Advertisement
Guest User

Untitled

a guest
Jul 27th, 2017
206
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 39.59 KB | None | 0 0
  1. Microsoft (R) Windows Debugger Version 10.0.14321.1024 X86
  2. Copyright (c) Microsoft Corporation. All rights reserved.
  3.  
  4. ========================================================================
  5. =================== Dump File: 072417-48312-01.dmp ===================
  6. ========================================================================
  7. Mini Kernel Dump File: Only registers and stack trace are available
  8. Windows 10 Kernel Version 15063 MP (6 procs) Free x64
  9. Product: WinNt, suite: TerminalServer SingleUserTS
  10. Built by: 15063.0.amd64fre.rs2_release.170317-1834
  11. Kernel base = 0xfffff802`5e41a000 PsLoadedModuleList = 0xfffff802`5e7665a0
  12. Debug session time: Mon Jul 24 19:11:27.865 2017 (UTC - 4:00)
  13. System Uptime: 2 days 2:27:39.554
  14.  
  15. BugCheck 7A, {ffffe48724036a18, ffffffffc0000185, bcbcc860, fffff80ed8419ee4}
  16. *** WARNING: Unable to verify timestamp for win32k.sys
  17. *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
  18. Probably caused by : memory_corruption
  19. Followup: memory_corruption
  20.  
  21. KERNEL_DATA_INPAGE_ERROR (7a)
  22. The requested page of kernel data could not be read in. Typically caused by
  23. a bad block in the paging file or disk controller error. Also see
  24. KERNEL_STACK_INPAGE_ERROR.
  25. If the error status is 0xC000000E, 0xC000009C, 0xC000009D or 0xC0000185,
  26. it means the disk subsystem has experienced a failure.
  27. If the error status is 0xC000009A, then it means the request failed because
  28. a filesystem failed to make forward progress.
  29.  
  30. Arguments:
  31. Arg1: ffffe48724036a18, lock type that was held (value 1,2,3, or PTE address)
  32. Arg2: ffffffffc0000185, error status (normally i/o status code)
  33. Arg3: 00000000bcbcc860, current process (virtual address for lock type 3, or PTE)
  34. Arg4: fffff80ed8419ee4, virtual address that could not be in-paged (or PTE contents if arg1 is a PTE address)
  35.  
  36. Debugging Details:
  37. DUMP_CLASS: 1
  38. DUMP_QUALIFIER: 400
  39. BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
  40. SYSTEM_MANUFACTURER: Gigabyte Technology Co., Ltd.
  41. SYSTEM_PRODUCT_NAME: GA-78LMT-USB3
  42. BIOS_VENDOR: Award Software International, Inc.
  43. BIOS_VERSION: FA
  44. BIOS_DATE: 04/23/2013
  45. BASEBOARD_MANUFACTURER: Gigabyte Technology Co., Ltd.
  46. BASEBOARD_PRODUCT: GA-78LMT-USB3
  47. BASEBOARD_VERSION: SEx
  48. DUMP_TYPE: 2
  49. ERROR_CODE: (NTSTATUS) 0xc0000185 - The I/O device reported an I/O error.
  50. DISK_HARDWARE_ERROR: There was error with disk hardware
  51. BUGCHECK_STR: 0x7a_c0000185
  52. CPU_COUNT: 6
  53. CPU_MHZ: c8e
  54. CPU_VENDOR: AuthenticAMD
  55. CPU_FAMILY: 10
  56. CPU_MODEL: a
  57. CPU_STEPPING: 0
  58. CUSTOMER_CRASH_COUNT: 1
  59. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  60.  
  61. PROCESS_NAME: System
  62.  
  63. CURRENT_IRQL: 0
  64. TRAP_FRAME: ffffb001267bc0d0 -- (.trap 0xffffb001267bc0d0)
  65. NOTE: The trap frame does not contain all registers.
  66. Some register values may be zeroed or incorrect.
  67. rax=0000000000000002 rbx=0000000000000000 rcx=ffffd4899ccd9698
  68. rdx=ffffd4899b5ce848 rsi=0000000000000000 rdi=0000000000000000
  69. rip=fffff80ed8419ee4 rsp=ffffb001267bc268 rbp=ffffd4899ccdc488
  70. r8=0000000000000002 r9=fffff80ed83f0000 r10=0000000000000038
  71. r11=ffffb001267bc2f0 r12=0000000000000000 r13=0000000000000000
  72. r14=0000000000000000 r15=0000000000000000
  73. iopl=0 nv up ei pl zr na po nc
  74. usbccgp!PdoRemoveDevice:
  75. fffff80e`d8419ee4 48895c2408 mov qword ptr [rsp+8],rbx ss:0018:ffffb001`267bc270=0000000000000000
  76. Resetting default scope
  77. LOCK_ADDRESS: fffff8025e77ef20 -- (!locks fffff8025e77ef20)
  78. Resource @ nt!PiEngineLock (0xfffff8025e77ef20) Exclusively owned
  79. Contention Count = 73
  80. Threads: ffffd4899b626700-01<*>
  81. 1 total locks, 1 locks currently held
  82. PNP_TRIAGE:
  83. Lock address : 0xfffff8025e77ef20
  84. Thread Count : 1
  85. Thread address: 0xffffd4899b626700
  86. Thread wait : 0xb166e1
  87. LAST_CONTROL_TRANSFER: from fffff8025e5c268a to fffff8025e5863f0
  88. STACK_TEXT:
  89. ffffb001`267bbcf8 fffff802`5e5c268a : 00000000`0000007a ffffe487`24036a18 ffffffff`c0000185 00000000`bcbcc860 : nt!KeBugCheckEx
  90. ffffb001`267bbd00 fffff802`5e4bb928 : 00000000`00000003 ffffb001`267bbe98 00000000`00000000 ffffd489`00000000 : nt!MiWaitForInPageComplete+0x108a0a
  91. ffffb001`267bbe00 fffff802`5e4a73f6 : 00000000`c0033333 ffffb001`267bc0d0 00000000`00000000 ffffd489`99ec2680 : nt!MiIssueHardFault+0x1d8
  92. ffffb001`267bbee0 fffff802`5e58fc72 : ffffd489`9ccdc488 00000000`00000000 ffffd489`9f523860 fffff802`5e47a6c4 : nt!MmAccessFault+0xc96
  93. ffffb001`267bc0d0 fffff80e`d8419ee4 : fffff80e`d841151d 00000000`00000000 fffff80e`d8437101 00000000`0000000f : nt!KiPageFault+0x132
  94. ffffb001`267bc268 fffff80e`d841151d : 00000000`00000000 fffff80e`d8437101 00000000`0000000f fffff80e`d83f11c1 : usbccgp!PdoRemoveDevice
  95. ffffb001`267bc270 fffff80e`d83f116e : ffffd489`9ccd9698 00000000`0000001b ffffd489`9ccd9698 ffffd489`00000000 : usbccgp!DispatchPdoPnp+0x2dd
  96. ffffb001`267bc360 fffff80e`d843d0bf : ffffd489`9ccd9540 ffffd489`00000000 00000000`00000002 ffffd489`9cccb918 : usbccgp!USBC_Dispatch+0x15e
  97. ffffb001`267bc420 fffff80e`d843c361 : 00000000`00000000 ffffb001`267bc4f9 ffffd489`9cccb918 00000000`00000070 : hidusb!HumRemoveDevice+0x7f
  98. ffffb001`267bc460 fffff80e`d845666a : ffffd489`9cb15000 00000000`746c6644 ffffd489`9b5ce580 ffffd489`00000000 : hidusb!HumPnP+0x151
  99. ffffb001`267bc560 fffff80e`d847c706 : ffffd489`9cccb400 ffffd489`9b5ce580 ffffd489`9cccb878 ffffd489`9cccb1d0 : HIDCLASS!HidpCallDriver+0x7a
  100. ffffb001`267bc5c0 fffff80e`d847973f : 00000000`00000002 ffffd489`9b5ce848 ffffd489`9b5ce580 ffffd489`9cccb1b0 : HIDCLASS!HidpRemoveDevice+0x12a
  101. ffffb001`267bc610 fffff80e`d847611a : ffffd489`9cccb1b0 00000000`00000000 fffff80e`d846a488 00000000`00000000 : HIDCLASS!HidpFdoPnp+0x3a1f
  102. ffffb001`267bc680 fffff80e`d8452013 : 00000000`0000001b ffffd489`9b5ce580 00000000`00000002 fffff802`5e47ab42 : HIDCLASS!HidpIrpMajorPnp+0x6a
  103. ffffb001`267bc6c0 fffff802`5e88bfc9 : ffffd489`9cccb060 00000000`00000000 ffffb001`267bc800 fffff802`5e981009 : HIDCLASS!HidpMajorHandler+0xe3
  104. ffffb001`267bc750 fffff802`5e980e53 : 00000000`00000002 ffffb001`267bc819 ffffd489`9cb1c170 ffffd489`9ccd9540 : nt!IopSynchronousCall+0xe5
  105. ffffb001`267bc7c0 fffff802`5e53d44b : ffffe487`31475e40 ffffd489`9cb1c170 00000000`0000000a fffff802`00000000 : nt!IopRemoveDevice+0xdf
  106. ffffb001`267bc880 fffff802`5e9807da : ffffd489`9cb1c170 00000000`00000000 00000000`00000000 00000000`00000000 : nt!PnpRemoveLockedDeviceNode+0x1a7
  107. ffffb001`267bc8e0 fffff802`5e98051a : 00000000`00000000 ffffb001`267bc960 ffffe487`2a237f00 00000000`00000000 : nt!PnpDeleteLockedDeviceNode+0x4e
  108. ffffb001`267bc920 fffff802`5e97c0dd : ffffd489`9ccd5060 00000000`00000002 ffffd489`9ee26350 00000000`00000000 : nt!PnpDeleteLockedDeviceNodes+0xbe
  109. ffffb001`267bc990 fffff802`5e97bfdf : ffffd489`9ee26350 ffffb001`267bca10 ffffd489`9ccd5060 fffff802`5e77ef00 : nt!PipRemoveDevicesInRelationList+0x8d
  110. ffffb001`267bc9e0 fffff802`5e97bebd : 00000000`00000001 ffffe487`3638f502 ffffd489`9ee26350 fffff802`5e47de98 : nt!PnpDelayedRemoveWorker+0xef
  111. ffffb001`267bca20 fffff802`5e53d821 : 00000000`0000000a 00000000`00000001 00000000`00000000 ffffe487`2a237f02 : nt!PnpChainDereferenceComplete+0x101
  112. ffffb001`267bca50 fffff802`5e97f741 : 00000000`0000000b 0000000b`00000000 ffffb001`267bcb99 ffffe487`00000001 : nt!PnpIsChainDereferenced+0x111
  113. ffffb001`267bcad0 fffff802`5e8888b6 : ffffb001`267bcc60 ffffe487`2e4d6d00 ffffb001`267bcc00 00000000`00000001 : nt!PnpProcessQueryRemoveAndEject+0x4ed
  114. ffffb001`267bcc00 fffff802`5e892e94 : ffffe487`31475e40 00000000`00000000 ffffd489`9b80d400 ffffe487`2e4d6d20 : nt!PnpProcessTargetDeviceEvent+0xf2
  115. ffffb001`267bcc30 fffff802`5e457ca8 : 00000000`00000800 ffffd489`9b626700 ffffd489`9b80d410 fffff802`5e812380 : nt!PnpDeviceEventWorker+0x254
  116. ffffb001`267bccc0 fffff802`5e4f6a37 : 00000000`00000000 00000000`00000080 ffffd489`99ec2680 ffffd489`9b626700 : nt!ExpWorkerThread+0xd8
  117. ffffb001`267bcd50 fffff802`5e58b876 : ffffb001`2015c180 ffffd489`9b626700 fffff802`5e4f69f0 00000000`00000000 : nt!PspSystemThreadStartup+0x47
  118. ffffb001`267bcda0 00000000`00000000 : ffffb001`267bd000 ffffb001`267b7000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x16
  119. STACK_COMMAND: kb
  120. CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
  121. fffff8025e4a74bc-fffff8025e4a74bd 2 bytes - nt!MmAccessFault+d5c
  122. [ ff f6:7f 92 ]
  123. fffff8025e4bb982-fffff8025e4bb983 2 bytes - nt!MiIssueHardFault+232 (+0x144c6)
  124. [ 80 f6:00 92 ]
  125. fffff8025e4bbaaa-fffff8025e4bbaab 2 bytes - nt!MiIssueHardFault+35a (+0x128)
  126. [ 80 fa:00 82 ]
  127. fffff8025e5c26a0-fffff8025e5c26a1 2 bytes - nt!MiWaitForInPageComplete+108a20 (+0x106bf6)
  128. [ 80 fa:00 82 ]
  129. fffff8025e69a383-fffff8025e69a385 3 bytes - nt!ExFreePoolWithTag+363
  130. [ 40 fb f6:00 49 92 ]
  131. 11 errors : !nt (fffff8025e4a74bc-fffff8025e69a385)
  132. MODULE_NAME: memory_corruption
  133.  
  134. IMAGE_NAME: memory_corruption
  135.  
  136. FOLLOWUP_NAME: memory_corruption
  137. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  138. MEMORY_CORRUPTOR: LARGE
  139. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  140. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  141. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  142. TARGET_TIME: 2017-07-24T23:11:27.000Z
  143. OSBUILD: 15063
  144. OSSERVICEPACK: 413
  145. SERVICEPACK_NUMBER: 0
  146. OS_REVISION: 0
  147. SUITE_MASK: 272
  148. PRODUCT_TYPE: 1
  149. OSPLATFORM_TYPE: x64
  150. OSNAME: Windows 10
  151. OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
  152. USER_LCID: 0
  153. OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
  154. BUILDDATESTAMP_STR: 160101.0800
  155. BUILDLAB_STR: WinBuild
  156. BUILDOSVER_STR: 10.0.15063.413
  157. ANALYSIS_SESSION_ELAPSED_TIME: 2d42
  158. ANALYSIS_SOURCE: KM
  159. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  160. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  161. Followup: memory_corruption
  162.  
  163. =============================== Drivers ================================
  164. fffff802`5ee00000 fffff802`5ee0b000 kdcom (deferred)
  165. Image path: kdcom.dll
  166. Image name: kdcom.dll
  167. Timestamp: ***** Invalid (91688416)
  168. fffff80e`d3340000 fffff80e`d339e000 volmgrx (deferred)
  169. Image path: \SystemRoot\System32\drivers\volmgrx.sys
  170. Image name: volmgrx.sys
  171. Timestamp: unavailable (00000000)
  172. fffff80e`d3820000 fffff80e`d382d000 Fs_Rec (deferred)
  173. Image path: Fs_Rec.sys
  174. Image name: Fs_Rec.sys
  175. Timestamp: unavailable (00000000)
  176. fffff80e`d3a30000 fffff80e`d3a4c000 mcupdate (deferred)
  177. Image path: mcupdate.dll
  178. Image name: mcupdate.dll
  179. Timestamp: Tue Jan 31 06:16:29 1978 (0F346A8D)
  180. fffff80e`d3a50000 fffff80e`d3aaf000 msrpc (deferred)
  181. Image path: msrpc.sys
  182. Image name: msrpc.sys
  183. Timestamp: unavailable (00000000)
  184. fffff80e`d3ea0000 fffff80e`d3eaa000 Null (deferred)
  185. Image path: Null.SYS
  186. Image name: Null.SYS
  187. Timestamp: unavailable (00000000)
  188. fffff80e`d4910000 fffff80e`d4936000 VBoxUSBMon (deferred)
  189. Image path: \SystemRoot\system32\DRIVERS\VBoxUSBMon.sys
  190. Image name: VBoxUSBMon.sys
  191. Timestamp: Tue Sep 15 23:25:39 2015 (55F8E133)
  192. fffff80e`d4980000 fffff80e`d498e000 MpKsle410f036 (deferred)
  193. Image path: MpKsle410f036.sys
  194. Image name: MpKsle410f036.sys
  195. Timestamp: Tue May 19 21:50:37 2015 (555BE86D)
  196. fffff80e`d4ae0000 fffff80e`d4b63000 atikmpag (deferred)
  197. Image path: atikmpag.sys
  198. Image name: atikmpag.sys
  199. Timestamp: Tue Jul 4 17:48:49 2017 (595C0D41)
  200. fffff80e`d4bf0000 fffff80e`d4cb6000 peauth (deferred)
  201. Image path: peauth.sys
  202. Image name: peauth.sys
  203. Timestamp: Sat Dec 9 21:03:08 1989 (2581B95C)
  204. fffff80e`d5810000 fffff80e`d5820000 Msfs (deferred)
  205. Image path: Msfs.SYS
  206. Image name: Msfs.SYS
  207. Timestamp: unavailable (00000000)
  208. fffff80e`d7e70000 fffff80e`d7e91000 drmk (deferred)
  209. Image path: drmk.sys
  210. Image name: drmk.sys
  211. Timestamp: ***** Invalid (A01C1986)
  212. fffff80e`d7fc0000 fffff80e`d8058000 rt640x64 (deferred)
  213. Image path: rt640x64.sys
  214. Image name: rt640x64.sys
  215. Timestamp: Wed Oct 5 09:32:55 2016 (57F50107)
  216. fffff80e`d8110000 fffff80e`d811a000 ALSysIO64 (deferred)
  217. Image path: ALSysIO64.sys
  218. Image name: ALSysIO64.sys
  219. Timestamp: Wed Jul 6 12:47:33 2016 (577D3625)
  220. fffff80e`d8170000 fffff80e`d817f000 dtliteusbbus (deferred)
  221. Image path: dtliteusbbus.sys
  222. Image name: dtliteusbbus.sys
  223. Timestamp: Mon Dec 28 08:05:52 2015 (568133B0)
  224. fffff80e`d81a0000 fffff80e`d81ae000 ssdevfactory (deferred)
  225. Image path: ssdevfactory.sys
  226. Image name: ssdevfactory.sys
  227. Timestamp: Wed Oct 19 17:04:31 2016 (5807DFDF)
  228. fffff80e`d81b0000 fffff80e`d81bb000 dtlitescsibus (deferred)
  229. Image path: dtlitescsibus.sys
  230. Image name: dtlitescsibus.sys
  231. Timestamp: Thu Sep 24 16:17:21 2015 (56045A51)
  232. fffff80e`d8270000 fffff80e`d828e000 AtihdWT6 (deferred)
  233. Image path: AtihdWT6.sys
  234. Image name: AtihdWT6.sys
  235. Timestamp: Sat Mar 25 17:04:05 2017 (58D6DB45)
  236. fffff80e`d8330000 fffff80e`d83e3000 viahduaa (deferred)
  237. Image path: viahduaa.sys
  238. Image name: viahduaa.sys
  239. Timestamp: Tue Jun 16 04:06:10 2015 (557FD8F2)
  240. fffff80e`d84b0000 fffff80e`d84bf000 sshid (deferred)
  241. Image path: \SystemRoot\System32\drivers\sshid.sys
  242. Image name: sshid.sys
  243. Timestamp: Mon Dec 19 12:43:41 2016 (58581C4D)
  244. fffff80e`d8540000 fffff80e`d854f000 dump_storport (deferred)
  245. Image path: dump_storport.sys
  246. Image name: dump_storport.sys
  247. Timestamp: Wed Aug 28 09:02:36 2013 (521DF4EC)
  248. fffff80e`d87e0000 fffff80e`d8800000 ssudbus (deferred)
  249. Image path: ssudbus.sys
  250. Image name: ssudbus.sys
  251. Timestamp: Wed Aug 24 04:00:41 2016 (57BD5429)
  252. fffff80e`d8a70000 fffff80e`dada7000 atikmdag (deferred)
  253. Image path: atikmdag.sys
  254. Image name: atikmdag.sys
  255. Timestamp: Tue Jul 4 18:11:43 2017 (595C129F)
  256. fffff80e`dadb0000 fffff80e`dadbe000 MpKsle8082030 (deferred)
  257. Image path: \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5FE2EF65-34E9-4DE5-81B7-0626A935C4C8}\MpKsle8082030.sys
  258. Image name: MpKsle8082030.sys
  259. Timestamp: Tue May 19 21:50:37 2015 (555BE86D)
  260. fffffcde`1bc00000 fffffcde`1bf93000 win32kfull (deferred)
  261. Image path: \SystemRoot\System32\win32kfull.sys
  262. Image name: win32kfull.sys
  263. Timestamp: unavailable (00000000)
  264. fffffcde`1c020000 fffffcde`1c094000 win32k T (no symbols)
  265. Loaded symbol image file: win32k.sys
  266. Image path: win32k.sys
  267. Image name: win32k.sys
  268. Timestamp: unavailable (00000000)
  269. fffffcde`1c3c0000 fffffcde`1c401000 cdd (deferred)
  270. Image path: cdd.dll
  271. Image name: cdd.dll
  272. Timestamp: unavailable (00000000)
  273. fffffcde`1cdc0000 fffffcde`1cfc6000 win32kbase (deferred)
  274. Image path: win32kbase.sys
  275. Image name: win32kbase.sys
  276. Timestamp: unavailable (00000000)
  277. fffffcde`1cfe0000 fffffcde`1cfea000 TSDDD (deferred)
  278. Image path: TSDDD.dll
  279. Image name: TSDDD.dll
  280. Timestamp: unavailable (00000000)
  281. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  282. Unloaded modules:
  283. fffff80e`d87e0000 fffff80e`d8800000 ssudbus.sys
  284. fffff80e`d5350000 fffff80e`d5361000 modem.sys
  285. fffff80e`d5310000 fffff80e`d5341000 ssudmdm.sys
  286. fffff80e`d8940000 fffff80e`d894d000 WpdUpFltr.sy
  287. fffff80e`d52d0000 fffff80e`d530d000 WUDFRd.sys
  288. fffff80e`d52b0000 fffff80e`d52cd000 WinUSB.SYS
  289. fffff80e`d87f0000 fffff80e`d87ff000 hiber_storpo
  290. fffff80e`d5260000 fffff80e`d5287000 hiber_storah
  291. fffff80e`d5290000 fffff80e`d52ad000 hiber_dumpfv
  292. fffff80e`d87e0000 fffff80e`d87ef000 hiber_storpo
  293. fffff80e`d5210000 fffff80e`d5237000 hiber_storah
  294. fffff80e`d5240000 fffff80e`d525d000 hiber_dumpfv
  295. fffff80e`d87e0000 fffff80e`d8800000 ssudbus.sys
  296. fffff80e`d51f0000 fffff80e`d5201000 modem.sys
  297. fffff80e`d51b0000 fffff80e`d51e1000 ssudmdm.sys
  298. fffff80e`d8940000 fffff80e`d894d000 WpdUpFltr.sy
  299. fffff80e`d5170000 fffff80e`d51ad000 WUDFRd.sys
  300. fffff80e`d5150000 fffff80e`d516d000 WinUSB.SYS
  301. fffff80e`d87e0000 fffff80e`d8800000 ssudbus.sys
  302. fffff80e`d5130000 fffff80e`d5141000 RNDISMP6.SYS
  303. fffff80e`d5120000 fffff80e`d512d000 usb80236.sys
  304. fffff80e`d8940000 fffff80e`d8946000 RTCore64.sys
  305. fffff80e`d8940000 fffff80e`d8946000 RTCore64.sys
  306. fffff80e`d87e0000 fffff80e`d8800000 ssudbus.sys
  307. fffff80e`d5100000 fffff80e`d5111000 modem.sys
  308. fffff80e`d50c0000 fffff80e`d50f1000 ssudmdm.sys
  309. fffff80e`d50b0000 fffff80e`d50bd000 WpdUpFltr.sy
  310. fffff80e`d5070000 fffff80e`d50ad000 WUDFRd.sys
  311. fffff80e`d4fe0000 fffff80e`d4ffd000 WinUSB.SYS
  312. fffff80e`d87f0000 fffff80e`d87ff000 hiber_storpo
  313. fffff80e`d4f90000 fffff80e`d4fb7000 hiber_storah
  314. fffff80e`d4fc0000 fffff80e`d4fdd000 hiber_dumpfv
  315. fffff80e`d87e0000 fffff80e`d87ef000 hiber_storpo
  316. fffff80e`d4f40000 fffff80e`d4f67000 hiber_storah
  317. fffff80e`d4f70000 fffff80e`d4f8d000 hiber_dumpfv
  318. fffff80e`d87e0000 fffff80e`d8800000 ssudbus.sys
  319. fffff80e`d4f00000 fffff80e`d4f11000 modem.sys
  320. fffff80e`d4ec0000 fffff80e`d4ef1000 ssudmdm.sys
  321. fffff80e`d8940000 fffff80e`d894d000 WpdUpFltr.sy
  322. fffff80e`d57b0000 fffff80e`d57ed000 WUDFRd.sys
  323. fffff80e`d5790000 fffff80e`d57ad000 WinUSB.SYS
  324. fffff80e`d87e0000 fffff80e`d8800000 ssudbus.sys
  325. fffff80e`d5770000 fffff80e`d5781000 RNDISMP6.SYS
  326. fffff80e`d8940000 fffff80e`d894d000 usb80236.sys
  327. fffff80e`d87e0000 fffff80e`d8800000 ssudbus.sys
  328. fffff80e`d5750000 fffff80e`d5761000 modem.sys
  329. fffff80e`d5710000 fffff80e`d5741000 ssudmdm.sys
  330. fffff80e`d8940000 fffff80e`d894d000 WpdUpFltr.sy
  331. fffff80e`d56d0000 fffff80e`d570d000 WUDFRd.sys
  332. fffff80e`d56b0000 fffff80e`d56cd000 WinUSB.SYS
  333.  
  334. ============================= BIOS INFO ================================
  335. [SMBIOS Data Tables v2.4]
  336. [DMI Version - 0]
  337. [2.0 Calling Convention - No]
  338. [Table Size - 2829 bytes]
  339. [BIOS Information (Type 0) - Length 24 - Handle 0000h]
  340. Vendor Award Software International, Inc.
  341. BIOS Version FA
  342. BIOS Starting Address Segment e000
  343. BIOS Release Date 04/23/2013
  344. BIOS ROM Size 400000
  345. BIOS Characteristics
  346. 04: - ISA Supported
  347. 07: - PCI Supported
  348. 09: - Plug and Play Supported
  349. 10: - APM Supported
  350. 11: - Upgradeable FLASH BIOS
  351. 12: - BIOS Shadowing Supported
  352. 15: - CD-Boot Supported
  353. 16: - Selectable Boot Supported
  354. 17: - BIOS ROM Socketed
  355. 19: - EDD Supported
  356. 22: - 360KB Floppy Supported
  357. 23: - 1.2MB Floppy Supported
  358. 24: - 720KB Floppy Supported
  359. 25: - 2.88MB Floppy Supported
  360. 26: - Print Screen Device Supported
  361. 27: - Keyboard Services Supported
  362. 28: - Serial Services Supported
  363. 29: - Printer Services Supported
  364. 30: - CGA/Mono Services Supported
  365. BIOS Characteristic Extensions
  366. 00: - ACPI Supported
  367. 01: - USB Legacy Supported
  368. 02: - AGP Supported
  369. 04: - LS120-Boot Supported
  370. 05: - ATAPI ZIP-Boot Supported
  371. 08: - BIOS Boot Specification Supported
  372. 10: - Specification Reserved
  373. BIOS Major Revision 255
  374. BIOS Minor Revision 255
  375. EC Firmware Major Revision 255
  376. EC Firmware Minor Revision 255
  377. [System Information (Type 1) - Length 27 - Handle 0001h]
  378. Manufacturer Gigabyte Technology Co., Ltd.
  379. Product Name GA-78LMT-USB3
  380. Version
  381. UUID 00000000-0000-0000-0000-000000000000
  382. Wakeup Type Power Switch
  383. SKUNumber
  384. Family
  385. [BaseBoard Information (Type 2) - Length 8 - Handle 0002h]
  386. Manufacturer Gigabyte Technology Co., Ltd.
  387. Product GA-78LMT-USB3
  388. Version SEx
  389. [System Enclosure (Type 3) - Length 17 - Handle 0003h]
  390. Manufacturer Gigabyte Technology Co., Ltd.
  391. Chassis Type Desktop
  392. Version
  393. Bootup State Unknown
  394. Power Supply State Unknown
  395. Thermal State Unknown
  396. Security Status Unknown
  397. OEM Defined 0
  398. [Processor Information (Type 4) - Length 35 - Handle 0004h]
  399. Socket Designation Socket M2
  400. Processor Type Central Processor
  401. Processor Family 1dh - AMD Athlon Family
  402. Processor Manufacturer AMD
  403. Processor ID a00f1000fffb8b17
  404. Processor Version AMD Phenom(tm) II X6 1090T Processor
  405. Processor Voltage 90h - 1.6V
  406. External Clock 200MHz
  407. Max Speed 3000MHz
  408. Current Speed 3200MHz
  409. Status Enabled Populated
  410. Processor Upgrade Socket 754
  411. L1 Cache Handle 000ah
  412. L2 Cache Handle 000ch
  413. L3 Cache Handle [Not Present]
  414. Part Number
  415. [Memory Controller Information (Type 5) - Length 24 - Handle 0005h]
  416. Error Detecting Method 06h - 64-bit ECC
  417. Error Correcting Capability 04h - None
  418. Supported Interleave 03h - One Way Interleave
  419. Current Interleave 03h - One Way Interleave
  420. Maximum Memory Module Size 0ch - 4096MB
  421. Supported Speeds 001ch - 70ns 60ns 50ns
  422. Supported Memory Types 0104h - Standard DIMM
  423. Memory Module Voltage 2.9V
  424. Number of Memory Slots 4
  425. Memory Slot Handle 0006h
  426. Memory Slot Handle 0007h
  427. Memory Slot Handle 0008h
  428. Memory Slot Handle 0009h
  429. Enabled Err Correcting Caps 04h - None
  430. [Memory Module Information (Type 6) - Length 12 - Handle 0006h]
  431. Socket Designation A0
  432. Bank Connections 1fh - 1
  433. Current Speed 31ns
  434. Current Memory Type 0013h - Other Unknown EDO
  435. Installed Size 0bh - 2048 [single bank]
  436. Enabled Size 0bh - 2048 [single bank]
  437. Error Status 00h - [No Errors]
  438. [Memory Module Information (Type 6) - Length 12 - Handle 0007h]
  439. Socket Designation A1
  440. Bank Connections 2fh - 2
  441. Current Speed 47ns
  442. Current Memory Type 0013h - Other Unknown EDO
  443. Installed Size 0bh - 2048 [single bank]
  444. Enabled Size 0bh - 2048 [single bank]
  445. Error Status 00h - [No Errors]
  446. [Memory Module Information (Type 6) - Length 12 - Handle 0008h]
  447. Socket Designation A2
  448. Bank Connections 3fh - 3
  449. Current Speed 63ns
  450. Current Memory Type 0013h - Other Unknown EDO
  451. Installed Size 8ch - 4096 [double bank]
  452. Enabled Size 8ch - 4096 [double bank]
  453. Error Status 00h - [No Errors]
  454. [Memory Module Information (Type 6) - Length 12 - Handle 0009h]
  455. Socket Designation A3
  456. Bank Connections 4fh - 4
  457. Current Speed 79ns
  458. Current Memory Type 0013h - Other Unknown EDO
  459. Installed Size 0bh - 2048 [single bank]
  460. Enabled Size 0bh - 2048 [single bank]
  461. Error Status 00h - [No Errors]
  462. [Cache Information (Type 7) - Length 19 - Handle 000ah]
  463. Socket Designation Internal Cache
  464. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  465. Maximum Cache Size 0080h - 128K
  466. Installed Size 0080h - 128K
  467. Supported SRAM Type 0020h - Synchronous
  468. Current SRAM Type 0020h - Synchronous
  469. Cache Speed 0ns
  470. Error Correction Type Unknown
  471. System Cache Type Unknown
  472. Associativity Unknown
  473. [Cache Information (Type 7) - Length 19 - Handle 000bh]
  474. Socket Designation Internal Cache
  475. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  476. Maximum Cache Size 0080h - 128K
  477. Installed Size 0080h - 128K
  478. Supported SRAM Type 0020h - Synchronous
  479. Current SRAM Type 0020h - Synchronous
  480. Cache Speed 0ns
  481. Error Correction Type Unknown
  482. System Cache Type Unknown
  483. Associativity Unknown
  484. [Cache Information (Type 7) - Length 19 - Handle 000ch]
  485. Socket Designation External Cache
  486. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  487. Maximum Cache Size 0200h - 512K
  488. Installed Size 0200h - 512K
  489. Supported SRAM Type 0020h - Synchronous
  490. Current SRAM Type 0020h - Synchronous
  491. Cache Speed 0ns
  492. Error Correction Type Unknown
  493. System Cache Type Unknown
  494. Associativity Unknown
  495. [Cache Information (Type 7) - Length 19 - Handle 000dh]
  496. Socket Designation External Cache
  497. Cache Configuration 0001h - WT Disabled Int NonSocketed L2
  498. Maximum Cache Size 0400h - 1024K
  499. Installed Size 0000h - 0K
  500. Supported SRAM Type 0020h - Synchronous
  501. Current SRAM Type 0020h - Synchronous
  502. Cache Speed 0ns
  503. Error Correction Type Unknown
  504. System Cache Type Unknown
  505. Associativity Unknown
  506. [Physical Memory Array (Type 16) - Length 15 - Handle 0023h]
  507. Location 03h - SystemBoard/Motherboard
  508. Use 03h - System Memory
  509. Memory Error Correction 03h - None
  510. Maximum Capacity 16777216KB
  511. Number of Memory Devices 4
  512. [Memory Device (Type 17) - Length 27 - Handle 0024h]
  513. Physical Memory Array Handle 0023h
  514. Total Width 64 bits
  515. Data Width 64 bits
  516. Size 2048MB
  517. Form Factor 09h - DIMM
  518. Device Locator A0
  519. Bank Locator Bank0/1
  520. Memory Type 02h - Unknown
  521. Type Detail 0000h -
  522. Speed 1600MHz
  523. Manufacturer None
  524. Part Number None
  525. [Memory Device (Type 17) - Length 27 - Handle 0025h]
  526. Physical Memory Array Handle 0023h
  527. Total Width 64 bits
  528. Data Width 64 bits
  529. Size 2048MB
  530. Form Factor 09h - DIMM
  531. Device Locator A1
  532. Bank Locator Bank2/3
  533. Memory Type 02h - Unknown
  534. Type Detail 0000h -
  535. Speed 1600MHz
  536. Manufacturer None
  537. Part Number None
  538. [Memory Device (Type 17) - Length 27 - Handle 0026h]
  539. Physical Memory Array Handle 0023h
  540. Total Width 64 bits
  541. Data Width 64 bits
  542. Size 4096MB
  543. Form Factor 09h - DIMM
  544. Device Locator A2
  545. Bank Locator Bank4/5
  546. Memory Type 02h - Unknown
  547. Type Detail 0000h -
  548. Speed 1600MHz
  549. Manufacturer None
  550. Part Number None
  551. [Memory Device (Type 17) - Length 27 - Handle 0027h]
  552. Physical Memory Array Handle 0023h
  553. Total Width 64 bits
  554. Data Width 64 bits
  555. Size 2048MB
  556. Form Factor 09h - DIMM
  557. Device Locator A3
  558. Bank Locator Bank6/7
  559. Memory Type 02h - Unknown
  560. Type Detail 0000h -
  561. Speed 1600MHz
  562. Manufacturer None
  563. Part Number None
  564. [Memory Array Mapped Address (Type 19) - Length 15 - Handle 0028h]
  565. Starting Address 00000000h
  566. Ending Address 009fffffh
  567. Memory Array Handle 0023h
  568. Partition Width 01
  569. [Memory Device Mapped Address (Type 20) - Length 19 - Handle 0029h]
  570. Starting Address 00000000h
  571. Ending Address 001fffffh
  572. Memory Device Handle 0024h
  573. Mem Array Mapped Adr Handle 0028h
  574. Partition Row Position 01
  575. Interleave Position [None]
  576. Interleave Data Depth [None]
  577. [Memory Device Mapped Address (Type 20) - Length 19 - Handle 002ah]
  578. Starting Address 00200000h
  579. Ending Address 003fffffh
  580. Memory Device Handle 0025h
  581. Mem Array Mapped Adr Handle 0028h
  582. Partition Row Position 01
  583. Interleave Position [None]
  584. Interleave Data Depth [None]
  585. [Memory Device Mapped Address (Type 20) - Length 19 - Handle 002bh]
  586. Starting Address 00400000h
  587. Ending Address 007fffffh
  588. Memory Device Handle 0026h
  589. Mem Array Mapped Adr Handle 0028h
  590. Partition Row Position 01
  591. Interleave Position [None]
  592. Interleave Data Depth [None]
  593. [Memory Device Mapped Address (Type 20) - Length 19 - Handle 002ch]
  594. Starting Address 00800000h
  595. Ending Address 009fffffh
  596. Memory Device Handle 0027h
  597. Mem Array Mapped Adr Handle 0028h
  598. Partition Row Position 01
  599. Interleave Position [None]
  600. Interleave Data Depth [None]
  601.  
  602. ========================================================================
  603. =================== Dump File: 072617-64937-01.dmp ===================
  604. ========================================================================
  605. Mini Kernel Dump File: Only registers and stack trace are available
  606. Windows 10 Kernel Version 15063 MP (6 procs) Free x64
  607. Product: WinNt, suite: TerminalServer SingleUserTS
  608. Built by: 15063.0.amd64fre.rs2_release.170317-1834
  609. Kernel base = 0xfffff800`f320c000 PsLoadedModuleList = 0xfffff800`f35585a0
  610. Debug session time: Wed Jul 26 23:01:31.321 2017 (UTC - 4:00)
  611. System Uptime: 0 days 0:51:35.242
  612.  
  613. BugCheck EF, {ffff90898fa6c7c0, 0, 0, 0}
  614. errfg" bg="errbg">ETW minidump data unavailable
  615. Probably caused by : ntkrnlmp.exe ( nt!PspCatchCriticalBreak+c9 )
  616. Followup: MachineOwner
  617.  
  618. CRITICAL_PROCESS_DIED (ef)
  619. A critical system process died
  620.  
  621. Arguments:
  622. Arg1: ffff90898fa6c7c0, Process object or thread object
  623. Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
  624. Arg3: 0000000000000000
  625. Arg4: 0000000000000000
  626.  
  627. Debugging Details:
  628. ETW minidump data unavailable
  629. DUMP_CLASS: 1
  630. DUMP_QUALIFIER: 400
  631. BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
  632. SYSTEM_MANUFACTURER: Gigabyte Technology Co., Ltd.
  633. SYSTEM_PRODUCT_NAME: GA-78LMT-USB3
  634. BIOS_VENDOR: Award Software International, Inc.
  635. BIOS_VERSION: FA
  636. BIOS_DATE: 04/23/2013
  637. BASEBOARD_MANUFACTURER: Gigabyte Technology Co., Ltd.
  638. BASEBOARD_PRODUCT: GA-78LMT-USB3
  639. BASEBOARD_VERSION: SEx
  640. DUMP_TYPE: 2
  641.  
  642. PROCESS_NAME: svchost.exe
  643.  
  644. CRITICAL_PROCESS: svchost.exe
  645. EXCEPTION_RECORD: ffffc8010c61ebb0 -- (.exr 0xffffc8010c61ebb0)
  646. ExceptionAddress: 000000c1dc280ff8
  647. ExceptionCode: 00000002
  648. ExceptionFlags: 00000000
  649. NumberParameters: 0
  650. EXCEPTION_CODE: (Win32) 0x2 (2) - The system cannot find the file specified.
  651. ERROR_CODE: (NTSTATUS) 0x2 - STATUS_WAIT_2
  652. CPU_COUNT: 6
  653. CPU_MHZ: c8e
  654. CPU_VENDOR: AuthenticAMD
  655. CPU_FAMILY: 10
  656. CPU_MODEL: a
  657. CPU_STEPPING: 0
  658. CUSTOMER_CRASH_COUNT: 1
  659. DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
  660. BUGCHECK_STR: 0xEF
  661. CURRENT_IRQL: 0
  662. EXCEPTION_CODE_STR: 2
  663. LAST_CONTROL_TRANSFER: from fffff800f38ebf51 to fffff800f33783f0
  664. STACK_TEXT:
  665. ffffc801`0c61e098 fffff800`f38ebf51 : 00000000`000000ef ffff9089`8fa6c7c0 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
  666. ffffc801`0c61e0a0 fffff800`f3827a6d : ffff9089`8fa6c7c0 00000000`00000001 ffff9089`8fa6c7c0 fffff800`f326f059 : nt!PspCatchCriticalBreak+0xc9
  667. ffffc801`0c61e0f0 fffff800`f37070f6 : ffff9089`00000000 ffff9089`8fa6c7c0 00000000`00000001 ffff9089`8fa6c7c0 : nt!PspTerminateAllThreads+0x120871
  668. ffffc801`0c61e160 fffff800`f3706eb7 : ffffffff`ffffffff ffff9089`8fa6c7c0 ffff9089`8fa6c7c0 fffff800`f326f200 : nt!PspTerminateProcess+0xde
  669. ffffc801`0c61e1a0 fffff800`f3383313 : ffff9089`8fa6c7c0 ffff9089`8fb00080 ffffc801`0c61e290 ffffc801`0c61e3e0 : nt!NtTerminateProcess+0xa7
  670. ffffc801`0c61e210 fffff800`f337b5d0 : fffff800`f3236f2f ffffc801`0c61eb98 ffffc801`0c61eb98 ffffc801`0c61e3e0 : nt!KiSystemServiceCopyEnd+0x13
  671. ffffc801`0c61e3a8 fffff800`f3236f2f : ffffc801`0c61eb98 ffffc801`0c61eb98 ffffc801`0c61e3e0 ffffc801`0c61eb98 : nt!KiServiceLinkage
  672. ffffc801`0c61e3b0 fffff800`f338388e : ffffc801`0c61ebb0 000000c1`00000000 ffffc801`0c61ec00 00000000`00000001 : nt!KiDispatchException+0x5ef
  673. ffffc801`0c61ea60 fffff800`f3381d57 : ffff9089`8fb00080 000001d8`94c945e0 00000000`00000000 00000000`00000000 : nt!KiExceptionDispatch+0xce
  674. ffffc801`0c61ec40 00007ffe`6bcb9935 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x217
  675. 000000c1`dc280f60 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffe`6bcb9935
  676. STACK_COMMAND: kb
  677. THREAD_SHA1_HASH_MOD_FUNC: f6b0f7fafbd5253fc3d42ad0a11af14fddabdcf0
  678. THREAD_SHA1_HASH_MOD_FUNC_OFFSET: efe92f4eb616323a9b7827c3a48553119101f25d
  679. THREAD_SHA1_HASH_MOD: bc100a5647b828107ac4e18055e00abcbe1ec406
  680. FOLLOWUP_IP:
  681. nt!PspCatchCriticalBreak+c9
  682. fffff800`f38ebf51 cc int 3
  683. FAULT_INSTR_CODE: ff8440cc
  684. SYMBOL_STACK_INDEX: 1
  685. SYMBOL_NAME: nt!PspCatchCriticalBreak+c9
  686. FOLLOWUP_NAME: MachineOwner
  687. MODULE_NAME: nt
  688.  
  689. IMAGE_NAME: ntkrnlmp.exe
  690.  
  691. DEBUG_FLR_IMAGE_TIMESTAMP: 59327910
  692. IMAGE_VERSION: 10.0.15063.413
  693. BUCKET_ID_FUNC_OFFSET: c9
  694. FAILURE_BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_8fb00080_nt!PspCatchCriticalBreak
  695. BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_8fb00080_nt!PspCatchCriticalBreak
  696. PRIMARY_PROBLEM_CLASS: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_8fb00080_nt!PspCatchCriticalBreak
  697. TARGET_TIME: 2017-07-27T03:01:31.000Z
  698. OSBUILD: 15063
  699. OSSERVICEPACK: 413
  700. SERVICEPACK_NUMBER: 0
  701. OS_REVISION: 0
  702. SUITE_MASK: 272
  703. PRODUCT_TYPE: 1
  704. OSPLATFORM_TYPE: x64
  705. OSNAME: Windows 10
  706. OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
  707. USER_LCID: 0
  708. OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
  709. BUILDDATESTAMP_STR: 160101.0800
  710. BUILDLAB_STR: WinBuild
  711. BUILDOSVER_STR: 10.0.15063.413
  712. ANALYSIS_SESSION_ELAPSED_TIME: d25
  713. ANALYSIS_SOURCE: KM
  714. FAILURE_ID_HASH_STRING: km:0xef_svchost.exe_bugcheck_critical_process_8fb00080_nt!pspcatchcriticalbreak
  715. FAILURE_ID_HASH: {23a99615-bc05-a082-c262-194be341870e}
  716. Followup: MachineOwner
  717.  
  718. ========================================================================
  719. =================== Dump File: 070917-55406-01.dmp ===================
  720. ========================================================================
  721. Mini Kernel Dump File: Only registers and stack trace are available
  722. Windows 10 Kernel Version 15063 MP (6 procs) Free x64
  723. Product: WinNt, suite: TerminalServer SingleUserTS
  724. Built by: 15063.0.amd64fre.rs2_release.170317-1834
  725. Kernel base = 0xfffff802`3ae7c000 PsLoadedModuleList = 0xfffff802`3b1c85a0
  726. Debug session time: Sun Jul 9 22:18:50.161 2017 (UTC - 4:00)
  727. System Uptime: 0 days 0:09:00.839
  728.  
  729. BugCheck D1, {fffff8023cf013e0, 2, 8, fffff8023cf013e0}
  730. Probably caused by : ntkrnlmp.exe ( nt!KiPageFault+23d )
  731. Followup: MachineOwner
  732.  
  733. DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
  734. An attempt was made to access a pageable (or completely invalid) address at an
  735. interrupt request level (IRQL) that is too high. This is usually
  736. caused by drivers using improper addresses.
  737. If kernel debugger is available get stack backtrace.
  738.  
  739. Arguments:
  740. Arg1: fffff8023cf013e0, memory referenced
  741. Arg2: 0000000000000002, IRQL
  742. Arg3: 0000000000000008, value 0 = read operation, 1 = write operation
  743. Arg4: fffff8023cf013e0, address which referenced memory
  744.  
  745. Debugging Details:
  746. DUMP_CLASS: 1
  747. DUMP_QUALIFIER: 400
  748. BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
  749. SYSTEM_MANUFACTURER: Gigabyte Technology Co., Ltd.
  750. SYSTEM_PRODUCT_NAME: GA-78LMT-USB3
  751. BIOS_VENDOR: Award Software International, Inc.
  752. BIOS_VERSION: FA
  753. BIOS_DATE: 04/23/2013
  754. BASEBOARD_MANUFACTURER: Gigabyte Technology Co., Ltd.
  755. BASEBOARD_PRODUCT: GA-78LMT-USB3
  756. BASEBOARD_VERSION: SEx
  757. DUMP_TYPE: 2
  758. READ_ADDRESS: fffff8023b25d358: Unable to get MiVisibleState
  759. fffff8023cf013e0
  760. CURRENT_IRQL: 2
  761. FAULTING_IP:
  762. +0
  763. fffff802`3cf013e0 ?? ???
  764. CPU_COUNT: 6
  765. CPU_MHZ: c8e
  766. CPU_VENDOR: AuthenticAMD
  767. CPU_FAMILY: 10
  768. CPU_MODEL: a
  769. CPU_STEPPING: 0
  770. CUSTOMER_CRASH_COUNT: 1
  771. DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
  772. BUGCHECK_STR: AV
  773.  
  774. PROCESS_NAME: witcher3.exe
  775.  
  776. TRAP_FRAME: ffff9e81a8106550 -- (.trap 0xffff9e81a8106550)
  777. NOTE: The trap frame does not contain all registers.
  778. Some register values may be zeroed or incorrect.
  779. rax=ffffaf0c811d4cc0 rbx=0000000000000000 rcx=ffffaf0c811d4cc0
  780. rdx=000001fbe8452000 rsi=0000000000000000 rdi=0000000000000000
  781. rip=fffff8023cf013e0 rsp=ffff9e81a81066e8 rbp=ffff9e81a81067f0
  782. r8=0000000000000041 r9=000000000000000a r10=ffff970000000000
  783. r11=0000000000000001 r12=0000000000000000 r13=0000000000000000
  784. r14=0000000000000000 r15=0000000000000000
  785. iopl=0 nv up ei pl nz na pe nc
  786. fffff802`3cf013e0 ?? ???
  787. Resetting default scope
  788. LAST_CONTROL_TRANSFER: from fffff8023aff37a9 to fffff8023afe83f0
  789. FAILED_INSTRUCTION_ADDRESS:
  790. +0
  791. fffff802`3cf013e0 ?? ???
  792. STACK_TEXT:
  793. ffff9e81`a8106408 fffff802`3aff37a9 : 00000000`0000000a fffff802`3cf013e0 00000000`00000002 00000000`00000008 : nt!KeBugCheckEx
  794. ffff9e81`a8106410 fffff802`3aff1d7d : 00000000`00001000 00000000`00000000 ffff9e81`a81065f9 fffff802`3b0fb770 : nt!KiBugCheckDispatch+0x69
  795. ffff9e81`a8106550 fffff802`3cf013e0 : fffff802`3af006c1 00000003`00000000 00000000`00000001 00000000`00000020 : nt!KiPageFault+0x23d
  796. ffff9e81`a81066e8 fffff802`3af006c1 : 00000003`00000000 00000000`00000001 00000000`00000020 00000000`00000000 : 0xfffff802`3cf013e0
  797. ffff9e81`a81066f0 fffff802`3aefb52d : ffffaf0c`811d4d88 ffffaf0c`8122c7c0 ffffaf0c`811d4d88 ffffaf0c`811d47c0 : nt!MiDeleteVirtualAddresses+0x401
  798. ffff9e81`a81069a0 fffff802`3b33080c : 000001fb`e8450000 ffffaf0c`811a3500 00000000`00000a88 00000000`00000000 : nt!MiDeleteVad+0x3ad
  799. ffff9e81`a8106b20 fffff802`3b3a67d6 : ffffaf0c`811d47c0 00000096`00000008 ffffaf0c`7e8bdf20 000001fb`e8450000 : nt!MiUnmapViewOfSection+0xec
  800. ffff9e81`a8106bf0 fffff802`3aff3313 : ffffaf0c`8122c7c0 ffffaf0c`8127b680 ffff9e81`a8106cc0 ffffaf0c`811d47c0 : nt!NtUnmapViewOfSectionEx+0x86
  801. ffff9e81`a8106c40 00007ffa`1eef58f4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
  802. 00000096`89993bc8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffa`1eef58f4
  803. STACK_COMMAND: kb
  804. THREAD_SHA1_HASH_MOD_FUNC: 44368a842df743395f386b744319f95a840da82e
  805. THREAD_SHA1_HASH_MOD_FUNC_OFFSET: b55476803df26cfc3d002b44cd8b94ba26de0c83
  806. THREAD_SHA1_HASH_MOD: cb5f414824c2521bcc505eaa03e92fa10922dad8
  807. FOLLOWUP_IP:
  808. nt!KiPageFault+23d
  809. fffff802`3aff1d7d 33c0 xor eax,eax
  810. FAULT_INSTR_CODE: ffb0c033
  811. SYMBOL_STACK_INDEX: 2
  812. SYMBOL_NAME: nt!KiPageFault+23d
  813. FOLLOWUP_NAME: MachineOwner
  814. MODULE_NAME: nt
  815.  
  816. IMAGE_NAME: ntkrnlmp.exe
  817.  
  818. DEBUG_FLR_IMAGE_TIMESTAMP: 59327910
  819. IMAGE_VERSION: 10.0.15063.413
  820. BUCKET_ID_FUNC_OFFSET: 23d
  821. FAILURE_BUCKET_ID: AV_CODE_AV_BAD_IP_nt!KiPageFault
  822. BUCKET_ID: AV_CODE_AV_BAD_IP_nt!KiPageFault
  823. PRIMARY_PROBLEM_CLASS: AV_CODE_AV_BAD_IP_nt!KiPageFault
  824. TARGET_TIME: 2017-07-10T02:18:50.000Z
  825. OSBUILD: 15063
  826. OSSERVICEPACK: 413
  827. SERVICEPACK_NUMBER: 0
  828. OS_REVISION: 0
  829. SUITE_MASK: 272
  830. PRODUCT_TYPE: 1
  831. OSPLATFORM_TYPE: x64
  832. OSNAME: Windows 10
  833. OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
  834. USER_LCID: 0
  835. OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
  836. BUILDDATESTAMP_STR: 160101.0800
  837. BUILDLAB_STR: WinBuild
  838. BUILDOSVER_STR: 10.0.15063.413
  839. ANALYSIS_SESSION_ELAPSED_TIME: 926
  840. ANALYSIS_SOURCE: KM
  841. FAILURE_ID_HASH_STRING: km:av_code_av_bad_ip_nt!kipagefault
  842. FAILURE_ID_HASH: {73cd60cc-83fa-6b76-df08-1961c31d7403}
  843. Followup: MachineOwner
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement