Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ========================== AUTO DUMP ANALYZER ==========================
- Auto Dump Analyzer
- Version: 0.91
- Time to analyze file(s): 00 hours and 03 minutes and 59 seconds
- ================================ SYSTEM ================================
- MANUFACTURER: Micro-Star International Co., Ltd.
- PRODUCT_NAME: MS-7B17
- VERSION: 2.0
- ================================= BIOS =================================
- VENDOR: American Megatrends Inc.
- VERSION: A.50
- DATE: 03/26/2019
- ============================= MOTHERBOARD ==============================
- MANUFACTURER: Micro-Star International Co., Ltd.
- PRODUCT: MPG Z390 GAMING EDGE AC (MS-7B17)
- VERSION: 2.0
- ================================= RAM ==================================
- Size Speed Manufacturer Part No.
- -------------- -------------- ------------------- ----------------------
- 8192MB 3200MHz 029E CMW16GX4M2C3200C16
- 8192MB 3200MHz 029E CMW16GX4M2C3200C16
- 8192MB 3200MHz 029E CMW16GX4M2C3200C16
- 8192MB 3200MHz 029E CMW16GX4M2C3200C16
- ================================= CPU ==================================
- Processor Version: Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
- COUNT: 8
- MHZ: 3600
- VENDOR: GenuineIntel
- FAMILY: 6
- MODEL: 9e
- STEPPING: d
- MICROCODE: 6,9e,d,0 (F,M,S,R) SIG: B0'00000000 (cache) B0'00000000 (init)
- ================================== OS ==================================
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 18362.1.amd64fre.19h1_release.190318-1202
- BUILD_VERSION: 10.0.18362.900 (WinBuild.160101.0800)
- BUILD: 18362
- SERVICEPACK: 900
- PLATFORM_TYPE: x64
- NAME: Windows 10
- EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- BUILD_TIMESTAMP: 2012-07-06 17:22:33
- BUILDDATESTAMP: 160101.0800
- BUILDLAB: WinBuild
- BUILDOSVER: 10.0.18362.900
- =============================== DEBUGGER ===============================
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- =============================== COMMENTS ===============================
- * Information gathered from different dump files may be different. If
- Windows updates between two dump files, two or more OS versions may
- be shown above.
- * If the user updates the BIOS between dump files, two or more versions
- and dates may be shown above.
- * More RAM information can be found below in a full BIOS section.
- ========================================================================
- ======================= Dump #1: ANALYZE VERBOSE =======================
- ======================= File: 062320-8515-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 18362 MP (8 procs) Free x64
- Kernel base = 0xfffff800`4ae00000 PsLoadedModuleList = 0xfffff800`4b248190
- Debug session time: Tue Jun 23 22:38:34.642 2020 (UTC - 4:00)
- System Uptime: 0 days 5:10:04.250
- BugCheck 133, {0, 501, 500, fffff8004b373358}
- *************************************************************************
- *** Either you specified an unqualified symbol, or your debugger ***
- .... Snipped by GM.
- *************************************************************************
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- DPC_WATCHDOG_VIOLATION (133)
- The DPC watchdog detected a prolonged run time at an IRQL of DISPATCH_LEVEL
- or above.
- Arguments:
- Arg1: 0000000000000000, A single DPC or ISR exceeded its time allotment. The offending
- component can usually be identified with a stack trace.
- Arg2: 0000000000000501, The DPC time count (in ticks).
- Arg3: 0000000000000500, The DPC time allotment (in ticks).
- Arg4: fffff8004b373358
- Debugging Details:
- *************************************************************************
- *** Either you specified an unqualified symbol, or your debugger ***
- .... Snipped by GM.
- *************************************************************************
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- DPC_TIMEOUT_TYPE: SINGLE_DPC_TIMEOUT_EXCEEDED
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x133
- PROCESS_NAME: System
- CURRENT_IRQL: d
- LAST_CONTROL_TRANSFER: from fffff8004affcae7 to fffff8004afc23a0
- STACK_TEXT:
- ffff9700`c5a7ab08 fffff800`4affcae7 : 00000000`00000133 00000000`00000000 00000000`00000501 00000000`00000500 : nt!KeBugCheckEx
- ffff9700`c5a7ab10 fffff800`4ae483bc : 00000f6e`c07b8f24 ffff9700`c5af9180 00000000`00122b10 00000000`00122b10 : nt!KeAccumulateTicks+0x1b12e7
- ffff9700`c5a7ab70 fffff800`4b8b8567 : 00000000`00000000 fffffa84`33a3f5c0 fffffa84`33a3f640 00000000`00000002 : nt!KeClockInterruptNotify+0x98c
- ffff9700`c5a7af30 fffff800`4af37385 : 0000002b`514120c8 ffffbf8c`5cad4000 ffffbf8c`5cad40b0 ffffafbf`420051f2 : hal!HalpTimerClockInterrupt+0xf7
- ffff9700`c5a7af60 fffff800`4afc3e2a : fffffa84`33a3f640 ffffbf8c`5cad4000 00000000`00000000 ffffbf8c`5cad4000 : nt!KiCallInterruptServiceRoutine+0xa5
- ffff9700`c5a7afb0 fffff800`4afc4397 : 00000000`00001388 0000002b`451262f6 00000000`00000000 fffff800`629411b3 : nt!KiInterruptSubDispatchNoLockNoEtw+0xfa
- fffffa84`33a3f5c0 fffff800`4ae447cb : ffffffff`ffffffd1 fffff800`4b3ab450 00000000`00000010 00000000`00000246 : nt!KiInterruptDispatchNoLockNoEtw+0x37
- fffffa84`33a3f750 fffff800`4b3ab455 : 00000000`00000000 00000000`00000001 00000000`00000000 0000002b`4553fc1a : nt!KeYieldProcessorEx+0x1b
- fffffa84`33a3f780 fffff800`4b3aa5b5 : 00000000`2264b493 ffff9700`c5af9180 ffffbf8c`68cf27b0 00000000`00000000 : nt!IopLiveDumpProcessCorralStateChange+0x2d
- fffffa84`33a3f7b0 fffff800`4ae506ea : ffff9700`c5afbf80 00000000`00000001 fffffa84`33a3f7a8 00000000`00000000 : nt!IopLiveDumpCorralDpc+0x55
- fffffa84`33a3f7f0 fffff800`4ae4fd3f : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiExecuteAllDpcs+0x30a
- fffffa84`33a3f930 fffff800`4afc5ece : 00000000`00000000 ffff9700`c5af9180 ffff9700`c5b0a240 ffffbf8c`6ed58080 : nt!KiRetireDpcList+0x1ef
- fffffa84`33a3fb60 00000000`00000000 : fffffa84`33a40000 fffffa84`33a39000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x7e
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8004ae2d2fa-fffff8004ae2d2ff 6 bytes - nt!PpmCheckPeriodicStart+5a
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004ae447da-fffff8004ae447df 6 bytes - nt!KeYieldProcessorEx+2a (+0x174e0)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004ae4485d-fffff8004ae4485e 2 bytes - nt!MiDeleteSystemPagableVm+7d (+0x83)
- [ 80 f6:00 fe ]
- fffff8004ae484a3-fffff8004ae484a4 2 bytes - nt!KeClockInterruptNotify+a73 (+0x3c46)
- [ 48 ff:4c 8b ]
- fffff8004ae484aa-fffff8004ae484ad 4 bytes - nt!KeClockInterruptNotify+a7a (+0x07)
- [ 0f 1f 44 00:e8 71 1c a7 ]
- fffff8004aed3d32-fffff8004aed3d37 6 bytes - nt!PspReaper+a2 (+0x8b888)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af3d4ca-fffff8004af3d4cf 6 bytes - nt!HvcallpNoHypervisorPresent+a (+0x69798)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af3d4da-fffff8004af3d4df 6 bytes - nt!READ_REGISTER_UCHAR+a (+0x10)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af3d4ea-fffff8004af3d4ef 6 bytes - nt!READ_REGISTER_ULONG+a (+0x10)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af3d4fa-fffff8004af3d4ff 6 bytes - nt!WRITE_REGISTER_UCHAR+a (+0x10)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af3d50a-fffff8004af3d50f 6 bytes - nt!WRITE_REGISTER_ULONG+a (+0x10)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af3d51a-fffff8004af3d51f 6 bytes - nt!WRITE_REGISTER_ULONG64+a (+0x10)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af3d52a-fffff8004af3d52f 6 bytes - nt!WRITE_REGISTER_USHORT+a (+0x10)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af7603a-fffff8004af7603f 6 bytes - nt!EmpCheckErrataList+a (+0x38b10)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004af76076-fffff8004af7607b 6 bytes - nt!IoAllocateErrorLogEntry+36 (+0x3c)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004afb710a-fffff8004afb710f 6 bytes - nt!KiSwInterruptDispatch+d6ba (+0x41094)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004afb714a-fffff8004afb714f 6 bytes - nt!KiSwInterruptDispatch+d6fa (+0x40)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004afc237a-fffff8004afc237b 2 bytes - nt!ZwLoadKey3+2a (+0xb230)
