Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 X86
- Copyright (c) Microsoft Corporation. All rights reserved.
- Auto Dump Analyzer by gardenman
- Time to debug file(s): 00 hours and 02 minutes and 41 seconds
- ========================================================================
- =================== Dump File: 080217-22796-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff803`cf291000 PsLoadedModuleList = 0xfffff803`cf5dd5a0
- Debug session time: Tue Aug 1 22:38:01.497 2017 (UTC - 4:00)
- System Uptime: 0 days 15:08:02.115
- BugCheck 50, {fffff803cf057b3c, 2, fffff803cf2f03ff, 0}
- Could not read faulting driver name
- Probably caused by : ntkrnlmp.exe ( nt!RtlSetBits+3f )
- Followup: MachineOwner
- PAGE_FAULT_IN_NONPAGED_AREA (50)
- Invalid system memory was referenced. This cannot be protected by try-except.
- Typically the address is just plain bad or it is pointing at freed memory.
- Arguments:
- Arg1: fffff803cf057b3c, memory referenced.
- Arg2: 0000000000000002, value 0 = read operation, 1 = write operation.
- Arg3: fffff803cf2f03ff, If non-zero, the instruction address which referenced the bad memory
- address.
- Arg4: 0000000000000000, (reserved)
- Debugging Details:
- Could not read faulting driver name
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.0 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: Gigabyte Technology Co., Ltd.
- SYSTEM_PRODUCT_NAME: B250M-D3H
- SYSTEM_SKU: Default string
- SYSTEM_VERSION: Default string
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: F7
- BIOS_DATE: 07/06/2017
- BASEBOARD_MANUFACTURER: Gigabyte Technology Co., Ltd.
- BASEBOARD_PRODUCT: B250M-D3H-CF
- BASEBOARD_VERSION: x.x
- DUMP_TYPE: 2
- DUMP_FILE_ATTRIBUTES: 0x8
- Kernel Generated Triage Dump
- READ_ADDRESS: fffff803cf672358: Unable to get MiVisibleState
- fffff803cf057b3c
- FAULTING_IP:
- nt!RtlSetBits+3f
- fffff803`cf2f03ff 0803 or byte ptr [rbx],al
- MM_INTERNAL_CODE: 0
- CPU_COUNT: 4
- CPU_MHZ: bb8
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 5E'00000000 (cache) 5E'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: AV
- PROCESS_NAME: CompatTelRunne
- CURRENT_IRQL: 2
- TRAP_FRAME: ffffc901fada21d0 -- (.trap 0xffffc901fada21d0)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=000000000000000c rbx=0000000000000000 rcx=0000000000000002
- rdx=0000000000000002 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff803cf2f03ff rsp=ffffc901fada2360 rbp=fffff803cf291000
- r8=0000000000000002 r9=000000000004ecf1 r10=0000000000000001
- r11=ffff888525b4fcc0 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei pl nz na po nc
- nt!RtlSetBits+0x3f:
- fffff803`cf2f03ff 0803 or byte ptr [rbx],al ds:00000000`00000000=??
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff803cf42bd5c to fffff803cf3fcfd0
- STACK_TEXT:
- ffffc901`fada1f38 fffff803`cf42bd5c : 00000000`00000050 fffff803`cf057b3c 00000000`00000002 ffffc901`fada21d0 : nt!KeBugCheckEx
- ffffc901`fada1f40 fffff803`cf2ff766 : 00000000`00000002 fffff803`cf057b3c ffffc901`fada21d0 ffff8885`2ed7f7c0 : nt!MiSystemFault+0x12e79c
- ffffc901`fada1fe0 fffff803`cf406872 : 00000000`00006280 00000000`00000000 ffffc901`fada2270 fffff803`cf4069a0 : nt!MmAccessFault+0xae6
- ffffc901`fada21d0 fffff803`cf2f03ff : ffffc901`fada23f8 ffffc901`fada23d0 ffffc901`fada2388 00000000`00000018 : nt!KiPageFault+0x132
- ffffc901`fada2360 fffff803`cf7a8a25 : ffffb288`fdf3a2b0 ffffc901`fada2401 00000000`00000007 ffff8885`25b4fcc0 : nt!RtlSetBits+0x3f
- ffffc901`fada2390 fffff803`cf7a7617 : ffffb288`fbf26378 00000000`0000012d ffffb288`fbf26330 00000000`0000018a : nt!MiUpdateCfgSystemWideBitmapWorker+0x2e5
- ffffc901`fada2460 fffff803`cf7ad1bc : 00000000`00000023 ffffc901`fada26d9 00000000`5cf00000 00000000`00000000 : nt!MiUpdateCfgSystemWideBitmap+0x83
- ffffc901`fada24a0 fffff803`cf7aaa99 : ffffc901`fada2890 ffffc901`fada2890 ffffc901`fada26d9 ffffc901`fada2890 : nt!MiRelocateImage+0x30c
- ffffc901`fada2600 fffff803`cf710f29 : ffffc901`00000000 ffffc901`fada2890 ffffc901`fada2890 ffff8885`2cebcef0 : nt!MiCreateNewSection+0x3ad
- ffffc901`fada2740 fffff803`cf7106a2 : ffffc901`fada2770 ffffb288`f78cd380 ffff8885`2cebcef0 00000000`00f80090 : nt!MiCreateImageOrDataSection+0x289
- ffffc901`fada2820 fffff803`cf711222 : 00000000`11000000 00000000`00000000 ffffb288`fdc879d0 fffff803`cf77b7f8 : nt!MiCreateSection+0xd2
- ffffc901`fada2960 fffff803`cf407f13 : ffff8885`272f15c0 fffff803`00000004 00000000`00000000 000000ef`fd8f98a8 : nt!NtCreateSection+0x1e2
- ffffc901`fada2a10 00007ffb`3e0a5cf4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 000000ef`fd8f9888 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffb`3e0a5cf4
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: d885ed60512863ae72cc84f501b87df966e8411c
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 2f5a57a1cf28d25012b23515739c92edb122d100
- THREAD_SHA1_HASH_MOD: fe34192f63d13620a8987d294372ee74d699cfee
- FOLLOWUP_IP:
- nt!RtlSetBits+3f
- fffff803`cf2f03ff 0803 or byte ptr [rbx],al
- FAULT_INSTR_CODE: 8b480308
- SYMBOL_STACK_INDEX: 4
- SYMBOL_NAME: nt!RtlSetBits+3f
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 58ccba4c
- IMAGE_VERSION: 10.0.15063.0
- BUCKET_ID_FUNC_OFFSET: 3f
- FAILURE_BUCKET_ID: AV_INVALID_nt!RtlSetBits
- BUCKET_ID: AV_INVALID_nt!RtlSetBits
- PRIMARY_PROBLEM_CLASS: AV_INVALID_nt!RtlSetBits
- TARGET_TIME: 2017-08-02T02:38:01.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 0
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-03-18 00:40:44
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.0
- ANALYSIS_SESSION_ELAPSED_TIME: a6b
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:av_invalid_nt!rtlsetbits
- FAILURE_ID_HASH: {d8bc1995-ce19-2f06-c15b-0181e3fe55f4}
- Followup: MachineOwner
- ========================================================================
- ============================== Drivers ===============================
- ========================================================================
- Image path: kdcom.dll
- Image name: kdcom.dll
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=kdcom.dll
- Timestamp: ***** Invalid (91688416)
- Image path: mcupdate.dll
- Image name: mcupdate.dll
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=mcupdate.dll
