| Home Forum Radio Memberlist Help Search Quick Links |
| Forum Index » Operating Systems » Windows 2000 | Windows xp | Vista » Right-clicking On Drive Causes Problems... |
| Windows 2000 | Windows xp | Vista Windows XP & 2000 in general..... |
![]() |
![]() |
|
Thread Tools | Display Modes | ![]() |
|
#1
|
|||
|
|||
|
Hi,
About a month ago I noticed that when I went into Windows Explorer and right-clicked on one of the drives (i.e. C , it would consistently freeze. This also happens when I go to Tools>Folder Options>File Types tab. I looked around for every possible solution I could think of, and ended up reformatting my computer a few weeks ago. I now have the same problem again. Does anyone know any way I could fix this or even simply work around it?Thanks, Business_Eskimo |
|
|
|
#2
|
||||
|
||||
|
What operating system are you using ?
|
|
#3
|
|||
|
|||
|
Windows XP Home Edition. Sorry, you can slap me for that. [img]style_emoticons/<#EMO_DIR#>/wink.gif[/img]
|
|
#4
|
||||
|
||||
|
Lets do an error check.
Reboot into safe mode then right click on C drive. select properties/ tools / error checking then check the drive for errors. |
|
#5
|
|||
|
|||
|
No luck. It freezes when I right-click the drive in safe mode as well.
|
|
#6
|
||||
|
||||
|
Ok well lets look a little further then and see if anything stands out:
Get The latest version of Adaware You can download the free version here: http://www.lavasoftusa.com/support/download/ You need to be logged on as Adminstrator through the installation. For ease in installation and operation, view the tutorial here http://www.spyware911.net/adaware.htm Just download it to your desktop and then to install click on the file you just downloaded (aawsepersonal.exe). You will be guided through the installation. It is recommended to use the default setting of "Protect anyone who uses this computer". On the main screen of Adaware please look for the *check for updates now* link, just above the start button in the bottom right corner or you can click on the Webupdate button that looks like a globe icon at the top. Press * connect* to let it check for any recent updates. If any are found, please let it download and install them. Now, configure your settings. Click the gear icon at the top. These are the recommended settings: AAW SE settings General Button Safety: Check (Green) all three. Advanced Button Logfile Detail Level: All options under this should be checked (Green). Tweak Button Check (Green) the following: Log Files Include basic Ad-Aware settings in logfile: Include additional Ad-Aware settings in logfile: Please do not check (Green): Include Module list in logfile: On your first scan, use the Full Scan (Perform full system scan) mode. Let Adaware remove any *bad* objects found. Reboot your PC and scan again. Repeat this process until no more bad items are found. It may take several scans to clean everything, depending on the type of infections found. Step 2: Download Spybot - Search & Destroy, from here http://security.kolla.de/: if you haven't already got the program. For ease in installation and operation you can opt to view the tutorial here http://www.spyware911.net/spybots&d.htm Click on Settings, and Settings again. Go to the Webupdate section, and check Display also available beta versions. Now press Online, and search for, and put a check mark next to all updates, and install following the prompts. Next, close all Internet Explorer windows, and click Check for Problems. Once the scan is complete, have SpyBot remove all it finds marked in RED. Step 3: Navigate to the C:\Windows\Temp folder. Open the Temp folder and go to Edit > Select All then Edit > Delete to delete the entire contents of the Temp folder. Go to Start > Run and type %temp% in the Run box. The Temp folder will open. Click Edit > Select All then Edit > Delete to delete the entire contents of the Temp folder. Finally go to Control Panel > Internet Options. On the General tab under "Temporary Internet Files" Click "Delete Files". Put a check by "Delete Offline Content" and click OK. Click on the Programs tab then click the "Reset Web Settings" button. Click Apply then OK. Step 4: Empty the Recycle Bin Step 5: Create a folder on your hard drive somewhere like in "My Documents" and name it Hijackthis Download 'Hijack This to its own folder http://www.spyware911.net/downloads/HijackThis.exe Doubleclick HijackThis.exe, and hit "Scan". When the scan is finished, the "Scan" button will change into a "Save Log" button. Press that, save the log, load it in Notepad, and copy its contents here. |
|
#7
|
|||
|
|||
|
The Spybot: S&D and Ad-Aware scans turned up null. I doubt it's any kind of malware (I run Spybot: S&D and Ad-Aware scans weekly, and update SpywareBlaster regularly. I despise IE and use Firefox exclusively).
Hijackthis log is as follows: <div class='quotetop'>QUOTE</div><div class='quotemain'>Logfile of HijackThis v1.99.1 Scan saved at 4:48:42 PM, on 6/16/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDet.EXE C:\WINDOWS\system32\CTHELPER.EXE C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe C:\Palm\HOTSYNC.EXE C:\Program Files\Trillian\trillian.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\WINDOWS\system32\CTsvcCDA.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\drwtsn32.exe C:\WINDOWS\system32\drwtsn32.exe C:\WINDOWS\explorer.exe C:\Program Files\Mozilla Firefox\firefox.exe D:\HJT\HijackThis.exe O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe /r O4 - HKLM\..\Run: [CTDVDDET] C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDet.EXE O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [SBDrvDet] C:\Program Files\Creative\SB Drive Det\SBDrvDet.exe /r O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: HotSync Manager.LNK = C:\Palm\HOTSYNC.EXE O4 - Startup: Trillian.lnk = C:\Program Files\Trillian\trillian.exe O4 - Global Startup: HotSync Manager.lnk = C:\Palm\HOTSYNC.EXE O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{6BC87E01-7260-4D1D-AC42-E391075D447F}: NameServer = 68.6.16.30,68.2.16.30 O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe [/b][/quote] |
|
#8
|
||||
|
||||
|
Your system appears to be infact clean as a whistle. Now lets look at the Drewatson log file. Its in C:\Documents and Settings\All Users.WINNT\Application Data\Microsoft\Dr Watson and I believe is named Drwtsn32.log. Copy and paste that here.
|
|
#9
|
|||
|
|||
|
Have fun digging through this. Just so you know, the Dr Watson debugger wasn't closing itself properly after the crash. If the log would be easier to read if I were to delete it and cause the error again, let me know. Here's the log. : [quote]Microsoft ® DrWtsn32
Copyright © 1985-2001 Microsoft Corp. All rights reserved. Application exception occurred: App: C:\Program Files\Mozilla Firefox\firefox.exe (pid=1168) When: 6/3/2005 @ 21:51:01.390 Exception number: c0000005 (access violation) *----> System Information <----* Computer Name: CHRIS User Name: Chris Hepner Terminal Session Id: 0 Number of Processors: 2 Processor Type: x86 Family 15 Model 2 Stepping 9 Windows Version: 5.1 Current Build: 2600 Service Pack: 2 Current Type: Multiprocessor Free Registered Organization: Registered Owner: Chris Hepner *----> Task List <----* 0 System Process 4 System 660 smss.exe 708 csrss.exe 732 winlogon.exe 784 services.exe 796 lsass.exe 964 svchost.exe 1032 svchost.exe 1120 svchost.exe 1200 svchost.exe 1276 svchost.exe 1480 spoolsv.exe 1700 Explorer.EXE 1868 CTDVDDet.EXE 1876 CTHELPER.EXE 1908 jusched.exe 440 avgupsvc.exe 472 CTsvcCDA.exe 552 nvsvc32.exe 1896 alg.exe 2176 svchost.exe 3860 avgamsvr.exe 3888 avgcc.exe 200 avgemc.exe 580 trillian.exe 3820 svchost.exe 1168 firefox.exe 984 firefox.exe 3140 drwtsn32.exe *----> Module List <----* (0000000000400000 - 0000000000a69000: C:\Program Files\Mozilla Firefox\firefox.exe (00000000029f0000 - 0000000002b7e000: C:\Program Files\Mozilla Firefox\plugins\NPSWF32.dll (0000000010000000 - 0000000010010000: C:\WINDOWS\system32\ctagent.dll (0000000016000000 - 0000000016028000: C:\Program Files\Trillian\events.dll (0000000020000000 - 00000000202c5000: C:\WINDOWS\system32\xpsp2res.dll (000000005ad70000 - 000000005ada8000: C:\WINDOWS\system32\uxtheme.dll (000000005edd0000 - 000000005ede7000: C:\WINDOWS\system32\OLEPRO32.DLL (0000000060020000 - 000000006002d000: C:\Program Files\Mozilla Firefox\components\jar50.dll (0000000060070000 - 00000000600c4000: C:\Program Files\Mozilla Firefox\js3250.dll (0000000060130000 - 0000000060156000: C:\Program Files\Mozilla Firefox\nspr4.dll (0000000060160000 - 00000000601b5000: C:\Program Files\Mozilla Firefox\nss3.dll (00000000601c0000 - 00000000601f6000: C:\PROGRA~1\MOZILL~1\nssckbi.dll (0000000060200000 - 0000000060207000: C:\Program Files\Mozilla Firefox\plc4.dll (0000000060210000 - 0000000060216000: C:\Program Files\Mozilla Firefox\plds4.dll (0000000060230000 - 000000006024a000: C:\Program Files\Mozilla Firefox\smime3.dll (0000000060250000 - 00000000602aa000: C:\Program Files\Mozilla Firefox\softokn3.dll (00000000602b0000 - 00000000602cb000: C:\Program Files\Mozilla Firefox\ssl3.dll (00000000602d0000 - 0000000060330000: C:\Program Files\Mozilla Firefox\xpcom.dll (0000000060330000 - 0000000060344000: C:\Program Files\Mozilla Firefox\xpcom_compat.dll (00000000662b0000 - 0000000066308000: C:\WINDOWS\system32\hnetcfg.dll (000000006d420000 - 000000006d435000: C:\Program Files\Java\jre1.5.0_02\bin\jpinscp.dll (000000006d440000 - 000000006d44c000: C:\Program Files\Java\jre1.5.0_02\bin\jpioji.dll (000000006d450000 - 000000006d468000: C:\Program Files\Java\jre1.5.0_02\bin\jpishare.dll (000000006d5b0000 - 000000006d5c1000: C:\Program Files\Java\jre1.5.0_02\bin\NPOJI610.dll (0000000071a50000 - 0000000071a8f000: C:\WINDOWS\system32\mswsock.dll (0000000071a90000 - 0000000071a98000: C:\WINDOWS\System32\wshtcpip.dll (0000000071aa0000 - 0000000071aa8000: C:\WINDOWS\system32\WS2HELP.dll (0000000071ab0000 - 0000000071ac7000: C:\WINDOWS\system32\WS2_32.dll (0000000071ad0000 - 0000000071ad9000: C:\WINDOWS\system32\WSOCK32.dll (0000000072d10000 - 0000000072d18000: C:\WINDOWS\system32\msacm32.drv (0000000072d20000 - 0000000072d29000: C:\WINDOWS\system32\wdmaud.drv (0000000073000000 - 0000000073026000: C:\WINDOWS\system32\WINSPOOL.DRV (00000000746f0000 - 000000007471a000: C:\WINDOWS\System32\msimtf.dll (0000000074720000 - 000000007476b000: C:\WINDOWS\System32\MSCTF.dll (0000000075cf0000 - 0000000075d81000: C:\WINDOWS\System32\mlang.dll (0000000076380000 - 0000000076385000: C:\WINDOWS\system32\msimg32.dll (00000000763b0000 - 00000000763f9000: C:\WINDOWS\system32\comdlg32.dll (0000000076600000 - 000000007661d000: C:\WINDOWS\System32\CSCDLL.dll (0000000076b40000 - 0000000076b6d000: C:\WINDOWS\system32\WINMM.dll (0000000076c30000 - 0000000076c5e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c90000 - 0000000076cb8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076f20000 - 0000000076f47000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f60000 - 0000000076f8c000: C:\WINDOWS\system32\WLDAP32.dll (0000000076fb0000 - 0000000076fb8000: C:\WINDOWS\System32\winrnr.dll (0000000076fc0000 - 0000000076fc6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fd0000 - 000000007704f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077050000 - 0000000077115000: C:\WINDOWS\system32\COMRes.dll (0000000077120000 - 00000000771ac000: C:\WINDOWS\system32\OLEAUT32.dll (00000000771b0000 - 0000000077256000: C:\WINDOWS\system32\WININET.dll (00000000773d0000 - 00000000774d2000: C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\COMCTL32.dll (00000000774e0000 - 000000007761d000: C:\WINDOWS\system32\ole32.dll (0000000077920000 - 0000000077a13000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a20000 - 0000000077a74000: C:\WINDOWS\System32\cscui.dll (0000000077a80000 - 0000000077b14000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b20000 - 0000000077b32000: C:\WINDOWS\system32\MSASN1.dll (0000000077b40000 - 0000000077b62000: C:\WINDOWS\system32\appHelp.dll (0000000077bd0000 - 0000000077bd7000: C:\WINDOWS\system32\midimap.dll (0000000077be0000 - 0000000077bf5000: C:\WINDOWS\system32\MSACM32.dll (0000000077c00000 - 0000000077c08000: C:\WINDOWS\system32\VERSION.dll (0000000077c10000 - 0000000077c68000: C:\WINDOWS\system32\msvcrt.dll (0000000077d40000 - 0000000077dd0000: C:\WINDOWS\system32\USER32.dll (0000000077dd0000 - 0000000077e6b000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f01000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f56000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (000000007c340000 - 000000007c396000: C:\Program Files\Trillian\MSVCR71.dll (000000007c800000 - 000000007c8f4000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b0000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1d4000: C:\WINDOWS\system32\SHELL32.dll *----> State Dump for Thread Id 0x5f0 <----* eax=00000001 ebx=f25c2a80 ecx=04da1dfc edx=00270608 esi=00a4f93c edi=04da1dfc eip=602df2b3 esp=00129780 ebp=001297a4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00200246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Mozilla Firefox\xpcom.dll - function: xpcom!PL_DHashTableRawRemove 602df2a0 ff5018 call dword ptr [eax+0x18] 602df2a3 33c0 xor eax,eax 602df2a5 59 pop ecx 602df2a6 40 inc eax 602df2a7 59 pop ecx 602df2a8 84d8 test al,bl 602df2aa 7407 jz xpcom!PL_DHashTableRawRemove+0x24 (602df2b3) 602df2ac 8907 mov [edi],eax 602df2ae ff4614 inc dword ptr [esi+0x14] 602df2b1 eb03 jmp xpcom!PL_DHashTableRawRemove+0x27 (602df2b6) FAULT ->602df2b3 832700 and dword ptr [edi],0x0 ds:0023:04da1dfc=???????? 602df2b6 ff4e10 dec dword ptr [esi+0x10] 602df2b9 5f pop edi 602df2ba 5e pop esi 602df2bb 5b pop ebx 602df2bc c3 ret xpcom!PL_DHashTableEnumerate: 602df2bd 55 push ebp 602df2be 8bec mov ebp,esp 602df2c0 83ec10 sub esp,0x10 602df2c3 53 push ebx *----> Stack Back Trace <----* *** WARNING: Unable to verify checksum for C:\Program Files\Mozilla Firefox\firefox.exe *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Mozilla Firefox\firefox.exe - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 001297a4 00562483 00a4f93c 0222fa00 00000002 xpcom!PL_DHashTableRawRemove+0x24 00000008 00000000 00000000 00000000 00000000 firefox!nsFontList__Release+0xab3d *----> Raw Stack Dump <----* 0000000000129780 02 00 00 00 3c f9 a4 00 - 80 2a 5c f2 e0 ef 2d 60 ....<....*\...-` 0000000000129790 3c f9 a4 00 fc 1d da 04 - 60 38 2c 02 00 fa 22 02 <.......`8,...". 00000000001297a0 24 00 00 00 08 00 00 00 - 83 24 56 00 3c f9 a4 00 $........$V.<... 00000000001297b0 00 fa 22 02 02 00 00 00 - 60 38 2c 02 00 fa 22 02 ..".....`8,...". 00000000001297c0 9d ed 69 00 00 fa 22 02 - 57 93 6a 00 01 00 00 00 ..i...".W.j..... 00000000001297d0 5e 1b 60 00 00 fa 22 02 - 02 00 00 00 60 38 2c 02 ^.`...".....`8,. 00000000001297e0 10 00 00 00 10 75 55 02 - 93 11 60 00 48 38 2c 02 .....uU...`.H8,. 00000000001297f0 b2 24 56 00 10 75 55 02 - 48 38 2c 02 3c b5 6a 00 .$V..uU.H8,.<.j. 0000000000129800 48 38 2c 02 57 93 6a 00 - 01 00 00 00 5e 1b 60 00 H8,.W.j.....^.`. 0000000000129810 48 38 2c 02 01 00 00 00 - 10 75 55 02 0c 00 00 00 H8,......uU..... 0000000000129820 a0 09 07 02 93 11 60 00 - f8 74 55 02 b2 24 56 00 ......`..tU..$V. 0000000000129830 a0 09 07 02 f8 74 55 02 - 93 b0 69 00 f8 74 55 02 .....tU...i..tU. 0000000000129840 57 93 6a 00 01 00 00 00 - 5e 1b 60 00 f8 74 55 02 W.j.....^.`..tU. 0000000000129850 02 00 00 00 a0 09 07 02 - 0c 00 00 00 b8 a9 17 02 ................ 0000000000129860 93 11 60 00 88 09 07 02 - b2 24 56 00 b8 a9 17 02 ..`......$V..... 0000000000129870 88 09 07 02 2c 92 69 00 - 88 09 07 02 57 93 6a 00 ....,.i.....W.j. 0000000000129880 01 00 00 00 5e 1b 60 00 - 88 09 07 02 01 00 00 00 ....^.`......... 0000000000129890 b8 a9 17 02 14 00 00 00 - d0 82 08 02 93 11 60 00 ..............`. 00000000001298a0 a0 a9 17 02 b2 24 56 00 - d0 82 08 02 a0 a9 17 02 .....$V......... 00000000001298b0 03 be 69 00 a0 a9 17 02 - 57 93 6a 00 01 00 00 00 ..i.....W.j..... *----> State Dump for Thread Id 0xc6c <----* eax=99d71000 ebx=002782a4 ecx=7c910833 edx=00000110 esi=000000d0 edi=00000000 eip=7c90eb94 esp=00fefe60 ebp=00fefec4 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Mozilla Firefox\nspr4.dll - ChildEBP RetAddr Args to Child 00fefec4 7c802542 000000d0 0000ea60 00000000 ntdll!KiFastSystemCallRet 00fefed8 60147e6c 000000d0 0000ea60 00278288 kernel32!WaitForSingleObject+0x12 0000ea60 00000000 00000000 00000000 00000000 nspr4!PR_MD_WAIT_CV+0x5c *----> Raw Stack Dump <----* 0000000000fefe60 c0 e9 90 7c db 25 80 7c - d0 00 00 00 00 00 00 00 ...|.%.|........ 0000000000fefe70 94 fe fe 00 8c 83 27 00 - 58 84 27 00 a4 82 27 00 ......'.X.'...'. 0000000000fefe80 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fefe90 10 00 00 00 00 ba 3c dc - ff ff ff ff 00 90 fd 7f ......<......... 0000000000fefea0 00 e0 fd 7f 94 fe fe 00 - 00 00 00 00 74 fe fe 00 ............t... 0000000000fefeb0 00 00 00 00 a4 ff fe 00 - f3 99 83 7c 08 26 80 7c ...........|.&.| 0000000000fefec0 00 00 00 00 d8 fe fe 00 - 42 25 80 7c d0 00 00 00 ........B%.|.... 0000000000fefed0 60 ea 00 00 00 00 00 00 - 60 ea 00 00 6c 7e 14 60 `.......`...l~.` 0000000000fefee0 d0 00 00 00 60 ea 00 00 - 88 82 27 00 58 84 27 00 ....`.....'.X.'. 0000000000fefef0 54 ff fe 00 88 82 27 00 - 0c 42 14 60 8c 83 27 00 T.....'..B.`..'. 0000000000feff00 a4 82 27 00 4c 9c 53 00 - c0 45 14 60 4c 9c 53 00 ..'.L.S..E.`L.S. 0000000000feff10 53 43 14 60 58 84 27 00 - 18 83 27 00 88 82 27 00 SC.`X.'...'...'. 0000000000feff20 4c 9c 53 00 a8 64 27 00 - 60 ce 2f 60 18 83 27 00 L.S..d'.`./`..'. 0000000000feff30 4c 9c 53 00 04 85 27 00 - b4 83 27 00 68 86 27 00 L.S...'...'.h.'. 0000000000feff40 98 35 31 60 c0 98 32 60 - 0a 00 00 00 01 00 00 00 .51`..2`........ 0000000000feff50 01 00 00 00 b4 ff fe 00 - 71 73 2f 60 00 00 00 00 ........qs/`.... 0000000000feff60 58 84 27 00 21 4c 14 60 - a8 83 27 00 a0 47 27 00 X.'.!L.`..'..G'. 0000000000feff70 a0 47 27 00 a4 d0 c2 77 - a0 87 27 00 4b 6d 14 60 .G'....w..'.Km.` 0000000000feff80 58 84 27 00 b0 a3 c3 77 - 58 84 27 00 a4 d0 c2 77 X.'....wX.'....w 0000000000feff90 00 00 27 00 68 86 27 00 - 00 00 00 00 8c ff fe 00 ..'.h.'......... *----> State Dump for Thread Id 0x670 <----* eax=00000003 ebx=00168060 ecx=001679e8 edx=7c90eb94 esi=7fffffff edi=ffffffff eip=7c90eb94 esp=0153cd44 ebp=0153cd80 iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WS2_32.dll - ChildEBP RetAddr Args to Child 0153cd80 71a55fa7 000001d8 000001ac 00000000 ntdll!KiFastSystemCallRet 0153ce74 71ab2e67 00000000 0153df20 00000000 mswsock+0x5fa7 0153cec4 60149979 00000000 0153df20 00000000 WS2_32!select+0xa7 00000000 00000000 00000000 00000000 00000000 nspr4+0x19979 *----> Raw Stack Dump <----* 000000000153cd44 c0 e9 90 7c 33 40 a5 71 - d8 01 00 00 01 00 00 00 ...|3@.q........ 000000000153cd54 6c cd 53 01 24 ce 53 01 - 20 df 53 01 14 ce 53 01 l.S.$.S. .S...S. 000000000153cd64 08 ba 54 fd c0 68 c5 01 - ff ff ff ff ff ff ff 7f ..T..h.......... 000000000153cd74 60 80 16 00 00 00 00 00 - 00 00 00 00 74 ce 53 01 `...........t.S. 000000000153cd84 a7 5f a5 71 d8 01 00 00 - ac 01 00 00 00 00 00 00 ._.q............ 000000000153cd94 04 00 00 00 00 00 00 00 - b0 60 29 00 00 00 00 00 .........`)..... 000000000153cda4 78 01 29 00 00 00 00 00 - 00 00 00 00 00 00 00 00 x.)............. 000000000153cdb4 01 00 00 00 19 d9 90 7c - 7b e0 80 7c ff ff ff ff .......|{..|.... 000000000153cdc4 00 00 00 00 1c 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000153cdd4 00 00 00 00 8b e0 80 7c - f0 60 29 00 00 00 00 00 .......|.`)..... 000000000153cde4 a8 ce 53 01 68 07 1e 02 - c8 2e 30 01 1c 00 00 00 ..S.h.....0..... 000000000153cdf4 60 80 16 00 30 ce 53 01 - 00 00 00 00 00 00 00 00 `...0.S......... 000000000153ce04 00 00 00 00 14 ce 53 01 - 00 00 00 00 00 00 00 00 ......S......... 000000000153ce14 ff ff ff ff ff ff ff 7f - 01 00 00 00 00 00 06 01 ................ 000000000153ce24 ac 01 00 00 19 00 00 00 - 00 00 00 00 a4 03 00 00 ................ 000000000153ce34 19 00 00 00 00 00 00 00 - a4 03 00 00 02 01 00 00 ................ 000000000153ce44 ff ff ff ff 10 04 00 00 - 02 01 00 00 32 2b ab 71 ............2+.q 000000000153ce54 01 00 00 00 26 b9 00 00 - 98 cd 53 01 0c 15 aa 71 ....&.....S....q 000000000153ce64 b4 ce 53 01 c8 71 a7 71 - 68 2e a5 71 ff ff ff ff ..S..q.qh..q.... 000000000153ce74 c4 ce 53 01 67 2e ab 71 - 00 00 00 00 20 df 53 01 ..S.g..q.... .S. *----> State Dump for Thread Id 0xb50 <----* eax=7ffda000 ebx=0107c9fc ecx=0174fe70 edx=7c90eb94 esi=00000210 edi=00000000 eip=7c90eb94 esp=0174fe70 ebp=0174fed4 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0174fed4 7c802542 00000210 000000f9 00000000 ntdll!KiFastSystemCallRet 0174fee8 60147e6c 00000210 000000f9 0107c9e0 kernel32!WaitForSingleObject+0x12 000000f9 00000000 00000000 00000000 00000000 nspr4!PR_MD_WAIT_CV+0x5c *----> Raw Stack Dump <----* 000000000174fe70 c0 e9 90 7c db 25 80 7c - 10 02 00 00 00 00 00 00 ...|.%.|........ 000000000174fe80 a4 fe 74 01 4c dd 07 01 - 18 de 07 01 fc c9 07 01 ..t.L........... 000000000174fe90 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000174fea0 10 00 00 00 70 01 da ff - ff ff ff ff 00 90 fd 7f ....p........... 000000000174feb0 00 a0 fd 7f a4 fe 74 01 - 00 00 00 00 84 fe 74 01 ......t.......t. 000000000174fec0 00 00 00 00 a4 ff 74 01 - f3 99 83 7c 08 26 80 7c ......t....|.&.| 000000000174fed0 00 00 00 00 e8 fe 74 01 - 42 25 80 7c 10 02 00 00 ......t.B%.|.... 000000000174fee0 f9 00 00 00 00 00 00 00 - f9 00 00 00 6c 7e 14 60 ............l~.` 000000000174fef0 10 02 00 00 f9 00 00 00 - e0 c9 07 01 18 de 07 01 ................ 000000000174ff00 38 dc 07 01 e0 c9 07 01 - 0c 42 14 60 4c dd 07 01 8........B.`L... 000000000174ff10 fc c9 07 01 cb 58 00 00 - 08 a2 05 02 cb 58 00 00 .....X.......X.. 000000000174ff20 53 43 14 60 18 de 07 01 - d8 dc 07 01 e0 c9 07 01 SC.`............ 000000000174ff30 cb 58 00 00 18 dc 07 01 - 90 a7 2f 60 d8 dc 07 01 .X......../`.... 000000000174ff40 cb 58 00 00 c4 de 07 01 - 74 dd 07 01 b4 ff 74 01 .X......t.....t. 000000000174ff50 40 e0 07 01 cb 58 00 00 - 71 73 2f 60 a8 9e 22 24 @....X..qs/`.."$ 000000000174ff60 18 de 07 01 21 4c 14 60 - 68 dd 07 01 a0 47 27 00 ....!L.`h....G'. 000000000174ff70 a0 47 27 00 64 f9 64 01 - a0 c7 07 01 4b 6d 14 60 .G'.d.d.....Km.` 000000000174ff80 18 de 07 01 b0 a3 c3 77 - 18 de 07 01 64 f9 64 01 .......w....d.d. 000000000174ff90 00 00 00 00 40 e0 07 01 - 00 00 00 00 8c ff 74 01 ....@.........t. 000000000174ffa0 00 00 00 00 dc ff 74 01 - 94 5c c3 77 d8 40 c1 77 ......t..\.w.@.w *----> State Dump for Thread Id 0x224 <----* eax=02c4f748 ebx=00000000 ecx=77606e00 edx=77606e00 esi=00153158 edi=00000000 eip=7c90eb94 esp=0186fe1c ebp=0186ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0186ff80 77e76c22 0186ffa8 77e76a3b 00153158 ntdll!KiFastSystemCallRet 0186ff88 77e76a3b 00153158 00000000 0012ec50 RPCRT4!I_RpcBCacheFree+0x5ea 0186ffa8 77e76c0a 0015c4e8 0186ffec 7c80b50b RPCRT4!I_RpcBCacheFree+0x403 0186ffb4 7c80b50b 00168fa8 00000000 0012ec50 RPCRT4!I_RpcBCacheFree+0x5d2 0186ffec 00000000 77e76bf0 00168fa8 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000186fe1c 99 e3 90 7c 03 67 e7 77 - 58 02 00 00 70 ff 86 01 ...|.g.wX...p... 000000000186fe2c 00 00 00 00 68 ac ca 02 - 54 ff 86 01 00 c3 7b 86 ....h...T.....{. 000000000186fe3c fa 02 55 80 00 00 04 00 - d0 2a ab 85 50 9a ed 84 ..U......*..P... 000000000186fe4c 80 20 00 c0 02 00 00 00 - 00 00 81 01 93 81 01 00 . .............. 000000000186fe5c c8 55 29 81 00 00 00 00 - 9c 36 50 c0 c8 2c ab 85 .U)......6P..,.. 000000000186fe6c 16 00 00 00 84 9b d6 ed - fd eb 4e 80 40 b5 af f7 ..........N.@... 000000000186fe7c 02 ff 1f c0 06 82 4e 80 - 00 90 fd 7f b0 9b d6 ed ......N......... 000000000186fe8c 64 ff 1f c0 90 9b d6 ed - db a6 4e 80 00 80 fd 7f d.........N..... 000000000186fe9c 01 00 00 00 43 fd 6f 80 - 28 9c d6 ed 27 f4 6f 80 ....C.o.(...'.o. 000000000186feac 00 0d db ba 00 00 00 00 - 4a ed 4e 80 b0 9b d6 ed ........J.N..... 000000000186febc 00 00 00 00 00 00 00 00 - 20 76 fd 84 d0 2a ab 85 ........ v...*.. 000000000186fecc 01 2b ab 85 00 00 00 00 - 60 ff 1f c0 00 00 00 00 .+......`....... 000000000186fedc 48 77 26 e3 00 00 00 00 - 00 00 00 00 00 00 00 00 Hw&............. 000000000186feec 9c 2b ab 85 ff ff ff ff - 40 f5 df ff 00 00 00 00 .+......@....... 000000000186fefc 10 f4 6f 80 bc 61 6b 86 - 28 9c d6 ed 00 00 00 00 ..o..ak.(....... 000000000186ff0c 27 f4 6f 80 08 00 00 00 - 46 02 00 00 e8 1b 4e 80 '.o.....F.....N. 000000000186ff1c 90 60 6b 86 20 60 6b 86 - 1e 1c 4e 80 8c 61 6b 86 .`k. `k...N..ak. 000000000186ff2c 20 60 6b 86 80 ff 86 01 - 99 66 e7 77 4c ff 86 01 `k......f.wL... 000000000186ff3c a9 66 e7 77 ed 10 90 7c - 58 a5 16 00 a8 8f 16 00 .f.w...|X....... 000000000186ff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> State Dump for Thread Id 0xf84 <----* eax=72d230e8 ebx=02f3fef8 ecx=000000c7 edx=0018d368 esi=00000000 edi=7ffd9000 eip=7c90eb94 esp=02f3fed0 ebp=02f3ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 02f3ff6c 7c809c86 00000002 02f3ffa4 00000000 ntdll!KiFastSystemCallRet 02f3ff88 72d2312a 00000002 02f3ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 02f3ffb4 7c80b50b 00000000 00000000 00150000 wdmaud!midMessage+0x348 02f3ffec 00000000 72d230e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000002f3fed0 ab e9 90 7c f2 94 80 7c - 02 00 00 00 f8 fe f3 02 ...|...|........ 0000000002f3fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002f3fef0 00 00 00 00 00 00 00 00 - 38 03 00 00 2c 03 00 00 ........8...,... 0000000002f3ff00 a4 49 15 85 28 3c 6c ee - 00 00 00 00 27 f4 6f 80 .I..(<l.....'.o. 0000000002f3ff10 08 00 00 00 46 02 00 00 - 14 00 00 00 01 00 00 00 ....F........... 0000000002f3ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 08 48 15 85 .............H.. 0000000002f3ff30 3c 48 15 85 0f 39 4e 80 - 00 90 fd 7f 00 50 fd 7f <H...9N......P.. 0000000002f3ff40 08 48 15 85 00 00 00 00 - f8 fe f3 02 3c b9 4f 80 .H..........<.O. 0000000002f3ff50 02 00 00 00 ec fe f3 02 - 00 00 00 00 dc ff f3 02 ................ 0000000002f3ff60 f3 99 83 7c 90 95 80 7c - 00 00 00 00 88 ff f3 02 ...|...|........ 0000000002f3ff70 86 9c 80 7c 02 00 00 00 - a4 ff f3 02 00 00 00 00 ...|............ 0000000002f3ff80 ff ff ff ff 00 00 00 00 - b4 ff f3 02 2a 31 d2 72 ............*1.r 0000000002f3ff90 02 00 00 00 a4 ff f3 02 - 00 00 00 00 ff ff ff ff ................ 0000000002f3ffa0 00 00 15 00 38 03 00 00 - 2c 03 00 00 f2 fe 6f 80 ....8...,.....o. 0000000002f3ffb0 dc e2 90 7c ec ff f3 02 - 0b b5 80 7c 00 00 00 00 ...|.......|.... 0000000002f3ffc0 00 00 00 00 00 00 15 00 - 00 00 00 00 00 50 fd 7f .............P.. 0000000002f3ffd0 00 e6 7b 86 c0 ff f3 02 - c0 0c 3a 86 ff ff ff ff ..{.......:..... 0000000002f3ffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 0000000002f3fff0 00 00 00 00 e8 30 d2 72 - 00 00 00 00 00 00 00 00 .....0.r........ 0000000002f40000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0xb90 <----* eax=00000002 ebx=00000000 ecx=0327ff08 edx=7c90eb94 esi=00000001 edi=00000000 eip=7c90eb94 esp=0327ff08 ebp=0327ffb4 iopl=0 nv up ei ng nz ac po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000296 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0327ffb4 7c80b50b 00000000 00000000 00000002 ntdll!KiFastSystemCallRet 0327ffec 00000000 76b5aee7 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000327ff08 ab e9 90 7c 21 af b5 76 - 01 00 00 00 6c ff 27 03 ...|!..v....l.'. 000000000327ff18 01 00 00 00 01 00 00 00 - 00 00 00 00 02 00 00 00 ................ 000000000327ff28 d4 7a ac 85 00 02 00 00 - 11 02 00 00 b2 01 00 00 .z.............. 000000000327ff38 e4 01 00 00 e4 01 00 00 - 68 79 ac 85 00 40 fd 7f ........hy...@.. 000000000327ff48 88 5c f2 ed 3c b9 4f 80 - 00 00 00 00 05 00 00 00 .\..<.O......... 000000000327ff58 00 00 00 00 00 00 00 00 - 00 00 00 00 f4 05 4f 80 ..............O. 000000000327ff68 60 5c f2 ed 80 03 00 00 - 98 03 00 00 bc 03 00 00 `\.............. 000000000327ff78 ac 02 00 00 f0 03 00 00 - f0 03 00 00 50 7a ac 85 ............Pz.. 000000000327ff88 01 00 00 00 00 00 00 00 - a0 ad c8 84 1c b9 4f 80 ..............O. 000000000327ff98 00 00 00 00 00 00 00 00 - 00 00 00 00 24 b9 4f 80 ............$.O. 000000000327ffa8 a0 5c f2 ed f2 fe 6f 80 - 01 00 00 00 ec ff 27 03 .\....o.......'. 000000000327ffb8 0b b5 80 7c 00 00 00 00 - 00 00 00 00 02 00 00 00 ...|............ 000000000327ffc8 00 00 00 00 00 40 fd 7f - 00 e6 7b 86 c0 ff 27 03 .....@....{...'. 000000000327ffd8 d0 7f c1 84 ff ff ff ff - f3 99 83 7c 18 b5 80 7c ...........|...| 000000000327ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 e7 ae b5 76 ...............v 000000000327fff8 00 00 00 00 00 00 00 00 - 08 00 00 00 00 01 00 02 ................ 0000000003280008 ee ff ee ff 00 00 00 00 - 00 00 15 00 00 20 07 00 ............. .. 0000000003280018 00 00 28 03 00 02 00 00 - 40 00 28 03 00 00 48 03 ..(.....@.(...H. 0000000003280028 f7 00 00 00 03 00 00 00 - 10 00 c0 02 00 00 00 00 ................ 0000000003280038 d0 2f 33 03 00 00 00 00 - 1d 00 08 00 1d 01 08 02 ./3............. *----> State Dump for Thread Id 0x60c <----* eax=77e76bf0 ebx=00000000 ecx=00000000 edx=00000000 esi=00153158 edi=001531fc eip=7c90eb94 esp=03b0fe1c ebp=03b0ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03b0ff80 77e76c22 03b0ffa8 77e76a3b 00153158 ntdll!KiFastSystemCallRet 03b0ff88 77e76a3b 00153158 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x5ea 03b0ffa8 77e76c0a 0015c4e8 03b0ffec 7c80b50b RPCRT4!I_RpcBCacheFree+0x403 03b0ffb4 7c80b50b 0018fe60 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x5d2 03b0ffec 00000000 77e76bf0 0018fe60 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000003b0fe1c 99 e3 90 7c 03 67 e7 77 - 58 02 00 00 70 ff b0 03 ...|.g.wX...p... 0000000003b0fe2c 00 00 00 00 d8 6e 2c 03 - 4c ff b0 03 00 00 00 00 .....n,.L....... 0000000003b0fe3c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003b0fe4c 00 00 00 00 02 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003b0fe5c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003b0fe6c 17 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003b0fe7c 00 00 00 00 00 00 00 00 - 00 00 00 00 06 02 00 00 ................ 0000000003b0fe8c 9e 9d 4d 80 23 25 4e 80 - 20 00 aa 84 28 5c f2 ed ..M.#%N. ...(\.. 0000000003b0fe9c 00 f1 6f 80 90 5b f2 ed - 06 f1 6f 80 1c 79 ac 85 ..o..[....o..y.. 0000000003b0feac e1 00 00 00 28 5c f2 ed - 23 25 4e 80 00 0d db ba ....(\..#%N..... 0000000003b0febc 81 88 55 80 00 0d db ba - 00 00 00 00 2e 25 4e 80 ..U..........%N. 0000000003b0fecc 00 0d db ba 81 88 55 80 - 00 00 00 00 00 00 00 00 ......U......... 0000000003b0fedc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003b0feec 81 88 55 80 38 b5 af f7 - 40 f5 df ff 0d ca 4d 80 ..U.8...@.....M. 0000000003b0fefc ff ff ff ff 46 02 00 00 - 4d c8 4d 80 28 5c f2 ed ....F...M.M.(\.. 0000000003b0ff0c 20 00 aa 84 20 b1 af f7 - bc 01 aa 84 e8 1b 4e 80 ... .........N. 0000000003b0ff1c 90 00 aa 84 20 00 aa 84 - 1e 1c 4e 80 8c 01 aa 84 .... .....N..... 0000000003b0ff2c 20 00 aa 84 80 ff b0 03 - 99 66 e7 77 4c ff b0 03 ........f.wL... 0000000003b0ff3c a9 66 e7 77 ed 10 90 7c - 68 77 17 00 60 fe 18 00 .f.w...|hw..`... 0000000003b0ff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> State Dump for Thread Id 0x730 <----* eax=7ffd7000 ebx=c0000000 ecx=7ffd7000 edx=01303568 esi=00000000 edi=71a87558 eip=7c90eb94 esp=036fff7c ebp=036fffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 036fffb4 7c80b50b 71a5d8ec 0153fa84 7c90ee18 ntdll!KiFastSystemCallRet 036fffec 00000000 71a5d5af 00172960 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000036fff7c 1b e3 90 7c 09 d6 a5 71 - b4 01 00 00 bc ff 6f 03 ...|...q......o. 00000000036fff8c b0 ff 6f 03 a4 ff 6f 03 - 50 d6 a5 71 84 fa 53 01 ..o...o.P..q..S. 00000000036fff9c 18 ee 90 7c 60 29 17 00 - 00 00 00 00 00 00 00 00 ...|`).......... 00000000036fffac 00 00 a5 71 f0 3c 30 01 - ec ff 6f 03 0b b5 80 7c ...q.<0...o....| 00000000036fffbc ec d8 a5 71 84 fa 53 01 - 18 ee 90 7c 60 29 17 00 ...q..S....|`).. 00000000036fffcc 00 70 fd 7f 00 e6 7b 86 - c0 ff 6f 03 c8 f4 32 86 .p....{...o...2. 00000000036fffdc ff ff ff ff f3 99 83 7c - 18 b5 80 7c 00 00 00 00 .......|...|.... 00000000036fffec 00 00 00 00 00 00 00 00 - af d5 a5 71 60 29 17 00 ...........q`).. 00000000036ffffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000370009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000037000ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0xfb4 <----* eax=00000005 ebx=0107c044 ecx=04ddf594 edx=74736c2e esi=000002b8 edi=00000000 eip=7c90eb94 esp=0143fe78 ebp=0143fedc iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0143fedc 7c802542 000002b8 0000ea60 00000000 ntdll!KiFastSystemCallRet 0143fef0 60147e6c 000002b8 0000ea60 0107c028 kernel32!WaitForSingleObject+0x12 0000ea60 00000000 00000000 00000000 00000000 nspr4!PR_MD_WAIT_CV+0x5c *----> Raw Stack Dump <----* 000000000143fe78 c0 e9 90 7c db 25 80 7c - b8 02 00 00 00 00 00 00 ...|.%.|........ 000000000143fe88 ac fe 43 01 04 c5 07 01 - b8 1d 08 05 44 c0 07 01 ..C.........D... 000000000143fe98 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000143fea8 10 00 00 00 00 ba 3c dc - ff ff ff ff 00 90 fd 7f ......<......... 000000000143feb8 00 d0 fd 7f ac fe 43 01 - ff ff ff ff 8c fe 43 01 ......C.......C. 000000000143fec8 de c2 c2 77 a4 ff 43 01 - f3 99 83 7c 08 26 80 7c ...w..C....|.&.| 000000000143fed8 00 00 00 00 f0 fe 43 01 - 42 25 80 7c b8 02 00 00 ......C.B%.|.... 000000000143fee8 60 ea 00 00 00 00 00 00 - 60 ea 00 00 6c 7e 14 60 `.......`...l~.` 000000000143fef8 b8 02 00 00 60 ea 00 00 - 28 c0 07 01 b8 1d 08 05 ....`...(....... 000000000143ff08 4c 9c 53 00 10 c0 07 01 - 0c 42 14 60 04 c5 07 01 L.S......B.`.... 000000000143ff18 44 c0 07 01 4c 9c 53 00 - f0 bf 07 01 4c 9c 53 00 D...L.S.....L.S. 000000000143ff28 53 43 14 60 b8 1d 08 05 - 90 c4 07 01 28 c0 07 01 SC.`........(... 000000000143ff38 4c 9c 53 00 10 c0 07 01 - 35 e2 44 00 90 c4 07 01 L.S.....5.D..... 000000000143ff48 4c 9c 53 00 64 1e 08 05 - b8 1d 08 05 b4 ff 43 01 L.S.d.........C. 000000000143ff58 b0 d8 96 04 28 c0 07 01 - f0 bf 07 01 21 4c 14 60 ....(.......!L.` 000000000143ff68 c1 fd 09 24 a0 47 27 00 - a0 47 27 00 32 07 91 7c ...$.G'..G'.2..| 000000000143ff78 e8 88 df 04 4b 6d 14 60 - b8 1d 08 05 b0 a3 c3 77 ....Km.`.......w 000000000143ff88 b8 1d 08 05 32 07 91 7c - ab 06 91 7c b0 d8 96 04 ....2..|...|.... 000000000143ff98 00 00 00 00 8c ff 43 01 - 00 00 00 00 dc ff 43 01 ......C.......C. 000000000143ffa8 94 5c c3 77 d8 40 c1 77 - 00 00 00 00 ec ff 43 01 .\.w.@.w......C. *----> State Dump for Thread Id 0xfb0 <----* eax=774fd888 ebx=00007530 ecx=0012d61c edx=019daca4 esi=00000000 edi=0164ff50 eip=7c90eb94 esp=0164ff20 ebp=0164ff78 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll - ChildEBP RetAddr Args to Child 0164ff78 7c802451 0000ea60 00000000 0164ffb4 ntdll!KiFastSystemCallRet 0164ff88 774fd6ae 0000ea60 00175fc0 774fd83b kernel32!Sleep+0xf 0164ffb4 7c80b50b 00175fc0 00270000 058ca920 ole32!IsValidInterface+0x295 0164ffec 00000000 774fd888 00175fc0 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000164ff20 5c d8 90 7c ed 23 80 7c - 00 00 00 00 50 ff 64 01 \..|.#.|....P.d. 000000000164ff30 50 25 80 7c f8 6d 60 77 - 30 75 00 00 14 00 00 00 P%.|.m`w0u...... 000000000164ff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 000000000164ff50 00 ba 3c dc ff ff ff ff - 00 d1 4e 77 50 ff 64 01 ..<.......NwP.d. 00000000 |
|
#10
|
||||
|
||||
|
The only thing I can see are obvious troiubles with firefox so My next move would be to uninstall. reboot then reinstall.
|