BSOD an attempt was made to write to readonly memory

My computer went nuts and crashed last night. I have no idea what the issue is, I get error blue screen 'attempt was made to write to readonly memory'... sometimes. My anti-virus 'blocked a threat' a few minutes before the accident, so I don't know if it could be the associated virus. The computer hangs at each attempt to start it, System Restore and startup repair were not helpful either. Said Startup Repair could not fix the problem, and the system restore said he succeeded... but always crashing. I was able to do start in safe mode only (networking) off and recover the files of emptying and sys info

But I have no idea what to do with this information.

These accidents were related to the corruption of memory (probably caused by a driver).

Run these two tests to check your memory and find which driver is causing the problem.  Launch auditor.  You don't need to run memtest again unless the auditor is not the cause, or you want to.

If you are overclocking anything reset by default before running these tests.
In other words STOP! If you don't know what it means that you're probably not  


1-Driver Verifier (for full instructions, see our wiki here)

2-Memtest. (You can learn more about running memtest here)

Tags: Windows

Similar Questions

  • Streets & trips 2008 an attempt was made to access a file without a name beyond its end

    I am trying to download an attachment, but get the error "attempt was made to access a file without name, beyond its end".   suggestions?

    Hello

    Check with streets and trips in support of the community and Forum.

    Streets & Trips
    http://www.Microsoft.com/streets/en-us/default.aspx

    Streets & Trips - help and Support
    http://www.Microsoft.com/streets/en-us/support-and-training.aspx

    Streets and travel community
    http://www.Microsoft.com/streets/en-us/community-and-news.aspx

    Streets and travel Forum
    http://social.Microsoft.com/forums/en-us/streetsandtrips/threads

    Support for MapPoint, streets & trips and Highway
    http://support.Microsoft.com/ph/851

    I hope this helps.

    Rob Brown - Microsoft MVP<- profile="" -="" windows="" expert="" -="" consumer="" :="" bicycle=""><- mark="" twain="" said="" it="">

  • &lt; BEA-141149 &gt; &lt; an invalid attempt was made to connect to the

    We have recently updated to v12.2.1. Our software runs on multiple operating systems. On Linux, when we start a server/managed node from one machine other than the one where the server administrator is running, we see the following on the console of the server administrator. The managed server will not start. Checking to see if other Unix flavors have this problem.

    admin password is very simple. Without typos. I can even connect to the console of administration user interface using the same passwords.

    On the administration console:

    =================

    < 4 February 2016 15:51:30 CEST > < error > < management > < BEA-141149 > < an invalid attempt was made to connect to the management server with a salt of eeIi80z7/6kxs3qrFQN/HQ == and a signature F3G6jmu10gfU22B8laRe7miOvC93WVV/Yi1xZFKZ/LK =, probably due to the incompatibility of private keys. >

    on the server console run

    ========================

    < 4 February 2016 15:47:37 CEST > < critical > < WebLogicServer > < BEA-000386 > < server subsystem failed. Reason: A MultiException has 2 exceptions.  They are:

    1 weblogic.ldap.EmbeddedLDAPException: empty initial replica

    2 java.lang.IllegalStateException: cannot perform operation: construction of post on weblogic.ldap.PreEmbeddedLDAPService

    A MultiException has 2 exceptions.  They are:

    1 weblogic.ldap.EmbeddedLDAPException: empty initial replica

    2 java.lang.IllegalStateException: cannot perform operation: construction of post on weblogic.ldap.PreEmbeddedLDAPService

    at org.jvnet.hk2.internal.ClazzCreator.create(ClazzCreator.java:391)

    at org.jvnet.hk2.internal.SystemDescriptor.create(SystemDescriptor.java:471)

    at org.glassfish.hk2.runlevel.internal.AsyncRunLevelContext.findOrCreate(AsyncRunLevelContext.java:228)

    at org.glassfish.hk2.runlevel.RunLevelContext.findOrCreate(RunLevelContext.java:85)

    at org.jvnet.hk2.internal.Utilities.createService(Utilities.java:2072)

