Advertisement
Guest User

Untitled

a guest
Jun 3rd, 2017
244
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 18.81 KB | None | 0 0
  1. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  2. Copyright (c) Microsoft Corporation. All rights reserved.
  3.  
  4. ========================================================================
  5. =================== Dump File: DUMP3567.dmp ====================
  6. ========================================================================
  7. Mini Kernel Dump File: Only registers and stack trace are available
  8. Executable search path is:
  9. Windows 10 Kernel Version 15063 MP (8 procs) Free x64
  10. Product: WinNt, suite: TerminalServer SingleUserTS
  11. Machine Name:
  12. Kernel base = 0xfffff803`2f60c000 PsLoadedModuleList = 0xfffff803`2f9585a0
  13. Debug session time: Sat Jun 3 19:55:28.579 2017 (UTC - 4:00)
  14. System Uptime: 0 days 0:27:10.374
  15. Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
  16. Run !sym noisy before .reload to track down problems loading symbols.
  17.  
  18. BugCheck 3B, {c0000005, fffff8032fa6f6a9, ffffd28162efe580, 0}
  19. Probably caused by : ntkrnlmp.exe ( nt!CmpDoParseKey+239 )
  20. Followup: MachineOwner
  21.  
  22. !thread
  23. THREAD ffffe40bf8865080 Cid 0e48.12f0 Teb: 0000000000806000 Win32Thread: ffffe40bf572a2d0 RUNNING on processor 2
  24. Not impersonating
  25. GetUlongFromAddress: unable to read from fffff8032f9492d4
  26. Owning Process ffffe40bf57477c0 Image: explorer.exe
  27. Attached Process N/A Image: N/A
  28. fffff78000000000: Unable to get shared data
  29. Wait Start TickCount 104343
  30. Context Switch Count 7029 IdealProcessor: 4
  31. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  32. UserTime 00:00:00.000
  33. KernelTime 00:00:00.000
  34. Win32 Start Address 0x00007ffdcff012d0
  35. Stack Init ffffd28162effc10 Current ffffd28162eff580
  36. Base ffffd28162f00000 Limit ffffd28162ef9000 Call 0000000000000000
  37. Priority 9 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
  38. Child-SP RetAddr : Args to Child : Call Site
  39. ffffd281`62efdca8 fffff803`2f7833a9 : 00000000`0000003b 00000000`c0000005 fffff803`2fa6f6a9 ffffd281`62efe580 : nt!KeBugCheckEx
  40. ffffd281`62efdcb0 fffff803`2f782b3c : ffffd281`62efdf00 fffff803`2f7742aa fffff803`2f8e5838 ffffd281`62efed48 : nt!KiBugCheckDispatch+0x69
  41. ffffd281`62efddf0 fffff803`2f77e4ad : fffff803`2f996000 fffff803`2f60c000 00053748`00889000 ffffd281`62efe420 : nt!KiSystemServiceHandler+0x7c
  42. ffffd281`62efde30 fffff803`2f619284 : 00000000`00000003 ffffd281`62efdf60 00000000`00000000 fffff803`2f6b01eb : nt!RtlpExecuteHandlerForException+0xd
  43. ffffd281`62efde60 fffff803`2f618063 : ffffd281`62efed48 ffffd281`62efea80 ffffd281`62efed48 00000000`00000102 : nt!RtlDispatchException+0x404
  44. ffffd281`62efe550 fffff803`2f783482 : ffff9307`359b68e0 fffff803`2fe97b00 ffff9307`312fee54 ffffd281`62efee20 : nt!KiDispatchException+0x143
  45. ffffd281`62efec10 fffff803`2f781734 : ffffd281`62efeed0 fffff803`2fa6f005 00000000`00000000 ffffd281`62eff150 : nt!KiExceptionDispatch+0xc2
  46. ffffd281`62efedf0 fffff803`2fa6f6a9 : ffffd281`62eff910 ffffd281`62eff080 ffff9307`35c1b820 ffffd281`62eff170 : nt!KiGeneralProtectionFault+0xf4 (TrapFrame @ ffffd281`62efedf0)
  47. ffffd281`62efef80 fffff803`2fa7afa6 : ffffd281`0000001c ffffd281`62eff450 ffffd281`62eff3d0 ffff9307`2f4abcb0 : nt!CmpDoParseKey+0x239
  48. ffffd281`62eff360 fffff803`2fa7547b : ffffe40b`f6d33b10 ffff9307`00000000 ffffe40b`f6d33b10 ffff9307`2f415701 : nt!CmpParseKey+0x266
  49. ffffd281`62eff530 fffff803`2fa78df0 : ffffe40b`f6d33b00 ffffd281`62eff798 ffff9307`00000040 ffffe40b`f535bc00 : nt!ObpLookupObjectName+0x46b
  50. ffffd281`62eff700 fffff803`2fa79af4 : ffff9307`00000001 ffffe40b`f535bc00 00000000`00000000 00000000`00000000 : nt!ObOpenObjectByNameEx+0x1e0
  51. ffffd281`62eff840 fffff803`2fa7c81f : 00000000`00000000 ffff9307`35994b80 00007ffd`00000102 00000000`00000000 : nt!CmOpenKey+0x274
  52. ffffd281`62effa40 fffff803`2f782f13 : ffffe40b`f8865080 00000000`00000000 ffffd281`62effa58 ffffe40b`f8a698c0 : nt!NtOpenKeyEx+0xf
  53. ffffd281`62effa80 00007ffd`cff67644 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13 (TrapFrame @ ffffd281`62effa80)
  54. 00000000`066d9448 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`cff67644
  55.  
  56. !sysinfo smbios
  57. [SMBIOS Data Tables v3.0]
  58. [DMI Version - 0]
  59. [2.0 Calling Convention - No]
  60. [Table Size - 4498 bytes]
  61. [BIOS Information (Type 0) - Length 24 - Handle 0000h]
  62. Vendor American Megatrends Inc.
  63. BIOS Version 0604
  64. BIOS Starting Address Segment f000
  65. BIOS Release Date 12/08/2016
  66. BIOS ROM Size 1000000
  67. BIOS Characteristics
  68. 07: - PCI Supported
  69. 10: - APM Supported
  70. 11: - Upgradeable FLASH BIOS
  71. 12: - BIOS Shadowing Supported
  72. 15: - CD-Boot Supported
  73. 16: - Selectable Boot Supported
  74. 17: - BIOS ROM Socketed
  75. 19: - EDD Supported
  76. 23: - 1.2MB Floppy Supported
  77. 24: - 720KB Floppy Supported
  78. 25: - 2.88MB Floppy Supported
  79. 26: - Print Screen Device Supported
  80. 27: - Keyboard Services Supported
  81. 28: - Serial Services Supported
  82. 29: - Printer Services Supported
  83. 32: - BIOS Vendor Reserved
  84. BIOS Characteristic Extensions
  85. 00: - ACPI Supported
  86. 01: - USB Legacy Supported
  87. 08: - BIOS Boot Specification Supported
  88. 10: - Specification Reserved
  89. 11: - Specification Reserved
  90. BIOS Major Revision 5
  91. BIOS Minor Revision 12
  92. EC Firmware Major Revision 255
  93. EC Firmware Minor Revision 255
  94. [System Information (Type 1) - Length 27 - Handle 0001h]
  95. Manufacturer System manufacturer
  96. Product Name System Product Name
  97. Version System Version
  98. Serial Number System Serial Number
  99. UUID 00000000-0000-0000-0000-000000000000
  100. Wakeup Type Power Switch
  101. SKUNumber SKU
  102. Family To be filled by O.E.M.
  103. [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
  104. Manufacturer ASUSTeK COMPUTER INC.
  105. Product MAXIMUS IX HERO
  106. Version Rev 1.xx
  107. Serial Number 161292444500835
  108. Asset Tag
  109. Feature Flags 09h
  110. -800213280: - -800213232: - §'Aòþ
  111. Location Default string
  112. Chassis Handle 0003h
  113. Board Type 0ah - Processor/Memory Module
  114. Number of Child Handles 0
  115. [System Enclosure (Type 3) - Length 22 - Handle 0003h]
  116. Manufacturer Default string
  117. Chassis Type Desktop
  118. Version Default string
  119. Serial Number
  120. Asset Tag Number
  121. Bootup State Safe
  122. Power Supply State Safe
  123. Thermal State Safe
  124. Security Status None
  125. OEM Defined 0
  126. Height 0U
  127. Number of Power Cords 1
  128. Number of Contained Elements 0
  129. Contained Element Size 3
  130. [Onboard Devices Information (Type 10) - Length 6 - Handle 0028h]
  131. Number of Devices 1
  132. 01: Type Video [enabled]
  133. 01: Description To Be Filled By O.E.M.
  134. [OEM Strings (Type 11) - Length 5 - Handle 0029h]
  135. Number of Strings 4
  136. 1 Default string
  137. 2 Default string
  138. 3 SAVANNA
  139. 4 Default string
  140. [System Configuration Options (Type 12) - Length 5 - Handle 002ah]
  141. [Physical Memory Array (Type 16) - Length 23 - Handle 0045h]
  142. Location 03h - SystemBoard/Motherboard
  143. Use 03h - System Memory
  144. Memory Error Correction 03h - None
  145. Maximum Capacity 67108864KB
  146. Memory Error Inf Handle [Not Provided]
  147. Number of Memory Devices 4
  148. [Memory Device (Type 17) - Length 40 - Handle 0046h]
  149. Physical Memory Array Handle 0045h
  150. Memory Error Info Handle [Not Provided]
  151. Total Width 64 bits
  152. Data Width 64 bits
  153. Size 8192MB
  154. Form Factor 09h - DIMM
  155. Device Set [None]
  156. Device Locator ChannelA-DIMM1
  157. Bank Locator BANK 0
  158. Memory Type 1ah - Specification Reserved
  159. Type Detail 0080h - Synchronous
  160. Speed 2133MHz
  161. Manufacturer Corsair
  162. Serial Number
  163. Asset Tag Number
  164. Part Number CMR32GX4M4C3000C15
  165. [Memory Device (Type 17) - Length 40 - Handle 0047h]
  166. Physical Memory Array Handle 0045h
  167. Memory Error Info Handle [Not Provided]
  168. Total Width 64 bits
  169. Data Width 64 bits
  170. Size 8192MB
  171. Form Factor 09h - DIMM
  172. Device Set [None]
  173. Device Locator ChannelA-DIMM2
  174. Bank Locator BANK 1
  175. Memory Type 1ah - Specification Reserved
  176. Type Detail 0080h - Synchronous
  177. Speed 2133MHz
  178. Manufacturer Corsair
  179. Serial Number
  180. Asset Tag Number
  181. Part Number CMR32GX4M4C3000C15
  182. [Memory Device (Type 17) - Length 40 - Handle 0048h]
  183. Physical Memory Array Handle 0045h
  184. Memory Error Info Handle [Not Provided]
  185. Total Width 64 bits
  186. Data Width 64 bits
  187. Size 8192MB
  188. Form Factor 09h - DIMM
  189. Device Set [None]
  190. Device Locator ChannelB-DIMM1
  191. Bank Locator BANK 2
  192. Memory Type 1ah - Specification Reserved
  193. Type Detail 0080h - Synchronous
  194. Speed 2133MHz
  195. Manufacturer Corsair
  196. Serial Number
  197. Asset Tag Number
  198. Part Number CMR32GX4M4C3000C15
  199. [Memory Device (Type 17) - Length 40 - Handle 0049h]
  200. Physical Memory Array Handle 0045h
  201. Memory Error Info Handle [Not Provided]
  202. Total Width 64 bits
  203. Data Width 64 bits
  204. Size 8192MB
  205. Form Factor 09h - DIMM
  206. Device Set [None]
  207. Device Locator ChannelB-DIMM2
  208. Bank Locator BANK 3
  209. Memory Type 1ah - Specification Reserved
  210. Type Detail 0080h - Synchronous
  211. Speed 2133MHz
  212. Manufacturer Corsair
  213. Serial Number
  214. Asset Tag Number
  215. Part Number CMR32GX4M4C3000C15
  216. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 004ah]
  217. Starting Address 00000000h
  218. Ending Address 01ffffffh
  219. Memory Array Handle 0045h
  220. Partition Width 04
  221. [Cache Information (Type 7) - Length 19 - Handle 004bh]
  222. Socket Designation L1 Cache
  223. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  224. Maximum Cache Size 0100h - 256K
  225. Installed Size 0100h - 256K
  226. Supported SRAM Type 0020h - Synchronous
  227. Current SRAM Type 0020h - Synchronous
  228. Cache Speed 0ns
  229. Error Correction Type ParitySingle-Bit ECC
  230. System Cache Type Unified
  231. Associativity 8-way Set-Associative
  232. [Cache Information (Type 7) - Length 19 - Handle 004ch]
  233. Socket Designation L2 Cache
  234. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  235. Maximum Cache Size 0400h - 1024K
  236. Installed Size 0400h - 1024K
  237. Supported SRAM Type 0020h - Synchronous
  238. Current SRAM Type 0020h - Synchronous
  239. Cache Speed 0ns
  240. Error Correction Type Multi-Bit ECC
  241. System Cache Type Unified
  242. Associativity 4-way Set-Associative
  243. [Cache Information (Type 7) - Length 19 - Handle 004dh]
  244. Socket Designation L3 Cache
  245. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  246. Maximum Cache Size 2000h - 8192K
  247. Installed Size 2000h - 8192K
  248. Supported SRAM Type 0020h - Synchronous
  249. Current SRAM Type 0020h - Synchronous
  250. Cache Speed 0ns
  251. Error Correction Type Specification Reserved
  252. System Cache Type Unified
  253. Associativity 16-way Set-Associative
  254. [Processor Information (Type 4) - Length 48 - Handle 004eh]
  255. Socket Designation LGA1151
  256. Processor Type Central Processor
  257. Processor Family c6h - Specification Reserved
  258. Processor Manufacturer Intel(R) Corporation
  259. Processor ID e9060900fffbebbf
  260. Processor Version Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
  261. Processor Voltage 8bh - 1.1V
  262. External Clock 100MHz
  263. Max Speed 8300MHz
  264. Current Speed 4200MHz
  265. Status Enabled Populated
  266. Processor Upgrade Other
  267. L1 Cache Handle 004bh
  268. L2 Cache Handle 004ch
  269. L3 Cache Handle 004dh
  270. Serial Number
  271. Asset Tag Number
  272. Part Number To Be Filled By O.E.M.
  273. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
  274. Starting Address 00000000h
  275. Ending Address 007fffffh
  276. Memory Device Handle 0046h
  277. Mem Array Mapped Adr Handle 004ah
  278. Partition Row Position [Unknown]
  279. Interleave Position 01
  280. Interleave Data Depth 02
  281. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
  282. Starting Address 01000000h
  283. Ending Address 017fffffh
  284. Memory Device Handle 0047h
  285. Mem Array Mapped Adr Handle 004ah
  286. Partition Row Position [Unknown]
  287. Interleave Position 01
  288. Interleave Data Depth 02
  289. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0051h]
  290. Starting Address 00800000h
  291. Ending Address 00ffffffh
  292. Memory Device Handle 0048h
  293. Mem Array Mapped Adr Handle 004ah
  294. Partition Row Position [Unknown]
  295. Interleave Position 02
  296. Interleave Data Depth 02
  297. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0052h]
  298. Starting Address 01800000h
  299. Ending Address 01ffffffh
  300. Memory Device Handle 0049h
  301. Mem Array Mapped Adr Handle 004ah
  302. Partition Row Position [Unknown]
  303. Interleave Position 02
  304. Interleave Data Depth 02
  305.  
  306. SYSTEM_SERVICE_EXCEPTION (3b)
  307. An exception happened while executing a system service routine.
  308.  
  309. Arguments:
  310. Arg1: 00000000c0000005, Exception code that caused the bugcheck
  311. Arg2: fffff8032fa6f6a9, Address of the instruction which caused the bugcheck
  312. Arg3: ffffd28162efe580, Address of the context record for the exception that caused the bugcheck
  313. Arg4: 0000000000000000, zero.
  314.  
  315. Debugging Details:
  316. DUMP_CLASS: 1
  317. DUMP_QUALIFIER: 400
  318. BUILD_VERSION_STRING: 10.0.15063.0 (WinBuild.160101.0800)
  319. SYSTEM_MANUFACTURER: System manufacturer
  320. SYSTEM_PRODUCT_NAME: System Product Name
  321. SYSTEM_SKU: SKU
  322. SYSTEM_VERSION: System Version
  323. BIOS_VENDOR: American Megatrends Inc.
  324. BIOS_VERSION: 0604
  325. BIOS_DATE: 12/08/2016
  326. BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
  327. BASEBOARD_PRODUCT: MAXIMUS IX HERO
  328. BASEBOARD_VERSION: Rev 1.xx
  329. DUMP_TYPE: 2
  330. DUMP_FILE_ATTRIBUTES: 0x8
  331. Kernel Generated Triage Dump
  332. EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
  333. FAULTING_IP:
  334. nt!CmpDoParseKey+239
  335. fffff803`2fa6f6a9 66833e5c cmp word ptr [rsi],5Ch
  336. CONTEXT: ffffd28162efe580 -- (.cxr 0xffffd28162efe580)
  337. rax=0000000001040102 rbx=0000000000000000 rcx=ffff93072f43b000
  338. rdx=0000000000000000 rsi=ffff93073a073254 rdi=0000000000000102
  339. rip=fffff8032fa6f6a9 rsp=ffffd28162efef80 rbp=ffffd28162eff080
  340. r8=000000000000fffe r9=0000000000000000 r10=0000000000000200
  341. r11=fffff8032f784517 r12=ffffd28162eff9a0 r13=0000000000000000
  342. r14=0000000000000104 r15=ffff93072f43b008
  343. iopl=0 nv up ei ng nz na pe cy
  344. cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010283
  345. nt!CmpDoParseKey+0x239:
  346. fffff803`2fa6f6a9 66833e5c cmp word ptr [rsi],5Ch ds:002b:ffff9307`3a073254=????
  347. Resetting default scope
  348. CPU_COUNT: 8
  349. CPU_MHZ: 1068
  350. CPU_VENDOR: GenuineIntel
  351. CPU_FAMILY: 6
  352. CPU_MODEL: 9e
  353. CPU_STEPPING: 9
  354. CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
  355. DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
  356. BUGCHECK_STR: 0x3B
  357.  
  358. PROCESS_NAME: explorer.exe
  359.  
  360. CURRENT_IRQL: 0
  361. ANALYSIS_SESSION_HOST: USERNAME-PC
  362. ANALYSIS_SESSION_TIME: 06-03-2017 23:25:41.0763
  363. ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
  364. LAST_CONTROL_TRANSFER: from fffff8032fa7afa6 to fffff8032fa6f6a9
  365. THREAD_SHA1_HASH_MOD_FUNC: 862c53fe43f8a98df43bc2882a330a6c6f1e3ceb
  366. THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 72aa087d1063f45534b73e407530071aaedbdb5e
  367. THREAD_SHA1_HASH_MOD: 30a3e915496deaace47137d5b90c3ecc03746bf6
  368. FOLLOWUP_IP:
  369. nt!CmpDoParseKey+239
  370. fffff803`2fa6f6a9 66833e5c cmp word ptr [rsi],5Ch
  371. FAULT_INSTR_CODE: 5c3e8366
  372. SYMBOL_STACK_INDEX: 0
  373. SYMBOL_NAME: nt!CmpDoParseKey+239
  374. FOLLOWUP_NAME: MachineOwner
  375. MODULE_NAME: nt
  376.  
  377. IMAGE_NAME: ntkrnlmp.exe
  378.  
  379. DEBUG_FLR_IMAGE_TIMESTAMP: 58ccba4c
  380. IMAGE_VERSION: 10.0.15063.0
  381. STACK_COMMAND: .cxr 0xffffd28162efe580 ; kb
  382. BUCKET_ID_FUNC_OFFSET: 239
  383. FAILURE_BUCKET_ID: 0x3B_nt!CmpDoParseKey
  384. BUCKET_ID: 0x3B_nt!CmpDoParseKey
  385. PRIMARY_PROBLEM_CLASS: 0x3B_nt!CmpDoParseKey
  386. TARGET_TIME: 2017-06-03T23:55:28.000Z
  387. OSBUILD: 15063
  388. OSSERVICEPACK: 0
  389. SERVICEPACK_NUMBER: 0
  390. OS_REVISION: 0
  391. SUITE_MASK: 272
  392. PRODUCT_TYPE: 1
  393. OSPLATFORM_TYPE: x64
  394. OSNAME: Windows 10
  395. OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
  396. OS_LOCALE:
  397. USER_LCID: 0
  398. OSBUILD_TIMESTAMP: 2017-03-18 00:40:44
  399. BUILDDATESTAMP_STR: 160101.0800
  400. BUILDLAB_STR: WinBuild
  401. BUILDOSVER_STR: 10.0.15063.0
  402. ANALYSIS_SESSION_ELAPSED_TIME: 580
  403. ANALYSIS_SOURCE: KM
  404. FAILURE_ID_HASH_STRING: km:0x3b_nt!cmpdoparsekey
  405. FAILURE_ID_HASH: {a806c8b5-5067-6f86-24dd-6dbfd96a7e15}
  406. Followup: MachineOwner
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement