Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- *******************************************************************************
- * *
- * Bugcheck Analysis #1 *
- * *
- *******************************************************************************
- CRITICAL_OBJECT_TERMINATION (f4)
- A process or thread crucial to system operation has unexpectedly exited or been
- terminated.
- Several processes and threads are necessary for the operation of the
- system; when they are terminated (for any reason), the system can no
- longer function.
- Arguments:
- Arg1: 0000000000000003, Process
- Arg2: fffffa800b836950, Terminating object
- Arg3: fffffa800b836c30, Process image file name
- Arg4: fffff80003d90270, Explanatory message (ascii)
- Debugging Details:
- ------------------
- ----- ETW minidump data unavailable-----
- KERNEL_LOG_FAILING_PROCESS: ?
- PROCESS_OBJECT: fffffa800b836950
- IMAGE_NAME: csrss.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MODULE_NAME: csrss
- FAULTING_MODULE: 0000000000000000
- PROCESS_NAME: csrss.exe
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
- BUGCHECK_STR: 0xF4_c0000005
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
- CURRENT_IRQL: 0
- ANALYSIS_VERSION: 6.3.9600.17237 (debuggers(dbg).140716-0327) amd64fre
- STACK_TEXT:
- fffff880`0aaff0e8 fffff800`03e18ab2 : 00000000`000000f4 00000000`00000003 fffffa80`0b836950 fffffa80`0b836c30 : nt!KeBugCheckEx
- fffff880`0aaff0f0 fffff800`03dc3abb : ffffffff`ffffffff fffffa80`0ae64b50 fffffa80`0b836950 fffffa80`0b836950 : nt!PspCatchCriticalBreak+0x92
- fffff880`0aaff130 fffff800`03d42f04 : ffffffff`ffffffff 00000000`00000001 fffffa80`0b836950 00000000`00000008 : nt! ?? ::NNGAKEGL::`string'+0x17486
- fffff880`0aaff180 fffff800`03a89e53 : fffffa80`0b836950 fffff800`c0000005 fffffa80`0ae64b50 00000000`04ad0a30 : nt!NtTerminateProcess+0xf4
- fffff880`0aaff200 fffff800`03a86410 : fffff800`03ad582f fffff880`0aaffb78 fffff880`0aaff8d0 fffff880`0aaffc20 : nt!KiSystemServiceCopyEnd+0x13
- fffff880`0aaff398 fffff800`03ad582f : fffff880`0aaffb78 fffff880`0aaff8d0 fffff880`0aaffc20 00000000`04ad2270 : nt!KiServiceLinkage
- fffff880`0aaff3a0 fffff800`03a8a242 : fffff880`0aaffb78 00000000`000713b8 fffff880`0aaffc20 00000000`04ad1d48 : nt! ?? ::FNODOBFM::`string'+0x488e4
- fffff880`0aaffa40 fffff800`03a88dba : 00000000`00000001 00000000`04ad0fe8 00000000`00000001 00000000`000713b8 : nt!KiExceptionDispatch+0xc2
- fffff880`0aaffc20 00000000`77108e5d : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x23a
- 00000000`04ad0ff0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77108e5d
- STACK_COMMAND: kb
- FOLLOWUP_NAME: MachineOwner
- IMAGE_VERSION:
- FAILURE_BUCKET_ID: X64_0xF4_c0000005_IMAGE_csrss.exe
- BUCKET_ID: X64_0xF4_c0000005_IMAGE_csrss.exe
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:x64_0xf4_c0000005_image_csrss.exe
- FAILURE_ID_HASH: {92bd9bcd-069a-8a82-1b78-cb81a61ff626}
- Followup: MachineOwner
- --------------------------------------------------
- 3: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis #2 *
- * *
- *******************************************************************************
- CRITICAL_OBJECT_TERMINATION (f4)
- A process or thread crucial to system operation has unexpectedly exited or been
- terminated.
- Several processes and threads are necessary for the operation of the
- system; when they are terminated (for any reason), the system can no
- longer function.
- Arguments:
- Arg1: 0000000000000003, Process
- Arg2: fffffa80087d4b30, Terminating object
- Arg3: fffffa80087d4e10, Process image file name
- Arg4: fffff80003d8a270, Explanatory message (ascii)
- Debugging Details:
- ------------------
- ----- ETW minidump data unavailable-----
- KERNEL_LOG_FAILING_PROCESS: ?
- PROCESS_OBJECT: fffffa80087d4b30
- IMAGE_NAME: wininit.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MODULE_NAME: wininit
- FAULTING_MODULE: 0000000000000000
- PROCESS_NAME: wininit.exe
- EXCEPTION_CODE: (NTSTATUS) 0xc0000006 - The instruction at 0x%p referenced memory at 0x%p. The required data was not placed into memory because of an I/O error status of 0x%x.