    Truncated. check the log file full stacktrace

    Caused by: weblogic.ldap.EmbeddedLDAPException: empty initial replica

    at weblogic.ldap.PreEmbeddedLDAPService.getInitialReplicaFromAdminServer(PreEmbeddedLDAPService.java:616)

    at weblogic.ldap.PreEmbeddedLDAPService.start(PreEmbeddedLDAPService.java:160)

    at weblogic.server.AbstractServerService.postConstruct(AbstractServerService.java:76)

    at sun.reflect.GeneratedMethodAccessor2.invoke (unknown Source)

    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)

    Truncated. check the log file full stacktrace

    >

    < 4 February 2016 15:47:38 CEST > < opinion > < WebLogicServer > < BEA-000365 > < Server state changed to FAILED. >

    < 4 February 2016 15:47:38 CEST > < error > < WebLogicServer > < BEA-000383 > < is not an essential service. The server shuts itself down. >

    < 4 February 2016 15:47:38 CEST > < opinion > < WebLogicServer > < BEA-000365 > < Server state has changed to FORCE_SHUTTING_DOWN. >

    Tried remedies:

    ===========

    (1) move servers\JDAServer\data\ldap to ldapold

    (2) rename servers\JDAServer\security security1. This will force me to enter the username/password at the level of the console, but with the same results.

    Any thoughts?

    It is now resolved. There was nothing wrong with the scripts.

    Apparently, the clocks on those 2 boxes of Linux have been apart (4 minutes) and that triggers something in their own country. Suggestion came from Oracle support

  • Backup of images in the error message: "Windows Internet Explorer: an attempt was made to load a program with an incorrect format.

    When you try to record images to the picture library, I get the message: "" Windows Internet Explorer: an attempt was made to load a program with an incorrect format. ""  I was able to record images before now without any problem.  Thank you!

    I tried your suggestions, but none seemed to fix my problems.  I was advised to remove the picture library, and then restore that brought me success.  Thanks for having me on the right path.

  • "an attempt was made to use an object that is not or is no longer usable". " What does that mean? Occurs in the creation of a 'new' FF account for synchronization purposes.

    Attempts to set up synchronization. Several attempts last year, also failed many times because of password "like," "problems." I dropped. Now, my attempt to set up sync with my support mozilla (e-mail address and password) account was rejected by the words quoted above. The attempt to create a new account for synchronization only and with another e-mail address was also rejected by the words quoted above. The two addresses are valid and for a long time with the different email providers. Synchronization must be between laptops. What is the solution to this riddle? Thanks in advance for your time and help!

    In fact, so watch as an add-on can be affected. Can you please temporarily disable all your modules and try the sync again?

  • An attempt was made to update me with firefox 15.0b6 two days ago but it's still not available on the page of version beta of firefox. Why?

    Is firefox beta 15.0b6 a true liberation? After 2 days, I still haven't seen on the page of beta version of firefox, so I don't let the update happens.

    It is a real update. I don't know why it is not available on the beta page, but the latest beta is beta 6.

  • BSOD: The bugcheck was: 0x0000000a (0 x 0000000000000002, 0 0000000000000001, 0xfffff9803654ed10, 0xfffff80001e6816e).

    Server operating system: Windows Server 2008 Standard SP2 x 64

    Model: PowerEdge R710

    Memory: 12 GB

    • Encountered abnormal reboot with bugcheck mentioned, code based on above found bugcheck analysis probably caused by: tdx.sys (tdx! TdxDisconnectConnection + 3fb).
    • Here are some of the results of analysis:

    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access an address pageable (or completely invalid) to a
    application interrupt level (IRQL) that is too high.  It is usually
    caused by drivers using a wrong address.
    If a kernel debugger is available, download the stack trace.
    Arguments:
    Arg1: fffff9803654ed10, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000001, bit field:
    bit 0: value 0 = read operation, 1 = write operation
    bit 3: value 0 = not an enforcement operation, 1 = performance operation (only on chips that support this level of State)
    Arg4: fffff80001e6816e, address memory

    Debugging information:
    ------------------

    WRITE_ADDRESS: fffff9803654ed10

    CURRENT_IRQL: 2

    FAULTING_IP:
    NT! VerifierKeAcquireSpinLockAtDpcLevel + 5th
    fffff800'01e6816e f0480fba2b00 lock bts qword ptr [rbx], 0

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: VERIFIER_ENABLED_VISTA_MINIDUMP

    BUGCHECK_STR: 0XA

    Nom_processus: java.exe

    TRAP_FRAME: fffffa6009b88010-(.trap 0xfffffa6009b88010)
    NOTE: The frame trap does contain not all registers.
    Some registry values can be set to zero or incorrect.
    Rax = 0000000000000003 rbx = 0000000000000000 rcx = 0000000000000000
    RDX = 0000000000000000 rsi = 0000000000000000 rdi = 0000000000000000
    RIP = fffff80001e6816e rsp = fffffa6009b881a0 rbp = 0000000000000000
    R8 = fffff80001e755c0 r9 = 0000000000000064 r10 = 0000000000000001
    R11 = 0000000000000002 r12 = 0000000000000000 r13 = 0000000000000000
    R14 = 0000000000000000 r15 = 0000000000000000
    iopl = 0 nv in pe of na EI ng nz nc
    NT! VerifierKeAcquireSpinLockAtDpcLevel + 0x5e:
    fffff800'01e6816e f0480fba2b00 lock bts qword ptr [rbx], ds:00000000 0'00000000 =?
    Reset the default scope

    • Run the system found File Checker tool the following file failed reapir
      2011-07-27 08:49:12, CSI Info 0000029b [SR] cannot repair the military record [l:32 {16}] "scwvariables.xml" Microsoft-Windows-Security-Configuration-Wizard, Version = 6.0.6002.18005, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, type neutral, TypeName neutral, neutral to the public key in the store, hash mismatch "

    Kindly take a few lights if you experience the same, thanks in advance.

    Hello

    Bugcheck A, {fffff9803654ed10, 2, 1, fffff80001e6816e}
    Probably caused by: tdx.sys (tdx! TdxDisconnectConnection + 3fb)
    SYMBOL_NAME: tdx! TdxDisconnectConnection + 3fb
    MODULE_NAME: tdx
    Nom_image: tdx.sys
    FAILURE_BUCKET_ID: X64_0xA_VRF_tdx! TdxDisconnectConnection + 3fb
    BUCKET_ID: X64_0xA_VRF_tdx! TdxDisconnectConnection + 3fb

    TDX.sys is a component of Windows which means than anything else he has led astray.

    Edited for brevity:

    : tdx! TdxDisconnectConnection + 0x3fb
    : tdx! TdxTdiDispatchInternalDeviceControl + 0 x 179
    : nt! IovCallDriver + 0x34a
    : mfetdik + 0 x 8435 <-- mcafee="" is="" the="" only=""> soft driver in the stack
    : 0xfffff980'6d982ea0
    : 0x2
    : 0x2
    : 0xfffffa80'0cf3aa90
    : 0xfffffa80'0c69b870
    : 0xfffffa80'0c1cd8b0
    : 0xfffff980'6d982ea0
    : 0xfffff980'6d982fb8
    : 0xffff0001' Larson
    : afd! AfdCleanupSendIrp
    : 0xfffffa80'0 b 627440
    : nt! IovCallDriver + 0x34a

    mfetdik.sys Device as of 12/17/2010.

    I hope this helps.

    Rob Brown - Microsoft MVP<- profile="" -="" windows="" expert="" -="" consumer="" :="" bicycle="" -="" mark="" twain="" said="" it="">

  • Windows 8 errors and Crash_ Page fault in non paged area + attempt to write a readonly database

    Hello

    I am running Windows 8 on my PC and have seen the Failure of Page in the nonpaged area error when starting and stopping down a few times.

    Recently, she was accompanied by an attempt to write a readonly database error starting up, which led to several auto-redémarre.

    Here is the link to download the Minidump files on my computer, if that would help.

    http://1drv.Ms/1nOJ8If

    Please guide me how to on this subject.

    Thanks in advance,

    Rohan

    Rohan

    These related to the 802.11 Wireless netr28x.sys adapt Driver Ralink Technology, Corp..  I would setup the possible latest driver even if it is the same date that drivers become corrupt

    Microsoft (R) Windows debug 6.3.9600.17029 AMD64 Version
    Copyright (c) Microsoft Corporation. All rights reserved.

    Loading file Dump [C:\Users\Ken\Desktop\New folder\061814-23656 - 01.dmp]
    The mini kernel dump file: only registers and the trace of the stack are available

    Symbol of validation of the path summary *.
    Location of response time (ms)
    C:\Users\Ken\Desktop OK

    Symbol of validation of the path summary *.
    Location of response time (ms)
    Deferred SRV * H:\symbols* http://msdl.microsoft.com/download/symbols
    Symbol search path is: SRV * H:\symbols* http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\Users\Ken\Desktop
    Windows 8 Kernel Version 9200 MP (4 procs) free x 64
    Product: WinNt, suite: TerminalServer personal TerminalServer
    By: 9200.16864.amd64fre.win8_gdr.140309 - 1509
    Computer name:
    Core = 0xfffff801 'f0c1b000 PsLoadedModuleList = 0xfffff801' f0ee7aa0
    The debugging session: Wed Jun 18 03:25:39.915 2014 (UTC - 04:00)
    System Uptime: 0 days 0:00:10.667
    Loading the kernel symbols
    ..

    Press (cdb, ntsd, kd) ctrl-c or ctrl-BREAK (windbg) to drop the charges of symbol that take too much time.
    Run! SYM noisy before .reload to track symbols loading issues.

    .............................................................
    ................................................................
    ...
    Loading user symbols
    Loading unloaded module list
    .....
    *******************************************************************************
    *                                                                             *
    * Bugcheck analysis *.
    *                                                                             *
    *******************************************************************************

    Use! analyze - v to obtain detailed debugging information.

    Bugcheck 50, {fffff88003a1e000, 1, fffff8800529b442, 0}

    WARNING: Unable to verify timestamp for netr28x.sys
    ERROR: Module load completed but symbols can be loaded for netr28x.sys

    Could not read the name of the problem driver
    Probably caused by: netr28x.sys (netr28x + 3e442)

    Follow-up: MachineOwner
    ---------

    0: kd >! analyze - v
    *******************************************************************************
    *                                                                             *
    * Bugcheck analysis *.
    *                                                                             *
    *******************************************************************************

    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced.  This cannot be protected by try-except,
    It must be protected by a probe.  In general, the address is simple bad or it
    pointing to freed memory.
    Arguments:
    Arg1: fffff88003a1e000, memory referenced.
    Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
    Arg3: fffff8800529b442, if not zero, the address of the instruction that refers to bad memory
    address.
    Arg4: 0000000000000000, (reserved)

    Debugging information:
    ------------------

    Could not read the name of the problem driver

    DUMP_FILE_ATTRIBUTES: 0X8
    Generated Triage of the kernel image

    WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff801f0f73168
    GetUlongFromAddress: cannot read fffff801f0f731f8
    fffff88003a1e000 non paged pool

    FAULTING_IP:
    netr28x + 3e442
    fffff880'0529 b 442 c7800000040080000000 mov dword ptr [rax + 40000 h], 80 h

    MM_INTERNAL_CODE: 0

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT

    BUGCHECK_STR: AV

    Nom_processus: System

    CURRENT_IRQL: 0

    ANALYSIS_VERSION: 6.3.9600.17029 (debuggers (dbg). 140219-1702) amd64fre

    TRAP_FRAME: fffff88000b89230-(.trap 0xfffff88000b89230)
    NOTE: The frame trap does contain not all registers.
    Some registry values can be set to zero or incorrect.
    Rax = fffff880039de000 rbx = 0000000000000000 rcx = 0000000000000282
    RDX = a 0000000 00000000 rsi = 0000000000000000 rdi = 0000000000000000
    RIP = fffff8800529b442 rsp = fffff88000b893c0 rbp = fffff88000b89540
    R8 = 0000000000000001 r9 = 0000000000000114 = 0000000000000000 r10
    R11 = fffff88000b89380 r12 = 0000000000000000 r13 = 0000000000000000
    R14 = 0000000000000000 r15 = 0000000000000000
    iopl = 0 nv up ei pl zr po nc
    netr28x + 0x3e442:
    fffff880 ' 0529b 442 c7800000040080000000 mov dword ptr [rax + 40000 h], 80 h ds:fffff880 ' 03a1e000 =?
    Reset the default scope

    LAST_CONTROL_TRANSFER: from fffff801f0d363e5 to fffff801f0c75440

    STACK_TEXT:
    fffff880 '00b 89048 fffff801' f0d363e5: 00000000'00000050 fffff880 '03a1e000 00000000 00000001' fffff880' 00b 89230: nt! KeBugCheckEx
    fffff880 '00b 89050 fffff801' f0cafb2b: 00000000 00000001 "fffff880 '03a1e000 fffffa80' 0730eb00 fffff8a0'00000001: nt! : FNODOBFM: 'string' + 0x33c2b
    "fffff880 '00b890f0 fffff801' f0c72eee: 00000000 ' 00000001 fffffa80 ' b 0, 200000 fffff880 '00b 89400 fffff880' 00b 89230: nt! MmAccessFault + 0x55b
    fffff880 '00b 89230 fffff880' 0529b 442: fffffa80'0 b 200000 fffffa80 '0b 200000 fffff880' 00b 89540 ffffffff'ffffffff: nt! KiPageFault + 0x16e
    fffff880 '00b893c0 fffffa80' b 0, 200000: fffffa80 '0b 200000 fffff880' 00b 89540 ffffffff'ffffffff 00000000' 00000000: netr28x + 0x3e442
    fffff880 '00b893c8 fffffa80' b 0, 200000: fffff880'00 b 89540 ffffffff'ffffffff 00000000 00000000' fffff880'05291007: 0xfffffa80'0 b 200000
    fffff880 '00b893d0 fffff880' 00b 89540: ffffffff'ffffffff 00000000 00000000' fffff880'05291007 00000000 00000000': 0xfffffa80'0 b 200000
    fffff880 '00b893d8 ffffffff' ffffffff: 00000000 00000000' fffff880'05291007 00000000 '00000000 00000000' 00000000: 0xfffff880'00 b 89540
    "fffff880'00b893e0 00000000' 00000000: fffff880 ' 05291007 00000000 '00000000 00000000' 00000000 fffffa80 ' b 0, 200000: 0xffffffff'ffffffff

    STACK_COMMAND: kb

    FOLLOWUP_IP:
    netr28x + 3e442
    fffff880'0529 b 442 c7800000040080000000 mov dword ptr [rax + 40000 h], 80 h

    SYMBOL_STACK_INDEX: 4

    SYMBOL_NAME: netr28x + 3e442

    FOLLOWUP_NAME: MachineOwner

    MODULE_NAME: netr28x

    Nom_image: netr28x.sys

    DEBUG_FLR_IMAGE_TIMESTAMP: 531982e8

    FAILURE_BUCKET_ID: AV_netr28x + 3e442

    BUCKET_ID: AV_netr28x + 3e442

    ANALYSIS_SOURCE: KM

    FAILURE_ID_HASH_STRING: km:av_netr28x + 3e442

    FAILURE_ID_HASH: {5c6cc3bb-48d3-d6cb-422b-45f5619bcc52}

    Follow-up: MachineOwner
    ---------

  • I did this after intro animation effects and it was made entirely from photoshop files and my comp settings in AE is HDV 1920 x 1080 25, then I was asked to the release of the film in 1920 X 1080 MPEG H.264 NTSC 29.97 progressive, someone has an idea how?

    I did this after intro animation effects and it was made entirely from photoshop files and my comp in AE settings is HDV 1920 x 1080 square pixels 25,.

    Then they asked me out of the movie at 1920 X 1080 MPEG H.264 NTSC 29.97 progressive, someone has an idea how?

    1. to adjust for NTSC composition without affecting the report l / h.

    2 - this film must be rendered in RGB + ALPHA, and yet the mpeg does not support this definition, it seems that the record will be in the video codec animation or other.

    I am bit confused if I need to adjust the model, or leave it and set the video codec only.

    Thank you

    If you have (or get) MPEG Streamclip, which is free, you can open the anamorphic clip and resize it to 1080 true. You will be able to choose H.264 as a codec. It will be if necessary deinterlacing. Suppose that the MPEG card is a MP4 container.

    Good luck.

    Russ

  • How to know when the iphone was made.

    I was wondering if you know when the iphone was made because my iphone 5's battery keeps dying pretty quickly

    and online on Apple.com it says that some iphone 5 s batteries would be replaced because of defective made batteries.

    Thank you

    The battery replacement program is for iPhone 5, iPhone 5 s no

    https://www.Apple.com/support/iPhone5-battery/

  • I had installed windows 8.1 with bootcamp, it was a c drive and I tried to do a second drive d with management of the disks, but when I shrink c drive and format the partition which was made by the management of the disks to d ' training, it destroyed my

    I use macbook pro.

    I had installed Windows 8.1 with bootcamp, that there was a c drive, then I tried to do the second drive with disk management d when I shrink the c drive and format the partition which was made by the management of the disks to d ' training, it destroyed my mac osx.

    Please help solve this problem.

    This partitioning is not supported. Please download GPT Fdisk from http://sourceforge.net/projects/gptfdisk/ and install it on the Windows side. Once it is installed, thanks for posting the output as indicated in the CMD window.

  • The Knights of iron game item pack I bought 4 days ago. my credit card payment was made. but I got my package to arrive. Help, please.

    The Knights of iron game item pack I bought 4 days ago. my credit card payment was made. but I got my package to arrive. Help, please.

    Do you mean that you have not received the item ("received my package" implies that you have, in this case I don't know what your question)? If you do then you contacted the developer of this game? If they cannot / does not help, then try to contact iTunes Support: http://reportaproblem.apple.com

    (I asked for your message to be moved to the forum of the iTunes Store, where you have posted is for questions about the iTunes U app.)

  • Hello! I just bought an iphone 6 and I was starting the phone due to what he says, but right after the icloud copy was made the phone do not respond... He says decides to continue, but slice to reload button does not work... What can I do?

    Hello! I just bought an iphone 6 and I was starting the phone due to what he says, but right after the icloud copy was made the phone do not respond... He says decides to continue, but slice to reload button does not work... What can I do?

    See if the troubleshooting steps in this article to take help supported:

    If the slide on the upgrade screen does not disappear once you upgrade to iOS 9 - Apple Support

    See you soon,.

    GB

  • HP Pavilion dv6-6c29wm recover disc that was made with HP recovery Manager

    My HP Pavilion dv6-6c29wm recover disc that was made with HP recovery Manager

    Windows 7 64 - Bit on 650 GB of disk.

    Error: "the system support does not support this computer. You are not able to restore the system with the media. »

    I'm about to order the recovery disks from HP and with a bit of luck, being able to bring this notebook to conditioning factory with all the correct partitions and sizes, after that I have format the hard drive.

    Yes, our recovery disks will return your device to factory State. All the software that came with the unit will be resettled. What you have added, you have to reinstall.

  • "An unauthorized change was made to Windows.

    I get a pop-up/notification saying "an unauthorized change was made to windows, you will be notified is more about changes to...". (something, lights). I got it for a while now, maybe a week or two. Never paid much attention to it, just let it slide. But now after rebooting my computer, it doesn't will not let me reach my desk, or do much. That just pops up and now I'm in safe mode, ask for directions on how to solve this problem. I tried Googling answers, but not being is not very "computer wise" I need some simple guidelines step by step on how to fix my problem. I read about how people ran this program, and I think it should help someone understand what is the question. If she is here;

    Diagnostic report (1.9.0027.0):
    -----------------------------------------
    Validation of Windows data-->
    Validation status: genuine
    Validation code: 0
    Validation caching Code online: n/a, hr = 0x80070426
    Windows product key: *-* - 3RBY2 - BGQ2R-DR9M6
    The Windows Product Key hash: EYIpz/47G03lWRAOmk3kg + lR7Rc =
    Windows product ID: 89583-OEM-7332157-00141
    Windows product ID type: 2
    Windows license Type: OEM SLP
    The Windows OS version: 6.0.6001.2.00010300.1.0.003
    ID: {06674147-AABC-4B1B-9524-34FEB1C74ED5} (1)
    Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/a, hr = 0 x 80070002
    Signed by: n/a, hr = 0 x 80070002
    Product name: Windows Vista (TM) Home Premium
    Architecture: 0 x 00000009
    Build lab: 6001.vistasp1_gdr.101014 - 0432
    TTS Error: K:20110905232438090 - M:20110906220415193 -.
    Validation of diagnosis:
    Resolution state: n/a

    Given Vista WgaER-->
    ThreatID (s): n/a, hr = 0 x 80070002
    Version: N/a, hr = 0 x 80070002

    Windows XP Notifications data-->
    Cached result: n/a, hr = 0 x 80070002
    File: No.
    Version: N/a, hr = 0 x 80070002
    WgaTray.exe signed by: n/a, hr = 0 x 80070002
    WgaLogon.dll signed by: n/a, hr = 0 x 80070002

    OGA Notifications data-->
    Cached result: n/a, hr = 0 x 80070002
    Version: N/a, hr = 0 x 80070002
    OGAExec.exe signed by: n/a, hr = 0 x 80070002
    OGAAddin.dll signed by: n/a, hr = 0 x 80070002

    OGA data-->
    Office status: 100 authentic
    Microsoft Office Enterprise 2007 - 100 authentic
    OGA Version: N/a, 0 x 80070002
    Signed by: n/a, hr = 0 x 80070002
    Office Diagnostics: B4D0AA8B-604-645_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005

    Data browser-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 7.0; Win32)
    Default browser: C:\Program Files (x 86) \Mozilla Firefox\firefox.exe
    Download signed ActiveX controls: fast
    Download unsigned ActiveX controls: disabled
    Run ActiveX controls and plug-ins: allowed
    Initialize and script ActiveX controls not marked as safe: disabled
    Allow the Internet Explorer Webbrowser control scripts: disabled
    Active scripting: allowed
    Recognized ActiveX controls safe for scripting: allowed

    Analysis of file data-->

    Other data-->
    Office details: {06674147-AABC-4B1B-9524-34FEB1C74ED5}1.9.0027.06.0.6001.2.00010300.1.0.003x 64*-*-*-*-DR9M689583-OEM-7332157-001412S-1-5-21-1147698403-1758433449-1210392499GatewayFX6710-01Phoenix Technologies, LTD87GP011G20080807000000.000000 + 00037323507018400F804090409Central Standard Time(GMT-06:00)03GATEWASYSTEM 100100Microsoft Office Enterprise 200712B3FFFD4ED7EFD869eK8LVS31DDBHbPRiLrsx plus angZ4 89388-707-3272491-65837 14

    Spsys.log Content: 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 MH5OR2/3IMCF20jSdJ3sg+YiAhMqYs2/XAPZYti8fs4QHFGQFtythijsPWfapo5wR3jwdiw6e2qcQE8hQipoxVLnTGwaFOK7a/cdOMuXOxq7DWs3pg+2++GWCaw7tO1eIcluaq/O5J17i1SWZwbEGminRbCK4Fdrkde7OzU5TmSkjgqbzdwdkyfkGZjYd0o8Py01iTA/fgr0SSJ/6M5DWJ9vWy3OurH7DdY1oDDOQ1ifb1stzrqx+w3WNaAwzkNYn29bLc66sfsN1jWgMM5DWJ9vWy3OurH7DdY1oDA==

    License data-->
    Software Licensing service is not working.

    Windows Activation Technologies-->
    N/A

    --> HWID data
    Current Hash HWID: LgAAAAIAAQABAAEAAQAAAAAAAgABAAEAonaImHcWEAb + HAP / + uby9NojrFZMWA is

    Activation 1.0 data OEM-->
    N/A

    Activation 2.0 data OEM-->
    BIOS valid for OA 2.0: Yes
    Windows marker version: 0 x 20000
    OEMID and OEMTableID consistent: Yes
    BIOS information:
    ACPI Table name OEMID value OEMTableID value
    SYSTEM GATEWA APIC
    SYSTEM GATEWA FACP
    HPET GATEWA SYSTEM
    MCFG GATEWA SYSTEM
    SLIC SYSTEM GATEWA
    SSDT PmRef CpuPm

    Really weird... He simply disappeared after a day of non-use of the computer... I waited to respond to see if he's coming back, but it didn't. Anything else I should be concerned? It's gone, and my computer seems to be fine now.

Maybe you are looking for