![]() |
|
#1
| |||
| |||
| Min PC krasjer tilfeldig mens jeg spiller online spill. Helt gangen er det en stor krasj som den alltid populære Blue Screen of Death vises med feilmeldingen: STOP 0x000000D1 IRQL_NOT_LESS_OR_EQUAL, det. Sys filen som er årsaken er en fil som heter gHidpnp.sys. Nedenfor er det Vista Problem rapport for hendelsen: Produkt Windows Problem Avslutt uventet Dato 23/02/2008 12:01 Status Ikke rapportert Problem signatur Problem Event Name: BlueScreen OS Version: 6.0.6000.2.0.0.768.3 Locale ID: 2057 Filer som bidrar til å beskrive problemet (enkelte filer kan ikke lenger være tilgjengelig) Mini022308-01.dmp sysdata.xml Version.txt Ekstra informasjon om problemet BCCode: d1 BCP1: FFFFF98015AD4CD0 BCP2: 0000000000000002 BCP3: 0000000000000000 BCP4: FFFFF980036427FE OS Version: 6_0_6000 Service Pack: 0_0 Product: 768_1 Versjon tekst: Windows NT versjon 6.0 Build: 6000 Produkt (0x3): Windows Vista (TM) Home Premium Edition: HomePremium BuildString: 6000.16584.amd64fre.vista_gdr.071023-1545 Smaken: Multiprocessor Gratis Arkitektur: X64 LCID: 1033 Etter noen undersøkelser med Hendelsesliste hvis fant denne filen i C: \ Windows \ system32 \ drivers. Etter å ha kikket på Prevx.com (http://www.prevx.com/filenames/X5154...PNP% 2ESYS.html) Jeg har funnet følgende informasjon om det og er ifølge dem malware arkiv. Filnavnet GHIDPNP.SYS ble først sett på 13 november 2007 i Nederland. Det har også blitt sett i de følgende geografiske regioner i fremherskende samfunnet:
GHIDPNP.SYS har blitt sett til å utføre følgende virkemåte (s): GHIDPNP.SYS har vært gjenstand for følgende virkemåte (s):
Anit-virus scan: SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 02/24/2008 at 12:14 Application Version: 3.9.1008 Core Rules Database Version: 3408 Trace Rules Database Version: 1400 Scan type: Complete Scan Total Scan Time: 01:29:58 Memory eks skannet: 365 Minne trusler oppdages: 0 Register eks skannet: 6568 Registerverdi trusler oppdages: 0 File eks skannet: 105877 Fil trusler oppdages: 0 Onlie skanner: # Version = 4 # OnlineScanner.ocx = 1.0.0.635 # OnlineScannerDLLA.dll = 1, 0, 0, 79 # OnlineScannerDLLW.dll = 1, 0, 0, 78 # OnlineScannerUninstaller.exe = 1, 0, 0, 49 # Vers_standard_module = 2898 (20080223) # Vers_arch_module = 1,064 (20080214) # Vers_adv_heur_module = 1,064 (20070717) # EOSSerial = 647d25ee6f7396488584033c46f2b72e # End = ferdig # Remove_checked = sant # Unwanted_checked = sant # Utc_time = 2008-02-24 02:35:46 # Local_time = 2008-02-24 02:35:46 (+0000, GMT Standard Time) # Landet = "Storbritannia" # OSVer = 6.0.6000 NT # Skannet = 516678 # Funnet = 0 # Scan_time = 2580 Hijack / Sniper Log: Logfile of Trend Micro HijackThis v2.0.2 Scan lagret på 13:47:45, on 24/02/2008 Plattform: Windows Vista (WinNT 6.00.1904) MSIE: Internet Explorer v7.00 (7.00.6000.16609) Boot mode: Normal Kjører prosesser: C: \ Windows \ SysWOW64 \ rundll32.exe C: \ Program Files (x86) \ Creative \ Shared Files \ CTSched.exe C: \ Program Files (x86) \ Windows Live \ Messenger \ msnmsgr.exe C: \ Program Files (x86) \ DAEMON Tools Lite \ daemon.exe C: \ Program Files (x86) \ Spybot - Search & Destroy \ TeaTimer.exe C: \ Program Files (x86) \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Program Files (x86) \ NETGEAR \ WG111v2 \ WG111v2.exe C: \ Program Files (x86) \ Creative \ Sound Blaster X-Fi \ Volume Panel \ VolPanlu.exe C: \ Program Files (x86) \ Grisoft \ AVG7 \ avgcc.exe C: \ Program Files (x86) \ iTunes \ iTunesHelper.exe C: \ Program Files (x86) \ Java \ jre1.6.0_03 \ bin \ jusched.exe C: \ Windows \ SysWOW64 \ CTHELPER.EXE C: \ Windows \ SysWOW64 \ CTXFIHLP.EXE C: \ Windows \ SysWOW64 \ CTXFISPI.EXE C: \ Program Files (x86) \ ASUS \ AASP \ 1.00.32 \ aaCenter.exe C: \ Program Files (x86) \ Mozilla Firefox \ firefox.exe C: \ Program Files (x86) \ Trend Micro \ HijackThis \ sniper.exe R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, SearchAssistant = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, CustomizeSearch = R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Toolbar, LinksFolderName = R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - (no file) F2 - REG: system.ini: UserInit = userinit.exe O1 - Hosts::: 1 localhost O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files (x86) \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: Spybot-S & D IE Protection - (53707962-6F74-2D53-2644-206D7942484F) - c: \ progra ~ 2 \ Spybot ~ 1 \ SDHelper.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files (x86) \ Java \ jre1.6.0_03 \ bin \ ssv.dll O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file) O2 - BHO: Windows Live Sign-in Helper - (9030D464-4C02-4ABF-8ECC-5164760863C6) - C: \ Program Files (x86) \ Fellesfiler \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll O4 - HKLM \ .. \ Run: [VolPanel] "C: \ Program Files (x86) \ Creative \ Sound Blaster X-Fi \ Volume Panel \ VolPanlu.exe" / r O4 - HKLM \ .. \ Run: [UpdReg] C: \ Windows \ UpdReg.EXE O4 - HKLM \ .. \ Run: [AVG7_CC] C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgcc.exe / STARTUP O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files (x86) \ QuickTime \ QTTask.exe"-atboottime O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files (x86) \ iTunes \ iTunesHelper.exe" O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files (x86) \ Java \ jre1.6.0_03 \ bin \ jusched.exe" O4 - HKLM \ .. \ Run: [AsioThk32Reg] Regsvr32.exe / S CTASIO.DLL O4 - HKLM \ .. \ Run: [CTHelper] CTHELPER.EXE O4 - HKLM \ .. \ Run: [CTxfiHlp] CTXFIHLP.EXE O4 - HKLM \ .. \ Run: [CTXFIREG] CTxfiReg.exe O4 - HKLM \ .. \ Run: [ioCentre] C: \ Genius \ ioCentre \ gTaskBar.exe O4 - HKLM \ .. \ Run: [Adobe Reader Speed Launcher] "C: \ Program Files (x86) \ Adobe \ Reader 8.0 \ Reader \ Reader_sl.exe" O4 - HKLM \ .. \ Run: [! AVG Anti-Spyware] "C: \ Program Files (x86) \ Grisoft \ AVG Anti-Spyware 7.5 \ avgas.exe" / minimert O4 - HKCU \ .. \ Run: [CreativeTaskScheduler] "C: \ Program Files (x86) \ Creative \ Shared Files \ CTSched.exe" / logon O4 - HKCU \ .. \ Run: [MsnMsgr] "C: \ Program Files (x86) \ Windows Live \ Messenger \ MsnMsgr.Exe" / background O4 - HKCU \ .. \ Run: [ehTray.exe] C: \ Windows \ ehome \ ehTray.exe O4 - HKCU \ .. \ Run: [DAEMON Tools Lite] "C: \ Program Files (x86) \ DAEMON Tools Lite \ daemon.exe" O4 - HKCU \ .. \ Run: [SpybotSD TeaTimer] C: \ Program Files (x86) \ Spybot - Search & Destroy \ TeaTimer.exe O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files (x86) \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKUS \ S-1-5-19 \ .. \ Run: [Sidebar]% ProgramFiles% \ Windows Sidebar \ Sidebar.exe / detectMem (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-19 \ .. \ Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll, ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-19 \ .. \ Run: [AVG7_Run] C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgw.exe / RunOnce (User 'LOKAL TJENESTE') O4 - HKUS \ S-1-5-20 \ .. \ Run: [Sidebar]% ProgramFiles% \ Windows Sidebar \ Sidebar.exe / detectMem (User 'NETWORK SERVICE') O4 - HKUS \ S-1-5-18 \ .. \ Run: [AVG7_Run] C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgw.exe / RunOnce (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [AVG7_Run] C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgw.exe / RunOnce (User '') O4 - Global Startup: Microsoft Office.lnk = C: \ Program Files (x86) \ Microsoft Office \ Office10 \ Osa.exe O4 - Global Startup: NETGEAR WG111v2 Smart Wizard.lnk =? O8 - Extra context menu item: E & ksporter til Microsoft Excel - res: / / C: \ PROGRA ~ 2 \ MICROS ~ 1 \ Office10 \ EXCEL.EXE/3000 O9 - Extra knappen: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files (x86) \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Extra "Verktøy" MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files (x86) \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Extra button: Blogg dette - (219C3416-8CB2-491a-A3C7-D9FCDDC9D600) - C: \ Program Files (x86) \ Windows Live \ Writer \ WriterBrowserExtension.dll O9 - Extra 'Tools' MENUITEM: & Blog This in Windows Live Writer - (219C3416-8CB2-491a-A3C7-D9FCDDC9D600) - C: \ Program Files (x86) \ Windows Live \ Writer \ WriterBrowserExtension.dll O9 - Extra knappen: (no name) - (DFB852A3-47F8-48C4-a200-58CAB36FD2A2) - c: \ progra ~ 2 \ Spybot ~ 1 \ SDHelper.dll O9 - Extra "Verktøy" MENUITEM: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-a200-58CAB36FD2A2) - c: \ progra ~ 2 \ Spybot ~ 1 \ SDHelper.dll O16 - DPF: (20A60F0D-9AFA-4515-A0FD-83BD84642501) (Checkers Klassifikasjon) -- http://messenger.zone.msn.com/binary...r.cab56986.cab O16 - DPF: (56762DEC-6B0D-4AB4-A8AD-989993B5D08B) (OnlineScanner Control) -- http://www.eset.eu/buxus/docs/OnlineScanner.cab O16 - DPF: (5C051655-FCD5-4969-9182-770EA5AA5565) (Solitaire Showdown klasse) -- http://messenger.zone.msn.com/binary...n.cab56986.cab O16 - DPF: (C3F79A2B-B9B4-4A66-B012-3EE46475B072) (MessengerStatsClient Klassifikasjon) -- http://messenger.zone.msn.com/binary...t.cab56907.cab O16 - DPF: (D27CDB6E-AE6D-11CF-96B8-444553540000) (Shockwave Flash Object) -- http://fpdownload2.macromedia.com/ge...sh/swflash.cab O16 - DPF: (F6ACF75C-C32C-447B-9BEF-46B766368D29) (Creative Software AutoUpdate Support Package) -- http://www.creative.com/su2/CTL_V020...5030/CTPID.cab O20 - Winlogon Notify:! SASWinLogon - C: \ Program Files (x86) \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C: \ Program Files (x86) \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe O23 - Service: @% SystemRoot% \ system32 \ Alg.exe, -112 (alg) - Unknown owner - C: \ Windows \ System32 \ alg.exe (file missing) O23 - Service: AVG Anti-Spyware Guard - Grisoft sro - C: \ Program Files (x86) \ Grisoft \ AVG Anti-Spyware 7.5 \ guard.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - Grisoft, sro - C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - Grisoft, sro - C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgupsvc.exe O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - Grisoft, sro - C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgrssvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - Grisoft, sro - C: \ PROGRA ~ 2 \ Grisoft \ AVG7 \ avgemc.exe O23 - Service: @ dfsrres.dll, -101 (DFSR) - Unknown owner - C: \ Windows \ system32 \ DFSR.exe (fil mangler) O23 - Service: iPod Service - Apple Inc. - C: \ Program Files (x86) \ iPod \ bin \ iPodService.exe O23 - Service: @ keyiso.dll, -100 (KeyIso) - Unknown owner - C: \ Windows \ system32 \ Lsass.exe (fil mangler) O23 - Service: @ comres.dll, -2797 (MSDTC) - Unknown owner - C: \ Windows \ System32 \ msdtc.exe (fil mangler) O23 - Service: NBService - Nero AG - C: \ Program Files (x86) \ Nero \ Nero 7 \ Nero BackItUp \ NBService.exe O23 - Service: @% SystemRoot% \ System32 \ Netlogon.dll, -102 (Netlogon) - Unknown owner - C: \ Windows \ system32 \ Lsass.exe (fil mangler) O23 - Service: PnkBstrA - Unknown owner - C: \ Windows \ system32 \ PnkBstrA.exe O23 - Service: @% systemroot% \ system32 \ psbase.dll, -300 (ProtectedStorage) - Unknown owner - C: \ Windows \ system32 \ Lsass.exe (fil mangler) O23 - Service: @% systemroot% \ system32 \ Locator.exe, -2 (RpcLocator) - Unknown owner - C: \ Windows \ system32 \ Locator.exe (fil mangler) O23 - Service: @% SystemRoot% \ system32 \ samsrv.dll, -1 (SamSs) - Unknown owner - C: \ Windows \ system32 \ Lsass.exe (fil mangler) O23 - Service: SBSD Security Center Service (SBSDWSCService) - Sikrere Nettverk Ltd - C: \ Program Files (x86) \ Spybot - Search & Destroy \ SDWinSec.exe O23 - Service: SCM_Service - Unknown owner - C: \ Windows \ SysWOW64 \ WinService.exe O23 - Service: @% SystemRoot% \ system32 \ SLsvc.exe, -101 (slsvc) - Unknown owner - C: \ Windows \ system32 \ SLsvc.exe (fil mangler) O23 - Service: @% SystemRoot% \ system32 \ snmptrap.exe, -3 (SNMPTRAP) - Unknown owner - C: \ Windows \ System32 \ snmptrap.exe (fil mangler) O23 - Service: @% systemroot% \ system32 \ Spoolsv.exe, -1 (Spooler) - Unknown owner - C: \ Windows \ System32 \ Spoolsv.exe (fil mangler) O23 - Service: @% SystemRoot% \ system32 \ ui0detect.exe, -101 (UI0Detect) - Unknown owner - C: \ Windows \ system32 \ UI0Detect.exe (fil mangler) O23 - Service: @% SystemRoot% \ system32 \ vds.exe, -100 (vds) - Unknown owner - C: \ Windows \ System32 \ vds.exe (fil mangler) O23 - Service: @% systemroot% \ system32 \ vssvc.exe, -102 (VSS) - Unknown owner - C: \ Windows \ system32 \ vssvc.exe (fil mangler) O23 - Service: @% systemroot% \ system32 \ wbem \ wmiapsrv.exe, -110 (wmiApSrv) - Unknown owner - C: \ Windows \ system32 \ wbem \ WmiApSrv.exe (fil mangler) O23 - Service: @% ProgramFiles% \ Windows Media Player \ wmpnetwk.exe, -101 (WMPNetworkSvc) - Unknown owner - C: \ Program Files (x86) \ Windows Media Player \ wmpnetwk.exe (fil mangler) -- End of file - 10326 bytes Nå er jeg på en tapt som hva du skal gjøre fordi STOP krasjet holder skjer. Jeg håper dersom postet alt riktig informasjon, og om nødvendig vil legge ut mer, fordi dette problemet er driving me nuts. |
|
#2
| |||
| |||
| HijackThis er ikke kompatibel med 64bit systemer så jeg kan ikke gjøre en god beslutning på loggen. Men fra det jeg kan se er dette ikke et malware problem. Det er et hardware problem så jeg vil flytte denne til maskinvaren forumet. http://support.microsoft.com/kb/810980 |
|
#3
| ||||||||||||
| ||||||||||||
| Denne feilen oppstår ofte som et resultat av en dårlig eller feil driver.
__________________
Har du installert eller oppgradert drivere før dette skjer? ...... hvis så prøv å rulle tilbake eller avinstallere den / dem og se om du mister problemet. Min System: Hjem Bygg
|
|
#4
| |||
| |||
| Jeg har oppdatert min gfx kort drivere, trådløs mus, tastatur og nettverkskort og vil se om dette sorterer problemet. Som det skjer tilfeldig Jeg skal fortelle deg hva som foregår. |
|
#5
| |||
| |||
| Jeg har det samme problemet, men det skjer når prosessoren aktivitet reachs maksimum (ususlly skjermen bare skulle fryse en liten stund) og da er min usb mus pluged - geni ergo 525v. Jeg har lisensiert Vista ... Når jeg avinstallerte musen, blå skjerm stoppet vises. Men stoped ekstra knapper fungerer så vel ... at ikke du til meg. |
|
#6
| ||||||||||||
| ||||||||||||
| Hei
__________________
Jeg har hatt dette problemet før og det viste seg å være RAM så prøv å endre eller rengjøre RAM og se om du fortsatt får dette problemet. Min System: Media Center PC
|
|
#7
| |||
| |||
| Selv jeg sto overfor det samme problemet noen dager tilbake. |
|
#8
| |||
| |||
| |
|
#9
| |||
| |||
| Sitat: |
|
#10
| |||
| |||
| Hei, jeg er ny her, men jeg har nøyaktig samme problem, og hva er mer skeptisk, jeg også bruke ergo 520 geniet mus ... |
![]() |
|
| Hugseliste |
Lignende Tråder | ||||
| Tråd | Tråd startet | Forum | Svar | Siste innlegg |
| Datamaskinen krasjer tilfeldig | icu222much | General Hardware Chat | 12 | 12 juli 2009 19:02 |
| Computer tilfeldig fryses .... | BiNaRyCoDe | General Hardware Chat | 5 | 6 desember 2008 05:29 |
| Systemet starter tilfeldig | 754510 | General Hardware Chat | 21 | 12 oktober 2008 10:12 |
| Sidevekslingsfilen tilfeldig flyttet .. | Axegrinder | Windows-operativsystemer | 6 | 12 nov 2007 08:32 |
| Tilfeldig starte igjen | Insomnia | General Hardware Chat | 4 | 21 oktober 2007 01:24 |
| Thread Tools | |
| |