- [ 84 00:4c 87 ]
- fffff8004afc237d-fffff8004afc237f 3 bytes - nt!ZwLoadKey3+2d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc239a-fffff8004afc239b 2 bytes - nt!KiBugCheckReturn+16 (+0x1d)
- [ 84 00:4c 87 ]
- fffff8004afc239d-fffff8004afc239f 3 bytes - nt!KiBugCheckReturn+19 (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc24ca-fffff8004afc24cb 2 bytes - nt!KeBugCheckEx+12a (+0x12d)
- [ 84 00:4c 87 ]
- fffff8004afc24cd-fffff8004afc24cf 3 bytes - nt!KeBugCheckEx+12d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc25ca-fffff8004afc25cb 2 bytes - nt!KeContextToKframes+fa (+0xfd)
- [ 84 00:4c 87 ]
- fffff8004afc25cd-fffff8004afc25cf 3 bytes - nt!KeContextToKframes+fd (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc261a-fffff8004afc261b 2 bytes - nt!KiSaveInitialProcessorControlState+4a (+0x4d)
- [ 84 00:4c 87 ]
- fffff8004afc261d-fffff8004afc261f 3 bytes - nt!KiSaveInitialProcessorControlState+4d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc26ea-fffff8004afc26ef 6 bytes - nt!KiRestoreProcessorControlState+ca (+0xcd)
- [ 66 0f 1f 44 00 00:4c 87 00 98 c3 90 ]
- fffff8004afc286a-fffff8004afc286b 2 bytes - nt!KiSaveProcessorControlState+17a (+0x180)
- [ 84 00:4c 87 ]
- fffff8004afc286d-fffff8004afc286f 3 bytes - nt!KiSaveProcessorControlState+17d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc28ea-fffff8004afc28ef 6 bytes - nt!KiRestoreDebugRegisterState+7a (+0x7d)
- [ cc 0f 1f 44 00 00:4c 87 00 98 c3 90 ]
- fffff8004afc2a7a-fffff8004afc2a7b 2 bytes - nt!KiSaveDebugRegisterState+18a (+0x190)
- [ 84 00:4c 87 ]
- fffff8004afc2a7d-fffff8004afc2a7f 3 bytes - nt!KiSaveDebugRegisterState+18d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc2a8a-fffff8004afc2a8f 6 bytes - nt!KeGetCurrentStackPointer+a (+0x0d)
- [ cc cc 0f 1f 40 00:4c 87 00 98 c3 90 ]
- fffff8004afc2a9a-fffff8004afc2a9b 2 bytes - nt!KeResetLegacyFloatingPointState+a (+0x10)
- [ 1f 80:4c 87 ]
- fffff8004afc2a9d-fffff8004afc2a9f 3 bytes - nt!KeResetLegacyFloatingPointState+d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc2aaa-fffff8004afc2aaf 6 bytes - nt!KeSaveLegacyFloatingPointControlWord+a (+0x0d)
- [ cc cc 0f 1f 40 00:4c 87 00 98 c3 90 ]
- fffff8004afc2aca-fffff8004afc2acb 2 bytes - nt!KeRestoreLegacyFloatingPointControlWord+1a (+0x20)
- [ 84 00:4c 87 ]
- fffff8004afc2acd-fffff8004afc2acf 3 bytes - nt!KeRestoreLegacyFloatingPointControlWord+1d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc2d8a-fffff8004afc2d8f 6 bytes - nt!NtContinue+2ba (+0x2bd)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004afc3e3a-fffff8004afc3e3b 2 bytes - nt!KiInterruptSubDispatchNoLockNoEtw+10a (+0x10b0)
- [ 84 00:4c 87 ]
- fffff8004afc3e3d-fffff8004afc3e3f 3 bytes - nt!KiInterruptSubDispatchNoLockNoEtw+10d (+0x03)
- [ 00 00 00:98 c3 90 ]
- fffff8004afc3ef8-fffff8004afc3ef9 2 bytes - nt!KiInterruptDispatch+b8 (+0xbb)
- [ 48 ff:4c 8b ]
- fffff8004afc3eff-fffff8004afc3f02 4 bytes - nt!KiInterruptDispatch+bf (+0x07)
- [ 0f 1f 44 00:e8 1c 62 8f ]
- fffff8004afc4188-fffff8004afc4189 2 bytes - nt!KiInterruptDispatchNoLock+b8 (+0x289)
- [ 48 ff:4c 8b ]
- fffff8004afc418f-fffff8004afc4192 4 bytes - nt!KiInterruptDispatchNoLock+bf (+0x07)
- [ 0f 1f 44 00:e8 8c 5f 8f ]
- fffff8004afc4418-fffff8004afc4419 2 bytes - nt!KiInterruptDispatchNoLockNoEtw+b8 (+0x289)
- [ 48 ff:4c 8b ]
- fffff8004afc441f-fffff8004afc4422 4 bytes - nt!KiInterruptDispatchNoLockNoEtw+bf (+0x07)
- [ 0f 1f 44 00:e8 fc 5c 8f ]
- fffff8004afc914a-fffff8004afc914f 6 bytes - nt!KiSwapContext+da (+0x4d2b)
- [ cc cc 0f 1f 40 00:4c 87 00 98 c3 90 ]
- fffff8004afc91da-fffff8004afc91df 6 bytes - nt!KiDispatchInterruptContinue+4a (+0x90)
- [ cc cc cc 0f 1f 00:4c 87 00 98 c3 90 ]
- WARNING: !chkimg output was truncated to 50 lines. Invoke !chkimg without '-lo [num_lines]' to view entire output.
- fffff8004b3aa5ca-fffff8004b3aa5cf 6 bytes - nt!IopLiveDumpCorralDpc+6a
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b3ab4be-fffff8004b3ab4c3 6 bytes - nt!IopLiveDumpProcessCorralStateChange+96 (+0xef4)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b3ab4da-fffff8004b3ab4df 6 bytes - nt!IopLiveDumpResetCorralContext+16 (+0x1c)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b3ab4f2-fffff8004b3ab4f7 6 bytes - nt!IopLiveDumpStartMirroringCallback+12 (+0x18)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b445bb2-fffff8004b445bb7 6 bytes - nt!AlpcpClosePort+72
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b4a24ca-fffff8004b4a24cf 6 bytes - nt!AlpcpOpenPort+6a (+0x5c918)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b6b3ad2-fffff8004b6b3ad7 6 bytes - nt!PopForceCompleteCsSleepStudySessionWorker+62 (+0x211608)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b6cbc6a-fffff8004b6cbc6f 6 bytes - nt!PspProcessRundownWorker+aa (+0x18198)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- fffff8004b6cbcd2-fffff8004b6cbcd7 6 bytes - nt!PspProcessRundownWorkerSingle+62 (+0x68)
- [ cc cc cc cc cc cc:4c 87 00 98 c3 90 ]
- 280 errors : !nt (fffff8004ae2d2fa-fffff8004b6cbcd7)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-06-24T02:38:34.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #1: 3RD PARTY DRIVERS ======================
- Apr 11 2013 - Tpkd.sys - InterLok driver or PACE Anti-Piracy driver
- Jul 09 2017 - NTIOLib_X64.sys - !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
- Jul 09 2017 - NTIOLib_X64.sys - !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
- Jul 09 2017 - NTIOLib_X64.sys - !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
- Jul 20 2017 - SteamStreamingSpeakers.sys - Steam Streaming Speakers driver (Valve Corporation)
- Jul 28 2017 - SteamStreamingMicrophone.sys - Steam Streaming Microphone driver (Valve Corporation)
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 04 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 24 2019 - iqvw64e.sys - Intel Network Adapter Diagnostic driver http://www.intel.com/
- May 14 2019 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Jun 27 2019 - FocusriteUSBSwRoot.sys - Focusrite Audio Engineering driver
- Aug 27 2019 - cpuz149_x64.sys - CPUID driver
- Oct 16 2019 - msio64.sys - MSI Gaming App driver
- Dec 25 2019 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Jan 17 2020 - Nahimic_Mirroring.sys - Nahimic driver https://www.nahimic.com/
- Feb 03 2020 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Feb 19 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Apr 11 2020 - ibtusb.sys - Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- Apr 16 2020 - Netwtw08.sys - Intel(R) Wireless Networking driver
- Apr 29 2020 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- May 08 2020 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\System32\Drivers\Tpkd.sys
- Image name: Tpkd.sys
- Search : https://www.google.com/search?q=Tpkd.sys
- ADA Info : InterLok driver or PACE Anti-Piracy driver
- Timestamp : Thu Apr 11 2013
- Image path: \??\C:\Program Files (x86)\MSI\One Dragon Center\Lib\NTIOLib_X64.sys
- Image name: NTIOLib_X64.sys
- Search : https://www.google.com/search?q=NTIOLib_X64.sys
- ADA Info : !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
- Timestamp : Sun Jul 9 2017
- Image path: \??\C:\Program Files (x86)\MSI\One Dragon Center\Lib\SYS\NTIOLib_X64.sys
- Image name: NTIOLib_X64.sys
- Search : https://www.google.com/search?q=NTIOLib_X64.sys
- ADA Info : !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
- Timestamp : Sun Jul 9 2017
- Image path: \??\C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\NTIOLib_X64.sys
- Image name: NTIOLib_X64.sys
- Search : https://www.google.com/search?q=NTIOLib_X64.sys
- ADA Info : !!! Overclocking Software - NTIO Library http://www.msi.com/ This file may be installed with other software such as MSI Live Update and that is OK.
- Timestamp : Sun Jul 9 2017
- Image path: \SystemRoot\system32\drivers\SteamStreamingSpeakers.sys
- Image name: SteamStreamingSpeakers.sys
- Search : https://www.google.com/search?q=SteamStreamingSpeakers.sys
- ADA Info : Steam Streaming Speakers driver (Valve Corporation)
- Timestamp : Thu Jul 20 2017
- Image path: \SystemRoot\system32\drivers\SteamStreamingMicrophone.sys
- Image name: SteamStreamingMicrophone.sys
- Search : https://www.google.com/search?q=SteamStreamingMicrophone.sys
- ADA Info : Steam Streaming Microphone driver (Valve Corporation)
- Timestamp : Fri Jul 28 2017
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Thu Apr 4 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \??\C:\Windows\system32\Drivers\iqvw64e.sys
- Image name: iqvw64e.sys
- Search : https://www.google.com/search?q=iqvw64e.sys
- ADA Info : Intel Network Adapter Diagnostic driver http://www.intel.com/
- Timestamp : Wed Apr 24 2019
- Image path: \SystemRoot\System32\drivers\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Tue May 14 2019
- Image path: \SystemRoot\System32\drivers\FocusriteUSBSwRoot.sys
- Image name: FocusriteUSBSwRoot.sys
- Search : https://www.google.com/search?q=FocusriteUSBSwRoot.sys
- ADA Info : Focusrite Audio Engineering driver
- Timestamp : Thu Jun 27 2019
- Image path: \??\C:\Windows\temp\cpuz149\cpuz149_x64.sys
- Image name: cpuz149_x64.sys
- Search : https://www.google.com/search?q=cpuz149_x64.sys
- ADA Info : CPUID driver
- Timestamp : Tue Aug 27 2019
- Image path: \??\C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\msio64.sys
- Image name: msio64.sys
- Search : https://www.google.com/search?q=msio64.sys
- ADA Info : MSI Gaming App driver
- Timestamp : Wed Oct 16 2019
- Image path: \??\D:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Wed Dec 25 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\drivers\Nahimic_Mirroring.sys
- Image name: Nahimic_Mirroring.sys
- Search : https://www.google.com/search?q=Nahimic_Mirroring.sys
- ADA Info : Nahimic driver https://www.nahimic.com/
- Timestamp : Fri Jan 17 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_d7c985d5dd35c00d\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Mon Feb 3 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Wed Feb 19 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\ibtusb.inf_amd64_eb17d069a92068b2\ibtusb.sys
- Image name: ibtusb.sys
- Search : https://www.google.com/search?q=ibtusb.sys
- ADA Info : Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- Timestamp : Sat Apr 11 2020
- Image path: \SystemRoot\System32\drivers\Netwtw08.sys
- Image name: Netwtw08.sys
- Search : https://www.google.com/search?q=Netwtw08.sys
- ADA Info : Intel(R) Wireless Networking driver
- Timestamp : Thu Apr 16 2020
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Wed Apr 29 2020
- Image path: \??\C:\Windows\system32\drivers\ene.sys
- Image name: ene.sys
- Search : https://www.google.com/search?q=ene.sys
- ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- Timestamp : Fri May 8 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- ====================== Dump #1: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- acpitime.sys ACPI Wake Alarm (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- bindflt.sys Windows Bind Filter driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- bthport.sys Bluetooth Bus driver (Microsoft)
- BTHUSB.sys Bluetooth Miniport driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpstorport.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_stornvme.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gameflt.sys Gaming Install Filter driver (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- nwifi.sys NativeWiFi Miniport Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- qwavedrv.sys Quality Windows Audio Video Experience (qWave) Support driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- stornvme.sys NVM Express Storport Miniport driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwifibus.sys Virtual Wireless Bus driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- wdiwifi.sys WDI Driver Framework driver (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WSDPrint.sys Web Services Print Device driver (Microsoft)
- WSDScan.sys Web Service Based Scan Device driver (Microsoft)
- xvdd.sys XVD Disk driver (Microsoft)
- ====================== Dump #1: UNLOADED MODULES =======================
- fffff800`48420000 fffff800`4842e000 WSDPrint.sys
- fffff800`48410000 fffff800`4841e000 WSDScan.sys
- fffff800`48430000 fffff800`4843f000 hiber_storpo
- fffff800`48440000 fffff800`48468000 hiber_stornv
- fffff800`48470000 fffff800`4848e000 hiber_dumpfv
- fffff800`66e90000 fffff800`66ea1000 MpKslDrv.sys
- fffff800`62a60000 fffff800`62a6a000 CorsairVHidD
- fffff800`48db0000 fffff800`48db8000 amifldrv64.s
- fffff800`66e50000 fffff800`66e5e000 WSDPrint.sys
- fffff800`66e40000 fffff800`66e4e000 WSDScan.sys
- fffff800`62b90000 fffff800`62b9f000 dump_storpor
- fffff800`62bd0000 fffff800`62bf8000 dump_stornvm
- fffff800`61e20000 fffff800`61e3e000 dump_dumpfve
- fffff800`62600000 fffff800`6261e000 dam.sys
- fffff800`4ebd0000 fffff800`4ebe1000 WdBoot.sys
- fffff800`4fc20000 fffff800`4fc31000 hwpolicy.sys
- ====================== Dump #1: BIOS INFORMATION =======================
- [SMBIOS Data Tables v2.8]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4658 bytes]
- [BIOS Information (Type 0) - Length 26 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version A.50
- BIOS Starting Address Segment f000
- BIOS Release Date 03/26/2019
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 13
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Micro-Star International Co., Ltd.
- Product Name MS-7B17
- Version 2.0
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Micro-Star International Co., Ltd.
- Product MPG Z390 GAMING EDGE AC (MS-7B17)
- Version 2.0
- Feature Flags 09h
- -442190112: - -442190064: - ÷7!ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Micro-Star International Co., Ltd.
- Chassis Type Desktop
- Version 2.0
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [OEM Strings (Type 11) - Length 5 - Handle 0021h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0022h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0039h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003ah]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003bh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003ch]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003dh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 003eh]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0039h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0200h - 512K
- Installed Size 0200h - 512K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0800h - 2048K
- Installed Size 0800h - 2048K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 3000h - 12288K
- Installed Size 3000h - 12288K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID ed060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
- Processor Voltage 8ah - 1.0V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3564MHz
- Status Enabled Populated
- Processor Upgrade Specification Reserved
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 003ah
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 003bh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0049h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 003ch
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004ah]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 003dh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #1: Extra #1 ===========================
- 2: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #1: Extra #2 ===========================
- 2: kd> !thread
- THREAD ffff9700c5b0a240 Cid 0000.0000 Teb: 0000000000000000 Win32Thread: 0000000000000000 RUNNING on processor 2
- Not impersonating
- GetUlongFromAddress: unable to read from fffff8004b22ca14
- Owning Process fffff8004b38e9c0 Image: System Process
- Attached Process ffffbf8c5cab0040 Image: System
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 1189391 Ticks: 1281
- Context Switch Count 12001403 IdealProcessor: 2
- ReadMemory error: Cannot get nt!KeMaximumIncrement value.
- UserTime 00:00:00.000
- KernelTime 00:00:00.000
- Win32 Start Address nt!KiIdleLoop (0xfffff8004afc5e50)
- Stack Init fffffa8433a3fb90 Current fffffa8433a3fb20
- Base fffffa8433a40000 Limit fffffa8433a39000 Call 0000000000000000
- Priority 0 BasePriority 0 PriorityDecrement 0 IoPriority 0 PagePriority 0
- Child-SP RetAddr : Args to Child : Call Site
- ffff9700`c5a7ab08 fffff800`4affcae7 : 00000000`00000133 00000000`00000000 00000000`00000501 00000000`00000500 : nt!KeBugCheckEx
- ffff9700`c5a7ab10 fffff800`4ae483bc : 00000f6e`c07b8f24 ffff9700`c5af9180 00000000`00122b10 00000000`00122b10 : nt!KeAccumulateTicks+0x1b12e7
- ffff9700`c5a7ab70 fffff800`4b8b8567 : 00000000`00000000 fffffa84`33a3f5c0 fffffa84`33a3f640 00000000`00000002 : nt!KeClockInterruptNotify+0x98c
- ffff9700`c5a7af30 fffff800`4af37385 : 0000002b`514120c8 ffffbf8c`5cad4000 ffffbf8c`5cad40b0 ffffafbf`420051f2 : hal!HalpTimerClockInterrupt+0xf7
- ffff9700`c5a7af60 fffff800`4afc3e2a : fffffa84`33a3f640 ffffbf8c`5cad4000 00000000`00000000 ffffbf8c`5cad4000 : nt!KiCallInterruptServiceRoutine+0xa5
- ffff9700`c5a7afb0 fffff800`4afc4397 : 00000000`00001388 0000002b`451262f6 00000000`00000000 fffff800`629411b3 : nt!KiInterruptSubDispatchNoLockNoEtw+0xfa (TrapFrame @ ffff9700`c5a7ae70)
- fffffa84`33a3f5c0 fffff800`4ae447cb : ffffffff`ffffffd1 fffff800`4b3ab450 00000000`00000010 00000000`00000246 : nt!KiInterruptDispatchNoLockNoEtw+0x37 (TrapFrame @ fffffa84`33a3f5c0)
- fffffa84`33a3f750 fffff800`4b3ab455 : 00000000`00000000 00000000`00000001 00000000`00000000 0000002b`4553fc1a : nt!KeYieldProcessorEx+0x1b
- fffffa84`33a3f780 fffff800`4b3aa5b5 : 00000000`2264b493 ffff9700`c5af9180 ffffbf8c`68cf27b0 00000000`00000000 : nt!IopLiveDumpProcessCorralStateChange+0x2d
- fffffa84`33a3f7b0 fffff800`4ae506ea : ffff9700`c5afbf80 00000000`00000001 fffffa84`33a3f7a8 00000000`00000000 : nt!IopLiveDumpCorralDpc+0x55
- fffffa84`33a3f7f0 fffff800`4ae4fd3f : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiExecuteAllDpcs+0x30a
- fffffa84`33a3f930 fffff800`4afc5ece : 00000000`00000000 ffff9700`c5af9180 ffff9700`c5b0a240 ffffbf8c`6ed58080 : nt!KiRetireDpcList+0x1ef
- fffffa84`33a3fb60 00000000`00000000 : fffffa84`33a40000 fffffa84`33a39000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x7e
- ========================================================================
- ======================= Dump #2: ANALYZE VERBOSE =======================
- ======================= File: 062220-8000-01.dmp =======================
- ========================================================================
- Could not match Dump File signature - invalid file format
- Could not open dump file [C:\Users\UserName\Desktop\windows_dumps\062220-8000-01.dmp], Win32 error 0n87
- "The parameter is incorrect."
- Debuggee initialization failed, Win32 error 0n87
- The parameter is incorrect.
- ========================================================================
- ======================= Dump #3: ANALYZE VERBOSE =======================
- ======================= File: 062220-6765-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 18362 MP (8 procs) Free x64
- Kernel base = 0xfffff803`50800000 PsLoadedModuleList = 0xfffff803`50c48190
- Debug session time: Mon Jun 22 12:58:29.960 2020 (UTC - 4:00)
- System Uptime: 0 days 0:00:11.696
- BugCheck 139, {4, ffff9881691aaff0, ffff9881691aaf48, 0}
- Probably caused by : memory_corruption
- Followup: memory_corruption
- KERNEL_SECURITY_CHECK_FAILURE (139)
- A kernel component has corrupted a critical data structure. The corruption
- could potentially allow a malicious user to gain control of this machine.
- Arguments:
- Arg1: 0000000000000004, The thread's stack pointer was outside the legal stack
- extents for the thread.
- Arg2: ffff9881691aaff0, Address of the trap frame for the exception that caused the bugcheck
- Arg3: ffff9881691aaf48, Address of the exception record for the exception that caused the bugcheck
- Arg4: 0000000000000000, Reserved
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- TRAP_FRAME: 00173ded74c00000 -- (.trap 0x173ded74c00000)
- Unable to read trap frame at 00173ded`74c00000
- EXCEPTION_RECORD: 0ca0f70d8b481a78 -- (.exr 0xca0f70d8b481a78)
- Cannot read Exception record @ 0ca0f70d8b481a78
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x139
- PROCESS_NAME: svchost.exe
- CURRENT_IRQL: 0
- ERROR_CODE: (NTSTATUS) 0xc0000409 - The system detected an overrun of a stack-based buffer in this application. This overrun could potentially allow a malicious user to gain control of this application.
- EXCEPTION_CODE: (NTSTATUS) 0xc0000409 - The system detected an overrun of a stack-based buffer in this application. This overrun could potentially allow a malicious user to gain control of this application.
- EXCEPTION_CODE_STR: c0000409
- EXCEPTION_PARAMETER1: 0000000000000004
- WATSON_BKT_EVENT: BEX
- BAD_STACK_POINTER: ffff9881691aacc8
- LAST_CONTROL_TRANSFER: from fffff803509d41e9 to fffff803509c23a0
- FAULTING_THREAD: 0000000000000000
- STACK_TEXT:
- ffff9881`691aacc8 fffff803`509d41e9 : 00000000`00000139 00000000`00000004 ffff9881`691aaff0 ffff9881`691aaf48 : nt!KeBugCheckEx
- ffff9881`691aacd0 fffff803`509d4610 : 41088949`04c18348 41098941`024ab70f cccccccc`ccc3c38b 4501b70f`cccccccc : nt!KiBugCheckDispatch+0x69
- ffff9881`691aae10 fffff803`509d29a3 : fffff803`5091b408 fffff803`50c0e814 ffff9881`691ab7d0 00000000`00000000 : nt!KiFastFailDispatch+0xd0
- ffff9881`691aaff0 fffff803`50a49ba1 : 00000000`00000000 00000000`00000271 0005e344`00ab7000 00000000`0010001f : nt!KiRaiseSecurityCheckFailure+0x323
- ffff9881`691ab180 fffff803`50a18ae4 : ffffc982`c833f7b8 00000000`00000000 ffff9881`691ab6f0 00007fff`00000003 : nt!RtlpGetStackLimitsEx+0x135ac5
- ffff9881`691ab1b0 fffff803`5088ddee : ffffc982`c833f7b8 ffff9881`691abe30 ffffc982`c833f7b8 00000000`00000000 : nt!RtlDispatchException+0x18f734
- ffff9881`691ab900 fffff803`509c3212 : 0ca0f70d`8b481a78 9a3dff8d`b612e800 00173ded`74c00000 24648348`e674c000 : nt!KiDispatchException+0x16e
- ffff9881`691abfb0 fffff803`509c31e0 : fffff803`509d4316 00000000`00000040 ffffc982`c833f780 00000262`8f88d79e : nt!KxExceptionDispatchOnExceptionStack+0x12
- ffffc982`c833f678 fffff803`509d4316 : 00000000`00000040 ffffc982`c833f780 00000262`8f88d79e 00000000`00000000 : nt!KiExceptionDispatchOnExceptionStackContinue
- ffffc982`c833f680 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiExceptionDispatch+0x116
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff80350859716 - nt!MiFastLockLeafPageTable+366
- [ f6:c3 ]
- fffff803508597de-fffff803508597e3 6 bytes - nt!MiLockPageTableInternal+1e (+0xc8)
- [ 68 df be 7d fb f6:38 7c f8 f0 e1 c3 ]
- fffff803508597f2-fffff803508597f6 5 bytes - nt!MiLockPageTableInternal+32 (+0x14)
- [ d0 be 7d fb f6:70 f8 f0 e1 c3 ]
- fffff803508597fc-fffff803508597fe 3 bytes - nt!MiLockPageTableInternal+3c (+0x0a)
- [ df be 7d:7f f8 f0 ]
- fffff8035091b474-fffff8035091b475 2 bytes - nt!MiDeleteNonPagedPoolTail+44 (+0xc1c78)
- [ 80 fa:00 bc ]
- fffff80350a49c0f-fffff80350a49c11 3 bytes - nt!MiZeroLargePage+135b0b (+0x12e79b)
- [ 40 fb f6:c0 e1 c3 ]
- fffff80350a49c29 - nt!MiZeroLargePage+135b25 (+0x1a)
- [ f6:c3 ]
- 21 errors : !nt (fffff80350859716-fffff80350a49c29)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- STACK_COMMAND: ~0s ; kb
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-06-22T16:58:29.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #3: 3RD PARTY DRIVERS ======================
- Apr 11 2013 - Tpkd.sys - InterLok driver or PACE Anti-Piracy driver
- Jul 20 2017 - SteamStreamingSpeakers.sys - Steam Streaming Speakers driver (Valve Corporation)
- Jul 28 2017 - SteamStreamingMicrophone.sys - Steam Streaming Microphone driver (Valve Corporation)
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 04 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- May 14 2019 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Jun 27 2019 - FocusriteUSBSwRoot.sys - Focusrite Audio Engineering driver
- Aug 27 2019 - cpuz149_x64.sys - CPUID driver
- Dec 25 2019 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Jan 17 2020 - Nahimic_Mirroring.sys - Nahimic driver https://www.nahimic.com/
- Feb 03 2020 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Feb 19 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Apr 11 2020 - ibtusb.sys - Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- Apr 16 2020 - Netwtw08.sys - Intel(R) Wireless Networking driver
- Apr 29 2020 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- May 08 2020 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ================== Dump #3: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\System32\Drivers\Tpkd.sys
- Image name: Tpkd.sys
- Search : https://www.google.com/search?q=Tpkd.sys
- ADA Info : InterLok driver or PACE Anti-Piracy driver
- Timestamp : Thu Apr 11 2013
- Image path: \SystemRoot\system32\drivers\SteamStreamingSpeakers.sys
- Image name: SteamStreamingSpeakers.sys
- Search : https://www.google.com/search?q=SteamStreamingSpeakers.sys
- ADA Info : Steam Streaming Speakers driver (Valve Corporation)
- Timestamp : Thu Jul 20 2017
- Image path: \SystemRoot\system32\drivers\SteamStreamingMicrophone.sys
- Image name: SteamStreamingMicrophone.sys
- Search : https://www.google.com/search?q=SteamStreamingMicrophone.sys
- ADA Info : Steam Streaming Microphone driver (Valve Corporation)
- Timestamp : Fri Jul 28 2017
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Thu Apr 4 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Tue May 14 2019
- Image path: \SystemRoot\System32\drivers\FocusriteUSBSwRoot.sys
- Image name: FocusriteUSBSwRoot.sys
- Search : https://www.google.com/search?q=FocusriteUSBSwRoot.sys
- ADA Info : Focusrite Audio Engineering driver
- Timestamp : Thu Jun 27 2019
- Image path: \??\C:\Windows\temp\cpuz149\cpuz149_x64.sys
- Image name: cpuz149_x64.sys
- Search : https://www.google.com/search?q=cpuz149_x64.sys
- ADA Info : CPUID driver
- Timestamp : Tue Aug 27 2019
- Image path: \??\D:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Wed Dec 25 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\drivers\Nahimic_Mirroring.sys
- Image name: Nahimic_Mirroring.sys
- Search : https://www.google.com/search?q=Nahimic_Mirroring.sys
- ADA Info : Nahimic driver https://www.nahimic.com/
- Timestamp : Fri Jan 17 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_d7c985d5dd35c00d\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Mon Feb 3 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Wed Feb 19 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\ibtusb.inf_amd64_eb17d069a92068b2\ibtusb.sys
- Image name: ibtusb.sys
- Search : https://www.google.com/search?q=ibtusb.sys
- ADA Info : Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- Timestamp : Sat Apr 11 2020
- Image path: \SystemRoot\System32\drivers\Netwtw08.sys
- Image name: Netwtw08.sys
- Search : https://www.google.com/search?q=Netwtw08.sys
- ADA Info : Intel(R) Wireless Networking driver
- Timestamp : Thu Apr 16 2020
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Wed Apr 29 2020
- Image path: \??\C:\Windows\system32\drivers\ene.sys
- Image name: ene.sys
- Search : https://www.google.com/search?q=ene.sys
- ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- Timestamp : Fri May 8 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- ====================== Dump #3: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- acpitime.sys ACPI Wake Alarm (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- bthport.sys Bluetooth Bus driver (Microsoft)
- BTHUSB.sys Bluetooth Miniport driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpstorport.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_stornvme.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gameflt.sys Gaming Install Filter driver (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- MpKsl8a737c7c.sys Microsoft Anti-malware Protection driver
- MpKslDrv.sys Microsoft Anti-malware Protection driver
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- nwifi.sys NativeWiFi Miniport Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- stornvme.sys NVM Express Storport Miniport driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwifibus.sys Virtual Wireless Bus driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- wdiwifi.sys WDI Driver Framework driver (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WSDPrint.sys Web Services Print Device driver (Microsoft)
- WSDScan.sys Web Service Based Scan Device driver (Microsoft)
- xvdd.sys XVD Disk driver (Microsoft)
- ====================== Dump #3: UNLOADED MODULES =======================
- fffff803`6c380000 fffff803`6c38e000 WSDPrint.sys
- fffff803`6c370000 fffff803`6c37e000 WSDScan.sys
- fffff803`67580000 fffff803`6758f000 dump_storpor
- fffff803`675c0000 fffff803`675e8000 dump_stornvm
- fffff803`66620000 fffff803`6663e000 dump_dumpfve
- fffff803`66e40000 fffff803`66e5e000 dam.sys
- fffff803`533d0000 fffff803`533e1000 WdBoot.sys
- fffff803`54420000 fffff803`54431000 hwpolicy.sys
- ====================== Dump #3: BIOS INFORMATION =======================
- [SMBIOS Data Tables v2.8]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4658 bytes]
- [BIOS Information (Type 0) - Length 26 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version A.50
- BIOS Starting Address Segment f000
- BIOS Release Date 03/26/2019
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 13
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Micro-Star International Co., Ltd.
- Product Name MS-7B17
- Version 2.0
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Micro-Star International Co., Ltd.
- Product MPG Z390 GAMING EDGE AC (MS-7B17)
- Version 2.0
- Feature Flags 09h
- -435702048: - -435702000: - ÷7!ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Micro-Star International Co., Ltd.
- Chassis Type Desktop
- Version 2.0
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [OEM Strings (Type 11) - Length 5 - Handle 0021h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0022h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0039h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003ah]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003bh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003ch]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003dh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 003eh]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0039h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0200h - 512K
- Installed Size 0200h - 512K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0800h - 2048K
- Installed Size 0800h - 2048K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 3000h - 12288K
- Installed Size 3000h - 12288K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID ed060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
- Processor Voltage 8ah - 1.0V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3600MHz
- Status Enabled Populated
- Processor Upgrade Specification Reserved
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 003ah
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 003bh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0049h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 003ch
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004ah]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 003dh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #3: Extra #1 ===========================
- 6: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #3: Extra #2 ===========================
- 6: kd> !thread
- THREAD ffffa98ac0b61080 Cid 1cc8.1da8 Teb: 000000e0d34e2000 Win32Thread: 0000000000000000 RUNNING on processor 6
- Not impersonating
- GetUlongFromAddress: unable to read from fffff80350c2ca14
- Owning Process ffffa98ac0b09080 Image: svchost.exe
- Attached Process N/A Image: N/A
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 748
- Context Switch Count 16 IdealProcessor: 6
- ReadMemory error: Cannot get nt!KeMaximumIncrement value.
- UserTime 00:00:00.000
- KernelTime 00:00:00.000
- Win32 Start Address 0x00007ffeebd93ce0
- Stack Init ffffc982c833fb90 Current ffffc982c833ee30
- Base ffffc982c8340000 Limit ffffc982c8339000 Call 0000000000000000
- Priority 9 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
- Child-SP RetAddr : Args to Child : Call Site
- ffff9881`691aacc8 fffff803`509d41e9 : 00000000`00000139 00000000`00000004 ffff9881`691aaff0 ffff9881`691aaf48 : nt!KeBugCheckEx
- ffff9881`691aacd0 fffff803`509d4610 : 41088949`04c18348 41098941`024ab70f cccccccc`ccc3c38b 4501b70f`cccccccc : nt!KiBugCheckDispatch+0x69
- ffff9881`691aae10 fffff803`509d29a3 : fffff803`5091b408 fffff803`50c0e814 ffff9881`691ab7d0 00000000`00000000 : nt!KiFastFailDispatch+0xd0
- ffff9881`691aaff0 fffff803`50a49ba1 : 00000000`00000000 00000000`00000271 0005e344`00ab7000 00000000`0010001f : nt!KiRaiseSecurityCheckFailure+0x323 (TrapFrame @ ffff9881`691aaff0)
- ffff9881`691ab180 fffff803`50a18ae4 : ffffc982`c833f7b8 00000000`00000000 ffff9881`691ab6f0 00007fff`00000003 : nt!RtlpGetStackLimitsEx+0x135ac5
- ffff9881`691ab1b0 fffff803`5088ddee : ffffc982`c833f7b8 ffff9881`691abe30 ffffc982`c833f7b8 00000000`00000000 : nt!RtlDispatchException+0x18f734
- ffff9881`691ab900 fffff803`509c3212 : 0ca0f70d`8b481a78 9a3dff8d`b612e800 00173ded`74c00000 24648348`e674c000 : nt!KiDispatchException+0x16e
- ffff9881`691abfb0 fffff803`509c31e0 : fffff803`509d4316 00000000`00000040 ffffc982`c833f780 00000262`8f88d79e : nt!KxExceptionDispatchOnExceptionStack+0x12 (TrapFrame @ ffff9881`691abe70)
- ffffc982`c833f678 fffff803`509d4316 : 00000000`00000040 ffffc982`c833f780 00000262`8f88d79e 00000000`00000000 : nt!KiExceptionDispatchOnExceptionStackContinue
- ffffc982`c833f680 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiExceptionDispatch+0x116
- ========================================================================
- ======================= Dump #4: ANALYZE VERBOSE =======================
- ======================= File: 062120-8031-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 18362 MP (8 procs) Free x64
- Kernel base = 0xfffff800`56400000 PsLoadedModuleList = 0xfffff800`56848190
- Debug session time: Sun Jun 21 16:13:00.938 2020 (UTC - 4:00)
- System Uptime: 0 days 0:00:18.671
- BugCheck 50, {fffff80456824a4c, 0, fffff800565d3acd, 2}
- Could not read faulting driver name
- Probably caused by : memory_corruption
- Followup: memory_corruption
- PAGE_FAULT_IN_NONPAGED_AREA (50)
- Invalid system memory was referenced. This cannot be protected by try-except.
- Typically the address is just plain bad or it is pointing at freed memory.
- Arguments:
- Arg1: fffff80456824a4c, memory referenced.
- Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
- Arg3: fffff800565d3acd, If non-zero, the instruction address which referenced the bad memory
- address.
- Arg4: 0000000000000002, (reserved)
- Debugging Details:
- Could not read faulting driver name
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- READ_ADDRESS: fffff800569733b8: Unable to get MiVisibleState
- fffff80456824a4c
- FAULTING_IP:
- nt!KiSystemServiceRepeat+39
- fffff800`565d3acd 4d631c82 movsxd r11,dword ptr [r10+rax*4]
- MM_INTERNAL_CODE: 2
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: AV
- PROCESS_NAME: explorer.exe
- CURRENT_IRQL: 0
- TRAP_FRAME: ffffbd810facf870 -- (.trap 0xffffbd810facf870)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=0000000100000093 rbx=0000000000000000 rcx=fffffffffffffffa
- rdx=0000000000000001 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff800565d3acd rsp=ffffbd810facfa00 rbp=ffffbd810facfa80
- r8=000000000e80c860 r9=0000000000000058 r10=fffff80056824800
- r11=fffff80056974a80 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na pe cy
- nt!KiSystemServiceRepeat+0x39:
- fffff800`565d3acd 4d631c82 movsxd r11,dword ptr [r10+rax*4] ds:fffff804`56824a4c=????????
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff800565ecf22 to fffff800565c23a0
- STACK_TEXT:
- ffffbd81`0facf5c8 fffff800`565ecf22 : 00000000`00000050 fffff804`56824a4c 00000000`00000000 ffffbd81`0facf870 : nt!KeBugCheckEx
- ffffbd81`0facf5d0 fffff800`5645873f : ffffd608`973e9080 00000000`00000000 00000000`00000000 fffff804`56824a4c : nt!MiSystemFault+0x1c5ae2
- ffffbd81`0facf6d0 fffff800`565d041e : ffff9589`5684e170 00000000`00000000 00000000`00000002 00000000`00000000 : nt!MmAccessFault+0x34f
- ffffbd81`0facf870 fffff800`565d3acd : ffffd608`973e9080 00000000`0e80df38 ffffbd81`0facfa18 00000000`00000000 : nt!KiPageFault+0x35e
- ffffbd81`0facfa00 00007ff8`efb3c494 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceRepeat+0x39
- 00000000`0e80c808 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff8`efb3c494
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -db !win32k
- 253 errors : !win32k (fffff08e08d6dd90-fffff08e08d6de8f)
- fffff08e08d6dd90 *00 *5a *9f *ff *00 *65 *9f *ff *00 *70 *9f *ff *00 *7b *9f *ff .Z...e...p...{..
- fffff08e08d6dda0 *02 *86 *9f *ff *00 *91 *9f *ff *00 *9c *9f *ff 00 *a7 *9f *ff ................
- fffff08e08d6ddb0 *00 *b2 *9f *ff *00 *bd *9f *ff *03 *c8 *9f *ff *07 *d3 *9f *ff ................
- fffff08e08d6ddc0 *00 *de *9f *ff *00 *e9 *9f *ff *00 *f4 *9f *ff *00 *ff *9f *ff ................
- fffff08e08d6ddd0 *00 *0a *a0 *ff *00 *15 *a0 *ff *00 *20 *a0 *ff *00 *2b *a0 *ff ......... ...+..
- fffff08e08d6dde0 *00 *36 *a0 *ff *00 *41 *a0 *ff *00 *4c *a0 *ff 00 *57 *a0 *ff .6...A...L...W..
- fffff08e08d6ddf0 *00 *62 *a0 *ff *00 *6d *a0 *ff *00 *78 *a0 *ff *01 *83 *a0 *ff .b...m...x......
- fffff08e08d6de00 *00 *8e *a0 *ff *00 *99 *a0 *ff *00 *a4 *a0 *ff *04 *af *a0 *ff ................
- fffff08e08d6de10 *00 *ba *a0 *ff *00 *c5 *a0 *ff *00 *d0 *a0 *ff *01 *db *a0 *ff ................
- fffff08e08d6de20 *00 *e6 *a0 *ff *00 *f1 *a0 *ff *00 *fc *a0 *ff *03 *07 *a1 *ff ................
- fffff08e08d6de30 *00 *12 *a1 *ff *00 *1d *a1 *ff *00 *28 *a1 *ff *00 *33 *a1 *ff .........(...3..
- fffff08e08d6de40 *0c *3e *a1 *ff *00 *49 *a1 *ff *00 *54 *a1 *ff *00 *5f *a1 *ff .>...I...T..._..
- fffff08e08d6de50 *00 *6a *a1 *ff *00 *75 *a1 *ff *00 *80 *a1 *ff *00 *8b *a1 *ff .j...u..........
- fffff08e08d6de60 *08 *96 *a1 *ff *00 *a1 *a1 *ff *00 *ac *a1 *ff 00 *b7 *a1 *ff ................
- fffff08e08d6de70 *00 *c2 *a1 *ff *00 *cd *a1 *ff *00 *d8 *a1 *ff *05 *e3 *a1 *ff ................
- fffff08e08d6de80 *00 *ee *a1 *ff *00 *f9 *a1 *ff *00 *04 *a2 *ff *00 *0f *a2 *ff ................
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE_256
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE_256
- BUCKET_ID: MEMORY_CORRUPTION_LARGE_256
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE_256
- TARGET_TIME: 2020-06-21T20:13:00.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large_256
- FAILURE_ID_HASH: {c4e440c8-f34a-f4bb-4c2a-b6acf02f9cce}
- Followup: memory_corruption
- ====================== Dump #4: 3RD PARTY DRIVERS ======================
- Apr 11 2013 - Tpkd.sys - InterLok driver or PACE Anti-Piracy driver
- Jul 20 2017 - SteamStreamingSpeakers.sys - Steam Streaming Speakers driver (Valve Corporation)
- Jul 28 2017 - SteamStreamingMicrophone.sys - Steam Streaming Microphone driver (Valve Corporation)
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 04 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 24 2019 - iqvw64e.sys - Intel Network Adapter Diagnostic driver http://www.intel.com/
- May 14 2019 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Jun 27 2019 - FocusriteUSBSwRoot.sys - Focusrite Audio Engineering driver
- Aug 27 2019 - cpuz149_x64.sys - CPUID driver
- Dec 25 2019 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Jan 17 2020 - Nahimic_Mirroring.sys - Nahimic driver https://www.nahimic.com/
- Feb 03 2020 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Feb 19 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Apr 11 2020 - ibtusb.sys - Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- Apr 16 2020 - Netwtw08.sys - Intel(R) Wireless Networking driver
- Apr 29 2020 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- May 08 2020 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ================== Dump #4: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\System32\Drivers\Tpkd.sys
- Image name: Tpkd.sys
- Search : https://www.google.com/search?q=Tpkd.sys
- ADA Info : InterLok driver or PACE Anti-Piracy driver
- Timestamp : Thu Apr 11 2013
- Image path: \SystemRoot\system32\drivers\SteamStreamingSpeakers.sys
- Image name: SteamStreamingSpeakers.sys
- Search : https://www.google.com/search?q=SteamStreamingSpeakers.sys
- ADA Info : Steam Streaming Speakers driver (Valve Corporation)
- Timestamp : Thu Jul 20 2017
- Image path: \SystemRoot\system32\drivers\SteamStreamingMicrophone.sys
- Image name: SteamStreamingMicrophone.sys
- Search : https://www.google.com/search?q=SteamStreamingMicrophone.sys
- ADA Info : Steam Streaming Microphone driver (Valve Corporation)
- Timestamp : Fri Jul 28 2017
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\heci.inf_amd64_85021432489d6a1c\x64\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Thu Apr 4 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \??\C:\Windows\system32\Drivers\iqvw64e.sys
- Image name: iqvw64e.sys
- Search : https://www.google.com/search?q=iqvw64e.sys
- ADA Info : Intel Network Adapter Diagnostic driver http://www.intel.com/
- Timestamp : Wed Apr 24 2019
- Image path: \SystemRoot\System32\drivers\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Tue May 14 2019
- Image path: \SystemRoot\System32\drivers\FocusriteUSBSwRoot.sys
- Image name: FocusriteUSBSwRoot.sys
- Search : https://www.google.com/search?q=FocusriteUSBSwRoot.sys
- ADA Info : Focusrite Audio Engineering driver
- Timestamp : Thu Jun 27 2019
- Image path: \??\C:\Windows\temp\cpuz149\cpuz149_x64.sys
- Image name: cpuz149_x64.sys
- Search : https://www.google.com/search?q=cpuz149_x64.sys
- ADA Info : CPUID driver
- Timestamp : Tue Aug 27 2019
- Image path: \??\D:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Wed Dec 25 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\drivers\Nahimic_Mirroring.sys
- Image name: Nahimic_Mirroring.sys
- Search : https://www.google.com/search?q=Nahimic_Mirroring.sys
- ADA Info : Nahimic driver https://www.nahimic.com/
- Timestamp : Fri Jan 17 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_d7c985d5dd35c00d\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Mon Feb 3 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Wed Feb 19 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\ibtusb.inf_amd64_eb17d069a92068b2\ibtusb.sys
- Image name: ibtusb.sys
- Search : https://www.google.com/search?q=ibtusb.sys
- ADA Info : Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- Timestamp : Sat Apr 11 2020
- Image path: \SystemRoot\System32\drivers\Netwtw08.sys
- Image name: Netwtw08.sys
- Search : https://www.google.com/search?q=Netwtw08.sys
- ADA Info : Intel(R) Wireless Networking driver
- Timestamp : Thu Apr 16 2020
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Wed Apr 29 2020
- Image path: \??\C:\Windows\system32\drivers\ene.sys
- Image name: ene.sys
- Search : https://www.google.com/search?q=ene.sys
- ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- Timestamp : Fri May 8 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- ====================== Dump #4: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- acpitime.sys ACPI Wake Alarm (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- bthport.sys Bluetooth Bus driver (Microsoft)
- BTHUSB.sys Bluetooth Miniport driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpstorport.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_stornvme.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gameflt.sys Gaming Install Filter driver (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- MpKsl28503945.sys Microsoft Anti-malware Protection driver
- MpKslDrv.sys Microsoft Anti-malware Protection driver
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- nwifi.sys NativeWiFi Miniport Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- stornvme.sys NVM Express Storport Miniport driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwifibus.sys Virtual Wireless Bus driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- wdiwifi.sys WDI Driver Framework driver (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WSDPrint.sys Web Services Print Device driver (Microsoft)
- WSDScan.sys Web Service Based Scan Device driver (Microsoft)
- xvdd.sys XVD Disk driver (Microsoft)
- ====================== Dump #4: UNLOADED MODULES =======================
- fffff800`740b0000 fffff800`740be000 WSDPrint.sys
- fffff800`757b0000 fffff800`757be000 WSDScan.sys
- fffff800`6e6e0000 fffff800`6e6ef000 dump_storpor
- fffff800`6e720000 fffff800`6e748000 dump_stornvm
- fffff800`6e770000 fffff800`6e78e000 dump_dumpfve
- fffff800`6e570000 fffff800`6e58e000 dam.sys
- fffff800`5b1d0000 fffff800`5b1e1000 WdBoot.sys
- fffff800`5c220000 fffff800`5c231000 hwpolicy.sys
- ====================== Dump #4: BIOS INFORMATION =======================
- [SMBIOS Data Tables v2.8]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4658 bytes]
- [BIOS Information (Type 0) - Length 26 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version A.50
- BIOS Starting Address Segment f000
- BIOS Release Date 03/26/2019
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 13
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Micro-Star International Co., Ltd.
- Product Name MS-7B17
- Version 2.0
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Micro-Star International Co., Ltd.
- Product MPG Z390 GAMING EDGE AC (MS-7B17)
- Version 2.0
- Feature Flags 09h
- -401230112: - -401230064: - ÷7!ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Micro-Star International Co., Ltd.
- Chassis Type Desktop
- Version 2.0
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [OEM Strings (Type 11) - Length 5 - Handle 0021h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0022h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0039h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003ah]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003bh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003ch]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003dh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 003eh]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0039h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0200h - 512K
- Installed Size 0200h - 512K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0800h - 2048K
- Installed Size 0800h - 2048K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 3000h - 12288K
- Installed Size 3000h - 12288K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID ed060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
- Processor Voltage 8ah - 1.0V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3600MHz
- Status Enabled Populated
- Processor Upgrade Specification Reserved
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 003ah
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 003bh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0049h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 003ch
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004ah]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 003dh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #4: Extra #1 ===========================
- 6: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #4: Extra #2 ===========================
- 6: kd> !thread
- THREAD ffffd608973e9080 Cid 2598.2b00 Teb: 0000000000bce000 Win32Thread: ffffd60896e2ccc0 RUNNING on processor 6
- Not impersonating
- GetUlongFromAddress: unable to read from fffff8005682ca14
- Owning Process ffffd60896c6e080 Image: explorer.exe
- Attached Process N/A Image: N/A
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 1194
- Context Switch Count 498 IdealProcessor: 4
- ReadMemory error: Cannot get nt!KeMaximumIncrement value.
- UserTime 00:00:00.000
- KernelTime 00:00:00.000
- Win32 Start Address 0x00007ff8ef17dc30
- Stack Init ffffbd810facfb90 Current ffffbd810faceb80
- Base ffffbd810fad0000 Limit ffffbd810fac9000 Call 0000000000000000
- Priority 9 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
- Child-SP RetAddr : Args to Child : Call Site
- ffffbd81`0facf5c8 fffff800`565ecf22 : 00000000`00000050 fffff804`56824a4c 00000000`00000000 ffffbd81`0facf870 : nt!KeBugCheckEx
- ffffbd81`0facf5d0 fffff800`5645873f : ffffd608`973e9080 00000000`00000000 00000000`00000000 fffff804`56824a4c : nt!MiSystemFault+0x1c5ae2
- ffffbd81`0facf6d0 fffff800`565d041e : ffff9589`5684e170 00000000`00000000 00000000`00000002 00000000`00000000 : nt!MmAccessFault+0x34f
- ffffbd81`0facf870 fffff800`565d3acd : ffffd608`973e9080 00000000`0e80df38 ffffbd81`0facfa18 00000000`00000000 : nt!KiPageFault+0x35e (TrapFrame @ ffffbd81`0facf870)
- ffffbd81`0facfa00 00007ff8`efb3c494 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceRepeat+0x39 (TrapFrame @ ffffbd81`0facfa00)
- 00000000`0e80c808 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff8`efb3c494
- ========================================================================
- ======================= Dump #5: ANALYZE VERBOSE =======================
- ====================== File: 061820-10250-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 18362 MP (8 procs) Free x64
- Kernel base = 0xfffff801`3bc00000 PsLoadedModuleList = 0xfffff801`3c048190
- Debug session time: Thu Jun 18 23:48:06.363 2020 (UTC - 4:00)
- System Uptime: 0 days 0:02:05.096
- BugCheck 133, {1, 1e00, fffff8013c173358, 0}
- *************************************************************************
- *** Either you specified an unqualified symbol, or your debugger ***
- .... Snipped by GM.
- *************************************************************************
- Probably caused by : memory_corruption
- Followup: memory_corruption
- DPC_WATCHDOG_VIOLATION (133)
- The DPC watchdog detected a prolonged run time at an IRQL of DISPATCH_LEVEL
- or above.
- Arguments:
- Arg1: 0000000000000001, The system cumulatively spent an extended period of time at
- DISPATCH_LEVEL or above. The offending component can usually be
- identified with a stack trace.
- Arg2: 0000000000001e00, The watchdog period.
- Arg3: fffff8013c173358
- Arg4: 0000000000000000
- Debugging Details:
- *************************************************************************
- *** Either you specified an unqualified symbol, or your debugger ***
- .... Snipped by GM.
- *************************************************************************
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- DPC_TIMEOUT_TYPE: DPC_QUEUE_EXECUTION_TIMEOUT_EXCEEDED
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x133
- PROCESS_NAME: System
- CURRENT_IRQL: d
- LAST_CONTROL_TRANSFER: from fffff8013bdfcb6b to fffff8013bdc23a0
- STACK_TEXT:
- ffffbf01`98ba5b08 fffff801`3bdfcb6b : 00000000`00000133 00000000`00000001 00000000`00001e00 fffff801`3c173358 : nt!KeBugCheckEx
- ffffbf01`98ba5b10 fffff801`3bc48637 : 00000071`a4851aa6 ffffbf01`98b86180 00000000`00000286 ffff8c08`ecb42090 : nt!KeAccumulateTicks+0x1b136b
- ffffbf01`98ba5b70 fffff801`3c6ba291 : 00000000`00000000 ffff9809`e30d6b00 ffff8c08`ecb42110 ffff9809`e30d6bb0 : nt!KeClockInterruptNotify+0xc07
- ffffbf01`98ba5f30 fffff801`3bd37385 : ffff9809`e30d6b00 fffff801`3bd1b7a7 00000000`00000000 00000000`00000000 : hal!HalpTimerClockIpiRoutine+0x21
- ffffbf01`98ba5f60 fffff801`3bdc3e2a : ffff8c08`ecb42110 ffff9809`e30d6b00 00000000`0064c3ef ffff9809`e30d6b00 : nt!KiCallInterruptServiceRoutine+0xa5
- ffffbf01`98ba5fb0 fffff801`3bdc4397 : 00000000`e1f6f6e9 ffff8c08`ecb42110 ffff9809`e30d6b00 00000000`00000000 : nt!KiInterruptSubDispatchNoLockNoEtw+0xfa
- ffff8c08`ecb42090 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiInterruptDispatchNoLockNoEtw+0x37
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8013bc35be3-fffff8013bc35be5 3 bytes - nt!MiGetPdeAddress+f
- [ 40 fb f6:c0 c2 85 ]
- fffff8013bc35c39 - nt!MiUnlockVa+25 (+0x56)
- [ f6:85 ]
- fffff8013bc35c64 - nt!MiUnlockVa+50 (+0x2b)
- [ fa:86 ]
- fffff8013bc35cc4 - nt!MiFillHyperPtes+44 (+0x60)
- [ f6:85 ]
- fffff8013bc48fb6-fffff8013bc48fb8 3 bytes - nt!MiFillSystemPtes+366 (+0x132f2)
- [ 7f fb f6:ff c2 85 ]
- fffff8013bc48ff3 - nt!MiFillSystemPtes+3a3 (+0x3d)
- [ f6:85 ]
- fffff8013bc49293-fffff8013bc49297 5 bytes - nt!MiReservePtes+a3 (+0x2a0)
- [ d0 be 7d fb f6:b0 70 e1 c2 85 ]
- fffff8013bc4929d-fffff8013bc492a1 5 bytes - nt!MiReservePtes+ad (+0x0a)
- [ d7 be 7d fb f6:b7 70 e1 c2 85 ]
- fffff8013bc54261 - nt!MiQueryAddressState+91 (+0xafc4)
- [ f6:85 ]
- fffff8013bc5ce09 - nt!MiAddWorkingSetEntries+449 (+0x8ba8)
- [ f6:85 ]
- fffff8013bc5ce0f-fffff8013bc5ce13 5 bytes - nt!MiAddWorkingSetEntries+44f (+0x06)
- [ d0 be 7d fb f6:b0 70 e1 c2 85 ]
- fffff8013bc5ce1b-fffff8013bc5ce1d 3 bytes - nt!MiAddWorkingSetEntries+45b (+0x0c)
- [ 40 fb f6:c0 c2 85 ]
- fffff8013bc5ce53 - nt!MiAddWorkingSetEntries+493 (+0x38)
- [ f6:85 ]
- fffff8013bcbe994-fffff8013bcbe995 2 bytes - nt!KiUnstackDetachProcess+1d4 (+0x61b41)
- [ 48 ff:4c 8b ]
- fffff8013bcbe99b-fffff8013bcbe99e 4 bytes - nt!KiUnstackDetachProcess+1db (+0x07)
- [ 0f 1f 44 00:e8 80 b7 9f ]
- fffff8013bcc7ed6-fffff8013bcc7ed7 2 bytes - nt!EtwpGetSystemTime+66 (+0x953b)
- [ 48 ff:4c 8b ]
- fffff8013bcc7edd-fffff8013bcc7ee0 4 bytes - nt!EtwpGetSystemTime+6d (+0x07)
- [ 0f 1f 44 00:e8 8e 09 9f ]
- fffff8013bd0c246-fffff8013bd0c247 2 bytes - nt!EtwpGetPerfCounter+6 (+0x44369)
- [ 48 ff:4c 8b ]
- fffff8013bd0c24d-fffff8013bd0c250 4 bytes - nt!EtwpGetPerfCounter+d (+0x07)
- [ 0f 1f 44 00:e8 1e c6 9a ]
- fffff8013bdc3ef8-fffff8013bdc3ef9 2 bytes - nt!KiInterruptDispatch+b8 (+0xb7cab)
- [ 48 ff:4c 8b ]
- fffff8013bdc3eff-fffff8013bdc3f02 4 bytes - nt!KiInterruptDispatch+bf (+0x07)
- [ 0f 1f 44 00:e8 1c 62 8f ]
- fffff8013bdc4418-fffff8013bdc4419 2 bytes - nt!KiInterruptDispatchNoLockNoEtw+b8 (+0x519)
- [ 48 ff:4c 8b ]
- fffff8013bdc441f-fffff8013bdc4422 4 bytes - nt!KiInterruptDispatchNoLockNoEtw+bf (+0x07)
- [ 0f 1f 44 00:e8 fc 5c 8f ]
- 61 errors : !nt (fffff8013bc35be3-fffff8013bdc4422)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-06-19T03:48:06.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #5: 3RD PARTY DRIVERS ======================
- Apr 11 2013 - Tpkd.sys - InterLok driver or PACE Anti-Piracy driver
- Jun 13 2016 - LGBusEnum.sys - Logitech GamePanel Virtual Bus Enumerator driver http://support.logitech.com/
- Jun 13 2016 - LGJoyXlCore.sys - Logitech Gaming Software driver http://support.logitech.com/
- Jul 20 2017 - SteamStreamingSpeakers.sys - Steam Streaming Speakers driver (Valve Corporation)
- Jul 28 2017 - SteamStreamingMicrophone.sys - Steam Streaming Microphone driver (Valve Corporation)
- Oct 04 2018 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Jan 21 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- May 14 2019 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Jun 27 2019 - FocusriteUSBSwRoot.sys - Focusrite Audio Engineering driver
- Sep 01 2019 - Netwtw08.sys - Intel(R) Wireless Networking driver
- Oct 14 2019 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- Dec 03 2019 - cfosspeed6.sys - cFosSpeed driver (cFos Software)
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ================== Dump #5: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\System32\Drivers\Tpkd.sys
- Image name: Tpkd.sys
- Search : https://www.google.com/search?q=Tpkd.sys
- ADA Info : InterLok driver or PACE Anti-Piracy driver
- Timestamp : Thu Apr 11 2013
- Image path: \SystemRoot\system32\drivers\LGBusEnum.sys
- Image name: LGBusEnum.sys
- Search : https://www.google.com/search?q=LGBusEnum.sys
- ADA Info : Logitech GamePanel Virtual Bus Enumerator driver http://support.logitech.com/
- Timestamp : Mon Jun 13 2016
- Image path: \SystemRoot\system32\drivers\LGJoyXlCore.sys
- Image name: LGJoyXlCore.sys
- Search : https://www.google.com/search?q=LGJoyXlCore.sys
- ADA Info : Logitech Gaming Software driver http://support.logitech.com/
- Timestamp : Mon Jun 13 2016
- Image path: \SystemRoot\system32\drivers\SteamStreamingSpeakers.sys
- Image name: SteamStreamingSpeakers.sys
- Search : https://www.google.com/search?q=SteamStreamingSpeakers.sys
- ADA Info : Steam Streaming Speakers driver (Valve Corporation)
- Timestamp : Thu Jul 20 2017
- Image path: \SystemRoot\system32\drivers\SteamStreamingMicrophone.sys
- Image name: SteamStreamingMicrophone.sys
- Search : https://www.google.com/search?q=SteamStreamingMicrophone.sys
- ADA Info : Steam Streaming Microphone driver (Valve Corporation)
- Timestamp : Fri Jul 28 2017
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_691712a04a41c1cd\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Thu Oct 4 2018
- Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Mon Jan 21 2019
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Tue May 14 2019
- Image path: \SystemRoot\System32\drivers\FocusriteUSBSwRoot.sys
- Image name: FocusriteUSBSwRoot.sys
- Search : https://www.google.com/search?q=FocusriteUSBSwRoot.sys
- ADA Info : Focusrite Audio Engineering driver
- Timestamp : Thu Jun 27 2019
- Image path: \SystemRoot\System32\drivers\Netwtw08.sys
- Image name: Netwtw08.sys
- Search : https://www.google.com/search?q=Netwtw08.sys
- ADA Info : Intel(R) Wireless Networking driver
- Timestamp : Sun Sep 1 2019
- Image path: \??\C:\Windows\system32\drivers\ene.sys
- Image name: ene.sys
- Search : https://www.google.com/search?q=ene.sys
- ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
- Timestamp : Mon Oct 14 2019
- Image path: \SystemRoot\system32\DRIVERS\cfosspeed6.sys
- Image name: cfosspeed6.sys
- Search : https://www.google.com/search?q=cfosspeed6.sys
- ADA Info : cFosSpeed driver (cFos Software)
- Timestamp : Tue Dec 3 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- ====================== Dump #5: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- acpitime.sys ACPI Wake Alarm (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpstorport.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_stornvme.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- MpKslDrv.sys Microsoft Anti-malware Protection driver
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- stornvme.sys NVM Express Storport Miniport driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwifibus.sys Virtual Wireless Bus driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- wdiwifi.sys WDI Driver Framework driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- ====================== Dump #5: UNLOADED MODULES =======================
- fffff801`52700000 fffff801`5271e000 dam.sys
- fffff801`3eb60000 fffff801`3eb71000 WdBoot.sys
- fffff801`3fbb0000 fffff801`3fbc1000 hwpolicy.sys
- ====================== Dump #5: BIOS INFORMATION =======================
- [SMBIOS Data Tables v2.8]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4658 bytes]
- [BIOS Information (Type 0) - Length 26 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version A.50
- BIOS Starting Address Segment f000
- BIOS Release Date 03/26/2019
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 13
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Micro-Star International Co., Ltd.
- Product Name MS-7B17
- Version 2.0
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber Default string
- Family Default string
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Micro-Star International Co., Ltd.
- Product MPG Z390 GAMING EDGE AC (MS-7B17)
- Version 2.0
- Feature Flags 09h
- -401230112: - -401230064: - ÷7!ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Micro-Star International Co., Ltd.
- Chassis Type Desktop
- Version 2.0
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [OEM Strings (Type 11) - Length 5 - Handle 0021h]
- Number of Strings 1
- 1 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0022h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0039h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 003ah]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM0
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003bh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003ch]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM0
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Device (Type 17) - Length 40 - Handle 003dh]
- Physical Memory Array Handle 0039h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 3200MHz
- Manufacturer 029E
- Part Number CMW16GX4M2C3200C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 003eh]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0039h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0043h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0200h - 512K
- Installed Size 0200h - 512K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0044h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0800h - 2048K
- Installed Size 0800h - 2048K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0045h]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 3000h - 12288K
- Installed Size 3000h - 12288K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [Processor Information (Type 4) - Length 48 - Handle 0046h]
- Socket Designation U3E1
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID ed060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
- Processor Voltage 8ah - 1.0V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3564MHz
- Status Enabled Populated
- Processor Upgrade Specification Reserved
- L1 Cache Handle 0043h
- L2 Cache Handle 0044h
- L3 Cache Handle 0045h
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 003ah
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0048h]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 003bh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0049h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 003ch
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004ah]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 003dh
- Mem Array Mapped Adr Handle 003eh
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #5: Extra #1 ===========================
- 6: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #5: Extra #2 ===========================
- 6: kd> !thread
- THREAD ffff9809e3198080 Cid 0004.0130 Teb: 0000000000000000 Win32Thread: 0000000000000000 RUNNING on processor 6
- Not impersonating
- GetUlongFromAddress: unable to read from fffff8013c02ca14
- Owning Process ffff9809e30ac040 Image: System
- Attached Process N/A Image: N/A
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 326 Ticks: 7680
- Context Switch Count 1866 IdealProcessor: 6
- ReadMemory error: Cannot get nt!KeMaximumIncrement value.
- UserTime 00:00:00.000
- KernelTime 00:00:00.000
- Win32 Start Address nt!ExpWorkerThread (0xfffff8013bc83840)
- Stack Init ffff8c08ecb42b90 Current ffff8c08ecb42490
- Base ffff8c08ecb43000 Limit ffff8c08ecb3c000 Call 0000000000000000
- Priority 12 BasePriority 12 PriorityDecrement 0 IoPriority 2 PagePriority 5
- Child-SP RetAddr : Args to Child : Call Site
- ffffbf01`98ba5b08 fffff801`3bdfcb6b : 00000000`00000133 00000000`00000001 00000000`00001e00 fffff801`3c173358 : nt!KeBugCheckEx
- ffffbf01`98ba5b10 fffff801`3bc48637 : 00000071`a4851aa6 ffffbf01`98b86180 00000000`00000286 ffff8c08`ecb42090 : nt!KeAccumulateTicks+0x1b136b
- ffffbf01`98ba5b70 fffff801`3c6ba291 : 00000000`00000000 ffff9809`e30d6b00 ffff8c08`ecb42110 ffff9809`e30d6bb0 : nt!KeClockInterruptNotify+0xc07
- ffffbf01`98ba5f30 fffff801`3bd37385 : ffff9809`e30d6b00 fffff801`3bd1b7a7 00000000`00000000 00000000`00000000 : hal!HalpTimerClockIpiRoutine+0x21
- ffffbf01`98ba5f60 fffff801`3bdc3e2a : ffff8c08`ecb42110 ffff9809`e30d6b00 00000000`0064c3ef ffff9809`e30d6b00 : nt!KiCallInterruptServiceRoutine+0xa5
- ffffbf01`98ba5fb0 fffff801`3bdc4397 : 00000000`e1f6f6e9 ffff8c08`ecb42110 ffff9809`e30d6b00 00000000`00000000 : nt!KiInterruptSubDispatchNoLockNoEtw+0xfa (TrapFrame @ ffffbf01`98ba5e70)
- ffff8c08`ecb42090 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiInterruptDispatchNoLockNoEtw+0x37 (TrapFrame @ ffff8c08`ecb42090)
Add Comment
Please, Sign In to add comment