Jump to content

Crash Dump


Recommended Posts


On Sat 3/1/2014 9:19:47 PM GMT your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: ntkrpamp.exe (nt!ZwYieldExecution+0xEC5)
Bugcheck code: 0x4A (0xFFFFFFFF82C99482, 0xFFFFFFFFC0000001, 0x0, 0x0)
Error: IRQL_GT_ZERO_AT_SYSTEM_SERVICE
Bug check description: This indicates that a thread is returning to user mode from a system call when its IRQL is still above PASSIVE_LEVEL.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: ntkrpamp.exe .
Google query: ntkrpamp.exe IRQL_GT_ZERO_AT_SYSTEM_SERVICE 

 

--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------

 

 

Cannot Scan with  Malwarebytes Anti-Malware.After the download I select RUN and get "Setup Files Corrupted.. restore  last known

 

good configuration (every switch on) keyboard inteaface error (PS\2 port not working) ......

 

.dds notepad  and attach notepad...txt....beelow...

 

 

 

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 3/1/2014 6:55:20 AM
System Uptime: 3/1/2014 1:21:40 PM (0 hours ago)
.
Motherboard: ASUSTeK Computer INC. |  | P5SD2-VM
Processor: Pentium® Dual-Core  CPU      E5200  @ 2.50GHz | LGA 775 | 2500/200mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 75 GiB total, 61.066 GiB free.
D: is FIXED (NTFS) - 298 GiB total, 290.406 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: SiS191 Ethernet Controller
Device ID: PCI\VEN_1039&DEV_0191&SUBSYS_825E1043&REV_02\3&267A616A&0&20
Manufacturer: Silicon Integrated Systems Corp.
Name: SiS191 Ethernet Controller
PNP Device ID: PCI\VEN_1039&DEV_0191&SUBSYS_825E1043&REV_02\3&267A616A&0&20
Service: SiSGbeLH
.
==== System Restore Points ===================
.
RP1: 3/1/2014 7:00:32 AM - Installed Adobe Reader XI.
RP2: 3/1/2014 7:02:35 AM - DriverPack Solution 13
RP3: 3/1/2014 7:21:53 AM - Installed RD9700 USB Ethernet Adapter
RP4: 3/1/2014 7:36:42 AM - Windows Update
RP6: 3/1/2014 7:37:35 AM - Installed Ralink Wireless LAN
RP7: 3/1/2014 7:45:16 AM - Windows Update
RP8: 3/1/2014 1:14:41 PM - Windows Update
.
==== Installed Programs ======================
.
Adobe Flash Player 12 Plugin
Adobe Reader XI (11.0.01)
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Everything 1.2.1.371
Internet Download Manager
Mozilla Firefox 21.0 (x86 en-US)
Mozilla Maintenance Service
Ralink RT2870 Wireless LAN Card
RD9700 USB Ethernet Adapter
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
Realtek High Definition Audio Driver
RealUpgrade 1.1
VLC media player 2.0.7
WhoCrashed 5.00
WinRAR 4.01 (32-bit)
.
==== Event Viewer Messages From Past Week ========
.
3/1/2014 9:24:10 AM, Error: Service Control Manager [7034]  - The Windows Search service terminated unexpectedly.  It has done this 6 time(s).
3/1/2014 9:23:42 AM, Error: Service Control Manager [7034]  - The Windows Search service terminated unexpectedly.  It has done this 5 time(s).
3/1/2014 9:23:01 AM, Error: Service Control Manager [7034]  - The Windows Search service terminated unexpectedly.  It has done this 4 time(s).
3/1/2014 9:21:36 AM, Error: Service Control Manager [7034]  - The Windows Search service terminated unexpectedly.  It has done this 3 time(s).
3/1/2014 9:20:55 AM, Error: Service Control Manager [7032]  - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error:  An instance of the service is already running.
3/1/2014 9:20:25 AM, Error: Service Control Manager [7031]  - The Windows Search service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.
3/1/2014 8:21:30 AM, Error: Service Control Manager [7031]  - The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.
3/1/2014 8:00:43 AM, Error: Service Control Manager [7031]  - The Microsoft .NET Framework NGEN v2.0.50727_X86 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
3/1/2014 7:47:07 AM, Error: E100B [5003]  -
3/1/2014 1:21:48 PM, Error: SiSGbeLH [5008]  - SiS191 Ethernet Controller : Has encountered an invalid network address.
.
==== End Of File ===========================
 

 

 

 

 

 

 

 

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.7600.16385
Run by butterfly at 13:27:58 on 2014-03-01
Microsoft Windows 7 Professional   6.1.7600.0.1252.1.1033.18.2943.2097 [GMT -8:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Ralink\Common\RaRegistry.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Smadav\SMC:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IELowutil.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
.
============== Pseudo HJT Report ===============
.
BHO: IDM integration (IDMIEHlprObj Class): {0055C089-8582-441B-A0BF-17B458C2A3A8} - c:\program files\internet download manager\IDMIECC.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
uRun: [iDMan] c:\program files\internet download manager\IDMan.exe /onboot
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [RTHDVCPL] c:\program files\realtek\audio\hda\RtHDVCpl.exe -s
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\ralink~1.lnk - c:\program files\ralink\common\RaUI.exe
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Download all links with IDM - c:\program files\internet download manager\IEGetAll.htm
IE: Download with IDM - c:\program files\internet download manager\IEExt.htm
TCP: NameServer = 192.168.254.254
TCP: Interfaces\{22098711-4C38-4D53-9497-0F19652AFF6A} : DHCPNameServer = 192.168.254.254
SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\butterfly\appdata\roaming\mozilla\firefox\profiles\ififjrd9.default\
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\real\realplayer\netscape6\nprpplugin.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_12_0_0_43.dll
FF - ExtSQL: 2014-03-01 07:11; {C3949AC2-4B17-43ee-B4F1-D26B9D42404D}; c:\programdata\real\realplayer\browserrecordplugin\firefox\Ext
FF - ExtSQL: 2014-03-01 07:26; mozilla_cc@internetdownloadmanager.com; c:\users\butterfly\appdata\roaming\idm\idmmzcc5
.
============= SERVICES / DRIVERS ===============
.
R2 IDMWFP;IDMWFP;c:\windows\system32\drivers\idmwfp.sys [2012-6-6 96056]
R2 RalinkRegistryWriter;RalinkRegistryWriter;c:\program files\ralink\common\RaRegistry.exe [2014-3-1 375872]
R3 RD9700;RD9700 USB2.0 To Fast Ethernet Adapter;c:\windows\system32\drivers\RD9700.sys [2014-3-1 16512]
R3 SiS6350;SiS6350;c:\windows\system32\drivers\SISGRKMD.sys [2014-3-1 465920]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 netr28u;RT2870 USB Extensible Wireless LAN Card Driver;c:\windows\system32\drivers\netr28u.sys [2014-3-1 1583136]
S3 RaMediaServer;Ralink UPnP Media Server;c:\program files\ralink\common\RaMediaServer.exe [2014-3-1 625728]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\drivers\SiSGB6.sys [2009-6-10 48128]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
.
=============== Created Last 30 ================
.
2014-03-01 21:14:40    826368    ----a-w-    c:\windows\system32\rdpcore.dll
2014-03-01 21:14:40    24064    ----a-w-    c:\windows\system32\drivers\tdtcp.sys
2014-03-01 21:14:40    177152    ----a-w-    c:\windows\system32\drivers\rdpwd.sys
2014-03-01 21:14:34    132608    ----a-w-    c:\windows\system32\cabview.dll
2014-03-01 19:33:20    --------    d-----w-    c:\users\butterfly\appdata\local\Macromedia
2014-03-01 19:31:08    --------    d-----w-    c:\users\butterfly\appdata\local\Mozilla
2014-03-01 18:51:48    --------    d-----w-    c:\users\butterfly\appdata\local\Diagnostics
2014-03-01 15:51:13    --------    d-----w-    c:\users\butterfly\appdata\local\ElevatedDiagnostics
2014-03-01 15:38:41    --------    d-----w-    c:\programdata\Ralink
2014-03-01 15:38:13    --------    d-----w-    c:\programdata\Ralink Driver
2014-03-01 15:37:56    --------    d-----w-    c:\program files\Cisco
2014-03-01 15:37:46    802880    ----a-w-    c:\windows\system32\RAIHV.dll
2014-03-01 15:37:46    480608    ----a-w-    c:\windows\system32\DiagFunc.dll
2014-03-01 15:37:46    1608768    ----a-w-    c:\windows\system32\RaCertMgr.dll
2014-03-01 15:37:46    119648    ----a-w-    c:\windows\system32\RAEXTUI.dll
2014-03-01 15:37:46    --------    d-----w-    c:\windows\system32\RaLanguages
2014-03-01 15:37:46    --------    d-----w-    c:\program files\Ralink
2014-03-01 15:37:18    2422272    ----a-w-    c:\windows\system32\wucltux.dll
2014-03-01 15:36:54    33792    ----a-w-    c:\windows\system32\wuapp.exe
2014-03-01 15:36:54    171904    ----a-w-    c:\windows\system32\wuwebv.dll
2014-03-01 15:32:49    --------    d-----w-    c:\users\butterfly\appdata\roaming\Smadav
2014-03-01 15:32:49    --------    d-----w-    c:\program files\Smadav
2014-03-01 15:32:45    --------    d-sh--w-    C:\[smad-Cage]
2014-03-01 15:26:37    --------    d-----w-    c:\users\butterfly\appdata\roaming\IDM
2014-03-01 15:26:37    --------    d-----w-    c:\users\butterfly\appdata\roaming\DMCache
2014-03-01 15:26:34    --------    d-----w-    c:\program files\Internet Download Manager
2014-03-01 15:25:42    --------    d-----w-    c:\program files\WhoCrashed
2014-03-01 15:25:31    --------    d-----w-    c:\users\butterfly\appdata\local\Programs
2014-03-01 15:25:19    --------    d-----w-    c:\program files\Everything
2014-03-01 15:24:39    --------    d-----w-    c:\program files\VideoLAN
2014-03-01 15:22:09    16512    ----a-w-    c:\windows\system32\drivers\RD9700.sys
2014-03-01 15:17:53    --------    d-----w-    C:\Intel
2014-03-01 15:11:51    --------    d-----w-    c:\program files\common files\xing shared
2014-03-01 15:11:46    499712    ----a-w-    c:\windows\system32\msvcp71.dll
2014-03-01 15:11:46    348160    ----a-w-    c:\windows\system32\msvcr71.dll
2014-03-01 15:03:48    --------    d-----w-    c:\windows\system32\RTCOM
2014-03-01 15:00:04    --------    d-sh--w-    c:\windows\Installer
2014-03-01 14:59:21    --------    d-----w-    c:\windows\system32\wbem\Performance
2014-03-01 14:58:44    71048    ----a-w-    c:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-01 14:58:44    692616    ----a-w-    c:\windows\system32\FlashPlayerApp.exe
2014-03-01 14:46:29    --------    d-----w-    c:\windows\Panther
2014-03-01 14:46:14    --------    d-sh--w-    C:\Boot
.
==================== Find3M  ====================
.
.
============= FINISH: 13:28:21.40 ===============
 

 

 

 

Link to post
Share on other sites

  • Staff

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.