Author Topic: Memory dumps with avast  (Read 7011 times)

0 Members and 1 Guest are viewing this topic.

KeithG

  • Guest
Memory dumps with avast
« on: September 27, 2007, 03:17:06 AM »
Hey all,
I have been using Avast for about a year on my other computer and it has been working great.  Recently i built a new computer that experienced alot of blue screen memory dumps.  at first i thought it was a hardware issue so i tested everything and it all showed fine.  I reinstalled Windows and installed one program / driver at a time and tested .. everything worked great until i installed Avast.  After I installed it i got a blue screen restart, a few minutes went by after the restart and everything seemed fine - Avast updated then my system crashed again.
I uninstalled Avast and cleaned up the registry and so far no crashing <knocks on wood>

I am not sure if it is a compatibility issue with drivers or what but here are my system specs

Windows XP Pro
Asus Striker Extreme motherboard
Intel Quad core
2 gigs OCZ 800 htc reaper memory
bfg 8800 gtx oc2 video card
bfg physx card
lg dvd sata burner
250 gig OS sata hard drive
500 gig install drive
all have latest drivers/bios

anyone have any ideas?
 ???

Offline Tarq57

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3695
  • If at first you don’t succeed; call it version 1.0
Re: Memory dumps with avast
« Reply #1 on: September 27, 2007, 05:04:41 AM »
No, sorry, but it looks like a real nice piece of kit!
Any other security software installed?
Windows 10,Windows Firewall,Firefox w/Adblock.

Offline igor

  • Avast team
  • Serious Graphoman
  • *
  • Posts: 11851
    • AVAST Software
Re: Memory dumps with avast
« Reply #2 on: September 27, 2007, 08:07:57 AM »
Any recent dump files in Windows\Minidump folder - that might tell us more about what's going on there?

KeithG

  • Guest
Re: Memory dumps with avast
« Reply #3 on: September 29, 2007, 01:23:05 AM »
Thanks for the replys ..
probably sound like a newbie here but how do you read dump files?

Online DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89065
  • No support PMs thanks
Re: Memory dumps with avast
« Reply #4 on: September 29, 2007, 01:39:53 AM »
Short answer, you can't, not without the tools set-up.

If you have some dump files report that you have and Igor will likely give you some more instructions.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

KeithG

  • Guest
Re: Memory dumps with avast
« Reply #5 on: September 29, 2007, 03:01:06 AM »
i do have some dump files .. but iam not to sure how to read them

Online DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89065
  • No support PMs thanks
Re: Memory dumps with avast
« Reply #6 on: September 29, 2007, 03:19:12 AM »
As I said you can't without the tools to be able to read them, available from MS. Igor will have these tools already set-up so should be able to read them, hopefully he will get back to the topic, but it is now a little after 3 a.m. in Europe.

If you want you can try a google search for .dmp file viewer or reader, you can if you find the links download it from MS and install it and try to make sense of it even when you are able to display the report as it is likely to be somewhat technical.

http://www.google.com/search?q=.dmp+file+viewer
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

KeithG

  • Guest
Re: Memory dumps with avast
« Reply #7 on: September 29, 2007, 03:27:04 AM »
I followed the one that microsoft said to use .. could not load the symbols .. not sure how to do that part properly heh.. but it did say something about the USBPORT.SYS being the issue

Online DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89065
  • No support PMs thanks
Re: Memory dumps with avast
« Reply #8 on: September 29, 2007, 03:41:32 AM »
Check some of the other hits on the google results as I believe the last time I looked at it there were a couple of sites giving instructions on how to install and load the symbols. Sorry I haven't done this so I have no practical experience, just an avast user like you.

Perhaps the issue is that usbport.sys is missing, does it exist ?
http://www.google.com/search?q=symbols+USBPORT.SYS

I'm calling it a night now almost 2.45 a.m. here hopefully someone else can pick this up.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

KeithG

  • Guest
Re: Memory dumps with avast
« Reply #9 on: September 29, 2007, 03:45:14 AM »
Thank you for your help!

Online DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89065
  • No support PMs thanks
Re: Memory dumps with avast
« Reply #10 on: September 29, 2007, 03:46:19 AM »
Your welcome, good night.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

KeithG

  • Guest
Re: Memory dumps with avast
« Reply #11 on: September 29, 2007, 04:16:50 AM »
i found a way to get into this log .. it does not look like an issue with avast but is there anyone that can read this thing a little better then me? ..

Opened log file 'c:\debuglog.txt'

Microsoft ® Windows Debugger Version 6.7.0005.1
Copyright © Microsoft Corporation. All rights reserved.


Loading Dump File [C:\WINDOWS\Minidump\Mini092807-02.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
Windows XP Kernel Version 2600 (Service Pack 2) MP (4 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp_sp2_gdr.070227-2254
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055c700
Debug session time: Fri Sep 28 19:41:29.093 2007 (GMT-4)
System Uptime: 0 days 0:24:52.714
Loading Kernel Symbols
...
Loading User Symbols
Loading unloaded module list
....................
************************************************************
*******************
* *
* Bugcheck Analysis *
* *
************************************************************
*******************

Use !analyze -v to get detailed debugging information.

BugCheck 100000D1, {0, 2, 1, f63832b5}

Probably caused by : USBPORT.SYS ( USBPORT!USBPORT_RemoveBadReqIrp+6b )

Followup: MachineOwner
---------

0: kd> !analyze -v;r;kv;lmtn;.logclose;q
************************************************************
*******************
* *
* Bugcheck Analysis *
* *
************************************************************
*******************

DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 00000000, memory referenced
Arg2: 00000002, IRQL
Arg3: 00000001, value 0 = read operation, 1 = write operation
Arg4: f63832b5, address which referenced memory

Debugging Details:
------------------


WRITE_ADDRESS: 00000000

CURRENT_IRQL: 2

FAULTING_IP:
USBPORT!USBPORT_RemoveBadReqIrp+6b
f63832b5 8907 mov dword ptr [edi],eax

CUSTOMER_CRASH_COUNT: 2

DEFAULT_BUCKET_ID: DRIVER_FAULT

BUGCHECK_STR: 0xD1

PROCESS_NAME: Idle

LAST_CONTROL_TRANSFER: from 804f1ad5 to f63832b5

STACK_TEXT:
80550284 804f1ad5 41426d72 86050458 8611f0e0 USBPORT!USBPORT_RemoveBadReqIrp+0x6b
8055029c f6383085 8611f102 00000000 8611f0e0 nt!IoCsqRemoveNextIrp+0x3d
805502bc f6383650 8611f028 00000000 f63834ec USBPORT!USBPORT_BadRequestFlush+0x3b
805502e0 805016f7 8611f70c 8611f028 177b689c USBPORT!USBPORT_DM_TimerDpc+0x164
805503fc 80501813 8055b0a0 ffdff9c0 ffdff000 nt!KiTimerListExpire+0x14b
80550428 805450bf 8055b4a0 00000000 0001752d nt!KiTimerExpiration+0xb1
80550440 8055ae40 ffdffc50 00000000 8055ae40 nt!KiRetireDpcList+0x61
80550450 80544fa4 00000000 0000000e 00000000 nt!KiIdleThread0
80550454 00000000 0000000e 00000000 00000000 nt!KiIdleLoop+0x28


STACK_COMMAND: kb

FOLLOWUP_IP:
USBPORT!USBPORT_RemoveBadReqIrp+6b
f63832b5 8907 mov dword ptr [edi],eax

SYMBOL_STACK_INDEX: 0

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: USBPORT

IMAGE_NAME: USBPORT.SYS

DEBUG_FLR_IMAGE_TIMESTAMP: 41107d62

SYMBOL_NAME: USBPORT!USBPORT_RemoveBadReqIrp+6b

FAILURE_BUCKET_ID: 0xD1_W_USBPORT!USBPORT_RemoveBadReqIrp+6b

BUCKET_ID: 0xD1_W_USBPORT!USBPORT_RemoveBadReqIrp+6b

Followup: MachineOwner
---------

.. there is more but ive exceeded the allowed message length

CharleyO

  • Guest
Re: Memory dumps with avast
« Reply #12 on: September 29, 2007, 07:05:42 AM »
***

Make another post (or 2+ if needed) to give the rest of the log.    :)


***

KeithG

  • Guest
Re: Memory dumps with avast
« Reply #13 on: September 29, 2007, 03:06:27 PM »
ok =) .. here is the rest
---------

eax=00000000 ebx=00000000 ecx=86118e40 edx=00000004 esi=8611f1ac edi=00000000
eip=f63832b5 esp=80550280 ebp=80550284 iopl=0 nv up ei pl zr na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
USBPORT!USBPORT_RemoveBadReqIrp+0x6b:
f63832b5 8907 mov dword ptr [edi],eax ds:0023:00000000=????????
ChildEBP RetAddr Args to Child
80550284 804f1ad5 41426d72 86050458 8611f0e0 USBPORT!USBPORT_RemoveBadReqIrp+0x6b (FPO: [Non-Fpo])
8055029c f6383085 8611f102 00000000 8611f0e0 nt!IoCsqRemoveNextIrp+0x3d (FPO: [Non-Fpo])
805502bc f6383650 8611f028 00000000 f63834ec USBPORT!USBPORT_BadRequestFlush+0x3b (FPO: [Non-Fpo])
805502e0 805016f7 8611f70c 8611f028 177b689c USBPORT!USBPORT_DM_TimerDpc+0x164 (FPO: [Non-Fpo])
805503fc 80501813 8055b0a0 ffdff9c0 ffdff000 nt!KiTimerListExpire+0x14b (FPO: [Non-Fpo])
80550428 805450bf 8055b4a0 00000000 0001752d nt!KiTimerExpiration+0xb1 (FPO: [Non-Fpo])
80550440 8055ae40 ffdffc50 00000000 8055ae40 nt!KiRetireDpcList+0x61 (FPO: [0,1,0])
80550450 80544fa4 00000000 0000000e 00000000 nt!KiIdleThread0
80550454 00000000 0000000e 00000000 00000000 nt!KiIdleLoop+0x28 (FPO: [0,0,0])
start end module name
804d7000 806e2000 nt ntkrpamp.exe Wed Feb 28 03:38:53 2007 (45E53F9D)
806e2000 80702d00 hal halmacpi.dll Wed Aug 04 01:59:09 2004 (41107B2D)
b96e1000 b970b180 kmixer kmixer.sys Wed Jun 14 04:47:45 2006 (448FCD31)
b9b84000 b9bc4280 HTTP HTTP.sys Thu Mar 16 20:33:09 2006 (441A03C5)
b9e1d000 b9e6e480 srv srv.sys Mon Aug 14 06:34:39 2006 (44E051BF)
b9ebf000 b9eeb400 mrxdav mrxdav.sys Wed Aug 04 02:00:49 2004 (41107B91)
baa7b000 baa7dbc0 secdrv secdrv.sys Mon Jul 01 04:46:43 2002 (3D2016F3)
baca3000 bacb7400 wdmaud wdmaud.sys Wed Jun 14 05:00:44 2006 (448FD03C)
badf8000 bae06d80 sysaudio sysaudio.sys Wed Aug 04 02:15:54 2004 (41107F1A)
baf10000 baf13280 ndisuio ndisuio.sys Wed Aug 04 02:03:10 2004 (41107C1E)
bf800000 bf9c2180 win32k win32k.sys Thu Mar 08 08:47:34 2007 (45F013F6)
bf9c3000 bf9d4580 dxg dxg.sys Wed Aug 04 02:00:51 2004 (41107B93)
bf9d5000 bff42500 nv4_disp nv4_disp.dll Fri Jun 29 04:13:08 2007 (4684BF14)
bffa0000 bffe5c00 ATMFD ATMFD.DLL Wed Aug 04 03:56:56 2004 (411096C8)
ef61a000 ef633b80 dump_nvata dump_nvata.sys Thu Sep 21 18:39:13 2006 (45131491)
ef634000 ef6a2a00 mrxsmb mrxsmb.sys Fri May 05 05:41:42 2006 (445B1DD6)
ef6a3000 ef6cda00 rdbss rdbss.sys Fri May 05 05:47:55 2006 (445B1F4B)
ef6ce000 ef6efd00 afd afd.sys Wed Aug 04 02:14:13 2004 (41107EB5)
ef718000 ef738f00 ipnat ipnat.sys Wed Sep 29 18:28:36 2004 (415B3714)
ef739000 ef760c00 netbt netbt.sys Wed Aug 04 02:14:36 2004 (41107ECC)
ef761000 ef7b8d80 tcpip tcpip.sys Thu Apr 20 07:51:47 2006 (444775D3)
ef7b9000 ef7cb400 ipsec ipsec.sys Wed Aug 04 02:14:27 2004 (41107EC3)
ef7ec000 ef80e200 adidts adidts.sys Fri Dec 08 17:05:58 2006 (4579E1C6)
ef80f000 ef825f00 AEAudio AEAudio.sys Mon Aug 07 09:57:27 2006 (44D746C7)
ef826000 ef849980 portcls portcls.sys Wed Aug 04 02:15:47 2004 (41107F13)
ef84a000 ef896000 ADIHdAud ADIHdAud.sys Tue Jan 16 09:09:04 2007 (45ACDC80)
f6039000 f603b280 rasacd rasacd.sys Fri Aug 17 16:55:39 2001 (3B7D84CB)
f60c6000 f60c8900 Dxapi Dxapi.sys Fri Aug 17 16:53:19 2001 (3B7D843F)
f60e2000 f60e5a00 kbdhid kbdhid.sys Wed Aug 04 01:58:33 2004 (41107B09)
f60ea000 f6142e80 update update.sys Mon Apr 23 06:32:54 2007 (462C8B56)
f615f000 f6181680 ks ks.sys Wed Aug 04 02:15:20 2004 (41107EF8)
f6182000 f61b2100 rdpdr rdpdr.sys Wed Aug 04 02:01:10 2004 (41107BA6)
f61b3000 f61c3e00 psched psched.sys Wed Aug 04 02:04:16 2004 (41107C60)
f61c4000 f61da680 ndiswan ndiswan.sys Wed Aug 04 02:14:30 2004 (41107EC6)
f61db000 f622e000 NVSNPU NVSNPU.SYS Mon Aug 07 19:38:41 2006 (44D7CF01)
f622e000 f633bc00 NVNRM NVNRM.SYS Mon Aug 07 19:39:02 2006 (44D7CF16)
f633c000 f6361000 HDAudBus HDAudBus.sys Wed Oct 27 18:21:32 2004 (41801F6C)
f6361000 f637dc80 physX32 physX32.sys Fri Jun 22 10:53:17 2007 (467BE25D)
f637e000 f63a0e80 USBPORT USBPORT.SYS Wed Aug 04 02:08:34 2004 (41107D62)
f63a1000 f63b4780 VIDEOPRT VIDEOPRT.SYS Wed Aug 04 02:07:04 2004 (41107D08)
f63b5000 f6a32f20 nv4_mini nv4_mini.sys Fri Jun 29 04:16:41 2007 (4684BFE9)
f6a93000 f6aa1b80 drmk drmk.sys Wed Aug 04 02:07:54 2004 (41107D3A)
f6ac3000 f6acfe00 NVENETFD NVENETFD.sys Mon Aug 07 19:39:21 2006 (44D7CF29)
f715d000 f7160c80 mssmbios mssmbios.sys Wed Aug 04 02:07:47 2004 (41107D33)
f7189000 f71a3580 Mup Mup.sys Wed Aug 04 02:15:20 2004 (41107EF8)
f71a4000 f71d0a80 NDIS NDIS.sys Wed Aug 04 02:14:27 2004 (41107EC3)
f71d1000 f725d400 Ntfs Ntfs.sys Fri Feb 09 06:10:31 2007 (45CC56A7)
f725e000 f7274780 KSecDD KSecDD.sys Wed Aug 04 01:59:45 2004 (41107B51)
f7275000 f7286f00 sr sr.sys Wed Aug 04 02:06:22 2004 (41107CDE)
f7287000 f72a6780 fltmgr fltmgr.sys Mon Aug 21 05:14:57 2006 (44E97991)
f72a7000 f72be800 SCSIPORT SCSIPORT.SYS Wed Aug 04 01:59:39 2004 (41107B4B)
f72bf000 f72cf880 SI3132 SI3132.sys Thu Mar 16 18:03:09 2006 (4419E09D)
f72d0000 f72e9b80 nvata nvata.sys Thu Sep 21 18:39:13 2006 (45131491)
f72ea000 f7301480 atapi atapi.sys Wed Aug 04 01:59:41 2004 (41107B4D)
f7302000 f7327700 dmio dmio.sys Wed Aug 04 02:07:13 2004 (41107D11)
f7328000 f7346880 ftdisk ftdisk.sys Fri Aug 17 16:52:41 2001 (3B7D8419)
f7347000 f7357a80 pci pci.sys Wed Aug 04 02:07:45 2004 (41107D31)
f7358000 f7385d80 ACPI ACPI.sys Wed Aug 04 02:07:35 2004 (41107D27)
f7487000 f748fc00 isapnp isapnp.sys Fri Aug 17 16:58:01 2001 (3B7D8559)
f7497000 f74a5e80 ohci1394 ohci1394.sys Wed Aug 04 02:10:05 2004 (41107DBD)
f74a7000 f74b4000 1394BUS 1394BUS.SYS Wed Aug 04 02:10:03 2004 (41107DBB)
f74b7000 f74c1500 MountMgr MountMgr.sys Wed Aug 04 01:58:29 2004 (41107B05)
f74c7000 f74d3c80 VolSnap VolSnap.sys Wed Aug 04 02:00:14 2004 (41107B6E)
f74d7000 f74dfe00 disk disk.sys Wed Aug 04 01:59:53 2004 (41107B59)
f74e7000 f74f3200 CLASSPNP CLASSPNP.SYS Wed Aug 04 02:14:26 2004 (41107EC2)
f7587000 f758fd00 intelppm intelppm.sys Wed Aug 04 01:59:19 2004 (41107B37)
f7597000 f75a0000 nvnetbus nvnetbus.sys Mon Aug 07 19:39:23 2006 (44D7CF2B)
f75a7000 f75b3880 rasl2tp rasl2tp.sys Wed Aug 04 02:14:21 2004 (41107EBD)
f75b7000 f75c1200 raspppoe raspppoe.sys Wed Aug 04 02:05:06 2004 (41107C92)
f75c7000 f75d6180 nic1394 nic1394.sys Wed Aug 04 01:58:28 2004 (41107B04)
f75d7000 f75e2d00 raspptp raspptp.sys Wed Aug 04 02:14:26 2004 (41107EC2)
f75e7000 f75ef900 msgpc msgpc.sys Wed Aug 04 02:04:11 2004 (41107C5B)
f75f7000 f7600f00 termdd termdd.sys Wed Aug 04 01:58:52 2004 (41107B1C)
f7607000 f7610480 NDProxy NDProxy.SYS Fri Aug 17 16:55:30 2001 (3B7D84C2)
f7627000 f7635100 usbhub usbhub.sys Wed Aug 04 02:08:40 2004 (41107D68)
f7637000 f763f700 wanarp wanarp.sys Wed Aug 04 02:04:57 2004 (41107C89)
f7647000 f764f700 netbios netbios.sys Wed Aug 04 02:03:19 2004 (41107C27)
f7667000 f7675d80 arp1394 arp1394.sys Wed Aug 04 01:58:28 2004 (41107B04)
f7697000 f769f880 Fips Fips.SYS Fri Aug 17 21:31:49 2001 (3B7DC585)
f76b7000 f76bfd80 HIDCLASS HIDCLASS.SYS Wed Aug 04 02:08:18 2004 (41107D52)
f76c7000 f76d1400 RecFltr RecFltr.sys Wed Jan 17 20:21:36 2007 (45AECBA0)
f7707000 f770d200 PCIIDEX PCIIDEX.SYS Wed Aug 04 01:59:40 2004 (41107B4C)
f770f000 f7713900 PartMgr PartMgr.sys Fri Aug 17 21:32:23 2001 (3B7DC5A7)
f775f000 f7763500 watchdog watchdog.sys Wed Aug 04 02:07:32 2004 (41107D24)
f77ff000 f7805180 HIDPARSE HIDPARSE.SYS Wed Aug 04 02:08:15 2004 (41107D4F)
f780f000 f7814200 vga vga.sys Wed Aug 04 02:07:06 2004 (41107D0A)
f7817000 f781ba80 Msfs Msfs.SYS Wed Aug 04 02:00:37 2004 (41107B85)
f781f000 f7826880 Npfs Npfs.SYS Wed Aug 04 02:00:38 2004 (41107B86)
f7837000 f783dc80 habu habu.sys Mon Oct 23 00:09:47 2006 (453C408B)
f784f000 f7853280 usbohci usbohci.sys Wed Aug 04 02:08:34 2004 (41107D62)
f7857000 f785d800 usbehci usbehci.sys Wed Aug 04 02:08:34 2004 (41107D62)
f785f000 f7863880 TDI TDI.SYS Wed Aug 04 02:07:47 2004 (41107D33)
f7867000 f786b580 ptilink ptilink.sys Fri Aug 17 16:49:53 2001 (3B7D8371)
f786f000 f7873080 raspti raspti.sys Fri Aug 17 16:55:32 2001 (3B7D84C4)
f7877000 f787d000 kbdclass kbdclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
f787f000 f7884a00 mouclass mouclass.sys Wed Aug 04 01:58:32 2004 (41107B08)
f7887000 f788eb80 usbccgp usbccgp.sys Wed Aug 04 02:08:45 2004 (41107D6D)
f7897000 f789a000 BOOTVID BOOTVID.dll Fri Aug 17 16:49:09 2001 (3B7D8345)
f789b000 f789d880 SiWinAcc SiWinAcc.sys Mon Nov 01 15:21:31 2004 (41868CBB)
f796b000 f796d580 hidusb hidusb.sys Fri Aug 17 17:02:16 2001 (3B7D8658)
f796f000 f7971f80 mouhid mouhid.sys Fri Aug 17 16:47:57 2001 (3B7D82FD)
f7973000 f7975580 ndistapi ndistapi.sys Fri Aug 17 16:55:29 2001 (3B7D84C1)
f7987000 f7988b80 kdcom kdcom.dll Fri Aug 17 16:49:10 2001 (3B7D8346)
f7989000 f798a100 WMILIB WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
f798b000 f798c700 dmload dmload.sys Fri Aug 17 16:58:15 2001 (3B7D8567)
f798d000 f798e580 SiRemFil SiRemFil.sys Tue Oct 18 15:15:26 2005 (435549CE)
f79a1000 f79a2420 ASACPI ASACPI.sys Thu Aug 12 22:52:52 2004 (411C2D04)
f79a3000 f79a4100 swenum swenum.sys Wed Aug 04 01:58:41 2004 (41107B11)
f79a9000 f79aa280 USBD USBD.SYS Fri Aug 17 17:02:58 2001 (3B7D8682)
f79f7000 f79f8f00 Fs_Rec Fs_Rec.SYS Fri Aug 17 16:49:37 2001 (3B7D8361)
f79f9000 f79fa080 Beep Beep.SYS Fri Aug 17 16:47:33 2001 (3B7D82E5)
f79fd000 f79fe080 mnmdd mnmdd.SYS Fri Aug 17 16:57:28 2001 (3B7D8538)
f79ff000 f7a00080 RDPCDD RDPCDD.sys Fri Aug 17 16:46:56 2001 (3B7D82C0)
f7a01000 f7a02440 AsIO AsIO.sys Wed Dec 21 03:55:21 2005 (43A91879)
f7a15000 f7a16100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
f7a4f000 f7a4fd00 pciide pciide.sys Fri Aug 17 16:51:49 2001 (3B7D83E5)
f7b13000 f7b13b80 Null Null.SYS Fri Aug 17 16:47:39 2001 (3B7D82EB)
f7b21000 f7b21d00 dxgthk dxgthk.sys Fri Aug 17 16:53:12 2001 (3B7D8438)
f7b44000 f7b44c00 audstub audstub.sys Fri Aug 17 16:59:40 2001 (3B7D85BC)


KeithG

  • Guest
Re: Memory dumps with avast
« Reply #14 on: September 29, 2007, 03:07:01 PM »
and the last part
Unloaded modules:
b980e000 b9839000 kmixer.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
b9979000 b99a4000 kmixer.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
f7af4000 f7af5000 drmkaud.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
bac55000 bac80000 kmixer.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
badd8000 bade5000 DMusic.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
bade8000 badf6000 swmidi.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
bac80000 baca3000 aec.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
f799b000 f799d000 splitter.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
ba98b000 ba99b000 Serial.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
b9e83000 b9e97000 Parport.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
f7687000 f7692000 imapi.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
f7677000 f7686000 redbook.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
f7657000 f7660000 processr.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
f603d000 f6041000 kbdhid.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
f6a33000 f6a40000 i8042prt.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
f77f7000 f77fc000 Cdaudio.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
f6a43000 f6a50000 cdrom.sys
Timestamp: unavailable (00000000)
Checksum: 00000000
f6041000 f6044000 Sfloppy.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
f77ef000 f77f4000 Flpydisk.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
f77e7000 f77ee000 Fdc.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
Closing open log file c:\debuglog.txt