Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 6.3.9600.17029 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- Loading Dump File [C:\Users\Freddy\Desktop\MEMORY.DMP]
- Kernel Bitmap Dump File: Only kernel address space is available
- ************* Symbol Path validation summary **************
- Response Time (ms) Location
- OK c:\symbols\private
- Deferred srv*c:\symbols\web*http://msdl.microsoft.com/download/symbols
- ************* Symbol Path validation summary **************
- Response Time (ms) Location
- OK c:\symbols\private
- Deferred srv*c:\symbols\web*http://msdl.microsoft.com/download/symbols
- Symbol search path is: c:\symbols\private;srv*c:\symbols\web*http://msdl.microsoft.com/download/symbols
- Executable search path is:
- Windows 8 Kernel Version 9600 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 9600.16452.amd64fre.winblue_gdr.131030-1505
- Machine Name:
- Kernel base = 0xfffff802`0400a000 PsLoadedModuleList = 0xfffff802`042ce990
- Debug session time: Thu Sep 25 21:41:13.925 2014 (UTC + 2:00)
- System Uptime: 2 days 12:04:06.615
- Loading Kernel Symbols
- ...............................................................
- ............................................Page 10d002 not present in the dump file. Type ".hh dbgerr004" for details
- ....................
- .......................
- Loading User Symbols
- PEB is paged out (Peb.Ldr = 00007ff6`f3dd3018). Type ".hh dbgerr001" for details
- Loading unloaded module list
- ...................
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- Use !analyze -v to get detailed debugging information.
- BugCheck 13C, {ffffe00006adb5c0, 1, 0, 0}
- Page 10d002 not present in the dump file. Type ".hh dbgerr004" for details
- Probably caused by : ntkrnlmp.exe ( nt! ?? ::NNGAKEGL::`string'+5d695 )
- Followup: MachineOwner
- ---------
- 1: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- INVALID_IO_BOOST_STATE (13c)
- A thread exited with an invalid I/O boost state. This should be zero when
- a thread exits.
- Arguments:
- Arg1: ffffe00006adb5c0, Pointer to the thread which had the invalid boost state.
- Arg2: 0000000000000001, Current boost state.
- Arg3: 0000000000000000
- Arg4: 0000000000000000
- Debugging Details:
- ------------------
- Page 10d002 not present in the dump file. Type ".hh dbgerr004" for details
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: 0x13C
- PROCESS_NAME: svchost.exe
- CURRENT_IRQL: 0
- ANALYSIS_VERSION: 6.3.9600.17029 (debuggers(dbg).140219-1702) amd64fre
- LAST_CONTROL_TRANSFER: from fffff80204591005 to fffff80204157ca0
- STACK_TEXT:
- ffffd000`23bfc8c8 fffff802`04591005 : 00000000`0000013c ffffe000`06adb5c0 00000000`00000001 00000000`00000000 : nt!KeBugCheckEx
- ffffd000`23bfc8d0 fffff802`04438bf8 : 00000000`00000000 00000000`00000000 ffffe000`06adb5c0 ffffe000`000e5dc0 : nt! ?? ::NNGAKEGL::`string'+0x5d695
- ffffd000`23bfc940 fffff802`0404571f : 00000000`00000000 ffffd000`23bfca99 ffffe000`06adb5c0 ffffe000`000e5dc0 : nt!ObpRemoveObjectRoutine+0x64
- ffffd000`23bfc9a0 fffff802`043b84a0 : ffffe000`06adb590 00000000`ffff8002 ffffd000`23bfca99 0000000c`001f0003 : nt!ObfDereferenceObjectWithTag+0x8f
- ffffd000`23bfc9e0 fffff802`041634b3 : ffffe000`017e1340 00000033`f2726df0 00000033`f22cf5d0 00000000`00000000 : nt!NtClose+0x210
- ffffd000`23bfcb00 00007ffd`ae6e666a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000033`f22cedf8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`ae6e666a
- STACK_COMMAND: kb
- FOLLOWUP_IP:
- nt! ?? ::NNGAKEGL::`string'+5d695
- fffff802`04591005 cc int 3
- SYMBOL_STACK_INDEX: 1
- SYMBOL_NAME: nt! ?? ::NNGAKEGL::`string'+5d695
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 52718d9c
- BUCKET_ID_FUNC_OFFSET: 5d695
- FAILURE_BUCKET_ID: 0x13C_VRF_nt!_??_::NNGAKEGL::_string_
- BUCKET_ID: 0x13C_VRF_nt!_??_::NNGAKEGL::_string_
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x13c_vrf_nt!_??_::nngakegl::_string_
- FAILURE_ID_HASH: {7e799e7a-625a-26df-caad-edceb051a651}
- Followup: MachineOwner
- ---------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement