BSOD - Several Error Types

v4l33

Honorable
Dec 6, 2013
10
0
10,510
So basically keep getting random BSODs for a month now and I can't figure out what is causing them.
The error I keep getting are:

  • ■ SYSTEM_SERVICE_EXCEPTION
    ■ PAGE_FAULT_IN_NONPAGED_AREA
    ■ KMODE_EXCEPTION_NOT_HANDLED
    ■ SYSTEM_THREAD_EXCEPTION_NOT_HANDLED
    ■ DRIVER_IRQL_NOT_LESS_OR_EQUAL
    ■ MEMORY_MANAGEMENT

They seem pretty random but they always point to ntoskrnl.exe as the culprit, tho afaik that happens when the OS has no idea what caused the crash.

What I did so far:


  • ■ Tested memory with Windows Memory Diagnostic Tool
    ■ Tested memory with memtest86 overnight, 6 passes
    ■ Swapped the memory modules and inserted them on different slots
    ■ Tested system stability with Prime95 Blend for 2h
    ■ Tested VGA card with Furmark for 30min
    ■ Tested with Windows Driver Verifier
    ■ Tested system files with SFC
    ■ Tested with CHKDSK
    ■ Tested HD with WD Diagnostics
    ■ Reinstalled all drivers with latest WHQL versions or BETA
    ■ Updated BIOS and reflashed it just in case
    ■ Reinstalled Windows

Absolutely every test above ran clean and had no errors whatsoever.

The important thing to mention is that I never got a single BSOD while gaming or running resource intensive applications, it only happens when I'm browsing or the computer is idle.

So anyone has any suggestions of what might cause this or how to fix this? Thank you.

Below are the dumps for the latest crash, minidump and full memory dump, aswell as system specs and BlueScreenViewer crash information.


Error Details


==================================================
Dump File : 010614-17113-01.dmp
Crash Time : 06/01/2014 17:10:52
Bug Check String : MEMORY_MANAGEMENT
Bug Check Code : 0x0000001a
Parameter 1 : 00000000`00005003
Parameter 2 : fffff700`01080000
Parameter 3 : 00000000`00001332
Parameter 4 : 000031fe`0000266c
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75bc0
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 6.1.7601.18247 (win7sp1_gdr.130828-1532)
Processor : x64
Crash Address : ntoskrnl.exe+75bc0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\010614-17113-01.dmp
Processors Count : 6
Major Version : 15
Minor Version : 7601
Dump File Size : 296,024
Dump File Time : 06/01/2014 17:12:01
==================================================

WinDbg Info:
* *
* Bugcheck Analysis *
* *
*******************************************************************************

MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000005003, The subtype of the bugcheck.
Arg2: fffff70001080000
Arg3: 0000000000001332
Arg4: 000031fe0000266c

Debugging Details:
------------------


BUGCHECK_STR: 0x1a_5003

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

PROCESS_NAME: MSPUB.EXE

CURRENT_IRQL: 0

LAST_CONTROL_TRANSFER: from fffff80002e6e6fc to fffff80002ed4bc0

STACK_TEXT:
fffff880`099d4248 fffff800`02e6e6fc : 00000000`0000001a 00000000`00005003 fffff700`01080000 00000000`00001332 : nt!KeBugCheckEx
fffff880`099d4250 fffff800`02ed2cee : 00000000`00000001 00000000`0c824000 00000000`005e7b01 00000000`30125490 : nt! ?? ::FNODOBFM::`string'+0x45f7d
fffff880`099d43b0 000007fe`fb60ebba : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x16e
00000000`002580b0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7fe`fb60ebba


STACK_COMMAND: kb

FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+45f7d
fffff800`02e6e6fc cc int 3

SYMBOL_STACK_INDEX: 1

SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+45f7d

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: nt

IMAGE_NAME: ntkrnlmp.exe

DEBUG_FLR_IMAGE_TIMESTAMP: 521ea035

FAILURE_BUCKET_ID: X64_0x1a_5003_nt!_??_::FNODOBFM::_string_+45f7d

BUCKET_ID: X64_0x1a_5003_nt!_??_::FNODOBFM::_string_+45f7d

Followup: MachineOwner
---------
Minidump:http://www.mediafire.com/download/fiirlckg9587ewc/010614-17113-01.zip
Full dump:http://www.mediafire.com/download/g225st7ggdm7i21/MEMORY.zip

System specs:

Computer:
Computer Type ACPI x64-based PC
Operating System Microsoft Windows 7 Ultimate
OS Service Pack Service Pack 1
Internet Explorer 11.0.9600.16476
DirectX DirectX 11.0
Computer Name ***
User Name ***
Logon Domain ***
Date / Time 2014-01-06 / 17:51

Motherboard:
CPU Type HexaCore AMD FX-6350, 4200 MHz (21 x 200)
Motherboard Name ASRock 970 Pro3 R2.0 (2 PCI, 1 PCI-E x1, 2 PCI-E x16, 4 DDR3 DIMM, Audio, Gigabit LAN)
Motherboard Chipset AMD 970, AMD K15
System Memory 8148 MB (DDR3-1600 DDR3 SDRAM)
DIMM1: Kingston HyperX KHX1600C9D3/4GX 4 GB DDR3-1600 DDR3 SDRAM (11-11-11-28 @ 800 MHz) (10-10-10-27 @ 761 MHz) (9-9-9-24 @ 685 MHz) (8-8-8-22 @ 609 MHz) (7-7-7-19 @ 533 MHz) (6-6-6-16 @ 457 MHz)
DIMM2: Kingston HyperX KHX1600C9D3/4GX 4 GB DDR3-1600 DDR3 SDRAM (11-11-11-28 @ 800 MHz) (10-10-10-27 @ 761 MHz) (9-9-9-24 @ 685 MHz) (8-8-8-22 @ 609 MHz) (7-7-7-19 @ 533 MHz) (6-6-6-16 @ 457 MHz)
BIOS Type AMI (10/02/2013)

Display:
Video Adapter AMD Radeon HD 7700 Series (1 GB)
Video Adapter AMD Radeon HD 7700 Series (1 GB)
Video Adapter AMD Radeon HD 7700 Series (1 GB)
Video Adapter AMD Radeon HD 7700 Series (1 GB)
Video Adapter AMD Radeon HD 7700 Series (1 GB)
Video Adapter AMD Radeon HD 7700 Series (1 GB)
3D Accelerator AMD Radeon HD 7770 (Cape Verde)
Monitor LG 20EN33 [20" LCD] (307NDLS7Q752)

Multimedia:
Audio Adapter ATI Radeon HDMI @ AMD Cape Verde/Pitcairn/Curacao/Heathrow/Chelsea/Venus - High Definition Audio Controller
Audio Adapter Realtek ALC892 @ ATI SB900 - High Definition Audio Controller

Storage:
IDE Controller AMD SATA Controller
Storage Controller Virtual CloneDrive
Disk Drive WDC WD10 EZEX-00RKKA0 SATA Disk Device (1000 GB, 7200 RPM, SATA-III)
Optical Drive ELBY CLONEDRIVE SCSI CdRom Device (Virtual CD-ROM)
SMART Hard Disks Status OK

Partitions:
C: (NTFS) 200.0 GB (155.2 GB free)
D: (NTFS) 500.0 GB (211.4 GB free)
E: (NTFS) 231.4 GB (188.1 GB free)
Total Size 931.4 GB (554.7 GB free)

Input:
Keyboard Standard PS/2 Keyboard
Mouse HID-compliant mouse

Network:
Primary IP Address 192.168.2.105
Primary MAC Address ***
Network Adapter Realtek PCIe GBE Family Controller (192.168.2.105)

Peripherals:
Printer Fax
Printer Microsoft XPS Document Writer
USB1 Controller ATI SB900 - OHCI USB Controller
USB1 Controller ATI SB900 - OHCI USB Controller
USB1 Controller ATI SB900 - OHCI USB Controller
USB1 Controller ATI SB900 - OHCI USB Controller
USB2 Controller ATI SB900 - EHCI USB 2.0 Controller
USB2 Controller ATI SB900 - EHCI USB 2.0 Controller
USB2 Controller ATI SB900 - EHCI USB 2.0 Controller
USB3 Controller Etron EJ188 USB 3.0 xHCI Controller
USB Device USB Human Interface Device

DMI:
DMI BIOS Vendor American Megatrends Inc.
DMI BIOS Version P1.50
DMI System Manufacturer To Be Filled By O.E.M.
DMI System Product To Be Filled By O.E.M.
DMI System Version To Be Filled By O.E.M.
DMI System Serial Number To Be Filled By O.E.M.
DMI System UUID ****
DMI Motherboard Manufacturer ASRock
DMI Motherboard Product 970 Pro3 R2.0
DMI Motherboard Version
DMI Motherboard Serial Number
DMI Chassis Manufacturer To Be Filled By O.E.M.
DMI Chassis Version To Be Filled By O.E.M.
DMI Chassis Serial Number To Be Filled By O.E.M.
DMI Chassis Asset Tag To Be Filled By O.E.M.
DMI Chassis Type Desktop Case
 
your kernel image appears to be damaged (12 errors detected from standard image)

I would run cmd.exe as a admin
then system file checker
sfc.exe /scannow <- will find and fix corrupt OS files

dism.exe /online /cleanup-Image /restorehealth <----- use this if the first command can not fix the issue

reboot and rescan to see if the issue remains fixed.


you have IDMan.exe on your system, malware scanners flag this internet download manager as malware, You might want to scan with malwarebytes
edit: I had the debugger check all of your standard OS files and two have been modifed

12 errors : nt (fffff8000343b895-fffff80003440993)
384 errors : win32k (fffff96000015af8-fffff960001fe947)

all the other windows OS files showed no errors.


 

v4l33

Honorable
Dec 6, 2013
10
0
10,510
SFC didn't find any errors but DISM stopped with an error, guess bad arguments.

Capture.png


Also MBAM and Kaspersky full scan didn't find any malware on my computer.
 
sorry, /restorehealth looks like a windows 8 .x option
http://technet.microsoft.com/en-us/library/hh824869.aspx

sfc.exe should have detected a corruption on disk, if it did not, I would suspect that the files are being modified while in memory by another driver you are running.