Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ************* Symbol Path validation summary **************
- Response Time (ms) Location
- Deferred SRV*C:\Windows\symbol_cache*http://msdl.microsoft.com/download/symbols
- Microsoft (R) Windows Debugger Version 6.3.9600.17336 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- Loading Dump File [C:\Windows\Minidump\081616-33353-01.dmp]
- Mini Kernel Dump File: Only registers and stack trace are available
- ************* Symbol Path validation summary **************
- Response Time (ms) Location
- Deferred SRV*C:\Windows\symbol_cache*http://msdl.microsoft.com/download/symbols
- Symbol search path is: SRV*C:\Windows\symbol_cache*http://msdl.microsoft.com/download/symbols
- Executable search path is:
- Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 7601.23455.amd64fre.win7sp1_ldr.160516-0600
- Machine Name:
- Kernel base = 0xfffff800`03860000 PsLoadedModuleList = 0xfffff800`03aa2730
- Debug session time: Tue Aug 16 23:43:37.510 2016 (UTC - 4:00)
- System Uptime: 0 days 0:18:03.338
- Loading Kernel Symbols
- ...............................................................
- ................................................................
- ...........................
- Loading User Symbols
- Loading unloaded module list
- ......
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- Use !analyze -v to get detailed debugging information.
- BugCheck 1A, {31, fffffa800a39dbd0, fffff88000b99000, fffff8a01f4c86cc}
- Probably caused by : ntkrnlmp.exe ( nt! ?? ::NNGAKEGL::`string'+6fc1 )
- Followup: MachineOwner
- ---------
- 1: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- MEMORY_MANAGEMENT (1a)
- # Any other values for parameter 1 must be individually examined.
- Arguments:
- Arg1: 0000000000000031, The subtype of the bugcheck.
- Arg2: fffffa800a39dbd0
- Arg3: fffff88000b99000
- Arg4: fffff8a01f4c86cc
- Debugging Details:
- ------------------
- BUGCHECK_STR: 0x1a_31
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
- PROCESS_NAME: mscorsvw.exe
- CURRENT_IRQL: 0
- ANALYSIS_VERSION: 6.3.9600.17336 (debuggers(dbg).150226-1500) amd64fre
- LAST_CONTROL_TRANSFER: from fffff80003b2e095 to fffff800038cf400
- STACK_TEXT:
- fffff880`11714638 fffff800`03b2e095 : 00000000`0000001a 00000000`00000031 fffffa80`0a39dbd0 fffff880`00b99000 : nt!KeBugCheckEx
- fffff880`11714640 fffff800`038b1540 : fffff8a0`00000000 00000000`00000000 00000000`000003a9 fffff8a0`1f49ed90 : nt! ?? ::NNGAKEGL::`string'+0x6fc1
- fffff880`117146a0 fffff800`03baa7f9 : fffffa80`0fe37200 fffff6fc`4008a678 fffff8a0`00000002 00000000`00000000 : nt!MiValidateImagePages+0x590
- fffff880`11714760 fffff800`03baa98e : ffffffff`ffffffff 00000000`00000001 fffff8a0`1f4b4000 00000000`000000eb : nt!MiSwitchBaseAddress+0x61
- fffff880`11714790 fffff800`03bcf3b2 : 00000000`00000004 00000000`01000000 fffffa80`0fe37200 fffffa80`0fe37200 : nt!MiRelocateImageAgain+0x12e
- fffff880`117147e0 fffff800`03baa072 : fffff880`11714a40 00000000`00000010 00000000`00000000 fffff880`11714a38 : nt!MmCreateSection+0x5e2
- fffff880`117149f0 fffff800`038ce693 : fffffa80`0fd03b50 00000000`002ab218 fffff880`11714a88 00000000`002ab3a0 : nt!NtCreateSection+0x171
- fffff880`11714a70 00000000`7734bfda : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000000`002ab1f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7734bfda
- STACK_COMMAND: kb
- FOLLOWUP_IP:
- nt! ?? ::NNGAKEGL::`string'+6fc1
- fffff800`03b2e095 cc int 3
- SYMBOL_STACK_INDEX: 1
- SYMBOL_NAME: nt! ?? ::NNGAKEGL::`string'+6fc1
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 573a38fc
- IMAGE_VERSION: 6.1.7601.23455
- FAILURE_BUCKET_ID: X64_0x1a_31_nt!_??_::NNGAKEGL::_string_+6fc1
- BUCKET_ID: X64_0x1a_31_nt!_??_::NNGAKEGL::_string_+6fc1
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:x64_0x1a_31_nt!_??_::nngakegl::_string_+6fc1
- FAILURE_ID_HASH: {bfbb5bda-8aff-1cc6-52e5-8e3fd93bacb3}
- Followup: MachineOwner
- ---------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement