Windows 8 and 8.1 Forums


SYSTEM_SERVICE_EXCEPTION Windows 8 BSOD Crash's

  1. #1


    Posts : 40
    Windows 8 Home Premium 64bit

    SYSTEM_SERVICE_EXCEPTION Windows 8 BSOD Crash's


    Hello,

    I have an issue, after logging into my laptop after a few minutes it crash's with the BSOD error "SYSTEM_SERVICE_EXCEPTION". My laptop is a Toshiba Satelitte C850D-11Q.

    Help me fix it please

      My System SpecsSystem Spec

  2. #2


    Posts : 5,139
    Win8.1Pro - Finally!!!


    Only 20 Windows Updates installed. Most systems have at least 30 or 40. Please visit Windows Update and get ALL available updates (it may take several trips to get them all).

    Please update these older drivers. Links are included to assist in looking up the source of the drivers. If unable to find an update, please remove (un-install) the program responsible for that driver. DO NOT manually delete/rename the driver as it may make the system unbootable! :

    PEGAGFN.sys Wed Aug 5 01:50:46 2009 (4A791DB6)
    Appears to be a component of the Toshiba Password Utility
    PEGAGFN.sys - this driver hasn't been added to the DRT as of this run. Please search Google/Bing for the driver if additional information is needed.

    If this doesn't fix the BSOD's, please run Driver Verifier according to these instructions: Driver Verifier Settings




    Analysis:
    The following is for informational purposes only.
    Code:
    **************************Tue Jan 15 11:24:41.177 2013 (UTC - 5:00)**************************
    Loading Dump File [C:\Users\John\_jcgriff2_\dbug\__Kernel__\011513-34819-01.dmp]
    Windows 8 Kernel Version 9200 MP (2 procs) Free x64
    Built by: 9200.16384.amd64fre.win8_rtm.120725-1247
    System Uptime:0 days 0:06:10.506
    Probably caused by :win32k.sys ( win32k!SURFACE::bRedirHooked+250 )
    BugCheck 3B, {c0000005, 142263000, fffff8801be2fbf0, 0}
    BugCheck Info: SYSTEM_SERVICE_EXCEPTION (3b)
    Arguments: 
    Arg1: 00000000c0000005, Exception code that caused the bugcheck
    Arg2: 0000000142263000, Address of the instruction which caused the bugcheck
    Arg3: fffff8801be2fbf0, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    BUGCHECK_STR:  0x3B
    DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT
    PROCESS_NAME: explorer.exe
    FAILURE_BUCKET_ID: 0x3B_win32k!SURFACE::bRedirHooked
      BIOS Version                  6.00
      BIOS Release Date             08/31/2012
      Manufacturer                  TOSHIBA
      Product Name                  SATELLITE C850D-11Q
    ииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииии``
    **************************Tue Jan 15 11:18:05.655 2013 (UTC - 5:00)**************************
    Loading Dump File [C:\Users\John\_jcgriff2_\dbug\__Kernel__\011513-27783-01.dmp]
    Windows 8 Kernel Version 9200 MP (2 procs) Free x64
    Built by: 9200.16384.amd64fre.win8_rtm.120725-1247
    System Uptime:0 days 0:49:00.987
    Probably caused by :win32k.sys ( win32k!SURFACE::bRedirHooked+250 )
    BugCheck 3B, {c0000005, 13dcc4000, fffff8801c475bf0, 0}
    BugCheck Info: SYSTEM_SERVICE_EXCEPTION (3b)
    Arguments: 
    Arg1: 00000000c0000005, Exception code that caused the bugcheck
    Arg2: 000000013dcc4000, Address of the instruction which caused the bugcheck
    Arg3: fffff8801c475bf0, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    BUGCHECK_STR:  0x3B
    DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT
    PROCESS_NAME: explorer.exe
    FAILURE_BUCKET_ID: 0x3B_win32k!SURFACE::bRedirHooked
      BIOS Version                  6.00
      BIOS Release Date             08/31/2012
      Manufacturer                  TOSHIBA
      Product Name                  SATELLITE C850D-11Q
    ииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииии``
    **************************Sun Jan 13 11:11:13.631 2013 (UTC - 5:00)**************************
    Loading Dump File [C:\Users\John\_jcgriff2_\dbug\__Kernel__\011313-42182-01.dmp]
    Windows 8 Kernel Version 9200 MP (2 procs) Free x64
    Built by: 9200.16384.amd64fre.win8_rtm.120725-1247
    System Uptime:0 days 0:10:11.961
    Probably caused by :win32k.sys ( win32k!SURFACE::bRedirHooked+250 )
    BugCheck 3B, {c0000005, 1368e0000, fffff8801c2d9bf0, 0}
    BugCheck Info: SYSTEM_SERVICE_EXCEPTION (3b)
    Arguments: 
    Arg1: 00000000c0000005, Exception code that caused the bugcheck
    Arg2: 00000001368e0000, Address of the instruction which caused the bugcheck
    Arg3: fffff8801c2d9bf0, Address of the context record for the exception that caused the bugcheck
    Arg4: 0000000000000000, zero.
    BUGCHECK_STR:  0x3B
    DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT
    PROCESS_NAME: explorer.exe
    FAILURE_BUCKET_ID: 0x3B_win32k!SURFACE::bRedirHooked
      BIOS Version                  6.00
      BIOS Release Date             08/31/2012
      Manufacturer                  TOSHIBA
      Product Name                  SATELLITE C850D-11Q
    ииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииии``
    **************************Wed Jan  9 16:48:51.227 2013 (UTC - 5:00)**************************
    Loading Dump File [C:\Users\John\_jcgriff2_\dbug\__Kernel__\010913-34445-01.dmp]
    Windows 8 Kernel Version 9200 MP (2 procs) Free x64
    Built by: 9200.16384.amd64fre.win8_rtm.120725-1247
    System Uptime:0 days 0:46:27.553
    Probably caused by :ntkrnlmp.exe ( nt! ?? ::NNGAKEGL::`string'+36216 )
    BugCheck AB, {1, 60, 0, 1}
    BugCheck Info: SESSION_HAS_VALID_POOL_ON_EXIT (ab)
    Arguments: 
    Arg1: 0000000000000001, session ID
    Arg2: 0000000000000060, number of paged pool bytes that are leaking
    Arg3: 0000000000000000, number of nonpaged pool bytes that are leaking
    Arg4: 0000000000000001, total number of paged and nonpaged allocations that are leaking.
        nonpaged allocations are in the upper half of this word,
        paged allocations are in the lower half of this word.
    BUGCHECK_STR:  0xAB_Gtmp
    PROCESS_NAME: csrss.exe
    FAILURE_BUCKET_ID: LEAKED_SESSION_POOLTAG_Gtmp
      BIOS Version                  6.00
      BIOS Release Date             08/31/2012
      Manufacturer                  TOSHIBA
      Product Name                  SATELLITE C850D-11Q
    ииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииии``
    **************************Thu Jan  3 16:23:17.495 2013 (UTC - 5:00)**************************
    Loading Dump File [C:\Users\John\_jcgriff2_\dbug\__Kernel__\010313-59155-01.dmp]
    Windows 8 Kernel Version 9200 MP (2 procs) Free x64
    Built by: 9200.16461.amd64fre.win8_gdr.121119-1606
    System Uptime:0 days 0:00:52.819
    *** WARNING: Unable to verify timestamp for avgwfpa.sys
    *** ERROR: Module load completed but symbols could not be loaded for avgwfpa.sys
    Probably caused by :avgwfpa.sys ( avgwfpa+6286 )
    BugCheck A, {a8, 2, 1, fffff802b9b2b1cf}
    BugCheck Info: IRQL_NOT_LESS_OR_EQUAL (a)
    Arguments: 
    Arg1: 00000000000000a8, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000001, bitfield :
        bit 0 : value 0 = read operation, 1 = write operation
        bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff802b9b2b1cf, address which referenced memory
    BUGCHECK_STR:  AV
    DEFAULT_BUCKET_ID:  WIN8_DRIVER_FAULT
    PROCESS_NAME: avgnsa.exe
    FAILURE_BUCKET_ID: AV_avgwfpa+6286
      BIOS Version                  6.00
      BIOS Release Date             08/31/2012
      Manufacturer                  TOSHIBA
      Product Name                  SATELLITE C850D-11Q
    ииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииии``
    
    3rd Party Drivers:
    The following is for information purposes only.
    Any drivers in red should be updated or removed from your system. And should have been discussed in the body of my post.
    Code:
    **************************Tue Jan 15 11:24:41.177 2013 (UTC - 5:00)**************************
    PEGAGFN.sys                 Wed Aug  5 01:50:46 2009 (4A791DB6)
    RtsUStor.sys                Wed Jun 13 06:09:12 2012 (4FD866C8)
    tos_sps64.sys               Sun Jun 17 21:21:30 2012 (4FDE829A)
    usbfilter.sys               Tue Jun 19 07:07:40 2012 (4FE05D7C)
    AtihdW86.sys                Tue Jul 17 03:34:09 2012 (50051571)
    RTKVHD64.sys                Thu Jul 19 05:53:19 2012 (5007D90F)
    TVALZFL.sys                 Sat Jul 21 18:29:07 2012 (500B2D33)
    TVALZ_O.SYS                 Wed Jul 25 19:23:25 2012 (50107FED)
    tdcmdpst.sys                Wed Jul 25 19:41:48 2012 (5010843C)
    dump_storahci.sys           Wed Jul 25 22:30:35 2012 (5010ABCB)
    Rt630x64.sys                Mon Jul 30 12:03:12 2012 (5016B040)
    Thotkey.sys                 Tue Jul 31 15:22:26 2012 (50183072)
    atikmpag.sys                Wed Aug  8 09:48:21 2012 (50226E25)
    atikmdag.sys                Wed Aug  8 10:32:04 2012 (50227864)
    rtwlane.sys                 Mon Aug 13 09:58:08 2012 (502907F0)
    SynTP.sys                   Tue Aug 14 18:52:13 2012 (502AD69D)
    mfehidk.sys                 Tue Nov  6 17:47:12 2012 (50999370)
    mfewfpk.sys                 Tue Nov  6 17:47:27 2012 (5099937F)
    mfeapfk.sys                 Tue Nov  6 17:47:56 2012 (5099939C)
    mfeavfk.sys                 Tue Nov  6 17:48:17 2012 (509993B1)
    mfefirek.sys                Tue Nov  6 17:50:08 2012 (50999420)
    cfwids.sys                  Tue Nov  6 17:50:41 2012 (50999441)
    ииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииии``
    **************************Wed Jan  9 16:48:51.227 2013 (UTC - 5:00)**************************
    mfeapfk01.sys               Tue Nov  6 17:47:56 2012 (5099939C)
    ииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииииии``
    **************************Thu Jan  3 16:23:17.495 2013 (UTC - 5:00)**************************
    avgrkx64.sys                Thu Sep 13 20:41:40 2012 (50527D44)
    avgloga.sys                 Thu Sep 20 21:23:51 2012 (505BC1A7)
    avgldx64.sys                Mon Oct  1 21:05:50 2012 (506A3DEE)
    avgmfx64.sys                Thu Oct  4 21:08:44 2012 (506E331C)
    avgidsha.sys                Sun Oct 14 21:22:54 2012 (507B656E)
    avgidsdrivera.sys           Mon Oct 22 06:47:11 2012 (5085242F)
    avgwfpa.sys                 Thu Nov  1 18:44:14 2012 (5092FB3E)
    
    PEGAGFN.sys - this driver hasn't been added to the DRT as of this run. Please search Google/Bing for the driver if additional information is needed.
    http://www.carrona.org/drivers/driver.php?id=RtsUStor.sys
    http://www.carrona.org/drivers/driver.php?id=tos_sps64.sys
    http://www.carrona.org/drivers/driver.php?id=usbfilter.sys
    http://www.carrona.org/drivers/driver.php?id=AtihdW86.sys
    http://www.carrona.org/drivers/driver.php?id=RTKVHD64.sys
    http://www.carrona.org/drivers/driver.php?id=TVALZFL.sys
    http://www.carrona.org/drivers/driver.php?id=TVALZ_O.SYS
    http://www.carrona.org/drivers/driver.php?id=tdcmdpst.sys
    http://www.carrona.org/drivers/driver.php?id=dump_storahci.sys
    http://www.carrona.org/drivers/driver.php?id=Rt630x64.sys
    Thotkey.sys - this driver hasn't been added to the DRT as of this run. Please search Google/Bing for the driver if additional information is needed.
    http://www.carrona.org/drivers/driver.php?id=atikmpag.sys
    http://www.carrona.org/drivers/driver.php?id=atikmdag.sys
    rtwlane.sys - this driver hasn't been added to the DRT as of this run. Please search Google/Bing for the driver if additional information is needed.
    http://www.carrona.org/drivers/driver.php?id=SynTP.sys
    http://www.carrona.org/drivers/driver.php?id=mfehidk.sys
    http://www.carrona.org/drivers/driver.php?id=mfewfpk.sys
    http://www.carrona.org/drivers/driver.php?id=mfeapfk.sys
    http://www.carrona.org/drivers/driver.php?id=mfeavfk.sys
    http://www.carrona.org/drivers/driver.php?id=mfefirek.sys
    http://www.carrona.org/drivers/driver.php?id=cfwids.sys
    http://www.carrona.org/drivers/driver.php?id=mfeapfk01.sys
    http://www.carrona.org/drivers/driver.php?id=avgrkx64.sys
    http://www.carrona.org/drivers/driver.php?id=avgloga.sys
    http://www.carrona.org/drivers/driver.php?id=avgldx64.sys
    http://www.carrona.org/drivers/driver.php?id=avgmfx64.sys
    http://www.carrona.org/drivers/driver.php?id=avgidsha.sys
    http://www.carrona.org/drivers/driver.php?id=avgidsdrivera.sys
    http://www.carrona.org/drivers/driver.php?id=avgwfpa.sys
      My System SpecsSystem Spec

  3. #3


    Posts : 40
    Windows 8 Home Premium 64bit


    Augast 2009? My laptop isn't that old. I have a strange feeling that this is incorrect information due to errors of it:

    1) User John, mine is Lewes.
    2) The date.
    3) I checked with BlueScreenViewer, the error isn't PEGAGFN.sys.
      My System SpecsSystem Spec

  4. #4


    Posts : 5,139
    Win8.1Pro - Finally!!!


    Well, I'd suggest that you check in C:\Windows\System32\drivers and check the date on PEGAGFN.sys
    With Win7 there was a legitimate Windows driver that dated from 2006 on all systems.
    With my current system (built in 2009, and updated to Win8 last week), I have the 2005 version of ASACPI.sys (a known BSOD cause on some Asus motherboards.
    It's like having tires manufactured in 2009 on your 2012 model car.

    If you look at the dump files that I posted, the cause that's blamed the most in win32k.sys (and, just FYI, it's an access error - c0000005) This is a Windows driver and is protected by the Windows System File Checker. As such it's unlikely that it is actually to blame. The more likely scenario is that another (non-Windows) driver has corrupted the memory space owned by win32k.sys and that's what actually caused the crash.

    One thing that I didn't mention was that one of the memory dumps blamed your AVG - but that stopped shortly after the memory dump on 3 Jan - and the subsequent memory dumps don't have any traces of AVG. Since McAfee is present, I suspect that you've replaced AVG with McAfee (and McAfee is the next thing that I'll suggest removing if the PEGAGFN.sys update doesn't work)

    I mentioned PEGAGFN.sys simply because it was the oldest 3rd party (non-Microsoft Windows) driver listed in the memory dumps. The vast majority of BSOD's are caused by 3rd party drivers (well in excess of 90%).
    If that didn't fix it, then I suggested Driver Verifier. This is a program that will stress the drivers and, hopefully, force the bad driver to cause a crash and name itself in the memory dump.

    Finally, please read the documentation that comes with BlueScreenView and see that it's not exactly 100% accurate in 64 bit systems. I have a great deal of respect for Nir Sofer and his work - and he does inform users of the limitations of his programs.
    The program that I used to analyze your memory dumps is the kernel debugger (kd.exe) contained in the Windows Debugging Tools from Microsoft.

    It's your system and it's your choice what you do.
    Good luck!
      My System SpecsSystem Spec

  5. #5


    Posts : 40
    Windows 8 Home Premium 64bit


    Sorry, not very technical so I'm confused. Mind giving me steps like 1, 2 on what to do?

    EDIT: I can't find the PAGE or somethingrather file in drivers.
      My System SpecsSystem Spec

  6. #6


    Posts : 5,139
    Win8.1Pro - Finally!!!


    Download Password Utility from here: Laptop Driver Downloads:
    Double click on the file and then install it.
    Check in C:\Windows\System32\drivers to be sure that the driver is a later date.
    Wait to see if there are any further BSOD's.

    If there are, then run Driver Verifier according to these directions: Driver Verifier Settings
      My System SpecsSystem Spec

  7. #7


    Posts : 40
    Windows 8 Home Premium 64bit


    Updated it. No errors so far. Also, check for what file in drivers?
      My System SpecsSystem Spec

  8. #8


    Posts : 5,139
    Win8.1Pro - Finally!!!


    PEGAGFN.sys
      My System SpecsSystem Spec

  9. #9


    Posts : 40
    Windows 8 Home Premium 64bit


    I see none. No PEGAGFN.sys.
      My System SpecsSystem Spec

  10. #10


    Posts : 5,139
    Win8.1Pro - Finally!!!


    Sorry, my mistake. Check in C:\Program Files (x86)\TOSHIBA\Password Utility\PEGAGFN.sys
    Driver isn't stored in the normal location.
      My System SpecsSystem Spec

Page 1 of 4 123 ... LastLast
SYSTEM_SERVICE_EXCEPTION Windows 8 BSOD Crash's
Related Threads
Hello, I have an issue, after logging into my laptop after a few minutes it crash's with the BSOD error "SYSTEM_SERVICE_EXCEPTION". My laptop is a MSI GT60 Help me fix it please :)57247
Solved BSOD System_Service_Exception in BSOD Crashes and Debugging
I'm back with a new BSOD for my desktop :sarc: https://www.dropbox.com/s/8f1sgdc0nnb40sa/minidump3.zip?dl=0 The Minidump Files. On Mon 09/22/14 21:59:58 GMT your computer crashed crash dump file: C:\WINDOWS\Minidump\092214-22093-01.dmp This was probably caused by the following module:...
system_service_exception BSOD in BSOD Crashes and Debugging
Hello. I have been getting this BSOD every hour or so for a while now. Really cant find a fix. From my understanding, it might be a driver or a hardware problem and i really hope it is a driver. It's driving me crazy already, every hour my computer crashing. I am attaching two minidump files. I...
Hello guys i bought this laptop Lenovo G505S from futureshop two weeks ago and this BSOD crash is annoying me, i have read that i should attach the dump file here. please help me solve this problem. thank you
Hi, I have been having strange issues recently. Since september or so I have had 4 BSODs when using Windows Media Center Live TV, I thought it was related somehow to the tunner, but today I also got BSOD when not using live TV (although I was testing a different, external tunner, when it crashed...
Hey, My month and half old Acer V3 started to give BSOD's, did some sort of recovery and started working again for a couple of hours, if not trying to access any Windows files. If tried to look up error logs etc it gave different versions of the BSOF. So I tried to run Recovery, getting it back...
Bsod system_service_exception in BSOD Crashes and Debugging
Hi. When I turned on my PC (Acer Aspire V3 17.3" bцrbar PC 571-32324G50Mnks) I got a message from my antivirussoftware. It told me that my pc was infected by Adware generic5.SRC. It was in the folder called BrowserProtect in the folder called ProgramData. After a minute my PC gets this BSOD. It...
Eight Forums Android App Eight Forums IOS App Follow us on Facebook