Jump to content

BSOD Kernel mode trap with 3.1.2.1733 Web Protection Active


Recommended Posts

Like the title with version 3.1.2.1733 web protection active machine crash with BSOD 07f KERNEL MODE TRAP.

If i disable web protection machine works without issues.

Reproducted on 3 machines.

Windows 7 Pro x64

 

Urgent,

i have A LOT of customers using MBAM, i can only imagine the amount of problems i'm going to run into if this will start happening on all machines....

Addition.txt

FRST.txt

mb-check-results.zip

logs.zip

perfmon.zip

SysnativeFileCollectionApp.zip

Link to post
Share on other sites

No USB Wireless dongles. But there is integrated wireless controller (disabled). These are Lenovo All In One machines.

The BSOD happens every single time a browser is opened (no matter which browser, tried ie, chrome, firefox... always BSOD)

Edited by andreacc81
Link to post
Share on other sites

Looks like we'll need a full memory dump instead of a minidump. Can you try the following please:

  1. Press Windows Key + R to open the run dialog
  2. In the window that comes up, type sysdm.cpl and click Ok
  3. In the Window that comes up, click the Advanced tab along the top
  4. Under the Startup and Recovery section, click settings
  5. In the System Failure section, under the Write Debugging Information section, please change the dropdown to Complete Memory Dump
  6. Click Ok to save the changes
  7. Now turn on Web Protection and open a browser so your computer crashes
  8. Once your computer reboots, please navigate to C:\Windows and there should be a file named MEMORY.dmp
  9. Right click MEMORY.dmp and choose Send to -> Compressed (Zipped) folder to create a zip file on your desktop
  10. You can try to attach the file as a reply here, but it may too big. If so, please use wetransfer.com to send the file to dcollins@malwarebytes.com

Thanks!

Link to post
Share on other sites

I have 3 option (i'm translating from italian)

- Kernel memory dump (already selected)

- Memory dump reduced (256 KB)

- None

Nothing about a complete memory dump. The most complete i think is the first one that was already selected and the dumps you have are generated with this setting.

In the next hours i'm generating and sending you another dump, just to be sure.

Meanwhile have you other ideas to generate the full dump you need?

Thanks

Edited by andreacc81
Link to post
Share on other sites

Yes, uninstalling k9 everything works.

I saw you advice other users to disable the k9 service but, altought this stops the BSOD, it will kill your ability to surf the web since you will start facing a page stating that k9 is not working proprerly. The only real solution is to uninstall it completly

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.