Guest User

Untitled

a guest
Aug 1st, 2020
52
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 33.10 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 01 minutes and 23 seconds
  5.  
  6. ================================= CPU ==================================
  7. COUNT: 4
  8. MHZ: 3912
  9. VENDOR: GenuineIntel
  10. FAMILY: 6
  11. MODEL: 9e
  12. STEPPING: 9
  13.  
  14. ================================== OS ==================================
  15. Product: WinNt, suite: TerminalServer SingleUserTS
  16. Built by: 18362.1.amd64fre.19h1_release.190318-1202
  17. BUILD_VERSION: 10.0.18362.418 (WinBuild.160101.0800)
  18. BUILD: 18362
  19. SERVICEPACK: 418
  20. PLATFORM_TYPE: x64
  21. NAME: Windows 10
  22. EDITION: Windows 10 WinNt TerminalServer SingleUserTS
  23. BUILD_TIMESTAMP: unknown_date
  24. BUILDDATESTAMP: 160101.0800
  25. BUILDLAB: WinBuild
  26. BUILDOSVER: 10.0.18362.418
  27.  
  28. =============================== DEBUGGER ===============================
  29. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  30. Copyright (c) Microsoft Corporation. All rights reserved.
  31.  
  32. =============================== COMMENTS ===============================
  33. * Information gathered from different dump files may be different. If
  34. Windows updates between two dump files, two or more OS versions may
  35. be shown above.
  36. * Additional BIOS information was not included in the dump file(s). This
  37. can be caused by an outdated BIOS.
  38.  
  39. ========================================================================
  40. ======================= Dump #1: ANALYZE VERBOSE =======================
  41. ====================== File: 080120-64203-01.dmp =======================
  42. ========================================================================
  43.  
  44. Mini Kernel Dump File: Only registers and stack trace are available
  45. Windows 10 Kernel Version 18362 MP (4 procs) Free x64
  46. Kernel base = 0xfffff805`63800000 PsLoadedModuleList = 0xfffff805`63c48210
  47. Debug session time: Sat Aug 1 08:58:05.916 2020 (UTC - 4:00)
  48. System Uptime: 1 days 22:04:26.829
  49.  
  50. BugCheck 1A, {3f, ca075, f3655078, 7b960cb4}
  51. Probably caused by : memory_corruption
  52. Followup: memory_corruption
  53. *** Memory manager detected 1 instance(s) of corrupted pagefilepage(s) while performing in-page operations.
  54.  
  55. MEMORY_MANAGEMENT (1a)
  56. # Any other values for parameter 1 must be individually examined.
  57.  
  58. Arguments:
  59. Arg1: 000000000000003f, The subtype of the bugcheck.
  60. Arg2: 00000000000ca075
  61. Arg3: 00000000f3655078
  62. Arg4: 000000007b960cb4
  63.  
  64. Debugging Details:
  65. DUMP_CLASS: 1
  66. DUMP_QUALIFIER: 400
  67. DUMP_TYPE: 2
  68. ADDITIONAL_DEBUG_TEXT: Memory Manager detected corruption of a pagefile page while performing an in-page operation.
  69. The data read from storage does not match the original data written.
  70. This indicates the data was corrupted by the storage stack, or device hardware.
  71. BUGCHECK_STR: 0x1a_3f
  72. CUSTOMER_CRASH_COUNT: 1
  73. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  74.  
  75. PROCESS_NAME: svchost.exe
  76.  
  77. CURRENT_IRQL: 2
  78. PAGE_HASH_ERRORS_DETECTED: 1
  79. LAST_CONTROL_TRANSFER: from fffff80563a63d96 to fffff805639c1220
  80. STACK_TEXT:
  81. fffff88a`a3717568 fffff805`63a63d96 : 00000000`0000001a 00000000`0000003f 00000000`000ca075 00000000`f3655078 : nt!KeBugCheckEx
  82. fffff88a`a3717570 fffff805`6388df32 : ffffd604`ab33e930 ffffffff`ffffffff 00000000`00000000 ffffd604`ab33ea20 : nt!MiValidatePagefilePageHash+0x10176a
  83. fffff88a`a3717650 fffff805`6388d47d : 00000000`00000002 fffff88a`00000000 fffff88a`a3717808 fffff805`00000000 : nt!MiWaitForInPageComplete+0x472
  84. fffff88a`a3717760 fffff805`63872f9b : 00000000`c0033333 00000000`00000001 00000256`d0cce000 fffff805`639c842f : nt!MiIssueHardFault+0x1ad
  85. fffff88a`a3717860 fffff805`639cf320 : 00000256`d065bfc0 fffff88a`a3717a80 00000257`c81851c0 fffff88a`a3717a80 : nt!MmAccessFault+0x40b
  86. fffff88a`a3717a00 00007ffd`d57b06a0 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x360
  87. 000000b2`713fce20 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`d57b06a0
  88. STACK_COMMAND: kb
  89. CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
  90. fffff80563873034-fffff80563873038 5 bytes - nt!MmAccessFault+4a4
  91. [ df be 7d fb f6:ef d4 a9 53 a7 ]
  92. fffff8056388d4dc-fffff8056388d4dd 2 bytes - nt!MiIssueHardFault+20c (+0x1a4a8)
  93. [ 80 f6:00 a7 ]
  94. fffff805639c82d3-fffff805639c82d4 2 bytes - nt!SwapContext+53 (+0x13adf7)
  95. [ 48 ff:4c 8b ]
  96. fffff805639c82da-fffff805639c82dd 4 bytes - nt!SwapContext+5a (+0x07)
  97. [ 0f 1f 44 00:e8 91 0d 8f ]
  98. 13 errors : !nt (fffff80563873034-fffff805639c82dd)
  99. MODULE_NAME: memory_corruption
  100.  
  101. IMAGE_NAME: memory_corruption
  102.  
  103. FOLLOWUP_NAME: memory_corruption
  104. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  105. MEMORY_CORRUPTOR: LARGE
  106. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  107. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  108. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  109. TARGET_TIME: 2020-08-01T12:58:05.000Z
  110. SUITE_MASK: 272
  111. PRODUCT_TYPE: 1
  112. USER_LCID: 0
  113. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  114. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  115. Followup: memory_corruption
  116. *** Memory manager detected 1 instance(s) of corrupted pagefilepage(s) while performing in-page operations.
  117.  
  118. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  119.  
  120. Sep 12 1975 - klmouflt.sys - Kaspersky Mouse Device Filter https://www.kaspersky.com/
  121. May 05 2007 - klwtp.sys - Kaspersky WFP Network Connection Filter Driver https://www.kaspersky.com/
  122. Apr 13 2008 - klbackupdisk.sys - Kaspersky Backup Disk Filter https://www.kaspersky.com/
  123. Aug 02 2010 - AsUpIO.sys - ASUS Update Input Output driver http://www.asus.com/
  124. May 05 2013 - ScpVBus.sys - Scarlet.Crush Productions Scp Dual Shock 3 Virtual Bus driver http://forums.pcsx2.net/
  125. Jan 07 2015 - klim6.sys - Kaspersky Lab Intermediate Network Driver https://www.kaspersky.com/
  126. Jun 06 2017 - SCDEmu.SYS - PowerISO Virtual driver (PowerISO Computing) https://www.poweriso.com/
  127. Oct 11 2017 - YSDrv.sys - VirtualBox Support driver
  128. Nov 19 2017 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
  129. Mar 16 2018 - kltap.sys - TAP - Windows Virtual Network driver - The OpenVPN Project
  130. Nov 13 2018 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  131. Jan 22 2019 - klupd_klif_kimul.sys - Kaspersky Kernel Heuristics Engine https://www.kaspersky.com/
  132. Feb 15 2019 - cm_km.sys - Kaspersky Cryptographic Module Driver
  133. Feb 26 2019 - klwfp.sys - Kaspersky Network filtering component https://www.kaspersky.com/
  134. Jul 03 2019 - womic.sys - Wireless Orange Mic driver http://www.wirelessorange.com/womic/ or wolicheng.com
  135. Feb 25 2020 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
  136. Mar 13 2020 - klif.sys - Kaspersky Lab Intruder Filter driver https://www.kaspersky.com/
  137. Mar 20 2020 - klupd_klif_klark.sys - Kaspersky https://www.kaspersky.com/
  138. Mar 20 2020 - klupd_klif_mark.sys - Kaspersky Lab Anti-Rootkit Engine https://www.kaspersky.com
  139. Mar 22 2020 - klupd_klif_arkmon.sys - Kaspersky Anti-Virus Anti-Rootkit Monitor https://www.kaspersky.com/
  140. Apr 02 2020 - tapprotonvpn.sys - Proton TAP VPN driver http://www.protonvpn.com/
  141. May 19 2020 - igdkmd64.sys - Intel HD graphics driver
  142. May 26 2020 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  143. Jun 17 2020 - klupd_klif_klbg.sys - Kaspersky Anti-Virus Lab Boot Guard Driver https://www.kaspersky.com/
  144. Jun 19 2020 - klgse.sys - Kaspersky Security Extender driver
  145. Jun 19 2020 - klhk.sys - Kaspersky Lab service driver https://www.kaspersky.com/
  146. Jul 17 2020 - klids.sys - Kaspersky Lab IDS Engine https://www.kaspersky.com/
  147. Nov 16 2021 - klkbdflt.sys - Kaspersky Keyboard Device Filter https://www.kaspersky.com/
  148. Mar 13 2029 - klpd.sys - Kaspersky Format Recognizer https://www.kaspersky.com/
  149. Aug 13 2029 - klflt.sys - Kaspersky Filter Core https://www.kaspersky.com/
  150. ***** Invalid (946E4501) - klbackupflt.sys - Kaspersky Backup File Filter https://www.kaspersky.com/
  151. ***** Invalid (B1F414C8) - kldisk.sys - Kaspersky Virtual Disk driver https://www.kaspersky.com/
  152. ***** Invalid (E34C73F4) - kneps.sys - Kaspersky KNEPS Power https://www.kaspersky.com/
  153.  
  154. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  155.  
  156. Image path: \SystemRoot\system32\DRIVERS\klmouflt.sys
  157. Image name: klmouflt.sys
  158. Search : https://www.google.com/search?q=klmouflt.sys
  159. ADA Info : Kaspersky Mouse Device Filter https://www.kaspersky.com/
  160. Timestamp : Fri Sep 12 1975
  161.  
  162. Image path: \SystemRoot\system32\DRIVERS\klwtp.sys
  163. Image name: klwtp.sys
  164. Search : https://www.google.com/search?q=klwtp.sys
  165. ADA Info : Kaspersky WFP Network Connection Filter Driver https://www.kaspersky.com/
  166. Timestamp : Sat May 5 2007
  167.  
  168. Image path: \SystemRoot\system32\DRIVERS\klbackupdisk.sys
  169. Image name: klbackupdisk.sys
  170. Search : https://www.google.com/search?q=klbackupdisk.sys
  171. ADA Info : Kaspersky Backup Disk Filter https://www.kaspersky.com/
  172. Timestamp : Sun Apr 13 2008
  173.  
  174. Image path: \SystemRoot\SysWow64\drivers\AsUpIO.sys
  175. Image name: AsUpIO.sys
  176. Search : https://www.google.com/search?q=AsUpIO.sys
  177. ADA Info : ASUS Update Input Output driver http://www.asus.com/
  178. Timestamp : Mon Aug 2 2010
  179.  
  180. Image path: \SystemRoot\System32\drivers\ScpVBus.sys
  181. Image name: ScpVBus.sys
  182. Search : https://www.google.com/search?q=ScpVBus.sys
  183. ADA Info : Scarlet.Crush Productions Scp Dual Shock 3 Virtual Bus driver http://forums.pcsx2.net/
  184. Timestamp : Sun May 5 2013
  185.  
  186. Image path: \SystemRoot\system32\DRIVERS\klim6.sys
  187. Image name: klim6.sys
  188. Search : https://www.google.com/search?q=klim6.sys
  189. ADA Info : Kaspersky Lab Intermediate Network Driver https://www.kaspersky.com/
  190. Timestamp : Wed Jan 7 2015
  191.  
  192. Image path: \SystemRoot\System32\Drivers\SCDEmu.SYS
  193. Image name: SCDEmu.SYS
  194. Search : https://www.google.com/search?q=SCDEmu.SYS
  195. ADA Info : PowerISO Virtual driver (PowerISO Computing) https://www.poweriso.com/
  196. Timestamp : Tue Jun 6 2017
  197.  
  198. Image path: \??\C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys
  199. Image name: YSDrv.sys
  200. Search : https://www.google.com/search?q=YSDrv.sys
  201. ADA Info : VirtualBox Support driver
  202. Timestamp : Wed Oct 11 2017
  203.  
  204. Mapped memory image file: C:\ProgramData\dbg\sym\TeeDriverW8x64.sys\5A116D8F34000\TeeDriverW8x64.sys
  205. Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
  206. Image name: TeeDriverW8x64.sys
  207. Search : https://www.google.com/search?q=TeeDriverW8x64.sys
  208. ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
  209. Timestamp : Sun Nov 19 2017
  210. File version: 11.7.0.1057
  211. Product version: 11.7.0.1057
  212. File flags: 8 (Mask 3F) Private
  213. File OS: 40004 NT Win32
  214. File type: 3.7 Driver
  215. File date: 00000000.00000000
  216. CompanyName: Intel Corporation
  217. ProductName: Intel(R) Management Engine Interface
  218. InternalName: TeeDriverx64.sys
  219. OriginalFilename: TeeDriverx64.sys
  220. ProductVersion: 11.7.0.1057
  221. FileVersion: 11.7.0.1057
  222. FileDescription: Intel(R) Management Engine Interface
  223. LegalCopyright: Copyright © 2006-2015, Intel Corporation. All rights reserved.
  224.  
  225. Image path: \SystemRoot\System32\drivers\kltap.sys
  226. Image name: kltap.sys
  227. Search : https://www.google.com/search?q=kltap.sys
  228. ADA Info : TAP - Windows Virtual Network driver - The OpenVPN Project
  229. Timestamp : Fri Mar 16 2018
  230.  
  231. Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
  232. Image name: RTKVHD64.sys
  233. Search : https://www.google.com/search?q=RTKVHD64.sys
  234. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  235. Timestamp : Tue Nov 13 2018
  236.  
  237. Image path: \SystemRoot\System32\Drivers\klupd_klif_kimul.sys
  238. Image name: klupd_klif_kimul.sys
  239. Search : https://www.google.com/search?q=klupd_klif_kimul.sys
  240. ADA Info : Kaspersky Kernel Heuristics Engine https://www.kaspersky.com/
  241. Timestamp : Tue Jan 22 2019
  242.  
  243. Image path: \SystemRoot\system32\DRIVERS\cm_km.sys
  244. Image name: cm_km.sys
  245. Search : https://www.google.com/search?q=cm_km.sys
  246. ADA Info : Kaspersky Cryptographic Module Driver
  247. Timestamp : Fri Feb 15 2019
  248.  
  249. Image path: \SystemRoot\system32\DRIVERS\klwfp.sys
  250. Image name: klwfp.sys
  251. Search : https://www.google.com/search?q=klwfp.sys
  252. ADA Info : Kaspersky Network filtering component https://www.kaspersky.com/
  253. Timestamp : Tue Feb 26 2019
  254.  
  255. Image name: womic.sys
  256. Search : https://www.google.com/search?q=womic.sys
  257. ADA Info : Wireless Orange Mic driver http://www.wirelessorange.com/womic/ or wolicheng.com
  258. Timestamp : Wed Jul 3 2019
  259.  
  260. Image path: \SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys
  261. Image name: IntcDAud.sys
  262. Search : https://www.google.com/search?q=IntcDAud.sys
  263. ADA Info : Intel Display Audio Driver http://www.intel.com/
  264. Timestamp : Tue Feb 25 2020
  265.  
  266. Image path: \SystemRoot\system32\DRIVERS\klif.sys
  267. Image name: klif.sys
  268. Search : https://www.google.com/search?q=klif.sys
  269. ADA Info : Kaspersky Lab Intruder Filter driver https://www.kaspersky.com/
  270. Timestamp : Fri Mar 13 2020
  271.  
  272. Image path: \SystemRoot\System32\Drivers\klupd_klif_klark.sys
  273. Image name: klupd_klif_klark.sys
  274. Search : https://www.google.com/search?q=klupd_klif_klark.sys
  275. ADA Info : Kaspersky https://www.kaspersky.com/
  276. Timestamp : Fri Mar 20 2020
  277.  
  278. Image path: \SystemRoot\System32\Drivers\klupd_klif_mark.sys
  279. Image name: klupd_klif_mark.sys
  280. Search : https://www.google.com/search?q=klupd_klif_mark.sys
  281. ADA Info : Kaspersky Lab Anti-Rootkit Engine https://www.kaspersky.com
  282. Timestamp : Fri Mar 20 2020
  283.  
  284. Image path: \SystemRoot\System32\Drivers\klupd_klif_arkmon.sys
  285. Image name: klupd_klif_arkmon.sys
  286. Search : https://www.google.com/search?q=klupd_klif_arkmon.sys
  287. ADA Info : Kaspersky Anti-Virus Anti-Rootkit Monitor https://www.kaspersky.com/
  288. Timestamp : Sun Mar 22 2020
  289.  
  290. Image path: \SystemRoot\System32\drivers\tapprotonvpn.sys
  291. Image name: tapprotonvpn.sys
  292. Search : https://www.google.com/search?q=tapprotonvpn.sys
  293. ADA Info : Proton TAP VPN driver http://www.protonvpn.com/
  294. Timestamp : Thu Apr 2 2020
  295.  
  296. Image path: \SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_29d4e3e2513aa913\igdkmd64.sys
  297. Image name: igdkmd64.sys
  298. Search : https://www.google.com/search?q=igdkmd64.sys
  299. ADA Info : Intel HD graphics driver
  300. Timestamp : Tue May 19 2020
  301.  
  302. Image path: \SystemRoot\System32\drivers\rt640x64.sys
  303. Image name: rt640x64.sys
  304. Search : https://www.google.com/search?q=rt640x64.sys
  305. ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  306. Timestamp : Tue May 26 2020
  307.  
  308. Image path: \SystemRoot\System32\Drivers\klupd_klif_klbg.sys
  309. Image name: klupd_klif_klbg.sys
  310. Search : https://www.google.com/search?q=klupd_klif_klbg.sys
  311. ADA Info : Kaspersky Anti-Virus Lab Boot Guard Driver https://www.kaspersky.com/
  312. Timestamp : Wed Jun 17 2020
  313.  
  314. Image path: \SystemRoot\system32\DRIVERS\klgse.sys
  315. Image name: klgse.sys
  316. Search : https://www.google.com/search?q=klgse.sys
  317. ADA Info : Kaspersky Security Extender driver
  318. Timestamp : Fri Jun 19 2020
  319.  
  320. Image path: \SystemRoot\system32\DRIVERS\klhk.sys
  321. Image name: klhk.sys
  322. Search : https://www.google.com/search?q=klhk.sys
  323. ADA Info : Kaspersky Lab service driver https://www.kaspersky.com/
  324. Timestamp : Fri Jun 19 2020
  325.  
  326. Image path: \??\C:\ProgramData\Kaspersky Lab\AVP20.0\Bases\klids.sys
  327. Image name: klids.sys
  328. Search : https://www.google.com/search?q=klids.sys
  329. ADA Info : Kaspersky Lab IDS Engine https://www.kaspersky.com/
  330. Timestamp : Fri Jul 17 2020
  331.  
  332. Image path: \SystemRoot\system32\DRIVERS\klkbdflt.sys
  333. Image name: klkbdflt.sys
  334. Search : https://www.google.com/search?q=klkbdflt.sys
  335. ADA Info : Kaspersky Keyboard Device Filter https://www.kaspersky.com/
  336. Timestamp : Tue Nov 16 2021
  337.  
  338. Image path: \SystemRoot\system32\DRIVERS\klpd.sys
  339. Image name: klpd.sys
  340. Search : https://www.google.com/search?q=klpd.sys
  341. ADA Info : Kaspersky Format Recognizer https://www.kaspersky.com/
  342. Timestamp : Tue Mar 13 2029
  343.  
  344. Image path: \SystemRoot\system32\DRIVERS\klflt.sys
  345. Image name: klflt.sys
  346. Search : https://www.google.com/search?q=klflt.sys
  347. ADA Info : Kaspersky Filter Core https://www.kaspersky.com/
  348. Timestamp : Mon Aug 13 2029
  349.  
  350. Image path: \SystemRoot\system32\DRIVERS\klbackupflt.sys
  351. Image name: klbackupflt.sys
  352. Search : https://www.google.com/search?q=klbackupflt.sys
  353. ADA Info : Kaspersky Backup File Filter https://www.kaspersky.com/
  354. Timestamp : ***** Invalid (946E4501)
  355.  
  356. Image path: \SystemRoot\system32\DRIVERS\kldisk.sys
  357. Image name: kldisk.sys
  358. Search : https://www.google.com/search?q=kldisk.sys
  359. ADA Info : Kaspersky Virtual Disk driver https://www.kaspersky.com/
  360. Timestamp : ***** Invalid (B1F414C8)
  361.  
  362. Image path: \SystemRoot\system32\DRIVERS\kneps.sys
  363. Image name: kneps.sys
  364. Search : https://www.google.com/search?q=kneps.sys
  365. ADA Info : Kaspersky KNEPS Power https://www.kaspersky.com/
  366. Timestamp : ***** Invalid (E34C73F4)
  367.  
  368. ====================== Dump #1: MICROSOFT DRIVERS ======================
  369.  
  370. ACPI.sys ACPI Driver for NT (Microsoft)
  371. acpiex.sys ACPIEx Driver (Microsoft)
  372. acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
  373. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  374. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  375. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  376. ahcache.sys Application Compatibility Cache (Microsoft)
  377. bam.sys BAM Kernal driver (Microsoft)
  378. BasicDisplay.sys Basic Display driver (Microsoft)
  379. BasicRender.sys Basic Render driver (Microsoft)
  380. Beep.SYS BEEP driver (Microsoft)
  381. BOOTVID.dll VGA Boot Driver (Microsoft)
  382. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  383. cdd.dll Canonical Display Driver (Microsoft)
  384. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  385. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  386. CI.dll Code Integrity Module (Microsoft)
  387. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  388. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  389. CLFS.SYS Common Log File System Driver (Microsoft)
  390. clipsp.sys CLIP Service (Microsoft)
  391. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  392. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  393. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  394. condrv.sys Console Driver (Microsoft)
  395. crashdmp.sys Crash Dump driver (Microsoft)
  396. csc.sys Windows Client Side Caching driver (Microsoft)
  397. dfsc.sys DFS Namespace Client Driver (Microsoft)
  398. disk.sys PnP Disk Driver (Microsoft)
  399. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  400. dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  401. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  402. dump_storahci.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  403. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  404. dxgmms2.sys DirectX Graphics MMS
  405. fastfat.SYS Fast FAT File System Driver (Microsoft)
  406. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  407. fileinfo.sys FileInfo Filter Driver (Microsoft)
  408. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  409. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  410. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  411. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  412. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  413. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  414. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  415. HIDCLASS.SYS Hid Class Library (Microsoft)
  416. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  417. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  418. HTTP.sys HTTP Protocol Stack (Microsoft)
  419. intelpep.sys Intel Power Engine Plugin (Microsoft)
  420. intelppm.sys Processor Device Driver (Microsoft)
  421. iorate.sys I/O rate control Filter (Microsoft)
  422. kbdclass.sys Keyboard Class Driver (Microsoft)
  423. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  424. kd.dll Local Kernal Debugger (Microsoft)
  425. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  426. ks.sys Kernal CSA Library (Microsoft)
  427. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  428. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  429. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  430. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  431. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  432. mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
  433. mmcss.sys MMCSS Driver (Microsoft)
  434. monitor.sys Monitor Driver (Microsoft)
  435. mouclass.sys Mouse Class Driver (Microsoft)
  436. mouhid.sys HID Mouse Filter Driver (Microsoft)
  437. mountmgr.sys Mount Point Manager (Microsoft)
  438. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  439. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  440. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  441. Msfs.SYS Mailslot driver (Microsoft)
  442. msisadrv.sys ISA Driver (Microsoft)
  443. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  444. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  445. mssecflt.sys Microsoft Security Events Component file system filter driver (Microsoft)
  446. mssmbios.sys System Management BIOS driver (Microsoft)
  447. mup.sys Multiple UNC Provider driver (Microsoft)
  448. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  449. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  450. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  451. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  452. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  453. NDProxy.sys NDIS Proxy driver (Microsoft)
  454. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  455. netbios.sys NetBIOS Interface driver (Microsoft)
  456. netbt.sys MBT Transport driver (Microsoft)
  457. NETIO.SYS Network I/O Subsystem (Microsoft)
  458. Npfs.SYS NPFS driver (Microsoft)
  459. npsvctrig.sys Named pipe service triggers (Microsoft)
  460. nsiproxy.sys NSI Proxy driver (Microsoft)
  461. Ntfs.sys NT File System Driver (Microsoft)
  462. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  463. ntosext.sys NTOS Extension Host driver (Microsoft)
  464. Null.SYS NULL Driver (Microsoft)
  465. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  466. pacer.sys QoS Packet Scheduler (Microsoft)
  467. parport.sys Parallel Port Driver (Microsoft)
  468. partmgr.sys Partition driver (Microsoft)
  469. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  470. pcw.sys Performance Counter Driver (Microsoft)
  471. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  472. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  473. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  474. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  475. qwavedrv.sys Quality Windows Audio Video Experience (qWave) Support driver (Microsoft)
  476. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  477. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  478. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  479. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  480. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  481. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  482. rdpvideominiport.sys RDP Video Miniport driver (Microsoft)
  483. rdyboost.sys ReadyBoost Driver (Microsoft)
  484. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  485. serenum.sys Serial Port Enumerator (Microsoft)
  486. serial.sys Serial Device Driver
  487. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  488. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  489. spaceport.sys Storage Spaces driver (Microsoft)
  490. srv2.sys Smb 2.0 Server driver (Microsoft)
  491. srvnet.sys Server Network driver (Microsoft)
  492. storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
  493. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  494. storqosflt.sys Storage QoS Filter driver (Microsoft)
  495. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  496. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  497. tcpip.sys TCP/IP Protocol driver (Microsoft)
  498. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  499. TDI.SYS TDI Wrapper driver (Microsoft)
  500. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  501. tm.sys Kernel Transaction Manager driver (Microsoft)
  502. ucx01000.sys USB Controller Extension (Microsoft)
  503. UEFI.sys UEFI NT driver (Microsoft)
  504. umbus.sys User-Mode Bus Enumerator (Microsoft)
  505. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  506. USBD.SYS Universal Serial Bus Driver (Microsoft)
  507. UsbHub3.sys USB3 HUB driver (Microsoft)
  508. USBXHCI.SYS USB XHCI driver (Microsoft)
  509. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  510. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  511. volmgr.sys Volume Manager Driver (Microsoft)
  512. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  513. volsnap.sys Volume Shadow Copy driver (Microsoft)
  514. volume.sys Volume driver (Microsoft)
  515. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  516. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  517. watchdog.sys Watchdog driver (Microsoft)
  518. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  519. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  520. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  521. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  522. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  523. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  524. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  525. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  526. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  527. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  528. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  529. winquic.sys QUIC Transport Protocol driver (Microsoft)
  530. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  531. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  532. Wof.sys Windows Overlay Filter (Microsoft)
  533. WppRecorder.sys WPP Trace Recorder (Microsoft)
  534. xusb22.sys Xbox 360 Common Controller for Windows driver (Microsoft)
  535.  
  536. ====================== Dump #1: UNLOADED MODULES =======================
  537.  
  538. fffff805`62350000 fffff805`6235f000 hiber_storpo
  539. fffff805`62360000 fffff805`6238f000 hiber_storah
  540. fffff805`62390000 fffff805`623ae000 hiber_dumpfv
  541. fffff805`62450000 fffff805`62469000 monitor.sys
  542. fffff805`62560000 fffff805`62581000 xusb22.sys
  543. fffff805`622b0000 fffff805`622d6000 USBSTOR.SYS
  544. fffff805`62340000 fffff805`6234f000 WpdUpFltr.sy
  545. fffff805`622e0000 fffff805`62331000 WUDFRd.sys
  546. fffff805`67c90000 fffff805`67cac000 EhStorClass.
  547. fffff805`62280000 fffff805`622a6000 USBSTOR.SYS
  548. fffff805`625b0000 fffff805`626c3000 YSR0.sys
  549. fffff805`626d0000 fffff805`626f7000 YSDDR0.sys
  550. fffff805`62280000 fffff805`623ea000 EasyAntiChea
  551. fffff805`62500000 fffff805`6250f000 hiber_storpo
  552. fffff805`62510000 fffff805`6253f000 hiber_storah
  553. fffff805`62540000 fffff805`6255e000 hiber_dumpfv
  554. fffff805`624d0000 fffff805`624f1000 xusb22.sys
  555. fffff805`62470000 fffff805`6247f000 hiber_storpo
  556. fffff805`62480000 fffff805`624af000 hiber_storah
  557. fffff805`624b0000 fffff805`624ce000 hiber_dumpfv
  558. fffff805`71f40000 fffff805`71f59000 monitor.sys
  559. fffff805`62410000 fffff805`62431000 xusb22.sys
  560. fffff805`623f0000 fffff805`62401000 libusbK.sys
  561. fffff805`62280000 fffff805`623ea000 EasyAntiChea
  562. fffff805`6f0c0000 fffff805`6f0f9000 klids.sys
  563. fffff805`6e740000 fffff805`6e74f000 dump_storpor
  564. fffff805`6e780000 fffff805`6e7af000 dump_storahc
  565. fffff805`6e7d0000 fffff805`6e7ee000 dump_dumpfve
  566. fffff805`71ca0000 fffff805`71cab000 klpnpflt.sys
  567. fffff805`71c30000 fffff805`71c3b000 klpnpflt.sys
  568. fffff805`71500000 fffff805`7150b000 klpnpflt.sys
  569. fffff805`6f160000 fffff805`6f17e000 dam.sys
  570. fffff805`677b0000 fffff805`677be000 klelam.sys
  571. fffff805`687e0000 fffff805`687f0000 hwpolicy.sys
  572.  
  573. ====================== Dump #1: BIOS INFORMATION =======================
  574.  
  575. sysinfo: could not find necessary interfaces.
  576. sysinfo: note that mssmbios.sys must be loaded (XPSP2+).
  577.  
  578. ========================== Dump #1: Extra #1 ===========================
  579.  
  580. 0: kd> !verifier
  581. Verify Flags Level 0x00000000
  582. STANDARD FLAGS:
  583. [X] (0x00000000) Automatic Checks
  584. [ ] (0x00000001) Special pool
  585. [ ] (0x00000002) Force IRQL checking
  586. [ ] (0x00000008) Pool tracking
  587. [ ] (0x00000010) I/O verification
  588. [ ] (0x00000020) Deadlock detection
  589. [ ] (0x00000080) DMA checking
  590. [ ] (0x00000100) Security checks
  591. [ ] (0x00000800) Miscellaneous checks
  592. [ ] (0x00020000) DDI compliance checking
  593. ADDITIONAL FLAGS:
  594. [ ] (0x00000004) Randomized low resources simulation
  595. [ ] (0x00000200) Force pending I/O requests
  596. [ ] (0x00000400) IRP logging
  597. [ ] (0x00002000) Invariant MDL checking for stack
  598. [ ] (0x00004000) Invariant MDL checking for driver
  599. [ ] (0x00008000) Power framework delay fuzzing
  600. [ ] (0x00010000) Port/miniport interface checking
  601. [ ] (0x00040000) Systematic low resources simulation
  602. [ ] (0x00080000) DDI compliance checking (additional)
  603. [ ] (0x00200000) NDIS/WIFI verification
  604. [ ] (0x00800000) Kernel synchronization delay fuzzing
  605. [ ] (0x01000000) VM switch verification
  606. [ ] (0x02000000) Code integrity checks
  607. [X] Indicates flag is enabled
  608. Summary of All Verifier Statistics
  609. RaiseIrqls 0x0
  610. AcquireSpinLocks 0x0
  611. Synch Executions 0x0
  612. Trims 0x0
  613. Pool Allocations Attempted 0x0
  614. Pool Allocations Succeeded 0x0
  615. Pool Allocations Succeeded SpecialPool 0x0
  616. Pool Allocations With NO TAG 0x0
  617. Pool Allocations Failed 0x0
  618. Current paged pool allocations 0x0 for 00000000 bytes
  619. Peak paged pool allocations 0x0 for 00000000 bytes
  620. Current nonpaged pool allocations 0x0 for 00000000 bytes
  621. Peak nonpaged pool allocations 0x0 for 00000000 bytes
  622.  
  623. ========================== Dump #1: Extra #2 ===========================
  624.  
  625. 0: kd> !thread
  626. THREAD ffffd604a841f080 Cid 09d0.09f4 Teb: 000000b271174000 Win32Thread: 0000000000000000 RUNNING on processor 0
  627. Impersonation token: ffff9408552b0060 (Level Impersonation)
  628. GetUlongFromAddress: unable to read from fffff80563c2ca14
  629. Owning Process ffffd604a8218080 Image: svchost.exe
  630. Attached Process N/A Image: N/A
  631. fffff78000000000: Unable to get shared data
  632. Wait Start TickCount 10615473
  633. Context Switch Count 531447 IdealProcessor: 0
  634. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  635. UserTime 00:00:00.000
  636. KernelTime 00:00:00.000
  637. Win32 Start Address 0x00007ffde5b82dc0
  638. Stack Init fffff88aa3717b90 Current fffff88aa37172b0
  639. Base fffff88aa3718000 Limit fffff88aa3711000 Call 0000000000000000
  640. Priority 8 BasePriority 7 PriorityDecrement 0 IoPriority 2 PagePriority 5
  641. Child-SP RetAddr : Args to Child : Call Site
  642. fffff88a`a3717568 fffff805`63a63d96 : 00000000`0000001a 00000000`0000003f 00000000`000ca075 00000000`f3655078 : nt!KeBugCheckEx
  643. fffff88a`a3717570 fffff805`6388df32 : ffffd604`ab33e930 ffffffff`ffffffff 00000000`00000000 ffffd604`ab33ea20 : nt!MiValidatePagefilePageHash+0x10176a
  644. fffff88a`a3717650 fffff805`6388d47d : 00000000`00000002 fffff88a`00000000 fffff88a`a3717808 fffff805`00000000 : nt!MiWaitForInPageComplete+0x472
  645. fffff88a`a3717760 fffff805`63872f9b : 00000000`c0033333 00000000`00000001 00000256`d0cce000 fffff805`639c842f : nt!MiIssueHardFault+0x1ad
  646. fffff88a`a3717860 fffff805`639cf320 : 00000256`d065bfc0 fffff88a`a3717a80 00000257`c81851c0 fffff88a`a3717a80 : nt!MmAccessFault+0x40b
  647. fffff88a`a3717a00 00007ffd`d57b06a0 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x360 (TrapFrame @ fffff88a`a3717a00)
  648. 000000b2`713fce20 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`d57b06a0
Add Comment
Please, Sign In to add comment