Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
Windows XP
Tag Cloud
access acer asus bios bsod computer crash desktop dns driver drivers error ethernet excel freeze gaming graphics hard drive hardware hdmi internet laptop malware memory monitor motherboard network printer problem ram registry repair router slow software sound trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Operating Systems > Windows XP >
Solved: page_fault_in_nonpaged_ area blue screen XP

Reply  
Thread Tools
dieterschmied's Avatar
Member with 43 posts.
 
Join Date: Jan 2005
Experience: Beginner
26-Jul-2008, 12:52 PM #1
Solved: page_fault_in_nonpaged_ area blue screen XP
I had some malware or adware that I got rid of , I think. In the process, I may have made a mess of things and now I have this blue screen appearing regularly with the message: "page_fault_in_nonpaged_ area " along with some instructions to disable bios memory options such as caching and shadowing and it often reloads. There are also some 0x00000050 type numbers that change each time.

I also upgraded to service pack 3 with no change.

I can usually hit function 8 and I am back in business unless I let the machine sit idle when the blue screen reappears. I reinstalled XP with no different results.

I went to microsofts knowlege base and found similar symptoms and they recommended sp3 but I think there were differences in the symptoms.

Can someone advise me what I should do to get rid of this reappearing blue screen short of reformating?


Dieter Schmied
dieter@one.net
brillser's Avatar
Computer Specs
Senior Member with 2,423 posts.
 
Join Date: Mar 2008
Experience: I listen and learn
26-Jul-2008, 12:59 PM #2
Hi there,
There is this going on at present, some of it might help:

http://forums.techguy.org/windows-nt...aged-area.html
kniht's Avatar
Computer Specs
Senior Member with 1,753 posts.
 
Join Date: May 2006
Location: Mtns. of North Carolina
Experience: Intermediate
26-Jul-2008, 01:26 PM #3
Go to the Windows directory and open the 'minidump' folder. Zip up any dump files in the folder and upload to your next post using the 'Manage Attachments' feature located under 'Additional Options'.

We'll try some debugging.
dieterschmied's Avatar
Member with 43 posts.
 
Join Date: Jan 2005
Experience: Beginner
26-Jul-2008, 02:45 PM #4
I could not find a minidump folder in the windows directory. And what do you mean by zip up?
kniht's Avatar
Computer Specs
Senior Member with 1,753 posts.
 
Join Date: May 2006
Location: Mtns. of North Carolina
Experience: Intermediate
26-Jul-2008, 03:53 PM #5
What I mean by 'Zip-up' is right click on a file and select 'Send to', click on 'compressed (zipped) folder'.

See if there are any dmp files here:

Documents and Settings\All Users\Application Data\Microsoft\Dr. Watson
dieterschmied's Avatar
Member with 43 posts.
 
Join Date: Jan 2005
Experience: Beginner
31-Jul-2008, 09:16 AM #6
I am sorry to be so slow in responding, but I had a personal problem.

I found a 12kb dmp file in Dr. Watson that was created in 2007.



Note on current status:
Whenever I leave the machine idle for a few minutes or so, I get the blue screen saying it is restarting and it starts going through a sequence. If I just hit f8 or f9, it goes away while trying to load all the icon forms on the desktop. I don't have to wait for the loading however as the last screen that I was using appears as if there is nothing wrong and I can continue like nothing happened.

My ISP cut me off a day ago claiming I had a virus that was sending out emails. I scanned and found none and they were unable to confirm anything. Other than the irritating blue screen, the machine runs okay although I think it is slower opening new pages.
dieterschmied's Avatar
Member with 43 posts.
 
Join Date: Jan 2005
Experience: Beginner
31-Jul-2008, 09:24 AM #7
Oh, I forgot to mention that I did the "send to" of the 12kb file to the zip command and I got a text file that is quite long. I am not familiar with Dr. Watson and have never been able to understand it, so bear that in mind with further instructions.
kniht's Avatar
Computer Specs
Senior Member with 1,753 posts.
 
Join Date: May 2006
Location: Mtns. of North Carolina
Experience: Intermediate
31-Jul-2008, 11:03 AM #8
I don't think the .dmp file from 2007 has anything to do with the problem you are having now.

You may want to post an HJT logfile in the Malware forum:

http://forums.techguy.org/54-malware...jackthis-logs/

Be sure to read the 'Sticky' "Please read here first BEFORE posting for help" in that forum.
__________________
"The definition of insanity is doing the same thing over and over again and expecting different results." Albert Einstein
dieterschmied's Avatar
Member with 43 posts.
 
Join Date: Jan 2005
Experience: Beginner
31-Jul-2008, 11:20 AM #9
What is HJT logfile?
kniht's Avatar
Computer Specs
Senior Member with 1,753 posts.
 
Join Date: May 2006
Location: Mtns. of North Carolina
Experience: Intermediate
31-Jul-2008, 11:50 AM #10
Quote:
Originally Posted by dieterschmied View Post
What is HJT logfile?
http://forums.techguy.org/malware-re...st-before.html
dieterschmied's Avatar
Member with 43 posts.
 
Join Date: Jan 2005
Experience: Beginner
31-Jul-2008, 09:49 PM #11
I figured out what HJT is and I downloaded it
Quote:
Originally Posted by dieterschmied View Post
What is HJT logfile?
here it is again:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:22:33 PM, on 7/31/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\twc\medicsp2\bin\sprtcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Creative\Creative Media Lite\CTZDetec.exe
C:\WINDOWS\System32\CTsvcCDA.EXE
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\Creative\Shared Files\CTDevSrv.exe
C:\Program Files\twc\medicsp2\bin\sprtsvc.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\IDETOOL\IDETOOL.EXE
C:\WINDOWS\System32\CTPdeSrv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AVG\AVG8\avgtray.exe
E:\Program Files\FireTrust\MailWasher Pro\MailWasher.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Creative\MediaSource\CTCMS.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6f74-2d53-2644-206d7942484f} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: AVG Security Toolbar - {a057a204-bacc-4d26-9990-79a187e2698e} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [medicsp2] C:\Program Files\twc\medicsp2\bin\sprtcmd.exe /P medicsp2
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [CTZDetec.exe] C:\Program Files\Creative\Creative Media Lite\CTZDetec.exe
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: IDETool.lnk = C:\Program Files\IDETOOL\IDETOOL.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.15\AMVConverter\grab.html
O8 - Extra context menu item: Add to Media Manager... - C:\Program Files\MP3 Player Utilities 4.15\MediaManager\grab.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {dfb852a3-47f8-48c4-a200-58cab36fd2a2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {dfb852a3-47f8-48c4-a200-58cab36fd2a2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [searching] Search from the Address bar
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15031/CTSUEng.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/wind...?1196616460434
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://www.axis.com/products/camera_...CamControl.ocx
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15033/CTPID.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
O23 - Service: CT Device Query service (CTDevice_Srv) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTDevSrv.exe
O23 - Service: SupportSoft Sprocket Service (medicsp2) (sprtsvc_medicsp2) - SupportSoft, Inc. - C:\Program Files\twc\medicsp2\bin\sprtsvc.exe

--
End of file - 6593 bytes
kniht's Avatar
Computer Specs
Senior Member with 1,753 posts.
 
Join Date: May 2006
Location: Mtns. of North Carolina
Experience: Intermediate
31-Jul-2008, 11:44 PM #12
I see you posted in the malware forum. It looks to me as a fake BSOD screensaver caused by some kind of nasty!

This is interesting. Will keep an eye on your post in the malware forum.

Good luck.
dieterschmied's Avatar
Member with 43 posts.
 
Join Date: Jan 2005
Experience: Beginner
01-Aug-2008, 12:50 PM #13
Quote:
Originally Posted by kniht View Post
I see you posted in the malware forum. It looks to me as a fake BSOD screensaver caused by some kind of nasty!

This is interesting. Will keep an eye on your post in the malware forum.

Good luck.
I really feel dumb at times with these computers. How does one learn to read these HJT log posts?

And where did you come up with the screensaver idea because I did something that might be relevant. The symptoms (bluescreen) were not cycling as much and I decided to experiment as the bluescreen seemed to be superficial. Actually the bluescreen had not appears for more than two hours . I decided to look at the settings for screensavers and power savers. I decided to put a screensaver on. I feel that by installing a screensaver any previous screensaver or remnant screensaver would be removed. Well it has been more than twelve hours and my machine is working as before my encounter with the antivirusxp2008 malware. So ti seems that the problem is gone , at least for now.

Thanks,
Dieter
kniht's Avatar
Computer Specs
Senior Member with 1,753 posts.
 
Join Date: May 2006
Location: Mtns. of North Carolina
Experience: Intermediate
01-Aug-2008, 05:02 PM #14
Because the BSOD only appeared when your system was idle seemed to me to be acting like a screensaver that appears after a set amount of time.

You can do a search for screensavers. Most are in the System32 directory.

Start>>Search

In Search click on 'All files and folders'

Where you see 'All or part of file name' type in .scr.

Click on 'More advanced options'.

Be sure 'Search system folders', 'Search hidden files and folders', and 'Search sub folders' are all checked.

Then click on 'Search'

You may be surprised as to how many screensavers are on your system and you might even find the one that is popping as a BSOD.

Some programs have there own screensaver such as JkDefrag (which in my opinion is the best defrag program and is freeware - does just as much and as good a job as the paid defrag programs)

If you want to learn how to read HJT logfiles, just 'Google' HJT bootcamp. It can take a year or more to become proficient at reading an HJT logfile, so be willing to put in the time and effort needed.

Hope your problem is solved.
__________________
"The definition of insanity is doing the same thing over and over again and expecting different results." Albert Einstein
Zapper35's Avatar
Computer Specs
Junior Member with 1 posts.
 
Join Date: Sep 2008
Experience: Intermediate
08-Sep-2008, 01:37 PM #15
Same Prob here
Hi All,


I am having similar probs with a fresh PC. Brand new and have had same prob with XP64 and XP32. Have reinstalled 32Bit a couple of times and even bought a new copy with SP3 already installed.


I have had a number of BSOD after screensaver/powersaving has been active with messages such as
PAGE_FAULT_IN_NONPAGED_AREA
IRQL_NOT_LESS_OR_EQUAL

and others.

At times it will not even restart in the "start Windows Normally' or "Last known good config' and requires a complete power down to be able to boot mack into Windows.

When we finally do get back into Windows I have several times seen a windows error message: "The Ati Catalyst event utility has encountered an error" and this is the data it wants to send:

szAppName : ati2evxx.exe szAppVer : 6.14.10.4188 szModName : ntdll.dll
szModVer : 5.1.2600.5512 offset : 000369ac

_________________________________________________________________________

This is error code when PC rerstarts and want to send report to MS.

BCCode : 1000000a BCP1 : 7FBAB01F BCP2 : 00000002 BCP3 : 00000000
BCP4 : 80517AB7 OSVer : 5_1_2600 SP : 3_0 Product : 256_1

___________________________________________________________________________


Windows has recovered from serious error:

BCCode : c2 BCP1 : 00000007 BCP2 : 00000CD4 BCP3 : 00690064
BCP4 : E1138140 OSVer : 5_1_2600 SP : 3_0 Product : 256_1

C:\DOCUME~1\BRADLE~1\LOCALS~1\Temp\WER5053.dir00\Mini090708-02.dmp
C:\DOCUME~1\BRADLE~1\LOCALS~1\Temp\WER5053.dir00\sysdata.xml ___________________________________________________________________________ ___




I have also had an error message related to mom.exe.





Reading the above thread I offer my dump log for your consideration:


Microsoft (R) DrWtsn32
Copyright (C) 1985-2001 Microsoft Corp. All rights reserved.



Application exception occurred:
App: C:\WINDOWS\system32\Ati2evxx.exe (pid=1772)
When: 9/6/2008 @ 23:57:28.312
Exception number: c0000005 (access violation)

*----> System Information <----*
Computer Name: ZAPPERGAMING
User Name: SYSTEM
Terminal Session Id: 0
Number of Processors: 4
Processor Type: x86 Family 6 Model 15 Stepping 11
Windows Version: 5.1
Current Build: 2600
Service Pack: 3
Current Type: Multiprocessor Free
Registered Organization:
Registered Owner: Bradley Marsh

*----> Task List <----*
0 System Process
4 System
868 smss.exe
968 csrss.exe
1004 winlogon.exe
1048 services.exe
1060 lsass.exe
1232 Ati2evxx.exe
1244 svchost.exe
1320 svchost.exe
1456 svchost.exe
1608 svchost.exe
1648 svchost.exe
1772 Ati2evxx.exe
1804 spoolsv.exe
624 Explorer.EXE
1380 alg.exe
1420 wscntfy.exe
1668 RTHDCPL.EXE
2040 MOM.EXE
928 ccc.exe
2780 svchost.exe
2964 TrackIR.exe
7456 DW20.EXE
7356 dwwin.exe
7552 drwtsn32.exe

*----> Module List <----*
(0000000000400000 - 0000000000483000: C:\WINDOWS\system32\Ati2evxx.exe
(0000000000cb0000 - 0000000000cc0000: C:\WINDOWS\system32\Ati2edxx.dll
(0000000000ce0000 - 0000000000d00000: C:\WINDOWS\system32\ati2evxx.dll
(0000000000d60000 - 0000000001025000: C:\WINDOWS\system32\xpsp2res.dll
(0000000010000000 - 0000000010026000: C:\WINDOWS\system32\atipdlxx.dll
(000000005b860000 - 000000005b8b5000: C:\WINDOWS\system32\NETAPI32.dll
(0000000068000000 - 0000000068036000: C:\WINDOWS\system32\rsaenh.dll
(0000000071aa0000 - 0000000071aa8000: C:\WINDOWS\system32\WS2HELP.dll
(0000000071ab0000 - 0000000071ac7000: C:\WINDOWS\system32\WS2_32.dll
(0000000073000000 - 0000000073026000: C:\WINDOWS\system32\winspool.drv
(0000000074ad0000 - 0000000074ad8000: C:\WINDOWS\system32\powrprof.dll
(0000000074ae0000 - 0000000074ae7000: C:\WINDOWS\system32\cfgMgr32.dll
(0000000076360000 - 0000000076370000: C:\WINDOWS\system32\WINSTA.dll
(00000000769c0000 - 0000000076a74000: C:\WINDOWS\system32\USERENV.dll
(0000000076bf0000 - 0000000076bfb000: C:\WINDOWS\system32\PSAPI.DLL
(0000000076c30000 - 0000000076c5e000: C:\WINDOWS\system32\WINTRUST.dll
(0000000076c90000 - 0000000076cb8000: C:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d60000 - 0000000076d79000: C:\WINDOWS\system32\iphlpapi.dll
(0000000076f50000 - 0000000076f58000: C:\WINDOWS\system32\wtsapi32.dll
(0000000077120000 - 00000000771ab000: C:\WINDOWS\system32\OLEAUT32.dll
(00000000774e0000 - 000000007761d000: C:\WINDOWS\system32\ole32.dll
(0000000077920000 - 0000000077a13000: C:\WINDOWS\system32\SETUPAPI.dll
(0000000077a80000 - 0000000077b15000: C:\WINDOWS\system32\CRYPT32.dll
(0000000077b20000 - 0000000077b32000: C:\WINDOWS\system32\MSASN1.dll
(0000000077b40000 - 0000000077b62000: C:\WINDOWS\system32\Apphelp.dll
(0000000077c00000 - 0000000077c08000: C:\WINDOWS\system32\VERSION.dll
(0000000077c10000 - 0000000077c68000: C:\WINDOWS\system32\msvcrt.dll
(0000000077c70000 - 0000000077c94000: C:\WINDOWS\system32\msv1_0.dll
(0000000077dd0000 - 0000000077e6b000: C:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: C:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f59000: C:\WINDOWS\system32\GDI32.dll
(0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll
(000000007c800000 - 000000007c8f6000: C:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9af000: C:\WINDOWS\system32\ntdll.dll
(000000007e410000 - 000000007e4a1000: C:\WINDOWS\system32\USER32.dll

*----> State Dump for Thread Id 0x6f0 <----*

eax=00000000 ebx=7e4196b8 ecx=00000001 edx=0012eb80 esi=0012fd7c edi=7e418bf6
eip=7c90e4f4 esp=0012f714 ebp=0012f738 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll -
function: ntdll!KiFastSystemCallRet
7c90e4da e829000000 call ntdll!RtlRaiseException (7c90e508)
7c90e4df 8b0424 mov eax,[esp]
7c90e4e2 8be5 mov esp,ebp
7c90e4e4 5d pop ebp
7c90e4e5 c3 ret
7c90e4e6 8da42400000000 lea esp,[esp]
7c90e4ed 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e4f0 8bd4 mov edx,esp
7c90e4f2 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e4f4 c3 ret
7c90e4f5 8da42400000000 lea esp,[esp]
7c90e4fc 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e500 8d542408 lea edx,[esp+0x8]
7c90e504 cd2e int 2e
7c90e506 c3 ret
7c90e507 90 nop
ntdll!RtlRaiseException:
7c90e508 55 push ebp
7c90e509 8bec mov ebp,esp

*----> Stack Back Trace <----*
*** WARNING: Unable to verify checksum for C:\WINDOWS\system32\Ati2evxx.exe
*** ERROR: Module load completed but symbols could not be loaded for C:\WINDOWS\system32\Ati2evxx.exe
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
0012f738 0040eaff 0012fd7c 00000000 00000000 ntdll!KiFastSystemCallRet
0012fdf4 0040ed0e 00400000 00000000 7c80ac51 Ati2evxx+0xeaff
00400000 00000003 00000004 0000ffff 000000b8 Ati2evxx+0xed0e

*----> Raw Stack Dump <----*
000000000012f714 be 91 41 7e 6b 77 42 7e - 7c fd 12 00 00 00 00 00 ..A~kwB~|.......
000000000012f724 00 00 00 00 00 00 00 00 - b8 96 41 7e f6 8b 41 7e ..........A~..A~
000000000012f734 2b 77 42 7e f4 fd 12 00 - ff ea 40 00 7c fd 12 00 +wB~......@.|...
000000000012f744 00 00 00 00 00 00 00 00 - 00 00 00 00 1e d4 45 00 ..............E.
000000000012f754 77 23 14 00 75 23 14 00 - 01 80 00 00 20 06 00 00 w#..u#...... ...
000000000012f764 32 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 2...............
000000000012f774 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f784 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f794 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f7a4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f7b4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f7c4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f7d4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f7e4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f7f4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f804 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f814 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f824 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f834 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000012f844 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> State Dump for Thread Id 0x2b8 <----*

eax=00000000 ebx=00000103 ecx=00000000 edx=00000000 esi=00000000 edi=00000000
eip=7c90e4f4 esp=00b5fe44 ebp=00b5fe88 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

function: ntdll!KiFastSystemCallRet
7c90e4da e829000000 call ntdll!RtlRaiseException (7c90e508)
7c90e4df 8b0424 mov eax,[esp]
7c90e4e2 8be5 mov esp,ebp
7c90e4e4 5d pop ebp
7c90e4e5 c3 ret
7c90e4e6 8da42400000000 lea esp,[esp]
7c90e4ed 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e4f0 8bd4 mov edx,esp
7c90e4f2 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e4f4 c3 ret
7c90e4f5 8da42400000000 lea esp,[esp]
7c90e4fc 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e500 8d542408 lea edx,[esp+0x8]
7c90e504 cd2e int 2e
7c90e506 c3 ret
7c90e507 90 nop
ntdll!RtlRaiseException:
7c90e508 55 push ebp
7c90e509 8bec mov ebp,esp

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
00b5fe88 004289ba 00000120 00000000 00000000 ntdll!KiFastSystemCallRet
00b5ffb4 7c80b713 008e2230 00000000 0012f530 Ati2evxx+0x289ba
00b5ffec 00000000 004288a0 008e2230 00000000 kernel32!GetModuleFileNameA+0x1b4

*----> Raw Stack Dump <----*
0000000000b5fe44 8c d3 90 7c 96 14 83 7c - 20 01 00 00 00 00 00 00 ...|...| .......
0000000000b5fe54 00 00 00 00 00 00 00 00 - 80 fe b5 00 08 00 11 00 ................
0000000000b5fe64 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5fe74 01 fe 90 7c 20 01 00 00 - d1 26 81 7c 50 fe b5 00 ...| ....&.|P...
0000000000b5fe84 50 fe b5 00 b4 ff b5 00 - ba 89 42 00 20 01 00 00 P.........B. ...
0000000000b5fe94 00 00 00 00 00 00 00 00 - 30 f5 12 00 30 22 8e 00 ........0...0"..
0000000000b5fea4 28 7c 25 9d 5c 5c 2e 5c - 70 69 70 65 5c 45 78 74 (|%.\\.\pipe\Ext
0000000000b5feb4 45 76 65 6e 74 50 69 70 - 65 5f 73 30 00 00 00 00 EventPipe_s0....
0000000000b5fec4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5fed4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5fee4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5fef4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff04 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff14 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff24 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff34 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff44 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff54 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff64 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b5ff74 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> State Dump for Thread Id 0x2bc <----*

eax=00000000 ebx=ffffffff ecx=008e0a00 edx=0005ffff esi=008e09d8 edi=008e0a00
eip=7c9369ac esp=00c5f1c8 ebp=00c5f3e8 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

function: ntdll!wtol
7c936981 83bdc4feffff10 cmp dword ptr [ebp-0x13c],0x10
7c936988 0f825b96feff jb ntdll!LdrFindCreateProcessManifest+0x1e4 (7c91ffe9)
7c93698e e95e96feff jmp ntdll!LdrFindCreateProcessManifest+0x1ec (7c91fff1)
7c936993 884f05 mov [edi+0x5],cl
7c936996 8d4808 lea ecx,[eax+0x8]
7c936999 8b11 mov edx,[ecx]
7c93699b 899564ffffff mov [ebp-0x9c],edx
7c9369a1 8b400c mov eax,[eax+0xc]
7c9369a4 89855cffffff mov [ebp-0xa4],eax
7c9369aa 8b00 mov eax,[eax]
FAULT ->7c9369ac 3b4204 cmp eax,[edx+0x4] ds:0023:00060003=????????
7c9369af 0f8512010000 jne ntdll!wtol+0x27d (7c936ac7)
7c9369b5 3bc1 cmp eax,ecx
7c9369b7 0f850a010000 jne ntdll!wtol+0x27d (7c936ac7)
7c9369bd ff75b0 push dword ptr [ebp-0x50]
7c9369c0 8b75e4 mov esi,[ebp-0x1c]
7c9369c3 56 push esi
7c9369c4 e89b9cfdff call ntdll!wcsncpy+0x105 (7c910664)
7c9369c9 8b8564ffffff mov eax,[ebp-0x9c]
7c9369cf 8b8d5cffffff mov ecx,[ebp-0xa4]
7c9369d5 8901 mov [ecx],eax

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00c5f3e8 0044d956 008e0000 00000001 0000001c ntdll!wtol+0x162
00c5f3fc 0044c97a 0000001c 00c5f8e4 00000000 Ati2evxx+0x4d956
00c5f410 00438590 0000001c 00000000 008e4738 Ati2evxx+0x4c97a
00c5f920 00401d32 00000000 008e2244 7c860cd6 Ati2evxx+0x38590
00c5ffb4 7c80b713 008e2230 008e2230 021a0026 Ati2evxx+0x1d32
00c5ffec 00000000 004284c0 008e2230 00000000 kernel32!GetModuleFileNameA+0x1b4

*----> Raw Stack Dump <----*
0000000000c5f1c8 1c 00 00 00 00 00 00 00 - 3c b9 47 00 78 07 14 00 ........<.G.x...
0000000000c5f1d8 3d 00 91 7c d4 f2 c5 00 - 46 04 91 7c 5c 07 8e 00 =..|....F..|\...
0000000000c5f1e8 00 00 00 00 3d 00 91 7c - 38 fd 14 00 00 00 14 00 ....=..|8.......
0000000000c5f1f8 00 00 00 00 e8 fb 14 00 - 10 f2 c5 00 40 fd 14 00 ............@...
0000000000c5f208 e8 fb 14 00 05 00 00 00 - 4c f2 c5 00 21 b8 f1 77 ........L...!..w
0000000000c5f218 28 f2 c5 00 50 6e 14 00 - 00 00 00 00 b8 04 8e 00 (...Pn..........
0000000000c5f228 00 00 00 00 00 00 00 00 - a0 01 8e 00 00 02 00 00 ................
0000000000c5f238 28 00 00 00 00 00 00 00 - e8 fb 14 00 bb b2 f1 77 (..............w
0000000000c5f248 71 b2 f1 77 00 00 00 00 - ac f2 c5 00 00 00 00 00 q..w............
0000000000c5f258 be 08 01 7d 00 00 00 00 - 00 00 14 00 00 00 00 00 ...}............
0000000000c5f268 c0 12 f1 77 7d 98 91 7c - 5c 07 8e 00 9c f2 c5 00 ...w}..|\.......
0000000000c5f278 79 eb 01 00 05 00 00 00 - dc f1 c5 00 a8 f2 c5 00 y...............
0000000000c5f288 14 f9 c5 00 00 00 00 00 - 40 00 91 7c ff ff ff ff ........@..|....
0000000000c5f298 3d 00 91 7c 8c 04 91 7c - 00 00 14 00 00 0a 8e 00 =..|...|........
0000000000c5f2a8 e8 fb 14 00 bc f2 c5 00 - 62 04 91 7c e8 fb 14 00 ........b..|....
0000000000c5f2b8 00 00 00 00 f8 f2 c5 00 - 21 b8 f1 77 0c 00 00 00 ........!..w....
0000000000c5f2c8 e4 f8 c5 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000c5f2d8 00 00 00 00 ec 06 00 00 - bc 02 00 00 be 08 01 7d ...............}
0000000000c5f2e8 00 00 00 00 10 00 00 00 - d4 f2 c5 00 c0 01 8e 00 ................
0000000000c5f2f8 0a 6f f1 77 be 08 01 7d - e4 f8 c5 00 00 00 00 00 .o.w...}........

*----> State Dump for Thread Id 0x2f8 <----*

eax=00000001 ebx=00000000 ecx=7ffdb000 edx=0014e54c esi=0014e510 edi=0014e54c
eip=7c90e4f4 esp=0112fe18 ebp=0112ff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

function: ntdll!KiFastSystemCallRet
7c90e4da e829000000 call ntdll!RtlRaiseException (7c90e508)
7c90e4df 8b0424 mov eax,[esp]
7c90e4e2 8be5 mov esp,ebp
7c90e4e4 5d pop ebp
7c90e4e5 c3 ret
7c90e4e6 8da42400000000 lea esp,[esp]
7c90e4ed 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e4f0 8bd4 mov edx,esp
7c90e4f2 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e4f4 c3 ret
7c90e4f5 8da42400000000 lea esp,[esp]
7c90e4fc 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e500 8d542408 lea edx,[esp+0x8]
7c90e504 cd2e int 2e
7c90e506 c3 ret
7c90e507 90 nop
ntdll!RtlRaiseException:
7c90e508 55 push ebp
7c90e509 8bec mov ebp,esp

*----> Stack Back Trace <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
0112ff80 77e76caf 0112ffa8 77e76ad1 0014e510 ntdll!KiFastSystemCallRet
0112ff88 77e76ad1 0014e510 66974cf7 0012ee60 RPCRT4!I_RpcBCacheFree+0x61c
0112ffa8 77e76c97 00146480 0112ffec 7c80b713 RPCRT4!I_RpcBCacheFree+0x43e
0112ffb4 7c80b713 00148188 66974cf7 0012ee60 RPCRT4!I_RpcBCacheFree+0x604
0112ffec 00000000 77e76c7d 00148188 00000000 kernel32!GetModuleFileNameA+0x1b4

*----> Raw Stack Dump <----*
000000000112fe18 8c da 90 7c e3 65 e7 77 - 98 01 00 00 74 ff 12 01 ...|.e.w....t...
000000000112fe28 00 00 00 00 c0 f0 14 00 - 00 00 00 00 00 00 00 00 ................
000000000112fe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fe48 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fe68 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fe98 00 00 00 00 00 00 00 00 - 43 6d 6e 80 28 cc 17 9d ........Cmn.(...
000000000112fea8 27 64 6e 80 00 0d db ba - 00 00 00 00 00 00 00 00 'dn.............
000000000112feb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000112fee8 00 00 00 00 1f 00 00 00 - ff ff ff ff 40 85 34 ba ............@.4.
000000000112fef8 00 00 00 00 10 64 6e 80 - 84 9d b6 88 28 cc 17 9d .....dn.....(...
000000000112ff08 00 00 00 00 27 64 6e 80 - 08 00 00 00 46 02 00 00 ....'dn.....F...
000000000112ff18 58 38 50 80 58 9c b6 88 - e8 9b b6 88 68 b0 4f 80 X8P.X.......h.O.
000000000112ff28 54 9d b6 88 80 ff 12 01 - ae df e7 77 48 ff 12 01 T..........wH...
000000000112ff38 be df e7 77 e0 10 90 7c - 90 f0 14 00 88 81 14 00 ...w...|........
000000000112ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> State Dump for Thread Id 0x310 <----*

eax=00ce2b30 ebx=00000001 ecx=1f1e1d1c edx=00000000 esi=000001b4 edi=00000000
eip=7c90e4f4 esp=0122fd08 ebp=0122fd6c iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

function: ntdll!KiFastSystemCallRet
7c90e4da e829000000 call ntdll!RtlRaiseException (7c90e508)
7c90e4df 8b0424 mov eax,[esp]
7c90e4e2 8be5 mov esp,ebp
7c90e4e4 5d pop ebp
7c90e4e5 c3 ret
7c90e4e6 8da42400000000 lea esp,[esp]
7c90e4ed 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e4f0 8bd4 mov edx,esp
7c90e4f2 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e4f4 c3 ret
7c90e4f5 8da42400000000 lea esp,[esp]
7c90e4fc 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e500 8d542408 lea edx,[esp+0x8]
7c90e504 cd2e int 2e
7c90e506 c3 ret
7c90e507 90 nop
ntdll!RtlRaiseException:
7c90e508 55 push ebp
7c90e509 8bec mov ebp,esp

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** WARNING: Unable to verify checksum for C:\WINDOWS\system32\ati2evxx.dll
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ati2evxx.dll -
ChildEBP RetAddr Args to Child
0122fd6c 7c802542 000001b4 ffffffff 00000000 ntdll!KiFastSystemCallRet
0122fd80 00ce2b73 000001b4 ffffffff 0f0e0d0c kernel32!WaitForSingleObject+0x12
7c80a0cb 0875ffec 14a015ff c0857c80 fed48c0f ati2evxx!AtiLogonEvent+0x93
8b55ff8b 00000000 00000000 00000000 00000000 0x875ffec

*----> Raw Stack Dump <----*
000000000122fd08 3c df 90 7c db 25 80 7c - b4 01 00 00 00 00 00 00 <..|.%.|........
000000000122fd18 00 00 00 00 0c 0d 0e 0f - 00 00 00 00 01 00 00 00 ................
000000000122fd28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000122fd38 10 00 00 00 00 00 00 00 - 00 00 00 00 00 d0 fd 7f ................
000000000122fd48 00 a0 fd 7f 00 00 00 00 - 00 00 00 00 1c fd 22 01 ..............".
000000000122fd58 00 00 00 00 dc ff 22 01 - c0 9a 83 7c 08 26 80 7c ......"....|.&.|
000000000122fd68 00 00 00 00 80 fd 22 01 - 42 25 80 7c b4 01 00 00 ......".B%.|....
000000000122fd78 ff ff ff ff 00 00 00 00 - cb a0 80 7c 73 2b ce 00 ...........|s+..
000000000122fd88 b4 01 00 00 ff ff ff ff - 0c 0d 0e 0f 10 11 12 13 ................
000000000122fd98 b4 ff 22 01 00 00 00 00 - 00 00 00 00 00 00 00 00 ..".............
000000000122fda8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000122fdb8 00 00 00 00 00 00 00 00 - 38 00 00 00 23 00 00 00 ........8...#...
000000000122fdc8 23 00 00 00 0c 0d 0e 0f - 10 11 12 13 00 00 00 00 #...............
000000000122fdd8 00 00 00 00 1c 1d 1e 1f - 30 2b ce 00 24 25 26 27 ........0+..$%&'
000000000122fde8 e9 06 81 7c 1b 00 00 00 - 00 02 00 00 fc ff 22 01 ...|..........".
000000000122fdf8 23 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 #...............
000000000122fe08 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000122fe18 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000122fe28 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000122fe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> State Dump for Thread Id 0x314 <----*

eax=00000000 ebx=7c860cd6 ecx=7c802413 edx=7c90e4f4 esi=00000000 edi=0132f804
eip=7c90e4f4 esp=0132f7d4 ebp=0132f82c iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

function: ntdll!KiFastSystemCallRet
7c90e4da e829000000 call ntdll!RtlRaiseException (7c90e508)
7c90e4df 8b0424 mov eax,[esp]
7c90e4e2 8be5 mov esp,ebp
7c90e4e4 5d pop ebp
7c90e4e5 c3 ret
7c90e4e6 8da42400000000 lea esp,[esp]
7c90e4ed 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e4f0 8bd4 mov edx,esp
7c90e4f2 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e4f4 c3 ret
7c90e4f5 8da42400000000 lea esp,[esp]
7c90e4fc 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e500 8d542408 lea edx,[esp+0x8]
7c90e504 cd2e int 2e
7c90e506 c3 ret
7c90e507 90 nop
ntdll!RtlRaiseException:
7c90e508 55 push ebp
7c90e509 8bec mov ebp,esp

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
0132f82c 7c802455 00001388 00000000 00000620 ntdll!KiFastSystemCallRet
0132f83c 00ce17d1 00001388 0f0e0d0c 13121110 kernel32!Sleep+0xf
00000620 00000000 00000000 00000000 00000000 ati2evxx!ChangeDesktopSetting+0x791

*----> Raw Stack Dump <----*
000000000132f7d4 fc d1 90 7c f1 23 80 7c - 00 00 00 00 04 f8 32 01 ...|.#.|......2.
000000000132f7e4 0c 0d 0e 0f 10 11 12 13 - d6 0c 86 7c 14 00 00 00 ...........|....
000000000132f7f4 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................
000000000132f804 80 0f 05 fd ff ff ff ff - 00 00 00 00 04 f8 32 01 ..............2.
000000000132f814 e4 f7 32 01 00 00 00 00 - dc ff 32 01 c0 9a 83 7c ..2.......2....|
000000000132f824 60 24 80 7c 00 00 00 00 - 3c f8 32 01 55 24 80 7c `$.|....<.2.U$.|
000000000132f834 88 13 00 00 00 00 00 00 - 20 06 00 00 d1 17 ce 00 ........ .......
000000000132f844 88 13 00 00 0c 0d 0e 0f - 10 11 12 13 b4 ff 32 01 ..............2.
000000000132f854 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f864 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f874 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f884 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f894 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f8a4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f8b4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f8c4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f8d4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f8e4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f8f4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000132f904 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................



Any and all help appreciated,

Cheers,
Zap
Reply

Tags
blue screen, page_fault_in_nonepaged, xpsp3

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 09:52 PM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.