楼主: 流星小语
收起左侧

[已解决] 电脑蓝屏了 求助by 流星小语

   关闭 [复制链接]
zhou0197
发表于 2011-2-20 15:26:56 | 显示全部楼层
回复 16楼 流星小语 的帖子

系统新装的?建议先找一个对应版本的Halmacpi.dll文件替换……(不过我这里貌似没有此文件)
流星小语
 楼主| 发表于 2011-2-20 15:29:04 | 显示全部楼层
回复 21楼 zhou0197 的帖子

先找一个对应版本的Halmacpi.dll文件替换……
是什么意思啊
zhou0197
发表于 2011-2-20 15:32:46 | 显示全部楼层
回复 22楼 流星小语 的帖子

大概是上网下载此文件,现在电脑上找到此文件位置,注意是否是win7版本的文件,然后替换。(最好先把原来的备份一下……)
落华无痕
发表于 2011-2-20 15:38:47 | 显示全部楼层
回复 20楼 zhou0197 的帖子

哇,推荐下,什么工具
zhou0197
发表于 2011-2-20 15:46:45 | 显示全部楼层
回复 24楼 落华无痕 的帖子

就是这个……高级选项改一下文件路径即可,此为汉化版,有英文版。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
q67512
发表于 2011-2-20 16:03:17 | 显示全部楼层
zhou0197 发表于 2011-2-20 15:46
回复 24楼 落华无痕 的帖子

就是这个……高级选项改一下文件路径即可,此为汉化版,有英文版。

工具收下了,多谢提供。
落华无痕
发表于 2011-2-20 16:04:22 | 显示全部楼层
回复 25楼 zhou0197 的帖子

我用的是windbg,下面是分析结果:PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced.  This cannot be protected by try-except,
it must be protected by a Probe.  Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: ff067af8, memory referenced.
Arg2: 00000000, value 0 = read operation, 1 = write operation.
Arg3: 839dc09f, If non-zero, the instruction address which referenced the bad memory
        address.
Arg4: 00000000, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

READ_ADDRESS: GetPointerFromAddress: unable to read from 83f81718
Unable to read MiSystemVaType memory at 83f61160
ff067af8

FAULTING_IP:
win32k!HmgDecrementShareReferenceCount+d
839dc09f 8b06            mov     eax,dword ptr [esi]

MM_INTERNAL_CODE:  0

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x50

PROCESS_NAME:  csrss.exe

CURRENT_IRQL:  0

TRAP_FRAME:  b71fca0c -- (.trap 0xffffffffb71fca0c)
ErrCode = 00000000
eax=ffac04a0 ebx=b71fcb7c ecx=ff067af8 edx=00000001 esi=ff067af8 edi=ffbff224
eip=839dc09f esp=b71fca80 ebp=b71fcaa0 iopl=0         nv up ei ng nz ac po nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010292
win32k!HmgDecrementShareReferenceCount+0xd:
839dc09f 8b06            mov     eax,dword ptr [esi]  ds:0023:ff067af8=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from 83e5f5f8 to 83e9e8e3

STACK_TEXT:  
b71fc9f4 83e5f5f8 00000000 ff067af8 00000000 nt!MmAccessFault+0x106
b71fc9f4 839dc09f 00000000 ff067af8 00000000 nt!KiTrap0E+0xdc
b71fcaa0 839dc11a b71fcb20 839ee3dd ff067af8 win32k!HmgDecrementShareReferenceCount+0xd
b71fcaa8 839ee3dd ff067af8 34a91594 00000000 win32k!DEC_SHARE_REF_CNT+0xd
b71fcb20 839edfe0 00000000 34a915e8 00000000 win32k!XDCOBJ::bCleanDC+0x1fb
b71fcb5c 839edd5a b71fcb7c 00000001 00000000 win32k!bDeleteDCInternalWorker+0x1b
b71fcb88 8398e5ce 010100e7 00000001 00000000 win32k!bDeleteDCInternal+0x30
b71fcba0 83a04e60 010100e7 ffa2d008 b71fcc08 win32k!GreDeleteDC+0x13
b71fcbb0 83a05279 ff9d173c 00000000 ffa2d008 win32k!DestroyDC+0x25
b71fcbc0 839efb7f 34a912bc 00000000 00000001 win32k!CleanupGDI+0x2c
b71fcc08 839ecf87 86e65840 86e65840 00000000 win32k!xxxDestroyThreadInfo+0x42b
b71fcc1c 839eeaa6 86e65840 00000001 86e65840 win32k!UserThreadCallout+0x77
b71fcc38 84061af4 86e65840 00000001 911a2a37 win32k!W32pThreadCallout+0x3a
b71fccb4 84096151 00000000 85ec3568 00000001 nt!PspExitThread+0x455
b71fcccc 83ec1123 85ec3568 b71fccf8 b71fcd04 nt!PsExitSpecialApc+0x22
b71fcd1c 83e5c4e4 00000001 00000000 b71fcd34 nt!KiDeliverApc+0x28b
b71fcd1c 772e64f4 00000001 00000000 b71fcd34 nt!KiServiceExit+0x64
WARNING: Frame IP not in any known module. Following frames may be wrong.
00bffd50 00000000 00000000 00000000 00000000 0x772e64f4


STACK_COMMAND:  kb

FOLLOWUP_IP:
win32k!HmgDecrementShareReferenceCount+d
839dc09f 8b06            mov     eax,dword ptr [esi]

SYMBOL_STACK_INDEX:  2

SYMBOL_NAME:  win32k!HmgDecrementShareReferenceCount+d

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: win32k

IMAGE_NAME:  win32k.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bc2a2

FAILURE_BUCKET_ID:  0x50_win32k!HmgDecrementShareReferenceCount+d

BUCKET_ID:  0x50_win32k!HmgDecrementShareReferenceCount+d

Followup: MachineOwner
zhou0197
发表于 2011-2-20 16:06:39 | 显示全部楼层
回复 27楼 落华无痕 的帖子

windbg当然强悍……不过表示水平有限,很多无法理解。不过那个出问题的dll我的win7系统中似乎没有……
落华无痕
发表于 2011-2-20 16:10:27 | 显示全部楼层
回复 28楼 zhou0197 的帖子

我刚才说了啊,那个就是改名后的hal.dll,详见:http://support.microsoft.com/kb/309283/zh-cn
落华无痕
发表于 2011-2-20 16:14:38 | 显示全部楼层
回复 28楼 zhou0197 的帖子

这些貌似不是我们菜鸟干的,以后有机会再学,再帖一分析报告,让高手去分析吧:

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced.  This cannot be protected by try-except,
it must be protected by a Probe.  Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: ff067af8, memory referenced.
Arg2: 00000000, value 0 = read operation, 1 = write operation.
Arg3: 839dc09f, If non-zero, the instruction address which referenced the bad memory
        address.
Arg4: 00000000, (reserved)

Debugging Details:
------------------


Could not read faulting driver name

READ_ADDRESS: GetPointerFromAddress: unable to read from 83f81718
Unable to read MiSystemVaType memory at 83f61160
ff067af8

FAULTING_IP:
win32k!HmgDecrementShareReferenceCount+d
839dc09f 8b06            mov     eax,dword ptr [esi]

MM_INTERNAL_CODE:  0

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  VISTA_DRIVER_FAULT

BUGCHECK_STR:  0x50

PROCESS_NAME:  csrss.exe

CURRENT_IRQL:  0

TRAP_FRAME:  b71fca0c -- (.trap 0xffffffffb71fca0c)
ErrCode = 00000000
eax=ffac04a0 ebx=b71fcb7c ecx=ff067af8 edx=00000001 esi=ff067af8 edi=ffbff224
eip=839dc09f esp=b71fca80 ebp=b71fcaa0 iopl=0         nv up ei ng nz ac po nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00010292
win32k!HmgDecrementShareReferenceCount+0xd:
839dc09f 8b06            mov     eax,dword ptr [esi]  ds:0023:ff067af8=????????
Resetting default scope

LAST_CONTROL_TRANSFER:  from 83e5f5f8 to 83e9e8e3

STACK_TEXT:  
b71fc9f4 83e5f5f8 00000000 ff067af8 00000000 nt!MmAccessFault+0x106
b71fc9f4 839dc09f 00000000 ff067af8 00000000 nt!KiTrap0E+0xdc
b71fcaa0 839dc11a b71fcb20 839ee3dd ff067af8 win32k!HmgDecrementShareReferenceCount+0xd
b71fcaa8 839ee3dd ff067af8 34a91594 00000000 win32k!DEC_SHARE_REF_CNT+0xd
b71fcb20 839edfe0 00000000 34a915e8 00000000 win32k!XDCOBJ::bCleanDC+0x1fb
b71fcb5c 839edd5a b71fcb7c 00000001 00000000 win32k!bDeleteDCInternalWorker+0x1b
b71fcb88 8398e5ce 010100e7 00000001 00000000 win32k!bDeleteDCInternal+0x30
b71fcba0 83a04e60 010100e7 ffa2d008 b71fcc08 win32k!GreDeleteDC+0x13
b71fcbb0 83a05279 ff9d173c 00000000 ffa2d008 win32k!DestroyDC+0x25
b71fcbc0 839efb7f 34a912bc 00000000 00000001 win32k!CleanupGDI+0x2c
b71fcc08 839ecf87 86e65840 86e65840 00000000 win32k!xxxDestroyThreadInfo+0x42b
b71fcc1c 839eeaa6 86e65840 00000001 86e65840 win32k!UserThreadCallout+0x77
b71fcc38 84061af4 86e65840 00000001 911a2a37 win32k!W32pThreadCallout+0x3a
b71fccb4 84096151 00000000 85ec3568 00000001 nt!PspExitThread+0x455
b71fcccc 83ec1123 85ec3568 b71fccf8 b71fcd04 nt!PsExitSpecialApc+0x22
b71fcd1c 83e5c4e4 00000001 00000000 b71fcd34 nt!KiDeliverApc+0x28b
b71fcd1c 772e64f4 00000001 00000000 b71fcd34 nt!KiServiceExit+0x64
WARNING: Frame IP not in any known module. Following frames may be wrong.
00bffd50 00000000 00000000 00000000 00000000 0x772e64f4


STACK_COMMAND:  kb

FOLLOWUP_IP:
win32k!HmgDecrementShareReferenceCount+d
839dc09f 8b06            mov     eax,dword ptr [esi]

SYMBOL_STACK_INDEX:  2

SYMBOL_NAME:  win32k!HmgDecrementShareReferenceCount+d

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: win32k

IMAGE_NAME:  win32k.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  4a5bc2a2

FAILURE_BUCKET_ID:  0x50_win32k!HmgDecrementShareReferenceCount+d

BUCKET_ID:  0x50_win32k!HmgDecrementShareReferenceCount+d

Followup: MachineOwner
---------

eax=83f5017c ebx=00000000 ecx=00000000 edx=00000000 esi=807c6120 edi=00000000
eip=83e9e8e3 esp=b71fc970 ebp=b71fc9f4 iopl=0         nv up ei pl nz na po nc
cs=0008  ss=0010  ds=0023  es=0023  fs=0030  gs=0000             efl=00000202
nt!MmAccessFault+0x106:
83e9e8e3 cc              int     3
ChildEBP RetAddr  Args to Child              
b71fc9f4 83e5f5f8 00000000 ff067af8 00000000 nt!MmAccessFault+0x106
b71fc9f4 839dc09f 00000000 ff067af8 00000000 nt!KiTrap0E+0xdc (FPO: [0,0] TrapFrame @ b71fca0c)
b71fcaa0 839dc11a b71fcb20 839ee3dd ff067af8 win32k!HmgDecrementShareReferenceCount+0xd (FPO: [0,5,4])
b71fcaa8 839ee3dd ff067af8 34a91594 00000000 win32k!DEC_SHARE_REF_CNT+0xd (FPO: [1,0,0])
b71fcb20 839edfe0 00000000 34a915e8 00000000 win32k!XDCOBJ::bCleanDC+0x1fb (FPO: [SEH])
b71fcb5c 839edd5a b71fcb7c 00000001 00000000 win32k!bDeleteDCInternalWorker+0x1b (FPO: [SEH])
b71fcb88 8398e5ce 010100e7 00000001 00000000 win32k!bDeleteDCInternal+0x30 (FPO: [4,3,0])
b71fcba0 83a04e60 010100e7 ffa2d008 b71fcc08 win32k!GreDeleteDC+0x13 (FPO: [1,0,0])
b71fcbb0 83a05279 ff9d173c 00000000 ffa2d008 win32k!DestroyDC+0x25 (FPO: [1,0,4])
b71fcbc0 839efb7f 34a912bc 00000000 00000001 win32k!CleanupGDI+0x2c (FPO: [0,0,0])
b71fcc08 839ecf87 86e65840 86e65840 00000000 win32k!xxxDestroyThreadInfo+0x42b (FPO: [SEH])
b71fcc1c 839eeaa6 86e65840 00000001 86e65840 win32k!UserThreadCallout+0x77 (FPO: [2,1,0])
b71fcc38 84061af4 86e65840 00000001 911a2a37 win32k!W32pThreadCallout+0x3a (FPO: [2,0,4])
b71fccb4 84096151 00000000 85ec3568 00000001 nt!PspExitThread+0x455
b71fcccc 83ec1123 85ec3568 b71fccf8 b71fcd04 nt!PsExitSpecialApc+0x22
b71fcd1c 83e5c4e4 00000001 00000000 b71fcd34 nt!KiDeliverApc+0x28b
b71fcd1c 772e64f4 00000001 00000000 b71fcd34 nt!KiServiceExit+0x64 (FPO: [0,3] TrapFrame @ b71fcd34)
WARNING: Frame IP not in any known module. Following frames may be wrong.
00bffd50 00000000 00000000 00000000 00000000 0x772e64f4
start    end        module name
80bc0000 80bc8000   kdcom    kdcom.dll    Tue Jul 14 09:08:58 2009 (4A5BDAAA)
83920000 83b6a000   win32k   win32k.sys   Tue Jul 14 07:26:26 2009 (4A5BC2A2)
83b80000 83b89000   TSDDD    TSDDD.dll    Tue Jul 14 08:01:40 2009 (4A5BCAE4)
83e19000 84229000   nt       ntkrpamp.exe Tue Jul 14 07:15:19 2009 (4A5BC007)
84229000 84260000   hal      halmacpi.dll Tue Jul 14 07:11:03 2009 (4A5BBF07)
89800000 89825000   CLASSPNP CLASSPNP.SYS Tue Jul 14 07:11:20 2009 (4A5BBF18)
8982f000 8983a000   mcupdate_AuthenticAMD mcupdate_AuthenticAMD.dll Tue Jul 14 07:13:13 2009 (4A5BBF89)
8983a000 8984b000   PSHED    PSHED.dll    Tue Jul 14 09:09:36 2009 (4A5BDAD0)
8984b000 89853000   BOOTVID  BOOTVID.dll  Tue Jul 14 09:04:34 2009 (4A5BD9A2)
89853000 89895000   CLFS     CLFS.SYS     Tue Jul 14 07:11:10 2009 (4A5BBF0E)
89895000 89940000   CI       CI.dll       Tue Jul 14 09:09:28 2009 (4A5BDAC8)
89940000 899b1000   Wdf01000 Wdf01000.sys Tue Jul 14 07:11:36 2009 (4A5BBF28)
899b1000 899bf000   WDFLDR   WDFLDR.SYS   Tue Jul 14 07:11:25 2009 (4A5BBF1D)
899bf000 899f1000   fvevol   fvevol.sys   Tue Jul 14 07:13:01 2009 (4A5BBF7D)
89a00000 89a2d000   rdyboost rdyboost.sys Tue Jul 14 07:22:02 2009 (4A5BC19A)
89a33000 89a7b000   ACPI     ACPI.sys     Tue Jul 14 07:11:11 2009 (4A5BBF0F)
89a7b000 89a84000   WMILIB   WMILIB.SYS   Tue Jul 14 07:11:22 2009 (4A5BBF1A)
89a84000 89a8c000   msisadrv msisadrv.sys Tue Jul 14 07:11:09 2009 (4A5BBF0D)
89a8c000 89ab6000   pci      pci.sys      Tue Jul 14 07:11:16 2009 (4A5BBF14)
89ab6000 89ac1000   vdrvroot vdrvroot.sys Tue Jul 14 07:46:19 2009 (4A5BC74B)
89ac1000 89ad2000   partmgr  partmgr.sys  Tue Jul 14 07:11:35 2009 (4A5BBF27)
89ad2000 89ae2000   volmgr   volmgr.sys   Tue Jul 14 07:11:25 2009 (4A5BBF1D)
89ae2000 89b2d000   volmgrx  volmgrx.sys  Tue Jul 14 07:11:41 2009 (4A5BBF2D)
89b2d000 89b34000   pciide   pciide.sys   Tue Jul 14 07:11:19 2009 (4A5BBF17)
89b34000 89b42000   PCIIDEX  PCIIDEX.SYS  Tue Jul 14 07:11:15 2009 (4A5BBF13)
89b42000 89b58000   mountmgr mountmgr.sys Tue Jul 14 07:11:27 2009 (4A5BBF1F)
89b58000 89b61000   atapi    atapi.sys    Tue Jul 14 07:11:15 2009 (4A5BBF13)
89b61000 89b84000   ataport  ataport.SYS  Tue Jul 14 07:11:18 2009 (4A5BBF16)
89b84000 89b8d000   amdxata  amdxata.sys  Wed May 20 01:57:35 2009 (4A12F30F)
89b8d000 89bc1000   fltmgr   fltmgr.sys   Tue Jul 14 07:11:13 2009 (4A5BBF11)
89bc1000 89bff000   NETIO    NETIO.SYS    Tue Jul 14 07:12:35 2009 (4A5BBF63)
89c05000 89c5c000   SYMDS    SYMDS.SYS    Sat Oct 16 01:53:15 2010 (4CB8950B)
89c5c000 89c6d000   fileinfo fileinfo.sys Tue Jul 14 07:21:51 2009 (4A5BC18F)
89c6d000 89d11000   SYMEFA   SYMEFA.SYS   Tue Nov 16 05:55:47 2010 (4CE1AC63)
89d11000 89dc8000   ndis     ndis.sys     Tue Jul 14 07:12:24 2009 (4A5BBF58)
89dc8000 89ded000   ksecpkg  ksecpkg.sys  Tue Jul 14 07:34:00 2009 (4A5BC468)
89e01000 89f30000   Ntfs     Ntfs.sys     Tue Jul 14 07:12:05 2009 (4A5BBF45)
89f30000 89f5b000   msrpc    msrpc.sys    unavailable (00000000)
89f5b000 89f6e000   ksecdd   ksecdd.sys   Tue Jul 14 07:11:56 2009 (4A5BBF3C)
89f6e000 89fcb000   cng      cng.sys      Tue Jul 14 07:32:55 2009 (4A5BC427)
89fcb000 89fd9000   pcw      pcw.sys      Tue Jul 14 07:11:10 2009 (4A5BBF0E)
89fd9000 89fe2000   Fs_Rec   Fs_Rec.sys   unavailable (00000000)
89fe2000 89fea000   AtiPcie  AtiPcie.sys  Tue May 05 23:00:16 2009 (4A005480)
8a000000 8a011000   disk     disk.sys     Tue Jul 14 07:11:28 2009 (4A5BBF20)
8a017000 8a160000   tcpip    tcpip.sys    Tue Jul 14 07:13:18 2009 (4A5BBF8E)
8a160000 8a191000   fwpkclnt fwpkclnt.sys Tue Jul 14 07:12:03 2009 (4A5BBF43)
8a191000 8a19a000   vmstorfl vmstorfl.sys unavailable (00000000)
8a19a000 8a1d9000   volsnap  volsnap.sys  Tue Jul 14 07:11:34 2009 (4A5BBF26)
8a1d9000 8a1e1000   spldr    spldr.sys    Tue May 12 00:13:47 2009 (4A084EBB)
8a1e1000 8a1f1000   mup      mup.sys      Tue Jul 14 07:14:14 2009 (4A5BBFC6)
8a1f1000 8a1f9000   hwpolicy hwpolicy.sys Tue Jul 14 07:11:01 2009 (4A5BBF05)
9021f000 9023e000   cdrom    cdrom.sys    Tue Jul 14 07:11:24 2009 (4A5BBF1C)
9023e000 90245000   Null     Null.SYS     unavailable (00000000)
90245000 9024c000   Beep     Beep.SYS     Tue Jul 14 07:45:00 2009 (4A5BC6FC)
9024c000 90258000   vga      vga.sys      Tue Jul 14 07:25:50 2009 (4A5BC27E)
90258000 90279000   VIDEOPRT VIDEOPRT.SYS Tue Jul 14 07:25:49 2009 (4A5BC27D)
90279000 90286000   watchdog watchdog.sys Tue Jul 14 07:24:10 2009 (4A5BC21A)
90286000 9028e000   RDPCDD   RDPCDD.sys   Tue Jul 14 08:01:40 2009 (4A5BCAE4)
9028e000 90296000   rdpencdd rdpencdd.sys Tue Jul 14 08:01:39 2009 (4A5BCAE3)
90296000 9029e000   rdprefmp rdprefmp.sys Tue Jul 14 08:01:41 2009 (4A5BCAE5)
9029e000 902a9000   Msfs     Msfs.SYS     Tue Jul 14 07:11:26 2009 (4A5BBF1E)
902a9000 902b7000   Npfs     Npfs.SYS     Tue Jul 14 07:11:31 2009 (4A5BBF23)
902b7000 902ce000   tdx      tdx.sys      Tue Jul 14 07:12:10 2009 (4A5BBF4A)
902ce000 902d9000   TDI      TDI.SYS      Tue Jul 14 07:12:12 2009 (4A5BBF4C)
902d9000 902f6000   kmodurl  kmodurl.sys  Wed Feb 16 16:36:28 2011 (4D5B8C8C)
902f6000 90350000   afd      afd.sys      Tue Jul 14 07:12:34 2009 (4A5BBF62)
90350000 90382000   netbt    netbt.sys    Tue Jul 14 07:12:18 2009 (4A5BBF52)
90382000 9038b000   ws2ifsl  ws2ifsl.sys  Tue Jul 14 07:55:01 2009 (4A5BC955)
9038b000 90392000   wfplwf   wfplwf.sys   Tue Jul 14 07:53:51 2009 (4A5BC90F)
90392000 903b1000   pacer    pacer.sys    Tue Jul 14 07:53:58 2009 (4A5BC916)
903b1000 903bf000   netbios  netbios.sys  Tue Jul 14 07:53:54 2009 (4A5BC912)
903bf000 903d9000   serial   serial.sys   Tue Jul 14 07:45:33 2009 (4A5BC71D)
903d9000 903ec000   wanarp   wanarp.sys   Tue Jul 14 07:55:02 2009 (4A5BC956)
903ec000 903fc000   termdd   termdd.sys   Tue Jul 14 08:01:35 2009 (4A5BCADF)
91200000 9121d000   EraserUtilRebootDrv EraserUtilRebootDrv.sys Sat May 22 05:44:53 2010 (4BF6FED5)
9121d000 91229000   discache discache.sys Tue Jul 14 07:24:04 2009 (4A5BC214)
91231000 91280000   SYMNETS  SYMNETS.SYS  Wed Dec 01 07:13:22 2010 (4CF58512)
91280000 912a6000   SYMEVENT SYMEVENT.SYS Sat Jul 31 07:05:03 2010 (4C535A9F)
912a6000 912ca000   Ironx86  Ironx86.SYS  Sat Nov 13 07:05:54 2010 (4CDDC852)
912ca000 912d4980   SRTSPX   SRTSPX.SYS   Sat Nov 20 08:12:36 2010 (4CE71274)
912d5000 91316000   rdbss    rdbss.sys    Tue Jul 14 07:14:26 2009 (4A5BBFD2)
91316000 91320000   nsiproxy nsiproxy.sys Tue Jul 14 07:12:08 2009 (4A5BBF48)
91320000 9132a000   mssmbios mssmbios.sys Tue Jul 14 07:19:25 2009 (4A5BC0FD)
9132a000 91342000   LongRADrv LongRADrv.sys Thu Oct 28 14:39:08 2010 (4CC91A8C)
91342000 9139d000   IDSvix86 IDSvix86.sys Sat Nov 06 05:11:46 2010 (4CD47312)
9139d000 913fb000   eeCtrl   eeCtrl.sys   Sat May 22 05:44:53 2010 (4BF6FED5)
92608000 9266c000   csc      csc.sys      Tue Jul 14 07:15:08 2009 (4A5BBFFC)
9266c000 92684000   dfsc     dfsc.sys     Tue Jul 14 07:14:16 2009 (4A5BBFC8)
92684000 92692000   blbdrive blbdrive.sys Tue Jul 14 07:23:04 2009 (4A5BC1D8)
92692000 9273e000   BHDrvx86 BHDrvx86.sys Tue Nov 16 06:35:02 2010 (4CE1B596)
9273e000 9275f000   tunnel   tunnel.sys   Tue Jul 14 07:54:03 2009 (4A5BC91B)
9275f000 92771000   amdk8    amdk8.sys    Tue Jul 14 07:11:03 2009 (4A5BBF07)
92771000 92789000   raspppoe raspppoe.sys Tue Jul 14 07:54:53 2009 (4A5BC94D)
92789000 927a0000   raspptp  raspptp.sys  Tue Jul 14 07:54:47 2009 (4A5BC947)
927a0000 927b7000   rassstp  rassstp.sys  Tue Jul 14 07:54:57 2009 (4A5BC951)
927b7000 927eb000   ks       ks.sys       Tue Jul 14 07:45:13 2009 (4A5BC709)
92c00000 92c0a000   serenum  serenum.sys  Tue Jul 14 07:45:27 2009 (4A5BC717)
92c0a000 92c22000   parport  parport.sys  Tue Jul 14 07:45:34 2009 (4A5BC71E)
92c22000 92c2d000   ndistapi ndistapi.sys Tue Jul 14 07:54:24 2009 (4A5BC930)
92c2d000 92ce4000   dxgkrnl  dxgkrnl.sys  Tue Jul 14 07:26:15 2009 (4A5BC297)
92ce4000 92d1d000   dxgmms1  dxgmms1.sys  Tue Jul 14 07:25:25 2009 (4A5BC265)
92d1d000 92d6e000   yk62x86  yk62x86.sys  Wed May 20 17:18:32 2009 (4A13CAE8)
92d6e000 92d73280   GEARAspiWDM GEARAspiWDM.sys Mon May 18 20:16:53 2009 (4A1151B5)
92d74000 92d7e000   usbohci  usbohci.sys  Tue Jul 14 07:51:14 2009 (4A5BC872)
92d7e000 92dc9000   USBPORT  USBPORT.SYS  Tue Jul 14 07:51:13 2009 (4A5BC871)
92dc9000 92dd8000   usbehci  usbehci.sys  Tue Jul 14 07:51:14 2009 (4A5BC872)
92dd8000 92df7000   HDAudBus HDAudBus.sys Tue Jul 14 07:50:55 2009 (4A5BC85F)
92df7000 92df8380   swenum   swenum.sys   Tue Jul 14 07:45:08 2009 (4A5BC704)
93200000 9320e000   umbus    umbus.sys    Tue Jul 14 07:51:38 2009 (4A5BC88A)
93211000 93b63720   nvlddmkm nvlddmkm.sys Wed Jun 24 00:08:27 2009 (4A40FDFB)
93b64000 93b65080   nvBridge nvBridge.kmd Tue Jun 23 23:40:11 2009 (4A40F75B)
93b66000 93b7e000   i8042prt i8042prt.sys Tue Jul 14 07:11:23 2009 (4A5BBF1B)
93b7e000 93b8b000   kbdclass kbdclass.sys Tue Jul 14 07:11:15 2009 (4A5BBF13)
93b8b000 93b98000   mouclass mouclass.sys Tue Jul 14 07:11:15 2009 (4A5BBF13)
93b98000 93ba5000   CompositeBus CompositeBus.sys Tue Jul 14 07:45:26 2009 (4A5BC716)
93ba5000 93bb7000   AgileVpn AgileVpn.sys Tue Jul 14 07:55:00 2009 (4A5BC954)
93bb7000 93bcf000   rasl2tp  rasl2tp.sys  Tue Jul 14 07:54:33 2009 (4A5BC939)
93bcf000 93bf1000   ndiswan  ndiswan.sys  Tue Jul 14 07:54:34 2009 (4A5BC93A)
93bf1000 93bfb000   rdpbus   rdpbus.sys   Tue Jul 14 08:02:40 2009 (4A5BCB20)
95000000 95044000   usbhub   usbhub.sys   Tue Jul 14 07:52:06 2009 (4A5BC8A6)
95044000 95055000   NDProxy  NDProxy.SYS  Tue Jul 14 07:54:27 2009 (4A5BC933)
95055000 950da000   HTTP     HTTP.sys     Tue Jul 14 07:12:53 2009 (4A5BBF75)
950da000 95115000   mrxsmb10 mrxsmb10.sys Tue Jul 14 07:14:34 2009 (4A5BBFDA)
95115000 951ac000   peauth   peauth.sys   Tue Jul 14 08:35:44 2009 (4A5BD2E0)
951ac000 951cd000   srvnet   srvnet.sys   Tue Jul 14 07:14:45 2009 (4A5BBFE5)
98000000 9800a000   secdrv   secdrv.SYS   Wed Sep 13 21:18:32 2006 (45080528)
9800a000 98017000   tcpipreg tcpipreg.sys Tue Jul 14 07:54:14 2009 (4A5BC926)
98028000 9826cd40   RTKVHDA  RTKVHDA.sys  Fri Jun 26 16:43:16 2009 (4A448A24)
9826d000 9829c000   portcls  portcls.sys  Tue Jul 14 07:51:00 2009 (4A5BC864)
9829c000 982b5000   drmk     drmk.sys     Tue Jul 14 08:36:05 2009 (4A5BD2F5)
982b5000 982c2000   crashdmp crashdmp.sys Tue Jul 14 07:45:50 2009 (4A5BC72E)
982c2000 982cd000   dump_dumpata dump_dumpata.sys Tue Jul 14 07:11:16 2009 (4A5BBF14)
982cd000 982d6000   dump_atapi dump_atapi.sys Tue Jul 14 07:11:15 2009 (4A5BBF13)
982d6000 982e7000   dump_dumpfve dump_dumpfve.sys Tue Jul 14 07:12:47 2009 (4A5BBF6F)
982e7000 982f2000   hidusb   hidusb.sys   Tue Jul 14 07:51:04 2009 (4A5BC868)
982f2000 98305000   HIDCLASS HIDCLASS.SYS Tue Jul 14 07:51:01 2009 (4A5BC865)
98305000 9830b480   HIDPARSE HIDPARSE.SYS Tue Jul 14 07:50:59 2009 (4A5BC863)
9830c000 9830d700   USBD     USBD.SYS     Tue Jul 14 07:51:05 2009 (4A5BC869)
9830e000 98319000   mouhid   mouhid.sys   Tue Jul 14 07:45:08 2009 (4A5BC704)
98319000 98330000   USBSTOR  USBSTOR.SYS  Tue Jul 14 07:51:19 2009 (4A5BC877)
98330000 9833a000   Dxapi    Dxapi.sys    Tue Jul 14 07:25:25 2009 (4A5BC265)
9833a000 98345000   monitor  monitor.sys  Tue Jul 14 07:25:58 2009 (4A5BC286)
98345000 98360000   luafv    luafv.sys    Tue Jul 14 07:15:44 2009 (4A5BC020)
98360000 9837a000   WudfPf   WudfPf.sys   Tue Jul 14 07:50:13 2009 (4A5BC835)
9837a000 9838a000   lltdio   lltdio.sys   Tue Jul 14 07:53:18 2009 (4A5BC8EE)
9838a000 9839d000   rspndr   rspndr.sys   Tue Jul 14 07:53:20 2009 (4A5BC8F0)
9839d000 983b6000   bowser   bowser.sys   Tue Jul 14 07:14:21 2009 (4A5BBFCD)
983b6000 983d9000   mrxsmb   mrxsmb.sys   Tue Jul 14 07:14:24 2009 (4A5BBFD0)
983d9000 983f4000   mrxsmb20 mrxsmb20.sys Tue Jul 14 07:14:29 2009 (4A5BBFD5)
983f4000 983fb000   parvdm   parvdm.sys   unavailable (00000000)
9d208000 9d257000   srv2     srv2.sys     Tue Jul 14 07:14:52 2009 (4A5BBFEC)
9d257000 9d2a8000   srv      srv.sys      Tue Jul 14 07:15:10 2009 (4A5BBFFE)
9d2a8000 9d2b6e80   WMDrive  WMDrive.sys  Mon Aug 23 01:14:17 2010 (4C715AE9)
9d2b7000 9d2d7480   WUDFRd   WUDFRd.sys   Tue Jul 14 07:50:44 2009 (4A5BC854)
9d2d8000 9d35d000   SRTSP    SRTSP.SYS    Sat Nov 20 08:12:26 2010 (4CE7126A)
a2000000 a214a900   NAVEX15  NAVEX15.SYS  Tue Dec 14 09:51:18 2010 (4D06CD96)
a214b000 a215e580   NAVENG   NAVENG.SYS   Tue Dec 14 09:42:27 2010 (4D06CB83)
a219d000 a21c7000   fastfat  fastfat.SYS  Tue Jul 14 07:14:01 2009 (4A5BBFB9)

Unloaded modules:
a215f000 a2167000   ComputerZ.sy
    Timestamp: unavailable (00000000)
    Checksum:  00000000
9d35d000 9d3c7000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
a21c7000 a21cf000   ComputerZ.sy
    Timestamp: unavailable (00000000)
    Checksum:  00000000
a2189000 a219d000   NAVENG.SYS
    Timestamp: unavailable (00000000)
    Checksum:  00000000
a203e000 a2189000   NAVEX15.SYS
    Timestamp: unavailable (00000000)
    Checksum:  00000000
9d35d000 9d3c7000   spsys.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
89fea000 89ff7000   crashdmp.sys
    Timestamp: unavailable (00000000)
    Checksum:  00000000
89ded000 89df8000   dump_ataport
    Timestamp: unavailable (00000000)
    Checksum:  00000000
89ff7000 8a000000   dump_atapi.s
    Timestamp: unavailable (00000000)
    Checksum:  00000000
9020e000 9021f000   dump_dumpfve
    Timestamp: unavailable (00000000)
    Checksum:  00000000
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-4-7 08:02 , Processed in 0.086362 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表