- BUGCHECK_STR: 0xF4_IOERR
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
- CURRENT_IRQL: 0
- ANALYSIS_VERSION: 6.3.9600.17237 (debuggers(dbg).140716-0327) amd64fre
- STACK_TEXT:
- fffff880`0a7d6b08 fffff800`03e12ab2 : 00000000`000000f4 00000000`00000003 fffffa80`087d4b30 fffffa80`087d4e10 : nt!KeBugCheckEx
- fffff880`0a7d6b10 fffff800`03dbdabb : ffffffff`ffffffff fffffa80`08b0ab50 fffffa80`087d4b30 fffffa80`087d4b30 : nt!PspCatchCriticalBreak+0x92
- fffff880`0a7d6b50 fffff800`03d3cf04 : ffffffff`ffffffff 00000000`00000001 fffffa80`087d4b30 0000007f`00000008 : nt! ?? ::NNGAKEGL::`string'+0x17486
- fffff880`0a7d6ba0 fffff800`03a83e53 : fffffa80`087d4b30 00000000`c0000006 fffffa80`08b0ab50 00000000`7725c541 : nt!NtTerminateProcess+0xf4
- fffff880`0a7d6c20 00000000`773e01af : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000000`00a3f7e8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x773e01af
- STACK_COMMAND: kb
- FOLLOWUP_NAME: MachineOwner
- IMAGE_VERSION:
- FAILURE_BUCKET_ID: X64_0xF4_IOERR_IMAGE_wininit.exe
- BUCKET_ID: X64_0xF4_IOERR_IMAGE_wininit.exe
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:x64_0xf4_ioerr_image_wininit.exe
- FAILURE_ID_HASH: {7e8d25f6-54c6-2456-f4df-269f2fd35200}
- Followup: MachineOwner
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- CRITICAL_OBJECT_TERMINATION (f4)
- A process or thread crucial to system operation has unexpectedly exited or been
- terminated.
- Several processes and threads are necessary for the operation of the
- system; when they are terminated (for any reason), the system can no
- longer function.
- Arguments:
- Arg1: 0000000000000003, Process
- Arg2: fffffa8009fddb30, Terminating object
- Arg3: fffffa8009fdde10, Process image file name
- Arg4: fffff80003d98270, Explanatory message (ascii)
- Debugging Details:
- ------------------
- ----- ETW minidump data unavailable-----
- KERNEL_LOG_FAILING_PROCESS: ?
- PROCESS_OBJECT: fffffa8009fddb30
- IMAGE_NAME: wininit.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MODULE_NAME: wininit
- FAULTING_MODULE: 0000000000000000
- PROCESS_NAME: wininit.exe
- EXCEPTION_CODE: (NTSTATUS) 0xc0000006 - The instruction at 0x%p referenced memory at 0x%p. The required data was not placed into memory because of an I/O error status of 0x%x.
- BUGCHECK_STR: 0xF4_IOERR
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
- CURRENT_IRQL: 0
- ANALYSIS_VERSION: 6.3.9600.17237 (debuggers(dbg).140716-0327) amd64fre
- STACK_TEXT:
- fffff880`092d7b08 fffff800`03e20ab2 : 00000000`000000f4 00000000`00000003 fffffa80`09fddb30 fffffa80`09fdde10 : nt!KeBugCheckEx
- fffff880`092d7b10 fffff800`03dcbabb : ffffffff`ffffffff fffffa80`0bcb4060 fffffa80`09fddb30 fffffa80`09fddb30 : nt!PspCatchCriticalBreak+0x92
- fffff880`092d7b50 fffff800`03d4af04 : ffffffff`ffffffff 00000000`00000001 fffffa80`09fddb30 0000007f`00000008 : nt! ?? ::NNGAKEGL::`string'+0x17486
- fffff880`092d7ba0 fffff800`03a91e53 : fffffa80`09fddb30 00000000`c0000006 fffffa80`0bcb4060 00000000`77c9c541 : nt!NtTerminateProcess+0xf4
- fffff880`092d7c20 00000000`77e201af : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000000`008dfb78 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77e201af
- STACK_COMMAND: kb
- FOLLOWUP_NAME: MachineOwner
- IMAGE_VERSION:
- FAILURE_BUCKET_ID: X64_0xF4_IOERR_IMAGE_wininit.exe
- BUCKET_ID: X64_0xF4_IOERR_IMAGE_wininit.exe
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:x64_0xf4_ioerr_image_wininit.exe
- FAILURE_ID_HASH: {7e8d25f6-54c6-2456-f4df-269f2fd35200}
- Followup: MachineOwner
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement