I’ve looked around this forum and found numerous references to aswSnx.SYS causing problems but none of the threads I’ve looked at offer any resolution. My Acer aspire 5740G is an iCore5 and it recently froze and had to be switched off. Avast Version is 5.1.889. looking at the minidumps and analyzing the most recent one:
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64 Copyright (c) Microsoft Corporation. All rights reserved.Loading Dump File [C:\Windows\Minidump\New folder\022411-21684-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are availableSymbol search path is: SRV*C:\Debug
\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff80003462000 PsLoadedModuleList = 0xfffff800
0369fe50
Debug session time: Thu Feb 24 11:32:51.516 2011 (UTC + 11:00)
System Uptime: 1 days 2:28:04.061
Loading Kernel Symbols
…
…
…
…
Loading User Symbols
Loading unloaded module list
…
Bugcheck Analysis
Use !analyze -v to get detailed debugging information.
BugCheck C2, {7, 1097, 5040205, fffff8a0162729a0}
Unable to load image \SystemRoot\System32\Drivers\aswSnx.SYS, Win32 error
0n2
*** WARNING: Unable to verify timestamp for aswSnx.SYS
*** ERROR: Module load completed but symbols could not be loaded foraswSnx.SYS
Unable to load image \SystemRoot\System32\Drivers\sptd.sys, Win32 error0n2
*** WARNING: Unable to verify timestamp for sptd.sys
*** ERROR: Module load completed but symbols could not be loaded forsptd.sys
GetPointerFromAddress: unable to read from fffff8000370a0e0
Probably caused by : aswSnx.SYS ( aswSnx+1f51f )Followup: MachineOwner
0: kd> !analyze -v
Bugcheck Analysis
BAD_POOL_CALLER (c2)
The current thread is making a bad pool request. Typically this is at abad IRQL level or double freeing the same allocation, etc.
Arguments:
Arg1: 0000000000000007, Attempt to free pool which was already freed
Arg2: 0000000000001097, (reserved)
Arg3: 0000000005040205, Memory contents of the pool block
Arg4: fffff8a0162729a0, Address of the block of pool being deallocatedDebugging Details:
POOL_ADDRESS: fffff8a0162729a0
FREED_POOL_TAG: Snx
BUGCHECK_STR: 0xc2_7_Snx
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: FsynSrvStarter
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff8000360560e to fffff800034d2740
STACK_TEXT:
fffff8800c56d4a8 fffff800
0360560e : 00000000000000c2 00000000
0000000700000000
00001097 00000000
05040205 : nt!KeBugCheckEx
fffff8800c56d4b0 fffff880
040a051f : 0000000000000004 fffff800
034b287200000000
00041000 00000000
00400100 : nt!ExDeferredFreePool+0x11eb
fffff8800c56d560 00000000
00000004 : fffff800034b2872 00000000
0004100000000000
00400100 00000000
00000001 : aswSnx+0x1f51f
fffff8800c56d568 fffff800
034b2872 : 0000000000041000 00000000
0040010000000000
00000001 00000000
00400000 : 0x4
fffff8800c56d570 fffff880
010d70f8 : 0000000000000000 fffff800
036814a800000000
00000198 fffff880
0c56d720 : nt!RtlImageNtHeader+0x1e
fffff8800c56d5a0 00000000
00000000 : fffff800036814a8 00000000
00000198fffff880
0c56d720 fffff880
0c56d5f8 : sptd+0x5c0f8STACK_COMMAND: kb
FOLLOWUP_IP:
aswSnx+1f51f
fffff880`040a051f ?? ???SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: aswSnx+1f51f
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: aswSnx
IMAGE_NAME: aswSnx.SYS
DEBUG_FLR_IMAGE_TIMESTAMP: 4d2ebac5
FAILURE_BUCKET_ID: X64_0xc2_7_Snx__aswSnx+1f51f
BUCKET_ID: X64_0xc2_7_Snx__aswSnx+1f51f
Followup: MachineOwner
I can upload the minidump file to the ftp server if required.
One site I saw tried to tell me it was spyware and tried to sell me antispyware to remove it!!!
Thanks for your kind attention to this problem.