- Timestamp: Tue Jul 17 1979
- Image path: iaStorA.sys
- Image name: iaStorA.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=iaStorA.sys
- Possible Driver Info: Intel SATA Storage Device RAID Controller
- Timestamp: Tue Jun 6 2017
- Image path: amdkmpfd.sys
- Image name: amdkmpfd.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=amdkmpfd.sys
- Timestamp: Mon May 25 2015
- Image path: ISODrv64.sys
- Image name: ISODrv64.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=ISODrv64.sys
- Timestamp: Thu Jan 28 2010
- Image path: TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=TeeDriverW8x64.sys
- Possible Driver Info: Intel® Management Engine Interface
- Timestamp: Tue Apr 4 2017
- Image path: dump_iaStorA.sys
- Image name: dump_iaStorA.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=dump_iaStorA.sys
- Possible Driver Info: IASTOR.SYS is a Intel SATA driver for hard drives
- Timestamp: Tue Jun 6 2017
- Image path: drmk.sys
- Image name: drmk.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=drmk.sys
- Possible Driver Info: (Microsoft) Kernel DRM Descrambler Filter
- Timestamp: ***** Invalid (A01C1986)
- Image path: e1d65x64.sys
- Image name: e1d65x64.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=e1d65x64.sys
- Timestamp: Sun Mar 19 2017
- Image path: nvvad64v.sys
- Image name: nvvad64v.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=nvvad64v.sys
- Possible Driver Info: Nvidia Virtual Audio Driver http://www.nvidia.com/
- Timestamp: Sun May 28 2017
- Image path: nvvhci.sys
- Image name: nvvhci.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=nvvhci.sys
- Timestamp: Tue Dec 27 2016
- Image path: womic.sys
- Image name: womic.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=womic.sys
- Timestamp: Sun May 21 2017
- Image path: nvhda64v.sys
- Image name: nvhda64v.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=nvhda64v.sys
- Timestamp: Tue May 16 2017
- Image path: RTKVHD64.sys
- Image name: RTKVHD64.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=RTKVHD64.sys
- Timestamp: Thu Jan 5 2017
- Image path: t_mouse.sys
- Image name: t_mouse.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=t_mouse.sys
- Timestamp: Mon Dec 3 2012
- Image path: ElcMouLFlt.sys
- Image name: ElcMouLFlt.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=ElcMouLFlt.sys
- Timestamp: Mon Oct 4 2010
- Image path: ElcMouUFlt.sys
- Image name: ElcMouUFlt.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=ElcMouUFlt.sys
- Timestamp: Tue Nov 30 2010
- Image path: dump_storport.sys
- Image name: dump_storport.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=dump_storport.sys
- Timestamp: Wed Aug 28 2013
- Image path: nvlddmkm.sys
- Image name: nvlddmkm.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=nvlddmkm.sys
- Possible Driver Info: Nvidia Graphics Card driver. http://www.nvidia.com/
- Timestamp: Tue Jul 18 2017
- Unloaded modules:
- fffff803`cede0000 fffff803`cedef000 hiber_storpo
- fffff803`d48d0000 fffff803`d541d000 hiber_iaStor
- fffff803`d5420000 fffff803`d543d000 hiber_dumpfv
- fffff803`ceda0000 fffff803`cedab000 umpass.sys
- fffff803`ced90000 fffff803`ced9d000 WpdUpFltr.sy
- fffff803`ced50000 fffff803`ced8d000 WUDFRd.sys
- fffff803`ced00000 fffff803`ced25000 USBSTOR.SYS
- fffff803`cebf0000 fffff803`cebfb000 umpass.sys
- fffff803`ced30000 fffff803`ced4c000 EhStorClass.
- fffff803`cecf0000 fffff803`cecfd000 WpdUpFltr.sy
- fffff803`cecb0000 fffff803`ceced000 WUDFRd.sys
- fffff803`cec00000 fffff803`cec25000 USBSTOR.SYS
- fffff80a`37e00000 fffff80a`37e1c000 EhStorClass.
- fffff803`ceb90000 fffff803`ceb9b000 umpass.sys
- fffff803`cef10000 fffff803`cef1b000 cldflt.sys
- fffff80a`38d20000 fffff80a`38d2f000 dump_storpor
- fffff80a`3a600000 fffff80a`3b14d000 dump_iaStorA
- fffff80a`3b170000 fffff80a`3b18d000 dump_dumpfve
- fffff80a`392f0000 fffff80a`39310000 dam.sys
- fffff80a`373e0000 fffff80a`373ef000 WdBoot.sys
- fffff80a`38c30000 fffff80a`38c3f000 hwpolicy.sys
- ========================================================================
- ============================== BIOS INFO =============================
- ========================================================================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4226 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version F7
- BIOS Starting Address Segment f000
- BIOS Release Date 07/06/2017
- BIOS ROM Size 800000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product Name B250M-D3H
- Version Default string
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Gigabyte Technology Co., Ltd.
- Product B250M-D3H-CF
- Version x.x
- Feature Flags 09h
- 1689723400: - ?ÿU?ì?ì¡H.Êd3Å?Eü3ÀW?}?Eô?Eø?ÿu
- ¸@
- 1689723440: - ?ÿU?ì?ì¡H.Êd3Å?Eü3ÀW?}?Eô?Eø?ÿu
- ¸@
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0021h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0022h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0023h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 003dh]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003eh]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 4096MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 0616
- Part Number DDR4-2400 CL16 4GB
- [Memory Device (Type 17) - Length 40 - Handle 003fh]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0040h]
- Physical Memory Array Handle 003dh
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0041h]
- Physical Memory Array Handle 003dh
- Total Width 64 bits
- Data Width 64 bits
- Size 4096MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer 0616
- Part Number DDR4-2400 CL16 4GB
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0042h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Array Handle 003dh
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 1800h - 6144K
- Installed Size 1800h - 6144K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family cdh - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e9060900fffbebbf
- Processor Version Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
- Processor Voltage 8ah - 1.0V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3300MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 003fffffh
- Memory Device Handle 003eh
- Mem Array Mapped Adr Handle 0042h
- Interleave Position [None]
- Interleave Data Depth [None]
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 00400000h
- Ending Address 007fffffh
- Memory Device Handle 0041h
- Mem Array Mapped Adr Handle 0042h
- Interleave Position [None]
- Interleave Data Depth [None]
- ========================================================================
- =================== Dump File: 080217-19031-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff801`59a85000 PsLoadedModuleList = 0xfffff801`59dd15a0
- Debug session time: Tue Aug 1 22:48:49.120 2017 (UTC - 4:00)
- System Uptime: 0 days 0:09:38.738
- BugCheck 50, {fffff8015d620a72, 2, fffff80159ae43ff, 0}
- Could not read faulting driver name
- Probably caused by : ntkrnlmp.exe ( nt!RtlSetBits+3f )
- Followup: MachineOwner
- PAGE_FAULT_IN_NONPAGED_AREA (50)
- Invalid system memory was referenced. This cannot be protected by try-except.
- Typically the address is just plain bad or it is pointing at freed memory.
- Arguments:
- Arg1: fffff8015d620a72, memory referenced.
- Arg2: 0000000000000002, value 0 = read operation, 1 = write operation.
- Arg3: fffff80159ae43ff, If non-zero, the instruction address which referenced the bad memory
- address.
- Arg4: 0000000000000000, (reserved)
- Debugging Details:
- Could not read faulting driver name
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.0 (WinBuild.160101.0800)
- DUMP_TYPE: 2
- DUMP_FILE_ATTRIBUTES: 0x8
- Kernel Generated Triage Dump
- READ_ADDRESS: fffff80159e66358: Unable to get MiVisibleState
- fffff8015d620a72
- FAULTING_IP:
- nt!RtlSetBits+3f
- fffff801`59ae43ff 0803 or byte ptr [rbx],al
- MM_INTERNAL_CODE: 0
- CPU_COUNT: 4
- CPU_MHZ: bb8
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: AV
- PROCESS_NAME: CompatTelRunne
- CURRENT_IRQL: 2
- TRAP_FRAME: ffffc4009bebe1d0 -- (.trap 0xffffc4009bebe1d0)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=00000000000000c0 rbx=0000000000000000 rcx=0000000000000006
- rdx=0000000000000006 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff80159ae43ff rsp=ffffc4009bebe360 rbp=fffff80159a85000
- r8=0000000000000002 r9=00000000000b89cb r10=0000000000000001
- r11=ffffdb8fc374df30 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po nc
- nt!RtlSetBits+0x3f:
- fffff801`59ae43ff 0803 or byte ptr [rbx],al ds:00000000`00000000=??
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff80159c1fd5c to fffff80159bf0fd0
- STACK_TEXT:
- ffffc400`9bebdf38 fffff801`59c1fd5c : 00000000`00000050 fffff801`5d620a72 00000000`00000002 ffffc400`9bebe1d0 : nt!KeBugCheckEx
- ffffc400`9bebdf40 fffff801`59af3766 : 00000000`00000002 fffff801`5d620a72 ffffc400`9bebe1d0 ffffdb8f`c4dfb7c0 : nt!MiSystemFault+0x12e79c
- ffffc400`9bebdfe0 fffff801`59bfa872 : 00000000`00006280 00000000`00000000 ffffc400`9bebe270 fffff801`59bfa9a0 : nt!MmAccessFault+0xae6
- ffffc400`9bebe1d0 fffff801`59ae43ff : ffffc400`9bebe3f8 ffffc400`9bebe3d0 ffffc400`9bebe388 00000000`00000018 : nt!KiPageFault+0x132
- ffffc400`9bebe360 fffff801`59f9ca25 : ffffa18f`d65fe960 ffffc400`9bebe401 00000000`00000007 ffffdb8f`c374df30 : nt!RtlSetBits+0x3f
- ffffc400`9bebe390 fffff801`59f9b617 : ffffa18f`d451e058 00000000`0000012d ffffa18f`d451e010 00000000`0000018a : nt!MiUpdateCfgSystemWideBitmapWorker+0x2e5
- ffffc400`9bebe460 fffff801`59fa11bc : 00000000`00000023 ffffc400`9bebe6d9 00000000`5cf00000 00000000`00000000 : nt!MiUpdateCfgSystemWideBitmap+0x83
- ffffc400`9bebe4a0 fffff801`59f9ea99 : ffffc400`9bebe890 ffffc400`9bebe890 ffffc400`9bebe6d9 ffffc400`9bebe890 : nt!MiRelocateImage+0x30c
- ffffc400`9bebe600 fffff801`59f04f29 : ffffc400`00000000 ffffc400`9bebe890 ffffc400`9bebe890 ffffdb8f`caf43ef0 : nt!MiCreateNewSection+0x3ad
- ffffc400`9bebe740 fffff801`59f046a2 : ffffc400`9bebe770 ffffa18f`d63bdc10 ffffdb8f`caf43ef0 00000000`00f80090 : nt!MiCreateImageOrDataSection+0x289
- ffffc400`9bebe820 fffff801`59f05222 : 00000000`11000000 00000000`00000000 ffffa18f`d426a9d0 fffff801`59f6f7f8 : nt!MiCreateSection+0xd2
- ffffc400`9bebe960 fffff801`59bfbf13 : ffffdb8f`ca54b080 fffff801`00000004 00000000`00000000 000000c5`b34798b8 : nt!NtCreateSection+0x1e2
- ffffc400`9bebea10 00007ff8`8d7b5cf4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 000000c5`b3479898 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff8`8d7b5cf4
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: d885ed60512863ae72cc84f501b87df966e8411c
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 2f5a57a1cf28d25012b23515739c92edb122d100
- THREAD_SHA1_HASH_MOD: fe34192f63d13620a8987d294372ee74d699cfee
- FOLLOWUP_IP:
- nt!RtlSetBits+3f
- fffff801`59ae43ff 0803 or byte ptr [rbx],al
- FAULT_INSTR_CODE: 8b480308
- SYMBOL_STACK_INDEX: 4
- SYMBOL_NAME: nt!RtlSetBits+3f
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 58ccba4c
- IMAGE_VERSION: 10.0.15063.0
- BUCKET_ID_FUNC_OFFSET: 3f
- FAILURE_BUCKET_ID: AV_INVALID_nt!RtlSetBits
- BUCKET_ID: AV_INVALID_nt!RtlSetBits
- PRIMARY_PROBLEM_CLASS: AV_INVALID_nt!RtlSetBits
- TARGET_TIME: 2017-08-02T02:48:49.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 0
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-03-18 00:40:44
