Advertisement
Guest User

Untitled

a guest
Jul 30th, 2020
86
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 35.83 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 00 minutes and 51 seconds
  5.  
  6. ================================ SYSTEM ================================
  7. MANUFACTURER: Micro-Star International Co., Ltd
  8. PRODUCT_NAME: MS-7C02
  9. VERSION: 1.0
  10.  
  11. ================================= BIOS =================================
  12. VENDOR: American Megatrends Inc.
  13. VERSION: 1.70
  14. DATE: 03/06/2019
  15.  
  16. ============================= MOTHERBOARD ==============================
  17. MANUFACTURER: Micro-Star International Co., Ltd
  18. PRODUCT: B450 TOMAHAWK (MS-7C02)
  19. VERSION: 1.0
  20.  
  21. ================================= RAM ==================================
  22. Size Speed Manufacturer Part No.
  23. -------------- -------------- ------------------- ----------------------
  24. 3000MHz Unknown Unknown
  25. 16384MB 3000MHz Unknown CMK32GX4M2B3000C15
  26. 3000MHz Unknown Unknown
  27. 16384MB 3000MHz Unknown CMK32GX4M2B3000C15
  28.  
  29. ================================= CPU ==================================
  30. Processor Version: AMD Ryzen 5 2600X Six-Core Processor
  31. COUNT: c
  32. MHZ: 4050
  33. VENDOR: AuthenticAMD
  34. FAMILY: 17
  35. MODEL: 8
  36. STEPPING: 2
  37.  
  38. ================================== OS ==================================
  39. Product: WinNt, suite: TerminalServer SingleUserTS
  40. Built by: 18362.1.amd64fre.19h1_release.190318-1202
  41. BUILD_VERSION: 10.0.18362.959 (WinBuild.160101.0800)
  42. BUILD: 18362
  43. SERVICEPACK: 959
  44. PLATFORM_TYPE: x64
  45. NAME: Windows 10
  46. EDITION: Windows 10 WinNt TerminalServer SingleUserTS
  47. BUILD_TIMESTAMP: unknown_date
  48. BUILDDATESTAMP: 160101.0800
  49. BUILDLAB: WinBuild
  50. BUILDOSVER: 10.0.18362.959
  51.  
  52. =============================== DEBUGGER ===============================
  53. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  54. Copyright (c) Microsoft Corporation. All rights reserved.
  55.  
  56. =============================== COMMENTS ===============================
  57. * Information gathered from different dump files may be different. If
  58. Windows updates between two dump files, two or more OS versions may
  59. be shown above.
  60. * If the user updates the BIOS between dump files, two or more versions
  61. and dates may be shown above.
  62. * More RAM information can be found below in a full BIOS section.
  63.  
  64. ========================================================================
  65. ======================= Dump #1: ANALYZE VERBOSE =======================
  66. ====================== File: 072720-193906-01.dmp ======================
  67. ========================================================================
  68.  
  69. Mini Kernel Dump File: Only registers and stack trace are available
  70. Windows 10 Kernel Version 18362 MP (12 procs) Free x64
  71. Kernel base = 0xfffff803`53800000 PsLoadedModuleList = 0xfffff803`53c48190
  72. Debug session time: Mon Jul 27 10:56:22.863 2020 (UTC - 4:00)
  73. System Uptime: 0 days 0:01:32.547
  74.  
  75. BugCheck EF, {ffffc78e7aac0400, 0, 0, 0}
  76. Probably caused by : memory_corruption
  77. Followup: memory_corruption
  78.  
  79. CRITICAL_PROCESS_DIED (ef)
  80. A critical system process died
  81.  
  82. Arguments:
  83. Arg1: ffffc78e7aac0400, Process object or thread object
  84. Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
  85. Arg3: 0000000000000000
  86. Arg4: 0000000000000000
  87.  
  88. Debugging Details:
  89. DUMP_CLASS: 1
  90. DUMP_QUALIFIER: 400
  91. DUMP_TYPE: 2
  92.  
  93. PROCESS_NAME: services.exe
  94.  
  95. CRITICAL_PROCESS: services.exe
  96. EXCEPTION_RECORD: fffffafd7ebf5000 -- (.exr 0xfffffafd7ebf5000)
  97. ExceptionAddress: 0000000000000000
  98. ExceptionCode: c0479867
  99. ExceptionFlags: 0a000007
  100. NumberParameters: 0
  101. EXCEPTION_CODE: (NTSTATUS) 0xc0479867 - <Unable to get error code text>
  102. ERROR_CODE: (NTSTATUS) 0xc0479867 - <Unable to get error code text>
  103. CUSTOMER_CRASH_COUNT: 1
  104. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  105. BUGCHECK_STR: 0xEF
  106. CURRENT_IRQL: 0
  107. EXCEPTION_CODE_STR: c0479867
  108. TRAP_FRAME: ffff800000000000 -- (.trap 0xffff800000000000)
  109. Unable to read trap frame at ffff8000`00000000
  110. LAST_CONTROL_TRANSFER: from fffff803540cba59 to fffff803539c23c0
  111. STACK_TEXT:
  112. ffffc30e`cdecad98 fffff803`540cba59 : 00000000`000000ef ffffc78e`7aac0400 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
  113. ffffc30e`cdecada0 fffff803`53fcb59d : ffffc78e`7aac0400 fffff803`538d6c55 ffffc78e`7aac0400 fffff803`538d6cd0 : nt!PspCatchCriticalBreak+0x115
  114. ffffc30e`cdecae40 fffff803`53e5c7c0 : ffffc78e`00000000 00000000`00000000 ffffc78e`7aac0400 ffffc78e`7aac0400 : nt!PspTerminateAllThreads+0x16d431
  115. ffffc30e`cdecaeb0 fffff803`53e5c3e9 : ffffffff`ffffffff ffffc30e`cdecafe0 ffffc78e`7aac0400 00000000`00000000 : nt!PspTerminateProcess+0xe0
  116. ffffc30e`cdecaef0 fffff803`539d3c18 : 00000000`00000334 ffffc78e`7be88040 ffffc78e`7aac0400 ffffc30e`cdecb130 : nt!NtTerminateProcess+0xa9
  117. ffffc30e`cdecaf60 fffff803`539c61e0 : fffff803`53a1a08a ffffc30e`cdecba58 ffffc30e`cdecba58 ffffc30e`cdecb130 : nt!KiSystemServiceCopyEnd+0x28
  118. ffffc30e`cdecb0f8 fffff803`53a1a08a : ffffc30e`cdecba58 ffffc30e`cdecba58 ffffc30e`cdecb130 00000000`00000000 : nt!KiServiceLinkage
  119. ffffc30e`cdecb100 fffff803`539d431d : fffffafd`7ebf5000 ffffc30e`cdecbb00 ffff8000`00000000 000000b0`68180000 : nt!KiDispatchException+0x18c3ea
  120. ffffc30e`cdecb920 fffff803`539d0503 : ffffc78e`7be88040 00000269`57609940 00000000`00000000 00000269`5762d0b0 : nt!KiExceptionDispatch+0x11d
  121. ffffc30e`cdecbb00 00007fff`614410e7 : 00000000`0010000b 00000000`00000010 00007fff`6140a0dc 00000000`00000000 : nt!KiPageFault+0x443
  122. 000000b0`68181058 00000000`0010000b : 00000000`00000010 00007fff`6140a0dc 00000000`00000000 000000b0`68181770 : 0x00007fff`614410e7
  123. 000000b0`68181060 00000000`00000010 : 00007fff`6140a0dc 00000000`00000000 000000b0`68181770 00000000`00000000 : 0x10000b
  124. 000000b0`68181068 00007fff`6140a0dc : 00000000`00000000 000000b0`68181770 00000000`00000000 00000000`00000001 : 0x10
  125. 000000b0`68181070 00000000`00000000 : 000000b0`68181770 00000000`00000000 00000000`00000001 00000000`00000000 : 0x00007fff`6140a0dc
  126. STACK_COMMAND: kb
  127. CHKIMG_EXTENSION: !chkimg -lo 50 -d !tcpip
  128. fffff803594bf105-fffff803594bf106 2 bytes - tcpip!WfpAlepProcessInformationCleanup+15
  129. [ 48 ff:4c 8b ]
  130. fffff803594bf10c-fffff803594bf110 5 bytes - tcpip!WfpAlepProcessInformationCleanup+1c (+0x07)
  131. [ 0f 1f 44 00 00:e8 6f 1e 3e fa ]
  132. fffff803594bf156-fffff803594bf157 2 bytes - tcpip!WfpAlepProcessInformationCleanup+66 (+0x4a)
  133. [ 48 ff:4c 8b ]
  134. fffff803594bf15d-fffff803594bf161 5 bytes - tcpip!WfpAlepProcessInformationCleanup+6d (+0x07)
  135. [ 0f 1f 44 00 00:e8 de 60 43 fa ]
  136. fffff803594bf179-fffff803594bf17e 6 bytes - tcpip!WfpAlepProcessInformationCleanup+89 (+0x1c)
  137. [ ff 15 f1 55 20 00:e8 22 a1 2c 00 90 ]
  138. fffff803594bf1d5-fffff803594bf1d6 2 bytes - tcpip!WfpAlepProcessInformationCleanup+e5 (+0x5c)
  139. [ 48 ff:4c 8b ]
  140. fffff803594bf1dc-fffff803594bf1e0 5 bytes - tcpip!WfpAlepProcessInformationCleanup+ec (+0x07)
  141. [ 0f 1f 44 00 00:e8 5f 60 43 fa ]
  142. 27 errors : !tcpip (fffff803594bf105-fffff803594bf1e0)
  143. MODULE_NAME: memory_corruption
  144.  
  145. IMAGE_NAME: memory_corruption
  146.  
  147. FOLLOWUP_NAME: memory_corruption
  148. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  149. MEMORY_CORRUPTOR: LARGE
  150. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  151. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  152. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  153. TARGET_TIME: 2020-07-27T14:56:22.000Z
  154. SUITE_MASK: 272
  155. PRODUCT_TYPE: 1
  156. USER_LCID: 0
  157. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  158. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  159. Followup: memory_corruption
  160.  
  161. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  162.  
  163. Mar 14 2016 - amdgpio3.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  164. Jun 05 2017 - amdpsp.sys - Advanced Micro Devices, Inc http://support.amd.com/
  165. Apr 12 2018 - AMDPCIDev.sys - Advanced Micro Devices PCI Device driver
  166. Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
  167. Sep 29 2019 - amdgpio2.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  168. Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  169. Jan 26 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
  170. May 26 2020 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  171. Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
  172. Jul 05 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
  173.  
  174. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  175.  
  176. Image path: \SystemRoot\System32\drivers\amdgpio3.sys
  177. Image name: amdgpio3.sys
  178. Search : https://www.google.com/search?q=amdgpio3.sys
  179. ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  180. Timestamp : Mon Mar 14 2016
  181.  
  182. Image path: \SystemRoot\system32\DRIVERS\amdpsp.sys
  183. Image name: amdpsp.sys
  184. Search : https://www.google.com/search?q=amdpsp.sys
  185. ADA Info : Advanced Micro Devices, Inc http://support.amd.com/
  186. Timestamp : Mon Jun 5 2017
  187.  
  188. Image path: \SystemRoot\System32\drivers\AMDPCIDev.sys
  189. Image name: AMDPCIDev.sys
  190. Search : https://www.google.com/search?q=AMDPCIDev.sys
  191. ADA Info : Advanced Micro Devices PCI Device driver
  192. Timestamp : Thu Apr 12 2018
  193.  
  194. Image path: \SystemRoot\system32\drivers\nvvad64v.sys
  195. Image name: nvvad64v.sys
  196. Search : https://www.google.com/search?q=nvvad64v.sys
  197. ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
  198. Timestamp : Thu Mar 14 2019
  199.  
  200. Image path: \SystemRoot\System32\drivers\amdgpio2.sys
  201. Image name: amdgpio2.sys
  202. Search : https://www.google.com/search?q=amdgpio2.sys
  203. ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  204. Timestamp : Sun Sep 29 2019
  205.  
  206. Image path: \SystemRoot\System32\drivers\nvvhci.sys
  207. Image name: nvvhci.sys
  208. Search : https://www.google.com/search?q=nvvhci.sys
  209. ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  210. Timestamp : Fri Jan 10 2020
  211.  
  212. Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_0f22333f160a8f42\UcmCxUcsiNvppc.sys
  213. Image name: UcmCxUcsiNvppc.sys
  214. Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
  215. ADA Info : NVIDIA USB Type-C Port Policy Controller driver
  216. Timestamp : Sun Jan 26 2020
  217.  
  218. Image path: \SystemRoot\System32\drivers\rt640x64.sys
  219. Image name: rt640x64.sys
  220. Search : https://www.google.com/search?q=rt640x64.sys
  221. ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  222. Timestamp : Tue May 26 2020
  223.  
  224. Image path: \SystemRoot\system32\drivers\nvhda64v.sys
  225. Image name: nvhda64v.sys
  226. Search : https://www.google.com/search?q=nvhda64v.sys
  227. ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
  228. Timestamp : Tue Jun 9 2020
  229.  
  230. Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_edab19158bdd0d0a\nvlddmkm.sys
  231. Image name: nvlddmkm.sys
  232. Search : https://www.google.com/search?q=nvlddmkm.sys
  233. ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
  234. Timestamp : Sun Jul 5 2020
  235.  
  236. ====================== Dump #1: MICROSOFT DRIVERS ======================
  237.  
  238. ACPI.sys ACPI Driver for NT (Microsoft)
  239. acpiex.sys ACPIEx Driver (Microsoft)
  240. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  241. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  242. ahcache.sys Application Compatibility Cache (Microsoft)
  243. amdppm.sys Processor Device Driver
  244. bam.sys BAM Kernal driver (Microsoft)
  245. BasicDisplay.sys Basic Display driver (Microsoft)
  246. BasicRender.sys Basic Render driver (Microsoft)
  247. Beep.SYS BEEP driver (Microsoft)
  248. BOOTVID.dll VGA Boot Driver (Microsoft)
  249. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  250. cdd.dll Canonical Display Driver (Microsoft)
  251. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  252. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  253. CI.dll Code Integrity Module (Microsoft)
  254. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  255. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  256. CLFS.SYS Common Log File System Driver (Microsoft)
  257. clipsp.sys CLIP Service (Microsoft)
  258. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  259. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  260. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  261. condrv.sys Console Driver (Microsoft)
  262. crashdmp.sys Crash Dump driver (Microsoft)
  263. csc.sys Windows Client Side Caching driver (Microsoft)
  264. dfsc.sys DFS Namespace Client Driver (Microsoft)
  265. disk.sys PnP Disk Driver (Microsoft)
  266. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  267. dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  268. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  269. dump_storahci.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  270. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  271. dxgmms2.sys DirectX Graphics MMS
  272. EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
  273. exfat.SYS Extended FAT File System driver (Microsoft)
  274. fastfat.SYS Fast FAT File System Driver (Microsoft)
  275. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  276. fileinfo.sys FileInfo Filter Driver (Microsoft)
  277. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  278. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  279. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  280. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  281. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  282. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  283. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  284. HdAudio.sys High Definition Audio Function driver (Microsoft)
  285. HIDCLASS.SYS Hid Class Library (Microsoft)
  286. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  287. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  288. HTTP.sys HTTP Protocol Stack (Microsoft)
  289. intelpep.sys Intel Power Engine Plugin (Microsoft)
  290. iorate.sys I/O rate control Filter (Microsoft)
  291. kbdclass.sys Keyboard Class Driver (Microsoft)
  292. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  293. kd.dll Local Kernal Debugger (Microsoft)
  294. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  295. ks.sys Kernal CSA Library (Microsoft)
  296. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  297. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  298. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  299. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  300. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  301. mcupdate_AuthenticAMD.dll AMD Microcode Update Library (Microsoft)
  302. mmcss.sys MMCSS Driver (Microsoft)
  303. monitor.sys Monitor Driver (Microsoft)
  304. mouclass.sys Mouse Class Driver (Microsoft)
  305. mouhid.sys HID Mouse Filter Driver (Microsoft)
  306. mountmgr.sys Mount Point Manager (Microsoft)
  307. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  308. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  309. mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
  310. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  311. Msfs.SYS Mailslot driver (Microsoft)
  312. msgpioclx.sys GPIO Class Extension Driver (Microsoft)
  313. msisadrv.sys ISA Driver (Microsoft)
  314. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  315. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  316. mssecflt.sys Microsoft Security Events Component file system filter driver (Microsoft)
  317. mssmbios.sys System Management BIOS driver (Microsoft)
  318. mup.sys Multiple UNC Provider driver (Microsoft)
  319. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  320. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  321. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  322. netbios.sys NetBIOS Interface driver (Microsoft)
  323. netbt.sys MBT Transport driver (Microsoft)
  324. NETIO.SYS Network I/O Subsystem (Microsoft)
  325. Npfs.SYS NPFS driver (Microsoft)
  326. npsvctrig.sys Named pipe service triggers (Microsoft)
  327. nsiproxy.sys NSI Proxy driver (Microsoft)
  328. Ntfs.sys NT File System Driver (Microsoft)
  329. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  330. ntosext.sys NTOS Extension Host driver (Microsoft)
  331. Null.SYS NULL Driver (Microsoft)
  332. pacer.sys QoS Packet Scheduler (Microsoft)
  333. partmgr.sys Partition driver (Microsoft)
  334. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  335. pcw.sys Performance Counter Driver (Microsoft)
  336. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  337. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  338. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  339. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  340. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  341. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  342. rdyboost.sys ReadyBoost Driver (Microsoft)
  343. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  344. serenum.sys Serial Port Enumerator (Microsoft)
  345. serial.sys Serial Device Driver
  346. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  347. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  348. spaceport.sys Storage Spaces driver (Microsoft)
  349. srv.sys Server driver (Microsoft)
  350. srv2.sys Smb 2.0 Server driver (Microsoft)
  351. srvnet.sys Server Network driver (Microsoft)
  352. storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
  353. stornvme.sys NVM Express Storport Miniport driver (Microsoft)
  354. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  355. storqosflt.sys Storage QoS Filter driver (Microsoft)
  356. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  357. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  358. tcpip.sys TCP/IP Protocol driver (Microsoft)
  359. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  360. TDI.SYS TDI Wrapper driver (Microsoft)
  361. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  362. tm.sys Kernel Transaction Manager driver (Microsoft)
  363. UcmCx.sys USB Connector Manager KMDF Class Extension
  364. ucx01000.sys USB Controller Extension (Microsoft)
  365. UEFI.sys UEFI NT driver (Microsoft)
  366. umbus.sys User-Mode Bus Enumerator (Microsoft)
  367. usbaudio.sys USB Audio Class Driver (Microsoft)
  368. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  369. USBD.SYS Universal Serial Bus Driver (Microsoft)
  370. UsbHub3.sys USB3 HUB driver (Microsoft)
  371. USBSTOR.SYS USB Mass Storage Class driver (Microsoft)
  372. USBXHCI.SYS USB XHCI driver (Microsoft)
  373. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  374. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  375. volmgr.sys Volume Manager Driver (Microsoft)
  376. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  377. volsnap.sys Volume Shadow Copy driver (Microsoft)
  378. volume.sys Volume driver (Microsoft)
  379. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  380. watchdog.sys Watchdog driver (Microsoft)
  381. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  382. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  383. WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
  384. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  385. WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
  386. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  387. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  388. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  389. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  390. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  391. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  392. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  393. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  394. winquic.sys QUIC Transport Protocol driver (Microsoft)
  395. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  396. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  397. Wof.sys Windows Overlay Filter (Microsoft)
  398. WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
  399. WppRecorder.sys WPP Trace Recorder (Microsoft)
  400. WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
  401.  
  402. ====================== Dump #1: UNLOADED MODULES =======================
  403.  
  404. fffff803`62ed0000 fffff803`62edf000 hiber_storpo
  405. fffff803`62f10000 fffff803`62f38000 hiber_stornv
  406. fffff803`62f40000 fffff803`62f5e000 hiber_dumpfv
  407. fffff803`65b60000 fffff803`65b6e000 WSDScan.sys
  408. fffff803`65b50000 fffff803`65b5e000 WSDPrint.sys
  409. fffff803`62bb0000 fffff803`62bbf000 dump_storpor
  410. fffff803`62000000 fffff803`6202f000 dump_storahc
  411. fffff803`62050000 fffff803`6206e000 dump_dumpfve
  412. fffff803`62aa0000 fffff803`62af1000 WUDFRd.sys
  413. fffff803`628c0000 fffff803`628de000 dam.sys
  414. fffff803`589d0000 fffff803`589e1000 WdBoot.sys
  415. fffff803`59a30000 fffff803`59a41000 hwpolicy.sys
  416.  
  417. ====================== Dump #1: BIOS INFORMATION =======================
  418.  
  419. [SMBIOS Data Tables v2.8]
  420. [DMI Version - 0]
  421. [2.0 Calling Convention - No]
  422. [Table Size - 2479 bytes]
  423. [BIOS Information (Type 0) - Length 26 - Handle 0000h]
  424. Vendor American Megatrends Inc.
  425. BIOS Version 1.70
  426. BIOS Starting Address Segment f000
  427. BIOS Release Date 03/06/2019
  428. BIOS ROM Size 1000000
  429. BIOS Characteristics
  430. 07: - PCI Supported
  431. 11: - Upgradeable FLASH BIOS
  432. 12: - BIOS Shadowing Supported
  433. 15: - CD-Boot Supported
  434. 16: - Selectable Boot Supported
  435. 17: - BIOS ROM Socketed
  436. 19: - EDD Supported
  437. 23: - 1.2MB Floppy Supported
  438. 24: - 720KB Floppy Supported
  439. 25: - 2.88MB Floppy Supported
  440. 26: - Print Screen Device Supported
  441. 27: - Keyboard Services Supported
  442. 28: - Serial Services Supported
  443. 29: - Printer Services Supported
  444. 32: - BIOS Vendor Reserved
  445. BIOS Characteristic Extensions
  446. 00: - ACPI Supported
  447. 01: - USB Legacy Supported
  448. 08: - BIOS Boot Specification Supported
  449. 10: - Specification Reserved
  450. 11: - Specification Reserved
  451. BIOS Major Revision 5
  452. BIOS Minor Revision 14
  453. EC Firmware Major Revision 255
  454. EC Firmware Minor Revision 255
  455. [System Information (Type 1) - Length 27 - Handle 0001h]
  456. Manufacturer Micro-Star International Co., Ltd
  457. Product Name MS-7C02
  458. Version 1.0
  459. UUID 00000000-0000-0000-0000-000000000000
  460. Wakeup Type Power Switch
  461. [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
  462. Manufacturer Micro-Star International Co., Ltd
  463. Product B450 TOMAHAWK (MS-7C02)
  464. Version 1.0
  465. Feature Flags 09h
  466. -1003047200: - -1003047152: - «ÿú
  467. Chassis Handle 0003h
  468. Board Type 0ah - Processor/Memory Module
  469. Number of Child Handles 0
  470. [System Enclosure (Type 3) - Length 22 - Handle 0003h]
  471. Manufacturer Micro-Star International Co., Ltd
  472. Chassis Type Desktop
  473. Version 1.0
  474. Bootup State Safe
  475. Power Supply State Safe
  476. Thermal State Safe
  477. Security Status None
  478. OEM Defined 0
  479. Height 0U
  480. Number of Power Cords 1
  481. Number of Contained Elements 0
  482. Contained Element Size 3
  483. [OEM Strings (Type 11) - Length 5 - Handle 000bh]
  484. Number of Strings 1
  485. [System Configuration Options (Type 12) - Length 5 - Handle 000ch]
  486. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 000eh]
  487. [Physical Memory Array (Type 16) - Length 23 - Handle 000fh]
  488. Location 03h - SystemBoard/Motherboard
  489. Use 03h - System Memory
  490. Memory Error Correction 03h - None
  491. Maximum Capacity 268435456KB
  492. Memory Error Inf Handle 000eh
  493. Number of Memory Devices 4
  494. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0010h]
  495. Starting Address 00000000h
  496. Ending Address 01ffffffh
  497. Memory Array Handle 000fh
  498. Partition Width 02
  499. [Cache Information (Type 7) - Length 19 - Handle 0011h]
  500. Socket Designation L1 - Cache
  501. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  502. Maximum Cache Size 0240h - 576K
  503. Installed Size 0240h - 576K
  504. Supported SRAM Type 0010h - Pipeline-Burst
  505. Current SRAM Type 0010h - Pipeline-Burst
  506. Cache Speed 1ns
  507. Error Correction Type Specification Reserved
  508. System Cache Type Unified
  509. Associativity 8-way Set-Associative
  510. [Cache Information (Type 7) - Length 19 - Handle 0012h]
  511. Socket Designation L2 - Cache
  512. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  513. Maximum Cache Size 0c00h - 3072K
  514. Installed Size 0c00h - 3072K
  515. Supported SRAM Type 0010h - Pipeline-Burst
  516. Current SRAM Type 0010h - Pipeline-Burst
  517. Cache Speed 1ns
  518. Error Correction Type Specification Reserved
  519. System Cache Type Unified
  520. Associativity 8-way Set-Associative
  521. [Cache Information (Type 7) - Length 19 - Handle 0013h]
  522. Socket Designation L3 - Cache
  523. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  524. Maximum Cache Size 4000h - 16384K
  525. Installed Size 4000h - 16384K
  526. Supported SRAM Type 0010h - Pipeline-Burst
  527. Current SRAM Type 0010h - Pipeline-Burst
  528. Cache Speed 1ns
  529. Error Correction Type Specification Reserved
  530. System Cache Type Unified
  531. Associativity 16-way Set-Associative
  532. [Processor Information (Type 4) - Length 48 - Handle 0014h]
  533. Socket Designation AM4
  534. Processor Type Central Processor
  535. Processor Family 6bh - Specification Reserved
  536. Processor Manufacturer Advanced Micro Devices, Inc.
  537. Processor ID 820f8000fffb8b17
  538. Processor Version AMD Ryzen 5 2600X Six-Core Processor
  539. Processor Voltage 8dh - 1.3V
  540. External Clock 100MHz
  541. Max Speed 4250MHz
  542. Current Speed 4050MHz
  543. Status Enabled Populated
  544. Processor Upgrade Specification Reserved
  545. L1 Cache Handle 0011h
  546. L2 Cache Handle 0012h
  547. L3 Cache Handle 0013h
  548. Part Number Unknown
  549. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0015h]
  550. [Memory Device (Type 17) - Length 40 - Handle 0016h]
  551. Physical Memory Array Handle 000fh
  552. Memory Error Info Handle 0015h
  553. Form Factor 02h - Unknown
  554. Device Locator DIMM 0
  555. Bank Locator P0 CHANNEL A
  556. Memory Type 02h - Unknown
  557. Type Detail 0004h - Unknown
  558. Speed 3000MHz
  559. Manufacturer Unknown
  560. Part Number Unknown
  561. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0017h]
  562. [Memory Device (Type 17) - Length 40 - Handle 0018h]
  563. Physical Memory Array Handle 000fh
  564. Memory Error Info Handle 0017h
  565. Total Width 64 bits
  566. Data Width 64 bits
  567. Size 16384MB
  568. Form Factor 09h - DIMM
  569. Device Locator DIMM 1
  570. Bank Locator P0 CHANNEL A
  571. Memory Type 1ah - Specification Reserved
  572. Type Detail 4080h - Synchronous
  573. Speed 3000MHz
  574. Manufacturer Unknown
  575. Part Number CMK32GX4M2B3000C15
  576. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0019h]
  577. Starting Address 00000000h
  578. Ending Address 01ffffffh
  579. Memory Device Handle 0018h
  580. Mem Array Mapped Adr Handle 0010h
  581. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 001ah]
  582. [Memory Device (Type 17) - Length 40 - Handle 001bh]
  583. Physical Memory Array Handle 000fh
  584. Memory Error Info Handle 001ah
  585. Form Factor 02h - Unknown
  586. Device Locator DIMM 0
  587. Bank Locator P0 CHANNEL B
  588. Memory Type 02h - Unknown
  589. Type Detail 0004h - Unknown
  590. Speed 3000MHz
  591. Manufacturer Unknown
  592. Part Number Unknown
  593. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 001ch]
  594. [Memory Device (Type 17) - Length 40 - Handle 001dh]
  595. Physical Memory Array Handle 000fh
  596. Memory Error Info Handle 001ch
  597. Total Width 64 bits
  598. Data Width 64 bits
  599. Size 16384MB
  600. Form Factor 09h - DIMM
  601. Device Locator DIMM 1
  602. Bank Locator P0 CHANNEL B
  603. Memory Type 1ah - Specification Reserved
  604. Type Detail 4080h - Synchronous
  605. Speed 3000MHz
  606. Manufacturer Unknown
  607. Part Number CMK32GX4M2B3000C15
  608. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 001eh]
  609. Starting Address 00000000h
  610. Ending Address 01ffffffh
  611. Memory Device Handle 001dh
  612. Mem Array Mapped Adr Handle 0010h
  613.  
  614. ========================== Dump #1: Extra #1 ===========================
  615.  
  616. 10: kd> !verifier
  617. Verify Flags Level 0x00000000
  618. STANDARD FLAGS:
  619. [X] (0x00000000) Automatic Checks
  620. [ ] (0x00000001) Special pool
  621. [ ] (0x00000002) Force IRQL checking
  622. [ ] (0x00000008) Pool tracking
  623. [ ] (0x00000010) I/O verification
  624. [ ] (0x00000020) Deadlock detection
  625. [ ] (0x00000080) DMA checking
  626. [ ] (0x00000100) Security checks
  627. [ ] (0x00000800) Miscellaneous checks
  628. [ ] (0x00020000) DDI compliance checking
  629. ADDITIONAL FLAGS:
  630. [ ] (0x00000004) Randomized low resources simulation
  631. [ ] (0x00000200) Force pending I/O requests
  632. [ ] (0x00000400) IRP logging
  633. [ ] (0x00002000) Invariant MDL checking for stack
  634. [ ] (0x00004000) Invariant MDL checking for driver
  635. [ ] (0x00008000) Power framework delay fuzzing
  636. [ ] (0x00010000) Port/miniport interface checking
  637. [ ] (0x00040000) Systematic low resources simulation
  638. [ ] (0x00080000) DDI compliance checking (additional)
  639. [ ] (0x00200000) NDIS/WIFI verification
  640. [ ] (0x00800000) Kernel synchronization delay fuzzing
  641. [ ] (0x01000000) VM switch verification
  642. [ ] (0x02000000) Code integrity checks
  643. [X] Indicates flag is enabled
  644. Summary of All Verifier Statistics
  645. RaiseIrqls 0x0
  646. AcquireSpinLocks 0x0
  647. Synch Executions 0x0
  648. Trims 0x0
  649. Pool Allocations Attempted 0x0
  650. Pool Allocations Succeeded 0x0
  651. Pool Allocations Succeeded SpecialPool 0x0
  652. Pool Allocations With NO TAG 0x0
  653. Pool Allocations Failed 0x0
  654. Current paged pool allocations 0x0 for 00000000 bytes
  655. Peak paged pool allocations 0x0 for 00000000 bytes
  656. Current nonpaged pool allocations 0x0 for 00000000 bytes
  657. Peak nonpaged pool allocations 0x0 for 00000000 bytes
  658.  
  659. ========================== Dump #1: Extra #2 ===========================
  660.  
  661. 10: kd> !thread
  662. THREAD ffffc78e7be88040 Cid 0334.0384 Teb: 000000b067fd0000 Win32Thread: 0000000000000000 RUNNING on processor a
  663. Impersonation token: ffff8009673537b0 (Level Impersonation)
  664. GetUlongFromAddress: unable to read from fffff80353c2ca14
  665. Owning Process ffffc78e7aac0400 Image: services.exe
  666. Attached Process N/A Image: N/A
  667. fffff78000000000: Unable to get shared data
  668. Wait Start TickCount 4962
  669. Context Switch Count 1032 IdealProcessor: 0
  670. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  671. UserTime 00:00:00.000
  672. KernelTime 00:00:00.000
  673. Win32 Start Address 0x00007fff613d3ce0
  674. Stack Init ffffc30ecdecbc90 Current ffffc30ecdecaa70
  675. Base ffffc30ecdecc000 Limit ffffc30ecdec6000 Call 0000000000000000
  676. Priority 9 BasePriority 9 PriorityDecrement 0 IoPriority 2 PagePriority 5
  677. Child-SP RetAddr : Args to Child : Call Site
  678. ffffc30e`cdecad98 fffff803`540cba59 : 00000000`000000ef ffffc78e`7aac0400 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
  679. ffffc30e`cdecada0 fffff803`53fcb59d : ffffc78e`7aac0400 fffff803`538d6c55 ffffc78e`7aac0400 fffff803`538d6cd0 : nt!PspCatchCriticalBreak+0x115
  680. ffffc30e`cdecae40 fffff803`53e5c7c0 : ffffc78e`00000000 00000000`00000000 ffffc78e`7aac0400 ffffc78e`7aac0400 : nt!PspTerminateAllThreads+0x16d431
  681. ffffc30e`cdecaeb0 fffff803`53e5c3e9 : ffffffff`ffffffff ffffc30e`cdecafe0 ffffc78e`7aac0400 00000000`00000000 : nt!PspTerminateProcess+0xe0
  682. ffffc30e`cdecaef0 fffff803`539d3c18 : 00000000`00000334 ffffc78e`7be88040 ffffc78e`7aac0400 ffffc30e`cdecb130 : nt!NtTerminateProcess+0xa9
  683. ffffc30e`cdecaf60 fffff803`539c61e0 : fffff803`53a1a08a ffffc30e`cdecba58 ffffc30e`cdecba58 ffffc30e`cdecb130 : nt!KiSystemServiceCopyEnd+0x28 (TrapFrame @ ffffc30e`cdecaf60)
  684. ffffc30e`cdecb0f8 fffff803`53a1a08a : ffffc30e`cdecba58 ffffc30e`cdecba58 ffffc30e`cdecb130 00000000`00000000 : nt!KiServiceLinkage
  685. ffffc30e`cdecb100 fffff803`539d431d : fffffafd`7ebf5000 ffffc30e`cdecbb00 ffff8000`00000000 000000b0`68180000 : nt!KiDispatchException+0x18c3ea
  686. ffffc30e`cdecb920 fffff803`539d0503 : ffffc78e`7be88040 00000269`57609940 00000000`00000000 00000269`5762d0b0 : nt!KiExceptionDispatch+0x11d
  687. ffffc30e`cdecbb00 00007fff`614410e7 : 00000000`0010000b 00000000`00000010 00007fff`6140a0dc 00000000`00000000 : nt!KiPageFault+0x443 (TrapFrame @ ffffc30e`cdecbb00)
  688. 000000b0`68181058 00000000`0010000b : 00000000`00000010 00007fff`6140a0dc 00000000`00000000 000000b0`68181770 : 0x00007fff`614410e7
  689. 000000b0`68181060 00000000`00000010 : 00007fff`6140a0dc 00000000`00000000 000000b0`68181770 00000000`00000000 : 0x10000b
  690. 000000b0`68181068 00007fff`6140a0dc : 00000000`00000000 000000b0`68181770 00000000`00000000 00000000`00000001 : 0x10
  691. 000000b0`68181070 00000000`00000000 : 000000b0`68181770 00000000`00000000 00000000`00000001 00000000`00000000 : 0x00007fff`6140a0dc
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement