Advertisement
Guest User

bsod#1

a guest
Sep 5th, 2013
137
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.40 KB | None | 0 0
  1. BugCheck 3B, {c0000005, fffff80003bb0617, fffff88005dae6e0, 0}
  2.  
  3. Probably caused by : ntkrnlmp.exe ( nt!ExAllocatePoolWithTag+537 )
  4.  
  5. Followup: MachineOwner
  6. ---------
  7.  
  8. 0: kd> !analyze -v
  9. *******************************************************************************
  10. * *
  11. * Bugcheck Analysis *
  12. * *
  13. *******************************************************************************
  14.  
  15. SYSTEM_SERVICE_EXCEPTION (3b)
  16. An exception happened while executing a system service routine.
  17. Arguments:
  18. Arg1: 00000000c0000005, Exception code that caused the bugcheck
  19. Arg2: fffff80003bb0617, Address of the instruction which caused the bugcheck
  20. Arg3: fffff88005dae6e0, Address of the context record for the exception that caused the bugcheck
  21. Arg4: 0000000000000000, zero.
  22.  
  23. Debugging Details:
  24. ------------------
  25.  
  26.  
  27. EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
  28.  
  29. FAULTING_IP:
  30. nt!ExAllocatePoolWithTag+537
  31. fffff800`03bb0617 48895808 mov qword ptr [rax+8],rbx
  32.  
  33. CONTEXT: fffff88005dae6e0 -- (.cxr 0xfffff88005dae6e0)
  34. rax=fffef8a0050338a0 rbx=fffffa8004e7a540 rcx=fffff8a004bd78a0
  35. rdx=0000000000000003 rsi=0000000000000003 rdi=0000000000000001
  36. rip=fffff80003bb0617 rsp=fffff88005daf0c0 rbp=0000000000001000
  37. r8=0000000000000001 r9=fffffa8004e7a540 r10=fffffa8004e7a3c8
  38. r11=0000000000000003 r12=fffffa8004e7a3c0 r13=0000000000000000
  39. r14=fffffa80068f2b60 r15=000000004b466650
  40. iopl=0 nv up ei pl zr na po nc
  41. cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246
  42. nt!ExAllocatePoolWithTag+0x537:
  43. fffff800`03bb0617 48895808 mov qword ptr [rax+8],rbx ds:002b:fffef8a0`050338a8=????????????????
  44. Resetting default scope
  45.  
  46. CUSTOMER_CRASH_COUNT: 1
  47.  
  48. DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
  49.  
  50. BUGCHECK_STR: 0x3B
  51.  
  52. PROCESS_NAME: svchost.exe
  53.  
  54. CURRENT_IRQL: 0
  55.  
  56. LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff80003bb0617
  57.  
  58. STACK_TEXT:
  59. fffff880`05daf0c0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExAllocatePoolWithTag+0x537
  60.  
  61.  
  62. FOLLOWUP_IP:
  63. nt!ExAllocatePoolWithTag+537
  64. fffff800`03bb0617 48895808 mov qword ptr [rax+8],rbx
  65.  
  66. SYMBOL_STACK_INDEX: 0
  67.  
  68. SYMBOL_NAME: nt!ExAllocatePoolWithTag+537
  69.  
  70. FOLLOWUP_NAME: MachineOwner
  71.  
  72. MODULE_NAME: nt
  73.  
  74. IMAGE_NAME: ntkrnlmp.exe
  75.  
  76. DEBUG_FLR_IMAGE_TIMESTAMP: 4d9fdd5b
  77.  
  78. STACK_COMMAND: .cxr 0xfffff88005dae6e0 ; kb
  79.  
  80. FAILURE_BUCKET_ID: X64_0x3B_nt!ExAllocatePoolWithTag+537
  81.  
  82. BUCKET_ID: X64_0x3B_nt!ExAllocatePoolWithTag+537
  83.  
  84. Followup: MachineOwner
  85. ---------
  86.  
  87. 0: kd> !analyze -v
  88. *******************************************************************************
  89. * *
  90. * Bugcheck Analysis *
  91. * *
  92. *******************************************************************************
  93.  
  94. SYSTEM_SERVICE_EXCEPTION (3b)
  95. An exception happened while executing a system service routine.
  96. Arguments:
  97. Arg1: 00000000c0000005, Exception code that caused the bugcheck
  98. Arg2: fffff80003bb0617, Address of the instruction which caused the bugcheck
  99. Arg3: fffff88005dae6e0, Address of the context record for the exception that caused the bugcheck
  100. Arg4: 0000000000000000, zero.
  101.  
  102. Debugging Details:
  103. ------------------
  104.  
  105.  
  106. EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
  107.  
  108. FAULTING_IP:
  109. nt!ExAllocatePoolWithTag+537
  110. fffff800`03bb0617 48895808 mov qword ptr [rax+8],rbx
  111.  
  112. CONTEXT: fffff88005dae6e0 -- (.cxr 0xfffff88005dae6e0)
  113. rax=fffef8a0050338a0 rbx=fffffa8004e7a540 rcx=fffff8a004bd78a0
  114. rdx=0000000000000003 rsi=0000000000000003 rdi=0000000000000001
  115. rip=fffff80003bb0617 rsp=fffff88005daf0c0 rbp=0000000000001000
  116. r8=0000000000000001 r9=fffffa8004e7a540 r10=fffffa8004e7a3c8
  117. r11=0000000000000003 r12=fffffa8004e7a3c0 r13=0000000000000000
  118. r14=fffffa80068f2b60 r15=000000004b466650
  119. iopl=0 nv up ei pl zr na po nc
  120. cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246
  121. nt!ExAllocatePoolWithTag+0x537:
  122. fffff800`03bb0617 48895808 mov qword ptr [rax+8],rbx ds:002b:fffef8a0`050338a8=????????????????
  123. Resetting default scope
  124.  
  125. CUSTOMER_CRASH_COUNT: 1
  126.  
  127. DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
  128.  
  129. BUGCHECK_STR: 0x3B
  130.  
  131. PROCESS_NAME: svchost.exe
  132.  
  133. CURRENT_IRQL: 0
  134.  
  135. LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff80003bb0617
  136.  
  137. STACK_TEXT:
  138. fffff880`05daf0c0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExAllocatePoolWithTag+0x537
  139.  
  140.  
  141. FOLLOWUP_IP:
  142. nt!ExAllocatePoolWithTag+537
  143. fffff800`03bb0617 48895808 mov qword ptr [rax+8],rbx
  144.  
  145. SYMBOL_STACK_INDEX: 0
  146.  
  147. SYMBOL_NAME: nt!ExAllocatePoolWithTag+537
  148.  
  149. FOLLOWUP_NAME: MachineOwner
  150.  
  151. MODULE_NAME: nt
  152.  
  153. IMAGE_NAME: ntkrnlmp.exe
  154.  
  155. DEBUG_FLR_IMAGE_TIMESTAMP: 4d9fdd5b
  156.  
  157. STACK_COMMAND: .cxr 0xfffff88005dae6e0 ; kb
  158.  
  159. FAILURE_BUCKET_ID: X64_0x3B_nt!ExAllocatePoolWithTag+537
  160.  
  161. BUCKET_ID: X64_0x3B_nt!ExAllocatePoolWithTag+537
  162.  
  163. Followup: MachineOwner
  164. ---------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement