Please chk my log & advise me! Win 7 gets BSOD due to ahcix64s.sys driver when I use my WD external HDD! & ntoskrnl.exe!!!

67 views
Skip to first unread message

Richard Davies

unread,
Apr 22, 2014, 6:16:25 PM4/22/14
to freefix...@googlegroups.com
My HP Desktop 2 year old, HP-560Z, Windows 7 Professional Computer with an AMD 6 core Phenome 2 processor & 12 Gig of ram, runs perfectly for 12 hours per day by itself.  Yet for the past several days, after I connect my Western Digital 4 terabyte, My Book, external hard disc drive to it via the 3.0 USB connection, it begins to quickly crash with a Blue Screen, saying "Page Fault In Non Paged Area", 0X00000050, (caused by driver: ahcix64s.sys)   this is part of the AMD AHCI (RAID) CONTROLLER for Windows 64 Platform.  It is also related to the ntoskrnl.exe driver and has twice blue screened with that;  but the ahcix64s.sys driver failure involves the ntsokrnl.exe driver.  This has occurred about 14 times in a couple of days, and has happened a few times at the exact moment when I have clicked on the mouse to delete a file in my download directory.  The computer is absolutely clean of any viruses or malware, etc.  It may have either a corrupt or a missing file or files.  I am unsure.  I m trying to avoid having to reinstall the entire operating system if at all possible!  I have only a VERY old system restore point, which will Major undo the computer's software very much.  I also have an old back up of the "C" partition, from before this problem began, but would need to use the troublesome external drive to Restore it, and I have never done this before, and am unsure just how to do itThis log indicates that my Acronis Backup software is missing driver files....could this be the cause of the external drive causing my computer to crash soon after it is connected to my computer If you have any ideas regarding this, please provide me with very detailed answers!!!  I thank you so very much!!!!  I REALLY need this computer and don't have the money to have it repaired....

FreeFixer v1.10 log
http://www.freefixer.com/
Operating system: Windows 7 Service Pack 1
Log dated 2014-04-22 18:05


BootExecute (1 whitelisted)
===========================
C:\Windows\system32\SmartDefragBootTime.exe

TCP/IP settings
===============
HKLM\..\Interfaces\{0FC88545-DD40-49A6-8EB0-94775AF1E343}, NameServer = 8.8.8.8,8.8.4.4

Browser Helper Objects (8 whitelisted)
======================================
64-bit, {10921475-03CE-4E04-90CE-E2E7EF20C814}, ExplorerWnd Helper, C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
32-bit, {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}, Advanced SystemCare Browser Protection, C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL

Internet Explorer extensions
============================
HKLM\..\Extensions\{25510184-5A38-4A99-B273-DCA8EEF6CD08} - @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103
HKLM\..Wow6432Node..\Extensions\{25510184-5A38-4A99-B273-DCA8EEF6CD08} - @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103
HKLM\..Wow6432Node..\Extensions\{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - 

Basic Internet Explorer settings
================================
HKCU\..\Main, Start Page = http://xfinity.comcast.net/

Internet Explorer Search Providers
==================================
HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -  - 
HKCU\..\SearchScopes\{470F30D8-7B6B-443C-98F6-CFD15EEA1D31} - Yahoo! Search - http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
HKCU\..\SearchScopes\{6E29E97B-3928-402F-AAE1-E2EAEEA69605} - Yahoo - http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=902615&p={searchTerms}
HKCU\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc} -  - 
HKCU\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43} -  - 

Registry Startups (12 whitelisted)
==================================
HKLM\..\Run, Acronis Scheduler2 Service = "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
HKLM\..\RunOnce, *SOP_STK = "C:\Program Files (x86)\www_stk_sop\stk\sscont.exe" /p www_stk_sop /cfg "C:\Program Files (x86)\www_stk_sop\stk\sscont.xml" /runasadmin /restore (file is missing)
HKLM\..Wow6432Node..\Run, TrueImageMonitor.exe = "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
HKLM\..Wow6432Node..\Run, AcronisTibMounterMonitor = C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
HKCU\..\Run, Advanced SystemCare Ultimate = "C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCTray.exe" /Auto

Autostart shortcuts
===================
Download App.lnk, , C:\Users\ROBERT\AppData\Roaming\CBS Interactive\Download App\CBSI.AppStore.Main.exe
ZooskMessenger.lnk, , C:\Program Files (x86)\ZooskMessenger\ZooskMessenger.exe

Processes (43 whitelisted)
==========================
C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
C:\Program Files\FreeFixer\freefixer.exe
C:\Users\ROBERT\AppData\Local\Logos4\System\Logos.exe

Services (65 whitelisted)
=========================
AcrSch2Svc, Acronis Scheduler2 Service, c:\program files (x86)\common files\acronis\schedule2\schedul2.exe
AdvancedSystemCareService7, Advanced SystemCare Service 7, c:\program files (x86)\iobit\advanced systemcare ultimate 7\ascservice.exe
afcdpsrv, Acronis Nonstop Backup Service, c:\program files (x86)\common files\acronis\cdp\afcdpsrv.exe
ASCAntivirusSrv, AdvancedSystemCareAntivirus, c:\program files (x86)\iobit\advanced systemcare ultimate 7\ascavsvc.exe
clr_optimization_v4.0.30319_32, Microsoft .NET Framework NGEN v4.0.30319_X86, c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe
clr_optimization_v4.0.30319_64, Microsoft .NET Framework NGEN v4.0.30319_X64, c:\windows\microsoft.net\framework64\v4.0.30319\mscorsvw.exe
HP Support Assistant Service, HP Support Assistant Service, c:\program files (x86)\hewlett-packard\hp support framework\hpsa_service.exe
LightScribeService, LightScribeService Direct Disc Labeling Service, c:\program files (x86)\common files\lightscribe\lssrvc.exe
LiveUpdateSvc, LiveUpdate, c:\program files (x86)\iobit\liveupdate\liveupdate.exe
ssrang_supportdotcom, Support.com Controller Service(supportdotcom), c:\program files (x86)\supportdotcom\rang\ssrangsv.exe
syncagentsrv, Acronis Sync Agent Service, c:\program files (x86)\common files\acronis\syncagent\syncagentsrv.exe

Explorer.exe Modules (213 whitelisted)
======================================
C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll
C:\Program Files (x86)\Acronis\TrueImageHome\x64\versions_page.dll
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
C:\Windows\system32\IObitSmartDefragExtension.dll
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll
C:\Program Files\Recuva\RecuvaShell64.dll
C:\Program Files (x86)\IObit\Protected Folder\PfShellExtension.dll
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCExtMenu_64.dll
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll

Drivers (61 whitelisted)
========================
ccSet_N360, N360 Settings Manager, C:\Windows\SysWOW64\drivers\n360x64\1502000.026\ccsetx64.sys (file is missing)
fltsrv, Acronis Storage Filter Management, C:\Windows\SysWOW64\drivers\fltsrv.sys (file is missing)
PfFilter, PfFilter, c:\program files (x86)\iobit\protected folder\pffilter.sys
SmartDefragDriver, SmartDefragDriver, C:\Windows\SysWOW64\drivers\smartdefragdriver.sys (file is missing)
snapman, Acronis Snapshots Manager, C:\Windows\SysWOW64\drivers\snapman.sys (file is missing)
SRTSPX, Symantec Real Time Storage Protection (PEL) x64, C:\Windows\SysWOW64\drivers\n360x64\1502000.026\srtspx64.sys (file is missing)
SymDS, Symantec Data Store, C:\Windows\SysWOW64\drivers\n360x64\1502000.026\symds64.sys (file is missing)
SymEFA, Symantec Extended File Attributes, C:\Windows\SysWOW64\drivers\n360x64\1502000.026\symefa64.sys (file is missing)
SymIRON, Symantec Iron Driver, C:\Windows\SysWOW64\drivers\n360x64\1502000.026\ironx64.sys (file is missing)
SymNetS, Symantec Network Security WFP Driver, C:\Windows\SysWOW64\drivers\n360x64\1502000.026\symnets.sys (file is missing)
tib, Acronis TIB Manager, C:\Windows\SysWOW64\drivers\tib.sys (file is missing)
tib_mounter, Acronis TIB Mounter, C:\Windows\system32\drivers\tib_mounter.sys
vididr, Acronis Virtual Disk, C:\Windows\system32\drivers\vididr.sys
vidsflt, Acronis Disk Storage Filter, C:\Windows\system32\drivers\vidsflt.sys

Firefox Extensions
==================
Advanced SystemCare Surfing Protection, c:\users\robert\appdata\roaming\mozilla\firefox\profiles\hltaezoi.default\extensions\ascsurfing...@iobit.com\install.rdf
Java Console, c:\program files (x86)\mozilla firefox\extensions\{cafeefac-0016-0000-0033-abcdeffedcba}\install.rdf
Java Console, c:\program files (x86)\mozilla firefox\extensions\{cafeefac-0016-0000-0035-abcdeffedcba}\install.rdf

Firefox Search Engines
======================
Amazon.com, http://www.amazon.com/exec/obidos/external-search/, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml
Bing, http://www.bing.com/search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
Google, https://www.google.com/search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
Wikipedia (en), http://en.wikipedia.org/wiki/Special:Search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml
Yahoo, http://search.yahoo.com/search, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml
Yahoo!, http://search.yahoo.com/search, C:\Users\ROBERT\AppData\Roaming\Mozilla\Firefox\Profiles\hltaezoi.default\searchplugins\yahoo_ff.xml, C:\Users\ROBERT\AppData\Roaming\Mozilla\Firefox\Profiles\hltaezoi.default\searchplugins\yahoo_ff.xml

Recently created/modified files (21 whitelisted)
================================================
3 hours, c:\Program Files (x86)\Norton Security Suite\NortonData\21.1.0.18\Definitions\VirusDefs\20140422.001\eraser64.sys
7 hours, c:\Program Files\FreeFixer\Uninstall.exe
7 hours, c:\Users\ROBERT\AppData\Local\Temp\~nsu.tmp\Au_.exe
Failed to calculate hash for 'c:\Users\ROBERT\AppData\Local\Temp\~nsu.tmp\Au_.exe' using 'CryptCATAdminCalcHashFromFileHandle' while verifying trust. System error message: %1 is not a valid Win32 application. Error code: 2147942593.
7 hours, c:\Users\ROBERT\AppData\Local\Temp\stklogs\sslogupload.exe
8 hours, c:\Users\ROBERT\Desktop\www_SolutionToolkit.exe
9 hours, c:\Program Files (x86)\supportdotcom\rang\ssupload.exe
9 hours, c:\Program Files (x86)\supportdotcom\rang\uninst.exe
Failed to calculate hash for 'c:\Program Files (x86)\supportdotcom\rang\uninst.exe' using 'CryptCATAdminCalcHashFromFileHandle' while verifying trust. System error message: %1 is not a valid Win32 application. Error code: 2147942593.
9 hours, c:\Users\ROBERT\AppData\Local\Temp\tmp80E2.tmp
9 hours, c:\Users\ROBERT\AppData\Local\Temp\tmp80C2.tmp

Csrss.exe virtual memory files (325 whitelisted)
================================================
c:\Program Files (x86)\Common Files\LightScribe\LSLog.dll
c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\Program Files (x86)\Common Files\LightScribe\LSSProxy.dll
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\sqlite3.dll
C:\Program Files (x86)\IObit\Driver Booster\SysRest.dll
C:\Program Files (x86)\IObit\Driver Booster\taskMgr.dll
C:\Program Files (x86)\IObit\Driver Booster\FixPlugin.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Program Files (x86)\IObit\Driver Booster\webres.dll
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\Antivirus\bdfltlib.dll
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\datastate.dll
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\Antivirus\OEMUninstall.dll
C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ascavsvc.exe
C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\IWsASC.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\Display.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\AutoCare.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\AutoSweep.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\MonitorDisk.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\AutoUpdate.exe
C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
C:\Users\ROBERT\Desktop\bluescreenview\BlueScreenView.exe
C:\Program Files (x86)\IObit\Driver Booster\sqlite3.dll
C:\Program Files (x86)\supportdotcom\rang\ssrangui.exe
C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
C:\Users\ROBERT\Downloads\freefixersetup.exe
C:\Program Files (x86)\Norton Security Suite\Engine\21.2.0.38\gwrks32.dll
C:\Program Files (x86)\Norton Security Suite\Engine\21.2.0.38\gearaw32.dll
C:\Users\ROBERT\Desktop\www_SolutionToolkit.exe
C:\Users\ROBERT\AppData\Local\Logos4\Logos.exe
C:\Windows\system32\HPPA.cpl
C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageLauncher.exe
C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\ROBERT\AppData\Local\Amazon\Kindle\application\Kindle.exe
C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy.dll
C:\Users\ROBERT\Downloads\smartmontools-6.2-1.win32-setup.exe
C:\Program Files\Recuva\RecuvaShell64.dll
C:\Users\ROBERT\Downloads\ccsetup412.exe
C:\Users\ROBERT\Downloads\SDC_PreClean.exe
C:\Program Files\FreeFixer\freefixer.exe
C:\Program Files (x86)\ZooskMessenger\ZooskMessenger.exe
C:\Users\ROBERT\AppData\Local\HuluDesktop\HuluDesktop.exe
C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll
C:\Program Files (x86)\GRETECH\GomAudio\Goma.exe
C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE
C:\Users\ROBERT\Downloads\asc-ultimate7-setup.exe
C:\Users\ROBERT\AppData\Local\Logos4\System\v8.dll
C:\Program Files (x86)\Canon\ZoomBrowser EX\Program\ZoomBrowser.exe
C:\Program Files (x86)\Wise Disk Cleaner\WiseDiskCleaner.exe
C:\Program Files (x86)\Acronis\TrueImageHome\x64\versions_page.dll
C:\Users\ROBERT\Desktop\bluescreenview\BlueScreenView (3).exe
C:\Program Files (x86)\IObit\Protected Folder\PfShellExtension.dll
C:\Users\ROBERT\Desktop\bluescreenview\BlueScreenView (2).exe
C:\Users\ROBERT\AppData\Local\Logos4\System\Libronix.DigitalLibrary.Logos.dll
C:\Users\ROBERT\AppData\Roaming\CBS Interactive\Download App\CBSI.AppStore.Main.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCExtMenu_64.dll
C:\Program Files (x86)\Common Files\supportsoft\bin\SPRTDownloader.dll
C:\Puritan Hard Drive\Apps\PHD KnowledgeBase Application\PHD KnowledgeBase Application.exe
C:\Users\ROBERT\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_en-US.exe
C:\Program Files (x86)\Auslogics\Registry Cleaner\RegistryCleaner.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll
C:\Program Files (x86)\Canon\CameraWindowLauncher\CameraLauncher.exe
C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCTray.exe
C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll
C:\Program Files\CCleaner\CCleaner64.exe
C:\Users\ROBERT\AppData\Local\Temp\~nsu.tmp\Au_.exe
Failed to calculate hash for 'C:\Users\ROBERT\AppData\Local\Temp\~nsu.tmp\Au_.exe' using 'CryptCATAdminCalcHashFromFileHandle' while verifying trust. System error message: %1 is not a valid Win32 application. Error code: 2147942593.
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll
C:\Program Files (x86)\Auslogics\BoostSpeed\BoostSpeed.exe
C:\Users\ROBERT\AppData\Local\Logos4\System\libxml2.dll
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files (x86)\OpenOffice 4\program\swriter.exe
C:\Users\ROBERT\AppData\Local\Logos4\System\V8Helper.dll
C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe
C:\Users\ROBERT\Downloads\boost-speed-setup.exe
C:\Windows\system32\IObitSmartDefragExtension.dll
C:\Users\ROBERT\AppData\Local\Logos4\System\Logos.exe
C:\Users\ROBERT\Downloads\registry-cleaner-setup.exe
C:\Program Files (x86)\OpenOffice 4\program\soffice.exe
C:\Users\ROBERT\AppData\Local\Logos4\System\libiconv.dll
C:\Program Files (x86)\IObit\Smart Defrag 3\SmartDefrag.exe
C:\Users\ROBERT\AppData\Local\Temp\stklogs\sslogupload.exe
C:\Users\ROBERT\AppData\Local\Logos4\System\LDLS3.dll
C:\Users\ROBERT\AppData\Local\Logos4\System\icuin51.dll
C:\Users\ROBERT\AppData\Local\Logos4\System\EVRPresenter.dll
C:\Users\ROBERT\AppData\Local\Logos4\System\icuuc51.dll
C:\Users\ROBERT\AppData\Local\Logos4\System\SQLite.Interop.dll
C:\Program Files (x86)\Common Files\supportsoft\bin\libcurl.dll
C:\imf-setup-2.1.exe
C:\asc-ultimate7-setup.exe

History
=======
-HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}
-HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}
-C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml
-C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml

Errors
======
Problems opening folder 'c:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\SRTSP\SrtETmp' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems opening folder 'c:\Windows\CSC' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
Problems opening folder 'c:\Windows\System32\LogFiles\WMI\RtBackup' to enumerate files. FindFirstFile failed. System error message: Access is denied. Error code: 5.
An unexpected exception occurred in the Scheduled Task Scan Plugin:
Could not get the length of the wide string.

End of FreeFixer log
Reply all
Reply to author
Forward
0 new messages