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.0
- ANALYSIS_SESSION_ELAPSED_TIME: b3c
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:av_invalid_nt!rtlsetbits
- FAILURE_ID_HASH: {d8bc1995-ce19-2f06-c15b-0181e3fe55f4}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 080217-21656-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff803`12c98000 PsLoadedModuleList = 0xfffff803`12fe45a0
- Debug session time: Wed Aug 2 00:56:00.741 2017 (UTC - 4:00)
- System Uptime: 0 days 2:04:19.359
- BugCheck 50, {fffff80317990ee8, 2, fffff803131af8d1, 0}
- Could not read faulting driver name
- Probably caused by : memory_corruption ( nt!MiUpdateCfgSystemWideBitmapWorker+191 )
- Followup: MachineOwner
- PAGE_FAULT_IN_NONPAGED_AREA (50)
- Invalid system memory was referenced. This cannot be protected by try-except.
- Typically the address is just plain bad or it is pointing at freed memory.
- Arguments:
- Arg1: fffff80317990ee8, memory referenced.
- Arg2: 0000000000000002, value 0 = read operation, 1 = write operation.
- Arg3: fffff803131af8d1, If non-zero, the instruction address which referenced the bad memory
- address.
- Arg4: 0000000000000000, (reserved)
- Debugging Details:
- Could not read faulting driver name
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.0 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: Gigabyte Technology Co., Ltd.
- SYSTEM_PRODUCT_NAME: B250M-D3H
- SYSTEM_SKU: Default string
- SYSTEM_VERSION: Default string
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: F7
- BIOS_DATE: 07/06/2017
- BASEBOARD_MANUFACTURER: Gigabyte Technology Co., Ltd.
- BASEBOARD_PRODUCT: B250M-D3H-CF
- BASEBOARD_VERSION: x.x
- DUMP_TYPE: 2
- DUMP_FILE_ATTRIBUTES: 0x8
- Kernel Generated Triage Dump
- READ_ADDRESS: fffff80313079358: Unable to get MiVisibleState
- fffff80317990ee8
- FAULTING_IP:
- nt!MiUpdateCfgSystemWideBitmapWorker+191
- fffff803`131af8d1 440fab0f bts dword ptr [rdi],r9d
- MM_INTERNAL_CODE: 0
- CPU_COUNT: 4
- CPU_MHZ: bb8
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 5E'00000000 (cache) 5E'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: AV
- PROCESS_NAME: CompatTelRunne
- CURRENT_IRQL: 2
- TRAP_FRAME: ffffbe81579f0200 -- (.trap 0xffffbe81579f0200)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=ffff8507f58a6c00 rbx=0000000000000000 rcx=0000000000000012
- rdx=0000000000000012 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff803131af8d1 rsp=ffffbe81579f0390 rbp=ffffbe81579f0401
- r8=0000000000000001 r9=0000000001d5174a r10=0000000000000001
- r11=ffffd20d0574cd30 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei pl nz na pe nc
- nt!MiUpdateCfgSystemWideBitmapWorker+0x191:
- fffff803`131af8d1 440fab0f bts dword ptr [rdi],r9d ds:00000000`00000000=????????
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff80312e32d5c to fffff80312e03fd0
- STACK_TEXT:
- ffffbe81`579eff68 fffff803`12e32d5c : 00000000`00000050 fffff803`17990ee8 00000000`00000002 ffffbe81`579f0200 : nt!KeBugCheckEx
- ffffbe81`579eff70 fffff803`12d06766 : 00000000`00000002 fffff803`17990ee8 ffffbe81`579f0200 ffffd20d`0c72a7c0 : nt!MiSystemFault+0x12e79c
- ffffbe81`579f0010 fffff803`12e0d872 : 00000000`00000030 00000000`00000004 00000000`00000004 00000000`00000002 : nt!MmAccessFault+0xae6
- ffffbe81`579f0200 fffff803`131af8d1 : ffff8507`f58a6bc0 ffffbe81`579f0401 00000000`00000007 ffffd20d`0574cd30 : nt!KiPageFault+0x132
- ffffbe81`579f0390 fffff803`131ae617 : ffff8507`f3176378 00000000`0000012d ffff8507`f3176330 00000000`0000018a : nt!MiUpdateCfgSystemWideBitmapWorker+0x191
- ffffbe81`579f0460 fffff803`131b41bc : 00000000`00000023 ffffbe81`579f06d9 00000000`5cf00000 00000000`00000000 : nt!MiUpdateCfgSystemWideBitmap+0x83
- ffffbe81`579f04a0 fffff803`131b1a99 : ffffbe81`579f0890 ffffbe81`579f0890 ffffbe81`579f06d9 ffffbe81`579f0890 : nt!MiRelocateImage+0x30c
- ffffbe81`579f0600 fffff803`13117f29 : ffffbe81`00000000 ffffbe81`579f0890 ffffbe81`579f0890 ffffd20d`05cfcd60 : nt!MiCreateNewSection+0x3ad
- ffffbe81`579f0740 fffff803`131176a2 : ffffbe81`579f0770 ffff8507`f6df3690 ffffd20d`05cfcd60 00000000`00f80090 : nt!MiCreateImageOrDataSection+0x289
- ffffbe81`579f0820 fffff803`13118222 : 00000000`11000000 00000000`00000000 ffff8507`f5699060 fffff803`131827f8 : nt!MiCreateSection+0xd2
- ffffbe81`579f0960 fffff803`12e0ef13 : ffffd20d`0c85d7c0 fffff803`00000004 00000000`00000000 00000096`44ba89b8 : nt!NtCreateSection+0x1e2
- ffffbe81`579f0a10 00007ffa`d69a5cf4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000096`44ba8998 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffa`d69a5cf4
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: 007df9c97c7b80d0666022c56f953ff41f00fb36
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 2f476ceed1a0ec2ea2f50f1a19e262f6dc425b24
- THREAD_SHA1_HASH_MOD: dc844b1b94baa204d070855e43bbbd27eee98b94
- FOLLOWUP_IP:
- nt!MiUpdateCfgSystemWideBitmapWorker+191
- fffff803`131af8d1 440fab0f bts dword ptr [rdi],r9d
- FAULT_INSTR_CODE: fab0f44
- SYMBOL_STACK_INDEX: 4
- SYMBOL_NAME: nt!MiUpdateCfgSystemWideBitmapWorker+191
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- DEBUG_FLR_IMAGE_TIMESTAMP: 58ccba4c
- IMAGE_VERSION: 10.0.15063.0
- IMAGE_NAME: memory_corruption
- BUCKET_ID_FUNC_OFFSET: 191
- FAILURE_BUCKET_ID: AV_INVALID_nt!MiUpdateCfgSystemWideBitmapWorker
- BUCKET_ID: AV_INVALID_nt!MiUpdateCfgSystemWideBitmapWorker
- PRIMARY_PROBLEM_CLASS: AV_INVALID_nt!MiUpdateCfgSystemWideBitmapWorker
- TARGET_TIME: 2017-08-02T04:56:00.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 0
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-03-18 00:40:44
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.0
- ANALYSIS_SESSION_ELAPSED_TIME: a48
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:av_invalid_nt!miupdatecfgsystemwidebitmapworker
- FAILURE_ID_HASH: {05b8b558-263b-a49f-7972-d5460c51a52a}
- Followup: MachineOwner
Advertisement
Add Comment
Please, Sign In to add comment