25-2016 16:12:46.0739
 
ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
 
LAST_CONTROL_TRANSFER:  from fffff800030e6c9e to fffff80003071400
 
STACK_TEXT:  
fffff880`0e5ea748 fffff800`030e6c9e : 00000000`0000001a 00000000`0000888a fffff8a0`283dc298 fffff680`000d46fb : nt!KeBugCheckEx
fffff880`0e5ea750 fffff800`0308f955 : 00000000`00000000 80000002`9b04f820 fffffa80`05fffbb0 fffffa80`14aa43f8 : nt! ?? ::FNODOBFM::`string'+0x32170
fffff880`0e5ea7e0 fffff800`0308e003 : 00000000`001fffe9 00000000`6b360000 fffff680`00359b00 fffffa80`14aa43f8 : nt!MiResolveProtoPteFault+0x325
fffff880`0e5ea870 fffff800`0307d999 : 00000000`00000000 00000000`6b360000 fffffa80`15b34550 00000000`00000000 : nt!MiDispatchFault+0x1c3
fffff880`0e5ea980 fffff800`0306f52e : 00000000`00000000 00000000`6b360000 fffffa80`0cdb5901 00000000`772e0214 : nt!MmAccessFault+0x359
fffff880`0e5eaae0 00000000`7720f58f : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
00000000`06cee6bc 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7720f58f
 
 
STACK_COMMAND:  kb
 
THREAD_SHA1_HASH_MOD_FUNC:  e5112e4f59cfc74df9ed1ec2ef01d514967532ff
 
THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  b364c20b3ef1df5b1cfc21c2ed50c9ef0f575eb5
 
THREAD_SHA1_HASH_MOD:  ee8fcf1fb60cb6e3e2f60ddbed2ec02b5748a693
 
FOLLOWUP_IP: 
nt! ?? ::FNODOBFM::`string'+32170
fffff800`030e6c9e cc              int     3
 
FAULT_INSTR_CODE:  ce8b48cc
 
SYMBOL_STACK_INDEX:  1
 
SYMBOL_NAME:  nt! ?? ::FNODOBFM::`string'+32170
 
FOLLOWUP_NAME:  MachineOwner
 
MODULE_NAME: nt
 
IMAGE_NAME:  ntkrnlmp.exe
 
DEBUG_FLR_IMAGE_TIMESTAMP:  57fcfdf3
 
IMAGE_VERSION:  6.1.7601.23572
 
FAILURE_BUCKET_ID:  X64_0x1a_888a_nt!_??_::FNODOBFM::_string_+32170
 
BUCKET_ID:  X64_0x1a_888a_nt!_??_::FNODOBFM::_string_+32170
 
PRIMARY_PROBLEM_CLASS:  X64_0x1a_888a_nt!_??_::FNODOBFM::_string_+32170
 
TARGET_TIME:  2016-11-22T16:05:21.000Z
 
OSBUILD:  7601
 
OSSERVICEPACK:  1000
 
SERVICEPACK_NUMBER: 0
 
OS_REVISION: 0
 
SUITE_MASK:  272
 
PRODUCT_TYPE:  1
 
OSPLATFORM_TYPE:  x64
 
OSNAME:  Windows 7
 
OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS
 
OS_LOCALE:  
 
USER_LCID:  0
 
OSBUILD_TIMESTAMP:  2016-10-11 15:57:55
 
BUILDDATESTAMP_STR:  161011-0600
 
BUILDLAB_STR:  win7sp1_ldr
 
BUILDOSVER_STR:  6.1.7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
ANALYSIS_SESSION_ELAPSED_TIME: 44e
 
ANALYSIS_SOURCE:  KM
 
FAILURE_ID_HASH_STRING:  km:x64_0x1a_888a_nt!_??_::fnodobfm::_string_+32170
 
FAILURE_ID_HASH:  {67952050-c29b-1f5c-0cd9-067cc65afd4f}
 
Followup:     MachineOwner
---------
 

 

 

Minidump file 2 (23-11-2016)

 

 

 
Microsoft ® Windows Debugger Version 10.0.14321.1024 AMD64
Copyright © Microsoft Corporation. All rights reserved.
 
 
Loading Dump File [C:\Windows\Minidump\112316-11996-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
 
 
************* Symbol Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.23572.amd64fre.win7sp1_ldr.161011-0600
Machine Name:
Kernel base = 0xfffff800`03209000 PsLoadedModuleList = 0xfffff800`0344b730
Debug session time: Wed Nov 23 20:09:20.546 2016 (UTC + 0:00)
System Uptime: 0 days 9:49:05.872
Loading Kernel Symbols
.
 
Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.
 
..............................................................
................................................................
...............................................................
Loading User Symbols
Loading unloaded module list
............
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
Use !analyze -v to get detailed debugging information.
 
BugCheck 24, {1904fb, fffff8800b16b0a8, fffff8800b16a900, fffff8000322964d}
 
Probably caused by : ntkrnlmp.exe ( nt!RealSuccessor+39 )
 
Followup:     MachineOwner
---------
 
0: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
NTFS_FILE_SYSTEM (24)
    If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
    parameters are the exception record and context record. Do a .cxr
    on the 3rd parameter and then kb to obtain a more informative stack
    trace.
Arguments:
Arg1: 00000000001904fb
Arg2: fffff8800b16b0a8
Arg3: fffff8800b16a900
Arg4: fffff8000322964d
 
Debugging Details:
------------------
 
 
DUMP_CLASS: 1
 
DUMP_QUALIFIER: 400
 
BUILD_VERSION_STRING:  7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
SYSTEM_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
SYSTEM_PRODUCT_NAME:  G1.Sniper B5
 
SYSTEM_SKU:  To be filled by O.E.M.
 
SYSTEM_VERSION:  To be filled by O.E.M.
 
BIOS_VENDOR:  American Megatrends Inc.
 
BIOS_VERSION:  F2
 
BIOS_DATE:  09/16/2014
 
BASEBOARD_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
BASEBOARD_PRODUCT:  G1.Sniper B5-CF
 
BASEBOARD_VERSION:  x.x
 
DUMP_TYPE:  2
 
BUGCHECK_P1: 1904fb
 
BUGCHECK_P2: fffff8800b16b0a8
 
BUGCHECK_P3: fffff8800b16a900
 
BUGCHECK_P4: fffff8000322964d
 
EXCEPTION_RECORD:  fffff8800b16b0a8 -- (.exr 0xfffff8800b16b0a8)
ExceptionAddress: fffff8000322964d (nt!RealSuccessor+0x0000000000000039)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 0000000000000000
   Parameter[1]: 0000000000000088
Attempt to read from address 0000000000000088
 
CONTEXT:  fffff8800b16a900 -- (.cxr 0xfffff8800b16a900)
rax=0000000000000080 rbx=fffff8a01f593040 rcx=0000000000000080
rdx=fffff8800b16b3b0 rsi=fffffa800dfdbc70 rdi=fffff8a01f593010
rip=fffff8000322964d rsp=fffff8800b16b2e8 rbp=fffff8800b16b5e0
 r8=0000000000000000  r9=0000000000000000 r10=fffff8800b16b3b0
r11=fffff8800b16b2d0 r12=0000000000000000 r13=fffffa800d777180
r14=0000000000000702 r15=0000000000000705
iopl=0         nv up ei pl nz na pe nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010202
nt!RealSuccessor+0x39:
fffff800`0322964d 488b4908        mov     rcx,qword ptr [rcx+8] ds:002b:00000000`00000088=????????????????
Resetting default scope
 
CPU_COUNT: 4
 
CPU_MHZ: c78
 
CPU_VENDOR:  GenuineIntel
 
CPU_FAMILY: 6
 
CPU_MODEL: 3c
 
CPU_STEPPING: 3
 
CPU_MICROCODE: 6,3c,3,0 (F,M,S,R)  SIG: 1C'00000000 (cache) 12'00000000 (init)
 
CUSTOMER_CRASH_COUNT:  1
 
PROCESS_NAME:  System
 
CURRENT_IRQL:  0
 
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
 
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
 
EXCEPTION_CODE_STR:  c0000005
 
EXCEPTION_PARAMETER1:  0000000000000000
 
EXCEPTION_PARAMETER2:  0000000000000088
 
FOLLOWUP_IP: 
nt!RealSuccessor+39
fffff800`0322964d 488b4908        mov     rcx,qword ptr [rcx+8]
 
FAULTING_IP: 
nt!RealSuccessor+39
fffff800`0322964d 488b4908        mov     rcx,qword ptr [rcx+8]
 
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800034b5100
Unable to get MmSystemRangeStart
GetUlongPtrFromAddress: unable to read from fffff800034b52e8
GetUlongPtrFromAddress: unable to read from fffff800034b5498
GetPointerFromAddress: unable to read from fffff800034b50b8
 0000000000000088 
 
BUGCHECK_STR:  0x24
 
DEFAULT_BUCKET_ID:  NULL_CLASS_PTR_DEREFERENCE
 
ANALYSIS_SESSION_HOST:  ROSE-PC
 
ANALYSIS_SESSION_TIME:  11-25-2016 16:18:22.0033
 
ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
 
LAST_CONTROL_TRANSFER:  from fffff800032498d5 to fffff8000322964d
 
STACK_TEXT:  
fffff880`0b16b2e8 fffff800`032498d5 : fffffa80`0dfdbc70 fffffa80`0dfdbc70 fffffa80`0dfdbc70 fffffa80`0dfdbc70 : nt!RealSuccessor+0x39
fffff880`0b16b2f0 fffff880`0129b307 : fffff8a0`1f593040 fffff880`0b16b5e0 fffff8a0`1f593010 fffffa80`0dfdbc70 : nt!RtlEnumerateGenericTableWithoutSplayingAvl+0x1d
fffff880`0b16b320 fffff880`012a3c5c : fffffa80`0dfdbc70 fffffa80`0d777180 00000000`00100001 00000000`00000000 : Ntfs!NtfsFlushVolume+0x437
fffff880`0b16b450 fffff880`012a43ad : fffffa80`0dfdbc70 fffffa80`11324c60 fffffa80`10315520 00000000`00000000 : Ntfs!NtfsCommonFlushBuffers+0x44c
fffff880`0b16b530 fffff880`01136bcf : fffffa80`11324fb8 fffffa80`11324c60 fffffa80`0dfdbc70 fffff880`0b16b558 : Ntfs!NtfsFsdFlushBuffers+0x10d
fffff880`0b16b5a0 fffff880`011356df : fffffa80`0d2aede0 00000000`00000000 fffffa80`0d2aed00 fffffa80`11324c60 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
fffff880`0b16b630 fffff800`0358857a : 00000000`00000002 fffffa80`10315520 00000000`00000000 fffffa80`11324c60 : fltmgr!FltpDispatch+0xcf
fffff880`0b16b690 fffff800`035172bd : fffffa80`11324c60 fffffa80`0ff55a50 fffffa80`10315520 fffff880`02fd7180 : nt!IopSynchronousServiceTail+0xfa
fffff880`0b16b700 fffff800`03278693 : fffffa80`0ff55a50 fffffa80`0ca596d0 fffffa80`0d2aede0 fffffa80`10315520 : nt!NtFlushBuffersFile+0x171
fffff880`0b16b790 fffff800`03274c50 : fffff800`034c48fd 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
fffff880`0b16b928 fffff800`034c48fd : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiServiceLinkage
fffff880`0b16b930 fffff800`03514236 : 00000000`00000080 fffffa80`0ff55a50 00000000`00000080 00000000`00000001 : nt!PopFlushVolumeWorker+0x1bd
fffff880`0b16bc00 fffff800`0326a706 : fffff880`02fd7180 fffffa80`0ff55a50 fffff880`02fe1fc0 850025e0`2d1bf5dd : nt!PspSystemThreadStartup+0x5a
fffff880`0b16bc40 00000000`00000000 : fffff880`0b16c000 fffff880`0b166000 fffff880`0b16a9a0 00000000`00000000 : nt!KxStartSystemThread+0x16
 
 
THREAD_SHA1_HASH_MOD_FUNC:  b2797feaae6c31d4e389bc6b778a91e06ab24aec
 
THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  b4022b8167ce3899003ab59ac7603a84aebd213f
 
THREAD_SHA1_HASH_MOD:  c5f0a9eee86a3232b557fc1736403a95630ca974
 
FAULT_INSTR_CODE:  8498b48
 
SYMBOL_STACK_INDEX:  0
 
SYMBOL_NAME:  nt!RealSuccessor+39
 
FOLLOWUP_NAME:  MachineOwner
 
MODULE_NAME: nt
 
IMAGE_NAME:  ntkrnlmp.exe
 
DEBUG_FLR_IMAGE_TIMESTAMP:  57fcfdf3
 
IMAGE_VERSION:  6.1.7601.23572
 
STACK_COMMAND:  .cxr 0xfffff8800b16a900 ; kb
 
FAILURE_BUCKET_ID:  X64_0x24_nt!RealSuccessor+39
 
BUCKET_ID:  X64_0x24_nt!RealSuccessor+39
 
PRIMARY_PROBLEM_CLASS:  X64_0x24_nt!RealSuccessor+39
 
TARGET_TIME:  2016-11-23T20:09:20.000Z
 
OSBUILD:  7601
 
OSSERVICEPACK:  1000
 
SERVICEPACK_NUMBER: 0
 
OS_REVISION: 0
 
SUITE_MASK:  272
 
PRODUCT_TYPE:  1
 
OSPLATFORM_TYPE:  x64
 
OSNAME:  Windows 7
 
OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS
 
OS_LOCALE:  
 
USER_LCID:  0
 
OSBUILD_TIMESTAMP:  2016-10-11 15:57:55
 
BUILDDATESTAMP_STR:  161011-0600
 
BUILDLAB_STR:  win7sp1_ldr
 
BUILDOSVER_STR:  6.1.7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
ANALYSIS_SESSION_ELAPSED_TIME: 463
 
ANALYSIS_SOURCE:  KM
 
FAILURE_ID_HASH_STRING:  km:x64_0x24_nt!realsuccessor+39
 
FAILURE_ID_HASH:  {8c2c0267-7e57-1df3-2e55-c6322a21699d}
 
Followup:     MachineOwner
---------
 
 
Minidump file 3 (25-11-2016)
 
 
Microsoft ® Windows Debugger Version 10.0.14321.1024 AMD64
Copyright © Microsoft Corporation. All rights reserved.
 
 
Loading Dump File [C:\Windows\Minidump\112516-14788-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
 
 
************* Symbol Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: 
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.23572.amd64fre.win7sp1_ldr.161011-0600
Machine Name:
Kernel base = 0xfffff800`03653000 PsLoadedModuleList = 0xfffff800`03895730
Debug session time: Fri Nov 25 15:40:11.508 2016 (UTC + 0:00)
System Uptime: 0 days 7:01:57.835
Loading Kernel Symbols
.
 
Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.
 
..............................................................
................................................................
................................................................
......
Loading User Symbols
Loading unloaded module list
.........
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
Use !analyze -v to get detailed debugging information.
 
BugCheck 3B, {c0000005, fffff800036a72e3, fffff88006e0cc80, 0}
 
Probably caused by : ntkrnlmp.exe ( nt!RtlDeleteNoSplay+93 )
 
Followup:     MachineOwner
---------
 
3: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************
 
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800036a72e3, Address of the instruction which caused the bugcheck
Arg3: fffff88006e0cc80, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
 
Debugging Details:
------------------
 
 
DUMP_CLASS: 1
 
DUMP_QUALIFIER: 400
 
BUILD_VERSION_STRING:  7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
SYSTEM_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
SYSTEM_PRODUCT_NAME:  G1.Sniper B5
 
SYSTEM_SKU:  To be filled by O.E.M.
 
SYSTEM_VERSION:  To be filled by O.E.M.
 
BIOS_VENDOR:  American Megatrends Inc.
 
BIOS_VERSION:  F2
 
BIOS_DATE:  09/16/2014
 
BASEBOARD_MANUFACTURER:  Gigabyte Technology Co., Ltd.
 
BASEBOARD_PRODUCT:  G1.Sniper B5-CF
 
BASEBOARD_VERSION:  x.x
 
DUMP_TYPE:  2
 
BUGCHECK_P1: c0000005
 
BUGCHECK_P2: fffff800036a72e3
 
BUGCHECK_P3: fffff88006e0cc80
 
BUGCHECK_P4: 0
 
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
 
FAULTING_IP: 
nt!RtlDeleteNoSplay+93
fffff800`036a72e3 488909          mov     qword ptr [rcx],rcx
 
CONTEXT:  fffff88006e0cc80 -- (.cxr 0xfffff88006e0cc80)
rax=fffff8a024295ab8 rbx=fbfffa8011d06738 rcx=fbfff8a0242ab028
rdx=fbfffa8011d06738 rsi=fffffa8011d06730 rdi=fffff8a0165ace58
rip=fffff800036a72e3 rsp=fffff88006e0d660 rbp=fffffa8011d06738
 r8=fffff8a0165ace58  r9=ffffffffffffffff r10=fffff80003653000
r11=fffff8a024295ab8 r12=ffffffffffffffff r13=fffffa800d3d3684
r14=0000000000004000 r15=fffff88006e0d8f0
iopl=0         nv up ei pl zr na po nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00010246
nt!RtlDeleteNoSplay+0x93:
fffff800`036a72e3 488909          mov     qword ptr [rcx],rcx ds:002b:fbfff8a0`242ab028=????????????????
Resetting default scope
 
CPU_COUNT: 4
 
CPU_MHZ: c78
 
CPU_VENDOR:  GenuineIntel
 
CPU_FAMILY: 6
 
CPU_MODEL: 3c
 
CPU_STEPPING: 3
 
CPU_MICROCODE: 6,3c,3,0 (F,M,S,R)  SIG: 1C'00000000 (cache) 12'00000000 (init)
 
CUSTOMER_CRASH_COUNT:  1
 
DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT
 
BUGCHECK_STR:  0x3B
 
PROCESS_NAME:  chrome.exe
 
CURRENT_IRQL:  0
 
ANALYSIS_SESSION_HOST:  ROSE-PC
 
ANALYSIS_SESSION_TIME:  11-25-2016 16:22:16.0057
 
ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
 
LAST_CONTROL_TRANSFER:  from 0000000000000000 to fffff800036a72e3
 
STACK_TEXT:  
fffff880`06e0d660 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!RtlDeleteNoSplay+0x93
 
 
THREAD_SHA1_HASH_MOD_FUNC:  52a9d222ac71d99d8403b2aadc205b4d7bfd94ff
 
THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  ef9d5d0f118f60c8cb142448e44284769781f32d
 
THREAD_SHA1_HASH_MOD:  76cd06466d098060a9eb26e5fd2a25cb1f3fe0a3
 
FOLLOWUP_IP: 
nt!RtlDeleteNoSplay+93
fffff800`036a72e3 488909          mov     qword ptr [rcx],rcx
 
FAULT_INSTR_CODE:  48098948
 
SYMBOL_STACK_INDEX:  0
 
SYMBOL_NAME:  nt!RtlDeleteNoSplay+93
 
FOLLOWUP_NAME:  MachineOwner
 
MODULE_NAME: nt
 
IMAGE_NAME:  ntkrnlmp.exe
 
DEBUG_FLR_IMAGE_TIMESTAMP:  57fcfdf3
 
IMAGE_VERSION:  6.1.7601.23572
 
STACK_COMMAND:  .cxr 0xfffff88006e0cc80 ; kb
 
FAILURE_BUCKET_ID:  X64_0x3B_nt!RtlDeleteNoSplay+93
 
BUCKET_ID:  X64_0x3B_nt!RtlDeleteNoSplay+93
 
PRIMARY_PROBLEM_CLASS:  X64_0x3B_nt!RtlDeleteNoSplay+93
 
TARGET_TIME:  2016-11-25T15:40:11.000Z
 
OSBUILD:  7601
 
OSSERVICEPACK:  1000
 
SERVICEPACK_NUMBER: 0
 
OS_REVISION: 0
 
SUITE_MASK:  272
 
PRODUCT_TYPE:  1
 
OSPLATFORM_TYPE:  x64
 
OSNAME:  Windows 7
 
OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS
 
OS_LOCALE:  
 
USER_LCID:  0
 
OSBUILD_TIMESTAMP:  2016-10-11 15:57:55
 
BUILDDATESTAMP_STR:  161011-0600
 
BUILDLAB_STR:  win7sp1_ldr
 
BUILDOSVER_STR:  6.1.7601.23572.amd64fre.win7sp1_ldr.161011-0600
 
ANALYSIS_SESSION_ELAPSED_TIME: 445
 
ANALYSIS_SOURCE:  KM
 
FAILURE_ID_HASH_STRING:  km:x64_0x3b_nt!rtldeletenosplay+93
 
FAILURE_ID_HASH:  {649d6db5-2c6d-e727-e730-594ddd42da28}
 
Followup:     MachineOwner
---------
 
 
Notes:
The most recent crash was today again after I left my pc in sleep mode for a few hours before waking it up - it crashed on waking up again. 

I'll try scanning my SSD/HDD's later today too, I know that process often takes a long time so I'll probably leave it for dinner time haha.

 

Edit:

I've started attempting the Windows Driver Verifier method, and although I didn't get a BSoD, I instead had a screen issue where it froze and my desktop was distorted. 

 

Edit2:

Running the Seagate tests - I've started with smart and short generic, both pass, currently running long generic which the SSD has passed, HDD is still going but I don't expect issues. 


Edited by MsImAQuickStudy, 25 November 2016 - 05:12 PM.


#11 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 30 November 2016 - 10:11 AM

Alright, so I reinstalled many drivers, including my graphics driver. One thing I noticed when I uninstalled it was that the 'Sleep' option was greyed out again and Hibernate was available again (like before the crashes). 

 

I didn't let my pc go into sleep mode over the past 4-5 days, no issues, no BSoD's, all fine. Today I let it go into sleep mode and when waking up it didn't BSoD, but my screen never turned on, so the GPU didn't seem to wake up correctly (it has done this before). I hit the soft reset on my case and it woke up. 

 

Another thing is that, although I installed the drivers and had no issues (that I could find) when doing so, none of the driver utilities show up that I used to have. E.g. Radeon Settings. I can run games just fine, no problem, but it seems like something's still not right.

 

 

Does anyone have any ideas about how to solve this?

 

 

Sidenote:

I just noticed that I downloaded a new version of AMD driver an 16/10/2016, which is also the exact date my problems seem to have started. 


Edited by MsImAQuickStudy, 30 November 2016 - 10:32 AM.


#12 JinXiang91

JinXiang91

  • Members
  • 97 posts
  • OFFLINE
  •  

Posted 30 November 2016 - 10:39 AM

Alright, so I reinstalled many drivers, including my graphics driver. One thing I noticed when I uninstalled it was that the 'Sleep' option was greyed out again and Hibernate was available again (like before the crashes). 

 

I didn't let my pc go into sleep mode over the past 4-5 days, no issues, no BSoD's, all fine. Today I let it go into sleep mode and when waking up it didn't BSoD, but my screen never turned on, so the GPU didn't seem to wake up correctly (it has done this before). I hit the soft reset on my case and it woke up. 

 

Another thing is that, although I installed the drivers and had no issues (that I could find) when doing so, none of the driver utilities show up that I used to have. E.g. Radeon Settings. I can run games just fine, no problem, but it seems like something's still not right.

 

 

Does anyone have any ideas about how to solve this?

 

 

Sidenote:

I just noticed that I downloaded a new version of AMD driver an 16/10/2016, which is also the exact date my problems seem to have started. 

Hi,

Please check for the following problems from this article : https://support.microsoft.com/en-us/kb/266283

I can't deduce whether is it a power management issue for your PC or something even more complicated.

- P.S : Newest Graphic driver always have a tendency to crash some systems if the patch is not compatible. It is common, you can revert to their older drivers and wait patiently for their next newest update batch to see if it could solve the problem.

Thanks.



#13 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 30 November 2016 - 11:00 AM

I don't own any Microsoft peripherals, so I don't think it's that. My PC, keyboard and mouse all respond fine - my PC's fans whiz for a second or so, my keyboard and mouse light up quickly. The only think that doesn't respond is my monitor, even though I've tried turning the individual monitor on and off to see if that's the issue, but my monitor will tell me it's not receiving any input. And of course the fact that sometimes it gives me a BSOD when I wake it up.



#14 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:24 AM

Posted 01 December 2016 - 03:10 PM

And the BSOD's are back, this time a new variety:

 

On Thu 01/12/2016 20:05:54 your computer crashed
crash dump file: C:\Windows\Minidump\120116-13728-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0x70400)
Bugcheck code: 0x50 (0xFFFFFFDEFFFF0000, 0x0, 0xFFFFF800036C419C, 0x5)
Error: PAGE_FAULT_IN_NONPAGED_AREA
file path: C:\Windows\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that invalid system memory has been referenced.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.



On Thu 01/12/2016 20:05:54 your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: ntkrnlmp.exe (nt!KeBugCheckEx+0x0)
Bugcheck code: 0x50 (0xFFFFFFDEFFFF0000, 0x0, 0xFFFFF800036C419C, 0x5)
Error: PAGE_FAULT_IN_NONPAGED_AREA
Bug check description: This indicates that invalid system memory has been referenced.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. 

 

 

---

 

I've also had a USB 'fried', it seems unusable now.. Which is worrying. 



#15 JinXiang91

JinXiang91

  • Members
  • 97 posts
  • OFFLINE
  •  

Posted 02 December 2016 - 11:13 AM

And the BSOD's are back, this time a new variety:

 

On Thu 01/12/2016 20:05:54 your computer crashed
crash dump file: C:\Windows\Minidump\120116-13728-01.dmp
This was probably caused by the following module: ntoskrnl.exe (nt+0x70400)
Bugcheck code: 0x50 (0xFFFFFFDEFFFF0000, 0x0, 0xFFFFF800036C419C, 0x5)
Error: PAGE_FAULT_IN_NONPAGED_AREA
file path: C:\Windows\system32\ntoskrnl.exe
product: Microsoft® Windows® Operating System
company: Microsoft Corporation
description: NT Kernel & System
Bug check description: This indicates that invalid system memory has been referenced.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.



On Thu 01/12/2016 20:05:54 your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: ntkrnlmp.exe (nt!KeBugCheckEx+0x0)
Bugcheck code: 0x50 (0xFFFFFFDEFFFF0000, 0x0, 0xFFFFF800036C419C, 0x5)
Error: PAGE_FAULT_IN_NONPAGED_AREA
Bug check description: This indicates that invalid system memory has been referenced.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. 

 

 

---

 

I've also had a USB 'fried', it seems unusable now.. Which is worrying. 

Hi,

Please advise if your Catalyst is running in default mode?

Please run a test for your PSU (http://www.ocbase.com/) and revert the results.

I want to convince that this is not a voltage setting problem.

Thanks.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users