Hittade även detta i en annan tråd här på flashback. Angående iaStor.sys.
"filen kan va infekterad.
kör filen, välj scan och följ anvisningarna. hittas skadlig fil så välj cure, hittas misstänkt fil eller nåt annat så välj skip. posta txt filen som lägger sig under C:
http://support.kaspersky.com/downloa...tdsskiller.exe"
- Filen syntes som den enda suspicious filen i mitt system.
Resultat: Ersatte iaStor.sys filen med en ny från intels installationspaket men problemet kvarstår fortfarande och jag har fått ännu en likadan blue screen.
Prövade även att ominstallera hela "Intel Rapid Storage Technology" i safe-mode för att se om jag kunde undgå blåskärmen som jag fick vid ominstallation annars. Ett felmeddelande dök då upp som lyder såhär:
"Det uppstod ett fel vid regisreringen av en eller flera komponenter. Installationen avslutas.".
Info från min senaste .dmp fil kommer nedan:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Windows\Minidump\052511-23649-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is:
http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16792.amd64fre.win7_gdr.110408-1633
Machine Name:
Kernel base = 0xfffff800`0300c000 PsLoadedModuleList = 0xfffff800`03249e50
Debug session time: Wed May 25 20:36:09.670 2011 (UTC + 2:00)
System Uptime: 0 days 2:21:25.012
Loading Kernel Symbols
.................................................. .............
.................................................. ..............
................................
Loading User Symbols
Loading unloaded module list
.......
************************************************** *****************************
* *
* Bugcheck Analysis *
* *
************************************************** *****************************
Use !analyze -v to get detailed debugging information.
BugCheck F4, {3, fffffa8008f5fb30, fffffa8008f5fe10, fffff800033861e0}
Probably caused by : csrss.exe
Followup: MachineOwner
---------
3: kd> !analyze -v
************************************************** *****************************
* *
* Bugcheck Analysis *
* *
************************************************** *****************************
CRITICAL_OBJECT_TERMINATION (f4)
A process or thread crucial to system operation has unexpectedly exited or been
terminated.
Several processes and threads are necessary for the operation of the
system; when they are terminated (for any reason), the system can no
longer function.
Arguments:
Arg1: 0000000000000003, Process
Arg2: fffffa8008f5fb30, Terminating object
Arg3: fffffa8008f5fe10, Process image file name
Arg4: fffff800033861e0, Explanatory message (ascii)
Debugging Details:
------------------
PROCESS_OBJECT: fffffa8008f5fb30
IMAGE_NAME: csrss.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: csrss
FAULTING_MODULE: 0000000000000000
PROCESS_NAME: csrss.exe
EXCEPTION_RECORD: fffff880071e7b38 -- (.exr 0xfffff880071e7b38)
ExceptionAddress: 00000000771af633
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000001
Parameter[1]: 0000000000800ff8
Attempt to write to address 0000000000800ff8
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Instruktionen p 0x%08lx refererade till minnet p 0x%08lx. Det gick inte att utf ra en minnes tg rd. F ljande fel returnerades: The memory could not be %s.
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - Instruktionen p 0x%08lx refererade till minnet p 0x%08lx. Det gick inte att utf ra en minnes tg rd. F ljande fel returnerades: The memory could not be %s.
EXCEPTION_PARAMETER1: 0000000000000001
EXCEPTION_PARAMETER2: 0000000000800ff8
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800032b40e0
0000000000800ff8
FOLLOWUP_IP:
+3738623134623534
00000000`771af633 ?? ???
FAULTING_IP:
+3738623134623534
00000000`771af633 ?? ???
FAILED_INSTRUCTION_ADDRESS:
+3738623134623534
00000000`771af633 ?? ???
BUGCHECK_STR: 0xF4_C0000005
STACK_TEXT:
fffff880`071e70b8 fffff800`03408d02 : 00000000`000000f4 00000000`00000003 fffffa80`08f5fb30 fffffa80`08f5fe10 : nt!KeBugCheckEx
fffff880`071e70c0 fffff800`033b1e23 : ffffffff`ffffffff fffffa80`093d92d0 fffffa80`08f5fb30 fffffa80`08f5fb30 : nt!PspCatchCriticalBreak+0x92
fffff880`071e7100 fffff800`0333977c : ffffffff`ffffffff 00000000`00000001 fffffa80`08f5fb30 fffff6fb`00000008 : nt! ?? ::NNGAKEGL::`string'+0x17566
fffff880`071e7150 fffff800`0307b953 : fffffa80`08f5fb30 fffff800`c0000005 ffffdaa4`792005fc fffffa80`093d92d0 : nt!NtTerminateProcess+0x20c
fffff880`071e71d0 fffff800`03077ef0 : fffff800`030b6e3c fffff880`071e7b38 fffff880`071e78a0 fffff880`071e7be0 : nt!KiSystemServiceCopyEnd+0x13
fffff880`071e7368 fffff800`030b6e3c : fffff880`071e7b38 fffff880`071e78a0 fffff880`071e7be0 000007fe`fd0fa300 : nt!KiServiceLinkage
fffff880`071e7370 fffff800`0307bd42 : fffff880`071e7b38 00000000`00840000 fffff880`071e7be0 000007fe`fd0ff024 : nt!KiDispatchException+0x53b
fffff880`071e7a00 fffff800`0307a8ba : 00000000`00000001 00000000`00840000 00000000`00000101 00000000`772865b0 : nt!KiExceptionDispatch+0xc2
fffff880`071e7be0 00000000`771af633 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x23a
00000000`00801000 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x771af633
STACK_COMMAND: kb
FOLLOWUP_NAME: MachineOwner
FAILURE_BUCKET_ID: X64_0xF4_C0000005_IMAGE_csrss.exe
BUCKET_ID: X64_0xF4_C0000005_IMAGE_csrss.exe
Followup: MachineOwner
---------
Kan själv inte tyda detta så söker av den anledningen hjälp att komma vidare med min felsökning