system: Compaq DL380 G2, 2GB RAM, SA5304 controller in RAID6, Win2K, SP3
recent additions: Adaptec Duoconnect USB2/Firewire PCI card, Canon 8600F USB2 scanner (connected to Adaptec), generic USB1.0 audio card (connected to server USB1 port.
Been getting flaky errors where Compaq's ASR (autorecovery) kicks in and server reboots.
Compaq Integrated Management Log shows:
STOP 0x000000D1 {0x0000016C, 0x00000002, 0x00000000, 0xF642041C} 05/30/07, 10:54AM
STOP 0x0000000A {0xBAD0B0E4, 0x00000002, 0x00000001, 0x8006543A} 05/29/07, 5:46PM
STOP 0x0000000A {0xBAD0B0E4, 0x00000002, 0x00000001, 0x8006543A} 05/28/07, 9:37AM
STOP 0x0000001E {0xC0000005, 0xF674A876, 0x00000001, 0x00000024} 05/18/07, 4:58PM
====================================================================
The corresponding Event Log entries offer little info:
Event Type: Error
Event Source: CimNotify
Event Category: (1)
Event ID: 5
Date: 5/30/2007
Time: 10:57:46 AM
User: N/A
Computer: MAIL
Description:
The description for Event ID ( 5 ) in Source ( CimNotify ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: Server Agents: ASR Reboot Completed.
====================================================================
Another quirk: after installing Adobe Acrobat 4.0 and Reader 5.0, printing to Adobe driver produces an error:
Event Type: Error
Event Source: Print
Event Category: None
Event ID: 61
Date: 5/29/2007
Time: 3:47:17 PM
User: MAIL\Administrator
Computer: MAIL
Description:
The document vista audio i84 owned by Administrator failed to print. Win32 error code returned by the print processor: 63 (0x3f).
...and a popup asking to cancel the print job or retry. I select cancel. The job always prints correctly though.
====================================================================
Hijack This shows the following entries, none of which are problematic:
Logfile of HijackThis v1.99.1
Scan saved at 3:39:28 PM, on 5/30/2007
Platform: Windows 2000 SP3 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\CIMntfy\cimntfy.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
E:\prog\Internet\KeepMePosted\KMPServ.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\snmp.exe
C:\WINNT\System32\snmptrap.exe
C:\WINNT\system32\stisvc.exe
C:\hp\hpsmh\bin\smhstart.exe
C:\WINNT\system32\ZONELABS\vsmon.exe
C:\hp\hpsmh\bin\hpsmhd.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
E:\prog\Internet\VNC4\WinVNC4.exe
C:\WINNT\System32\CPQNiMgt\cpqnimgt.exe
C:\WINNT\System32\CPQMgmt\CqMgServ\cqmgserv.exe
C:\WINNT\System32\CPQMgmt\CqMgStor\cqmgstor.exe
C:\WINNT\System32\sysdown.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\WINNT\System32\CPQMgmt\CqMgHost\cqmghost.exe
C:\hp\hpsmh\bin\hpsmhd.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\WINNT\Explorer.EXE
C:\WINNT\System32\cpqteam.exe
E:\prog\Internet\ZoneAlarm\zlclient.exe
E:\prog\Uti\VirtuaWin\VirtuaWin.exe
E:\prog\Internet\CookiePal\CPal.exe
E:\prog\Internet\DUMeter\DUMeter.exe
E:\prog\Uti\VirtuaWin\modules\WinList.exe
E:\prog\WinFax\wfxctl32.exe
E:\prog\WinFax\WFXMOD32.EXE
C:\Program Files\Compaq\INSIGHT MANAGER\cim.EXE
C:\WINNT\system32\mmc.exe
E:\prog\Internet\Mozilla1.5\firefox.exe
E:\Prog\Internet\Eudora\Eudora.exe
E:\prog\Internet\Prospector3\Prospector.exe
C:\WINNT\system32\notepad.exe
E:\prog\Uti\TextPad4\TextPad.exe
E:\prog\Uti\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - e:\prog\uti\acrobat5\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\prog\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: ExplorerWatch Class - {D4E7C68D-37FD-11D4-9D32-0000A00B0B0B} - E:\prog\Internet\CookiePal\CPBrHelp.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [CPQTEAM] cpqteam.exe
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [Zone Labs Client] E:\prog\Internet\ZoneAlarm\zlclient.exe
O4 - Global Startup: VirtuaWin.lnk = E:\prog\Uti\VirtuaWin\VirtuaWin.exe
O4 - Global Startup: Cookie Pal.lnk = E:\prog\Internet\CookiePal\CPal.exe
O4 - Global Startup: Keep Me Posted.lnk = E:\prog\Internet\KeepMePosted\KMPServ.exe
O4 - Global Startup: DU Meter.lnk = E:\prog\Internet\DUMeter\DUMeter.exe
O4 - Global Startup: WinFax PRO Controller.lnk = E:\prog\WinFax\wfxctl32.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\prog\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\prog\Java\jre1.5.0_06\bin\ssv.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{43E24E7C-FEB8-4763-9FF5-CE61E0745BAA}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{9C7DFE23-4C8B-42E1-AA8E-08238520BB7B}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS1\Services\Tcpip\..\{43E24E7C-FEB8-4763-9FF5-CE61E0745BAA}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{43E24E7C-FEB8-4763-9FF5-CE61E0745BAA}: NameServer = 208.67.222.222,208.67.220.220
O18 - Protocol: hpapp - {24F45006-5BD9-41B7-9BD9-5F8921C8EBD1} - C:\Program Files\Compaq\hpadu\Bin\hpapp.dll
O23 - Service: HP Insight Event Notifier (CIMnotify) - Hewlett-Packard Company - C:\WINNT\System32\CIMntfy\cimntfy.exe
O23 - Service: HP Insight NIC Agent (CpqNicMgmt) - Hewlett-Packard Company - C:\WINNT\System32\CPQNiMgt\cpqnimgt.exe
O23 - Service: HP Insight Foundation Agents (CqMgHost) - Hewlett-Packard Company - C:\WINNT\System32\CPQMgmt\CqMgHost\cqmghost.exe
O23 - Service: HP Insight Server Agents (CqMgServ) - Hewlett-Packard Company - C:\WINNT\System32\CPQMgmt\CqMgServ\cqmgserv.exe
O23 - Service: HP Insight Storage Agents (CqMgStor) - Hewlett-Packard Company - C:\WINNT\System32\CPQMgmt\CqMgStor\cqmgstor.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Keep Me Posted (KMPService) - Elegant Logic Ltd. - E:\prog\Internet\KeepMePosted\KMPServ.exe
O23 - Service: HP ProLiant System Shutdown Service (sysdown) - Compaq Computer Corporation - C:\WINNT\System32\sysdown.exe
O23 - Service: HP System Management Homepage (SysMgmtHp) - Hewlett-Packard Company - C:\hp\hpsmh\bin\smhstart.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINNT\system32\ZONELABS\vsmon.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - E:\prog\Internet\VNC4\WinVNC4.exe" -service (file missing)
====================================================================
The last four minidumps are attached.
Of course, any help greatly appreciated.
recent additions: Adaptec Duoconnect USB2/Firewire PCI card, Canon 8600F USB2 scanner (connected to Adaptec), generic USB1.0 audio card (connected to server USB1 port.
Been getting flaky errors where Compaq's ASR (autorecovery) kicks in and server reboots.
Compaq Integrated Management Log shows:
STOP 0x000000D1 {0x0000016C, 0x00000002, 0x00000000, 0xF642041C} 05/30/07, 10:54AM
STOP 0x0000000A {0xBAD0B0E4, 0x00000002, 0x00000001, 0x8006543A} 05/29/07, 5:46PM
STOP 0x0000000A {0xBAD0B0E4, 0x00000002, 0x00000001, 0x8006543A} 05/28/07, 9:37AM
STOP 0x0000001E {0xC0000005, 0xF674A876, 0x00000001, 0x00000024} 05/18/07, 4:58PM
====================================================================
The corresponding Event Log entries offer little info:
Event Type: Error
Event Source: CimNotify
Event Category: (1)
Event ID: 5
Date: 5/30/2007
Time: 10:57:46 AM
User: N/A
Computer: MAIL
Description:
The description for Event ID ( 5 ) in Source ( CimNotify ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: Server Agents: ASR Reboot Completed.
====================================================================
Another quirk: after installing Adobe Acrobat 4.0 and Reader 5.0, printing to Adobe driver produces an error:
Event Type: Error
Event Source: Print
Event Category: None
Event ID: 61
Date: 5/29/2007
Time: 3:47:17 PM
User: MAIL\Administrator
Computer: MAIL
Description:
The document vista audio i84 owned by Administrator failed to print. Win32 error code returned by the print processor: 63 (0x3f).
...and a popup asking to cancel the print job or retry. I select cancel. The job always prints correctly though.
====================================================================
Hijack This shows the following entries, none of which are problematic:
Logfile of HijackThis v1.99.1
Scan saved at 3:39:28 PM, on 5/30/2007
Platform: Windows 2000 SP3 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\CIMntfy\cimntfy.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
E:\prog\Internet\KeepMePosted\KMPServ.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\snmp.exe
C:\WINNT\System32\snmptrap.exe
C:\WINNT\system32\stisvc.exe
C:\hp\hpsmh\bin\smhstart.exe
C:\WINNT\system32\ZONELABS\vsmon.exe
C:\hp\hpsmh\bin\hpsmhd.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
E:\prog\Internet\VNC4\WinVNC4.exe
C:\WINNT\System32\CPQNiMgt\cpqnimgt.exe
C:\WINNT\System32\CPQMgmt\CqMgServ\cqmgserv.exe
C:\WINNT\System32\CPQMgmt\CqMgStor\cqmgstor.exe
C:\WINNT\System32\sysdown.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\WINNT\System32\CPQMgmt\CqMgHost\cqmghost.exe
C:\hp\hpsmh\bin\hpsmhd.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\hp\hpsmh\bin\rotatelogs.exe
C:\WINNT\Explorer.EXE
C:\WINNT\System32\cpqteam.exe
E:\prog\Internet\ZoneAlarm\zlclient.exe
E:\prog\Uti\VirtuaWin\VirtuaWin.exe
E:\prog\Internet\CookiePal\CPal.exe
E:\prog\Internet\DUMeter\DUMeter.exe
E:\prog\Uti\VirtuaWin\modules\WinList.exe
E:\prog\WinFax\wfxctl32.exe
E:\prog\WinFax\WFXMOD32.EXE
C:\Program Files\Compaq\INSIGHT MANAGER\cim.EXE
C:\WINNT\system32\mmc.exe
E:\prog\Internet\Mozilla1.5\firefox.exe
E:\Prog\Internet\Eudora\Eudora.exe
E:\prog\Internet\Prospector3\Prospector.exe
C:\WINNT\system32\notepad.exe
E:\prog\Uti\TextPad4\TextPad.exe
E:\prog\Uti\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - e:\prog\uti\acrobat5\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\prog\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: ExplorerWatch Class - {D4E7C68D-37FD-11D4-9D32-0000A00B0B0B} - E:\prog\Internet\CookiePal\CPBrHelp.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [CPQTEAM] cpqteam.exe
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [Zone Labs Client] E:\prog\Internet\ZoneAlarm\zlclient.exe
O4 - Global Startup: VirtuaWin.lnk = E:\prog\Uti\VirtuaWin\VirtuaWin.exe
O4 - Global Startup: Cookie Pal.lnk = E:\prog\Internet\CookiePal\CPal.exe
O4 - Global Startup: Keep Me Posted.lnk = E:\prog\Internet\KeepMePosted\KMPServ.exe
O4 - Global Startup: DU Meter.lnk = E:\prog\Internet\DUMeter\DUMeter.exe
O4 - Global Startup: WinFax PRO Controller.lnk = E:\prog\WinFax\wfxctl32.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\prog\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\prog\Java\jre1.5.0_06\bin\ssv.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{43E24E7C-FEB8-4763-9FF5-CE61E0745BAA}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{9C7DFE23-4C8B-42E1-AA8E-08238520BB7B}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS1\Services\Tcpip\..\{43E24E7C-FEB8-4763-9FF5-CE61E0745BAA}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{43E24E7C-FEB8-4763-9FF5-CE61E0745BAA}: NameServer = 208.67.222.222,208.67.220.220
O18 - Protocol: hpapp - {24F45006-5BD9-41B7-9BD9-5F8921C8EBD1} - C:\Program Files\Compaq\hpadu\Bin\hpapp.dll
O23 - Service: HP Insight Event Notifier (CIMnotify) - Hewlett-Packard Company - C:\WINNT\System32\CIMntfy\cimntfy.exe
O23 - Service: HP Insight NIC Agent (CpqNicMgmt) - Hewlett-Packard Company - C:\WINNT\System32\CPQNiMgt\cpqnimgt.exe
O23 - Service: HP Insight Foundation Agents (CqMgHost) - Hewlett-Packard Company - C:\WINNT\System32\CPQMgmt\CqMgHost\cqmghost.exe
O23 - Service: HP Insight Server Agents (CqMgServ) - Hewlett-Packard Company - C:\WINNT\System32\CPQMgmt\CqMgServ\cqmgserv.exe
O23 - Service: HP Insight Storage Agents (CqMgStor) - Hewlett-Packard Company - C:\WINNT\System32\CPQMgmt\CqMgStor\cqmgstor.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Keep Me Posted (KMPService) - Elegant Logic Ltd. - E:\prog\Internet\KeepMePosted\KMPServ.exe
O23 - Service: HP ProLiant System Shutdown Service (sysdown) - Compaq Computer Corporation - C:\WINNT\System32\sysdown.exe
O23 - Service: HP System Management Homepage (SysMgmtHp) - Hewlett-Packard Company - C:\hp\hpsmh\bin\smhstart.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINNT\system32\ZONELABS\vsmon.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - E:\prog\Internet\VNC4\WinVNC4.exe" -service (file missing)
====================================================================
The last four minidumps are attached.
Of course, any help greatly appreciated.