Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ========================== AUTO DUMP ANALYZER ==========================
- Auto Dump Analyzer
- Version: 0.91
- Time to analyze file(s): 00 hours and 10 minutes and 08 seconds
- ================================ SYSTEM ================================
- MANUFACTURER: PC Specialist LTD
- PRODUCT_NAME: Intel Z270
- SKU: [Removed]
- ================================= BIOS =================================
- VENDOR: American Megatrends Inc.
- VERSION: 1002
- DATE: 12/14/2017
- ============================= MOTHERBOARD ==============================
- MANUFACTURER: ASUSTeK COMPUTER INC.
- PRODUCT: PRIME Z270-K
- VERSION: Rev X.0x
- ================================= RAM ==================================
- Size Speed Manufacturer Part No.
- -------------- -------------- ------------------- ----------------------
- 8192MB 2133MHz Corsair CMR32GX4M4C3000C16
- 8192MB 2133MHz Corsair CMR32GX4M4C3000C16
- 8192MB 2133MHz Corsair CMR32GX4M4C3000C16
- 8192MB 2133MHz Corsair CMR32GX4M4C3000C16
- ================================= CPU ==================================
- Processor Version: Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
- COUNT: 8
- MHZ: 4200
- VENDOR: GenuineIntel
- FAMILY: 6
- MODEL: 9e
- STEPPING: 9
- MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 8E'00000000 (cache) 8E'00000000 (init)
- MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: B4'00000000 (cache) B4'00000000 (init)
- MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 84'00000000 (cache) 84'00000000 (init)
- ================================== OS ==================================
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 18362.1.amd64fre.19h1_release.190318-1202
- BUILD_VERSION: 10.0.18362.836 (WinBuild.160101.0800)
- BUILD: 18362
- SERVICEPACK: 836
- PLATFORM_TYPE: x64
- NAME: Windows 10
- EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- BUILD_TIMESTAMP: unknown_date
- BUILDDATESTAMP: 160101.0800
- BUILDLAB: WinBuild
- BUILDOSVER: 10.0.18362.836
- Built by: 17763.1.amd64fre.rs5_release.180914-1434
- BUILD_VERSION: 10.0.17763.1217 (WinBuild.160101.0800)
- BUILD: 17763
- SERVICEPACK: 1217
- BUILDOSVER: 10.0.17763.1217
- =============================== DEBUGGER ===============================
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- =============================== COMMENTS ===============================
- * Information gathered from different dump files may be different. If
- Windows updates between two dump files, two or more OS versions may
- be shown above.
- * If the user updates the BIOS between dump files, two or more versions
- and dates may be shown above.
- * More RAM information can be found below in a full BIOS section.
- ========================================================================
- ======================= Dump #1: ANALYZE VERBOSE =======================
- ====================== File: 060220-14250-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 18362 MP (8 procs) Free x64
- Kernel base = 0xfffff805`6dc00000 PsLoadedModuleList = 0xfffff805`6e048170
- Debug session time: Tue Jun 2 17:02:21.559 2020 (UTC - 4:00)
- System Uptime: 0 days 5:10:11.191
- BugCheck 3B, {80000003, fffff8056dc5a1c8, fffff286e557d260, 0}
- Probably caused by : memory_corruption
- Followup: memory_corruption
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 0000000080000003, Exception code that caused the bugcheck
- Arg2: fffff8056dc5a1c8, Address of the instruction which caused the bugcheck
- Arg3: fffff286e557d260, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- EXCEPTION_CODE: (HRESULT) 0x80000003 (2147483651) - One or more arguments are invalid
- FAULTING_IP:
- nt!KeCheckStackAndTargetAddress+48
- fffff805`6dc5a1c8 cc int 3
- CONTEXT: fffff286e557d260 -- (.cxr 0xfffff286e557d260)
- rax=fffff286e557dc78 rbx=fffff286e557eec0 rcx=0000000000040282
- rdx=fffff286e557eec0 rsi=fffff286e557e4d0 rdi=0000000000040282
- rip=fffff8056dc5a1c8 rsp=fffff286e557dc50 rbp=fffff286e557ec88
- r8=fffff286e557e4d0 r9=fffff286e557e310 r10=fffff8056dd9d2d0
- r11=fffff286e557dce8 r12=fffff286e557f740 r13=fffff286e557ec88
- r14=fffff286e557e310 r15=fffff80570ddd718
- iopl=0 nv up ei pl nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00040206
- nt!KeCheckStackAndTargetAddress+0x48:
- fffff805`6dc5a1c8 cc int 3
- Resetting default scope
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: obs64.exe
- CURRENT_IRQL: 0
- EXCEPTION_RECORD: fffff286e557eb40 -- (.exr 0xfffff286e557eb40)
- ExceptionAddress: fffff286e557eb40
- ExceptionCode: e557edb0
- ExceptionFlags: fffff286
- NumberParameters: 16
- Parameter[0]: ffff96b55cd65600
- Parameter[1]: 0000000000040282
- Parameter[2]: 0000000000040201
- Parameter[3]: 0000000000000000
- Parameter[4]: 0000000000000000
- Parameter[5]: 0000000000000000
- Parameter[6]: 0000000000000000
- Parameter[7]: 0000000000000000
- Parameter[8]: 0000000000000000
- Parameter[9]: 0000000000000000
- Parameter[10]: 0000000000000000
- Parameter[11]: 0000000000000000
- Parameter[12]: 0000000000000000
- Parameter[13]: 0000000000000000
- Parameter[14]: 0000000000000000
- TRAP_FRAME: ffff96b55cd65600 -- (.trap 0xffff96b55cd65600)
- Unable to read trap frame at ffff96b5`5cd65600
- LAST_CONTROL_TRANSFER: from fffff8056dd9d315 to fffff8056dc5a1c8
- STACK_TEXT:
- fffff286`e557dc50 fffff805`6dd9d315 : 00000000`00000000 fffff805`70dba820 fffff286`e557dda0 fffff805`6dd0bc44 : nt!KeCheckStackAndTargetAddress+0x48
- fffff286`e557dc80 fffff805`70d54cbe : fffff805`70dba820 fffff286`e557ec88 fffff286`e557f740 00000000`4c4c764e : nt!_C_specific_handler+0x45
- fffff286`e557dcf0 fffff805`6ddcb17f : fffff286`e557f740 fffff286`e557e290 00000000`00000000 00000000`00000000 : dxgkrnl!_GSHandlerCheck_SEH+0x6a
- fffff286`e557dd20 fffff805`6dcfa2c5 : 00000000`00000000 00000000`00000000 fffff286`e557e290 00007fff`ffff0000 : nt!RtlpExecuteHandlerForException+0xf
- fffff286`e557dd50 fffff805`6dcfe85e : fffff286`e557ec88 fffff286`e557e9d0 fffff286`e557ec88 00000000`00004012 : nt!RtlDispatchException+0x4a5
- fffff286`e557e4a0 fffff805`6ddd431d : fffff286`e557eb40 00000000`00000010 ffff96b5`5cd65600 00000000`00040282 : nt!KiDispatchException+0x16e
- fffff286`e557eb50 fffff805`6ddd0503 : 00000000`00000000 fffff286`e557f538 fffffaa0`c61b0d20 00000000`00000000 : nt!KiExceptionDispatch+0x11d
- fffff286`e557ed30 00000000`00040282 : 00000000`00000000 fffffac8`505e3c0c fffffaa0`c68be010 00000000`00004012 : nt!KiPageFault+0x443
- fffff286`e557eec0 00000000`00000000 : fffffac8`505e3c0c fffffaa0`c68be010 00000000`00004012 fffffaa0`c4c3ca70 : 0x40282
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !hal
- fffff8056db5de16-fffff8056db5de17 2 bytes - hal!HalRequestIpiSpecifyVector+36
- [ 48 ff:4c 8b ]
- fffff8056db5de1d-fffff8056db5de20 4 bytes - hal!HalRequestIpiSpecifyVector+3d (+0x07)
- [ 0f 1f 44 00:e8 2e 10 14 ]
- fffff8056db5f285-fffff8056db5f286 2 bytes - hal!HalpTimerClockIpiRoutine+15 (+0x1468)
- [ 48 ff:4c 8b ]
- fffff8056db5f28c-fffff8056db5f28f 4 bytes - hal!HalpTimerClockIpiRoutine+1c (+0x07)
- [ 0f 1f 44 00:e8 0f 92 15 ]
- fffff8056db5f457-fffff8056db5f458 2 bytes - hal!HalPutScatterGatherList+67 (+0x1cb)
- [ 48 ff:4c 8b ]
- fffff8056db5f45e-fffff8056db5f461 4 bytes - hal!HalPutScatterGatherList+6e (+0x07)
- [ 0f 1f 44 00:e8 ad fb 40 ]
- 18 errors : !hal (fffff8056db5de16-fffff8056db5f461)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- STACK_COMMAND: .cxr 0xfffff286e557d260 ; kb
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-06-02T21:02:21.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #1: 3RD PARTY DRIVERS ======================
- Oct 22 2012 - lvrs64.sys - Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Oct 22 2012 - lvuvc64.sys - Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Oct 17 2017 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- Nov 19 2017 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Jul 13 2018 - CMUSBDAC.sys - C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Jul 18 2019 - semav6msr64.sys - Intel Driver Update Utility http://www.intel.com/ OR (SEMA Software) http://www.sema-soft.de/en/home/
- Aug 06 2019 - iaStorE.sys - Intel SATA Storage Device RAID Controller
- Dec 05 2019 - cpuz149_x64.sys - CPUID driver
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Feb 03 2020 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Feb 14 2020 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Feb 19 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Feb 25 2020 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
- May 13 2020 - BEDaisy.sys - BattlEye Anti Cheat driver
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- May 19 2020 - igdkmd64.sys - Intel HD graphics driver
- ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\system32\DRIVERS\lvrs64.sys
- Image name: lvrs64.sys
- Search : https://www.google.com/search?q=lvrs64.sys
- ADA Info : Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\DRIVERS\lvuvc64.sys
- Image name: lvuvc64.sys
- Search : https://www.google.com/search?q=lvuvc64.sys
- ADA Info : Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Tue Oct 17 2017
- Mapped memory image file: C:\ProgramData\dbg\sym\TeeDriverW8x64.sys\5A116D8F34000\TeeDriverW8x64.sys
- Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Sun Nov 19 2017
- File version: 11.7.0.1057
- Product version: 11.7.0.1057
- File flags: 8 (Mask 3F) Private
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- CompanyName: Intel Corporation
- ProductName: Intel(R) Management Engine Interface
- InternalName: TeeDriverx64.sys
- OriginalFilename: TeeDriverx64.sys
- ProductVersion: 11.7.0.1057
- FileVersion: 11.7.0.1057
- FileDescription: Intel(R) Management Engine Interface
- LegalCopyright: Copyright © 2006-2015, Intel Corporation. All rights reserved.
- Image path: \SystemRoot\system32\DRIVERS\CMUSBDAC.sys
- Image name: CMUSBDAC.sys
- Search : https://www.google.com/search?q=CMUSBDAC.sys
- ADA Info : C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Timestamp : Fri Jul 13 2018
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \??\C:\WINDOWS\system32\drivers\semav6msr64.sys
- Image name: semav6msr64.sys
- Search : https://www.google.com/search?q=semav6msr64.sys
- ADA Info : Intel Driver Update Utility http://www.intel.com/ OR (SEMA Software) http://www.sema-soft.de/en/home/
- Timestamp : Thu Jul 18 2019
- Image path: \SystemRoot\System32\drivers\iaStorE.sys
- Image name: iaStorE.sys
- Search : https://www.google.com/search?q=iaStorE.sys
- ADA Info : Intel SATA Storage Device RAID Controller
- Timestamp : Tue Aug 6 2019
- Image path: \??\C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys
- Image name: cpuz149_x64.sys
- Search : https://www.google.com/search?q=cpuz149_x64.sys
- ADA Info : CPUID driver
- Timestamp : Thu Dec 5 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_93c9cab23ae4703b\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Mon Feb 3 2020
- Image path: \??\C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Fri Feb 14 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Wed Feb 19 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys
- Image name: IntcDAud.sys
- Search : https://www.google.com/search?q=IntcDAud.sys
- ADA Info : Intel Display Audio Driver http://www.intel.com/
- Timestamp : Tue Feb 25 2020
- Image path: \??\C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys
- Image name: BEDaisy.sys
- Search : https://www.google.com/search?q=BEDaisy.sys
- ADA Info : BattlEye Anti Cheat driver
- Timestamp : Wed May 13 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_352025668c124c7e\igdkmd64.sys
- Image name: igdkmd64.sys
- Search : https://www.google.com/search?q=igdkmd64.sys
- ADA Info : Intel HD graphics driver
- Timestamp : Tue May 19 2020
- ====================== Dump #1: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- bindflt.sys Windows Bind Filter driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_iaStorE.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- MpKslDrv.sys Microsoft Anti-malware Protection driver
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- nwifi.sys NativeWiFi Miniport Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdpvideominiport.sys RDP Video Miniport driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- tpm.sys Trusted Platform Module Device driver (Microsoft)
- ucx01000.sys USB Controller Extension (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- ====================== Dump #1: UNLOADED MODULES =======================
- fffff805`b1a80000 fffff805`b1d6b000 BEDaisy.sys
- fffff805`b6310000 fffff805`b6321000 MSKSSRV.sys
- fffff805`b62f0000 fffff805`b6301000 MSKSSRV.sys
- fffff805`b67c0000 fffff805`b67d1000 MSKSSRV.sys
- fffff805`b1da0000 fffff805`b1dad000 MSPCLOCK.sys
- fffff805`b1d90000 fffff805`b1d9d000 MSPQM.sys
- fffff805`79780000 fffff805`797d5000 lvrs64.sys
- fffff805`73a80000 fffff805`73f09000 lvuvc64.sys
- fffff805`b6480000 fffff805`b648f000 hiber_storpo
- fffff805`b6650000 fffff805`b6780000 hiber_iaStor
- fffff805`b6780000 fffff805`b679e000 hiber_dumpfv
- fffff805`713f0000 fffff805`71401000 MpKsl1aa97ad
- fffff805`b1a20000 fffff805`b1a31000 MpKsl9536851
- fffff805`b6160000 fffff805`b644b000 BEDaisy.sys
- fffff805`b6450000 fffff805`b6461000 MSKSSRV.sys
- fffff805`b5e00000 fffff805`b60eb000 BEDaisy.sys
- fffff805`b6140000 fffff805`b6151000 MSKSSRV.sys
- fffff805`b60f0000 fffff805`b6116000 USBSTOR.SYS
- fffff805`b6120000 fffff805`b613c000 EhStorClass.
- fffff805`757f0000 fffff805`757ff000 WpdUpFltr.sy
- fffff805`72120000 fffff805`72171000 WUDFRd.sys
- fffff805`77d80000 fffff805`77da6000 USBSTOR.SYS
- fffff805`b1aa0000 fffff805`b1d8b000 BEDaisy.sys
- fffff805`b6680000 fffff805`b6691000 MSKSSRV.sys
- fffff805`b6650000 fffff805`b6661000 MSKSSRV.sys
- fffff805`b6670000 fffff805`b667c000 bertreader.s
- fffff805`b1a80000 fffff805`b1a91000 MSKSSRV.sys
- fffff805`77530000 fffff805`7753a000 CorsairVHidD
- fffff805`71c10000 fffff805`71c21000 MSKSSRV.sys
- fffff805`73fa0000 fffff805`73fbc000 EhStorClass.
- fffff805`711c0000 fffff805`711cf000 dump_storpor
- fffff805`70b30000 fffff805`70c60000 dump_iaStorE
- fffff805`70c80000 fffff805`70c9e000 dump_dumpfve
- fffff805`6f8b0000 fffff805`6f8cc000 EhStorClass.
- fffff805`71450000 fffff805`7146e000 dam.sys
- fffff805`6f360000 fffff805`6f371000 WdBoot.sys
- fffff805`70450000 fffff805`70461000 hwpolicy.sys
- ====================== Dump #1: BIOS INFORMATION =======================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4506 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 1002
- BIOS Starting Address Segment f000
- BIOS Release Date 12/14/2017
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 10: - APM Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer PC Specialist LTD
- Product Name Intel Z270
- Version System Version
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber 1364299
- Family Intel Z270 Systems
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASUSTeK COMPUTER INC.
- Product PRIME Z270-K
- Version Rev X.0x
- Feature Flags 09h
- -813648160: - -813648112: - ÷7?
- ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0026h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0027h]
- Number of Strings 8
- 1 Default string
- 2 Default string
- 3 POTATO
- 4 Default string
- 5 FFFFFFFFFFFFF
- 6 FFFFFFFFFFFFF
- 7 FFFFFFFFFFFFF
- 8 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0028h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0043h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 0044h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0045h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM2
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0046h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0047h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM2
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0048h]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0043h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0049h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004ah]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004bh]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 004ch]
- Socket Designation LGA1151
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e9060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 4200MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0049h
- L2 Cache Handle 004ah
- L3 Cache Handle 004bh
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004dh]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 0044h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004eh]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 0045h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0046h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 0047h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #1: Extra #1 ===========================
- 7: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #1: Extra #2 ===========================
- 7: kd> !thread
- THREAD ffffe10348dba080 Cid 468c.35c0 Teb: 000000e99bedf000 Win32Thread: ffffe10349e12580 RUNNING on processor 7
- Not impersonating
- GetUlongFromAddress: unable to read from fffff8056e02ca24
- Owning Process ffffe10348d29080 Image: obs64.exe
- Attached Process N/A Image: N/A
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 1191116 Ticks: 0
- Context Switch Count 1674175 IdealProcessor: 7
- ReadMemory error: Cannot get nt!KeMaximumIncrement value.
- UserTime 00:00:00.000
- KernelTime 00:00:00.000
- Win32 Start Address 0x00007ffdcfe9928c
- Stack Init fffff286e557fb90 Current fffff286e557f5e0
- Base fffff286e5580000 Limit fffff286e5579000 Call 0000000000000000
- Priority 10 BasePriority 9 PriorityDecrement 0 IoPriority 2 PagePriority 5
- Child-SP RetAddr : Args to Child : Call Site
- fffff286`e557c928 fffff805`6ddd41e9 : 00000000`0000003b 00000000`80000003 fffff805`6dc5a1c8 fffff286`e557d260 : nt!KeBugCheckEx
- fffff286`e557c930 fffff805`6ddd363c : fffff286`e557d0a0 fffff805`70d54cbe fffff805`70dba820 fffff286`e557da18 : nt!KiBugCheckDispatch+0x69
- fffff286`e557ca70 fffff805`6ddcb17f : fffff805`6e111000 fffff805`6dc00000 0005e338`00ab7000 00000000`00000000 : nt!KiSystemServiceHandler+0x7c
- fffff286`e557cab0 fffff805`6dcfa2c5 : 00000000`00000000 00000000`00000000 fffff286`e557d020 00007fff`ffff0000 : nt!RtlpExecuteHandlerForException+0xf
- fffff286`e557cae0 fffff805`6dcfe85e : fffff286`e557da18 fffff286`e557d760 fffff286`e557da18 00000000`00040282 : nt!RtlDispatchException+0x4a5
- fffff286`e557d230 fffff805`6ddd431d : 00000000`00000000 ffff8c81`329cd180 00000000`00000000 00000000`00000000 : nt!KiDispatchException+0x16e
- fffff286`e557d8e0 fffff805`6ddcdcd6 : ffffffff`ffffffff fffff805`6ddc3ee1 00000000`00000097 fffff805`6db5f37b : nt!KiExceptionDispatch+0x11d
- fffff286`e557dac0 fffff805`6dc5a1c9 : fffff805`00000000 00000000`4c4c764e 00000000`00000001 00000000`000001a0 : nt!KiBreakpointTrap+0x316 (TrapFrame @ fffff286`e557dac0)
- fffff286`e557dc50 fffff805`6dd9d315 : 00000000`00000000 fffff805`70dba820 fffff286`e557dda0 fffff805`6dd0bc44 : nt!KeCheckStackAndTargetAddress+0x49
- fffff286`e557dc80 fffff805`70d54cbe : fffff805`70dba820 fffff286`e557ec88 fffff286`e557f740 00000000`4c4c764e : nt!_C_specific_handler+0x45
- fffff286`e557dcf0 fffff805`6ddcb17f : fffff286`e557f740 fffff286`e557e290 00000000`00000000 00000000`00000000 : dxgkrnl!_GSHandlerCheck_SEH+0x6a
- fffff286`e557dd20 fffff805`6dcfa2c5 : 00000000`00000000 00000000`00000000 fffff286`e557e290 00007fff`ffff0000 : nt!RtlpExecuteHandlerForException+0xf
- fffff286`e557dd50 fffff805`6dcfe85e : fffff286`e557ec88 fffff286`e557e9d0 fffff286`e557ec88 00000000`00004012 : nt!RtlDispatchException+0x4a5
- fffff286`e557e4a0 fffff805`6ddd431d : fffff286`e557eb40 00000000`00000010 ffff96b5`5cd65600 00000000`00040282 : nt!KiDispatchException+0x16e
- fffff286`e557eb50 fffff805`6ddd0503 : 00000000`00000000 fffff286`e557f538 fffffaa0`c61b0d20 00000000`00000000 : nt!KiExceptionDispatch+0x11d
- fffff286`e557ed30 00000000`00040282 : 00000000`00000000 fffffac8`505e3c0c fffffaa0`c68be010 00000000`00004012 : nt!KiPageFault+0x443 (TrapFrame @ fffff286`e557ed30)
- fffff286`e557eec0 00000000`00000000 : fffffac8`505e3c0c fffffaa0`c68be010 00000000`00004012 fffffaa0`c4c3ca70 : 0x40282
- ========================================================================
- ======================= Dump #2: ANALYZE VERBOSE =======================
- ====================== File: 060220-13265-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 17763 MP (8 procs) Free x64
- Kernel base = 0xfffff800`3acb1000 PsLoadedModuleList = 0xfffff800`3b0cb6f0
- Debug session time: Tue Jun 2 08:42:05.520 2020 (UTC - 4:00)
- System Uptime: 0 days 0:22:28.198
- BugCheck 50, {fffff63cc45ae770, 0, fffff697dae386ef, 2}
- Could not read faulting driver name
- Probably caused by : memory_corruption
- Followup: memory_corruption
- PAGE_FAULT_IN_NONPAGED_AREA (50)
- Invalid system memory was referenced. This cannot be protected by try-except.
- Typically the address is just plain bad or it is pointing at freed memory.
- Arguments:
- Arg1: fffff63cc45ae770, memory referenced.
- Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
- Arg3: fffff697dae386ef, If non-zero, the instruction address which referenced the bad memory
- address.
- Arg4: 0000000000000002, (reserved)
- Debugging Details:
- Could not read faulting driver name
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- READ_ADDRESS: fffff8003b1f2390: Unable to get MiVisibleState
- fffff63cc45ae770
- FAULTING_IP:
- win32kfull!PhkFirstValid+17
- fffff697`dae386ef 8b4140 mov eax,dword ptr [rcx+40h]
- MM_INTERNAL_CODE: 2
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: AV
- PROCESS_NAME: iCUE.exe
- CURRENT_IRQL: 0
- TRAP_FRAME: fffff3089a30f550 -- (.trap 0xfffff3089a30f550)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=fffff6b6c62518a0 rbx=0000000000000000 rcx=fffff63cc45ae730
- rdx=0000000000000003 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff697dae386ef rsp=fffff3089a30f6e0 rbp=fffff3089a30fa80
- r8=0000000000000003 r9=0000000000000001 r10=0000000000000003
- r11=fffff3089a30f920 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po nc
- win32kfull!PhkFirstValid+0x17:
- fffff697`dae386ef 8b4140 mov eax,dword ptr [rcx+40h] ds:fffff63c`c45ae770=????????
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff8003ae94b73 to fffff8003ae68ab0
- STACK_TEXT:
- fffff308`9a30f268 fffff800`3ae94b73 : 00000000`00000050 fffff63c`c45ae770 00000000`00000000 fffff308`9a30f550 : nt!KeBugCheckEx
- fffff308`9a30f270 fffff800`3ad61c68 : 00000000`00000000 ffff8000`00000000 00000000`00003dff fffff63c`c45ae770 : nt!MiSystemFault+0x1b9673
- fffff308`9a30f3b0 fffff800`3ae765c9 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MmAccessFault+0x1d8
- fffff308`9a30f550 fffff697`dae386ef : ffffdf83`abed7710 fffff800`3ad6f0de ffffc9f1`559e898b fffff697`db1a334b : nt!KiPageFault+0x349
- fffff308`9a30f6e0 fffff697`daf4eeff : fffff308`9a30f920 00000000`00000400 00000000`00000000 00000000`00000001 : win32kfull!PhkFirstValid+0x17
- fffff308`9a30f710 fffff697`dae6ba2f : fffff6b6`c62518a0 fffff308`9a30fa80 00000000`00003dff 00000000`00060001 : win32kfull!xxxCallHook+0x57
- fffff308`9a30f750 fffff697`dae6a9b7 : fffff308`9a30f920 fffff308`9a303dbf 00000000`00000000 00000000`00000f33 : win32kfull!xxxRealInternalGetMessage+0xfff
- fffff308`9a30f8e0 fffff800`3ae7a23e : 00000000`00f1e0c0 ffffdf83`b09a2080 fffff308`9a30f9a8 00000000`011c9000 : win32kfull!NtUserPeekMessage+0x157
- fffff308`9a30f990 00007ffc`0304f4e4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExitPico+0x2b9
- 00000000`00f1e088 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffc`0304f4e4
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8003ae260b2-fffff8003ae260b3 2 bytes - nt!PpmResetPerformanceAccumulation+32
- [ 48 ff:4c 8b ]
- fffff8003ae260b9-fffff8003ae260bd 5 bytes - nt!PpmResetPerformanceAccumulation+39 (+0x07)
- [ 0f 1f 44 00 00:e8 12 e5 de ff ]
- 7 errors : !nt (fffff8003ae260b2-fffff8003ae260bd)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-06-02T12:42:05.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #2: 3RD PARTY DRIVERS ======================
- Oct 22 2012 - lvrs64.sys - Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Oct 22 2012 - lvuvc64.sys - Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Jun 03 2016 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- Jul 18 2017 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Jul 13 2018 - CMUSBDAC.sys - C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Aug 06 2019 - iaStorE.sys - Intel SATA Storage Device RAID Controller
- Aug 22 2019 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
- Sep 25 2019 - igdkmd64.sys - Intel HD graphics driver
- Dec 05 2019 - cpuz149_x64.sys - CPUID driver
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Feb 03 2020 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Feb 14 2020 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Feb 19 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- May 13 2020 - BEDaisy.sys - BattlEye Anti Cheat driver
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ================== Dump #2: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\system32\DRIVERS\lvrs64.sys
- Image name: lvrs64.sys
- Search : https://www.google.com/search?q=lvrs64.sys
- ADA Info : Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\DRIVERS\lvuvc64.sys
- Image name: lvuvc64.sys
- Search : https://www.google.com/search?q=lvuvc64.sys
- ADA Info : Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Fri Jun 3 2016
- Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Tue Jul 18 2017
- Image path: \SystemRoot\system32\DRIVERS\CMUSBDAC.sys
- Image name: CMUSBDAC.sys
- Search : https://www.google.com/search?q=CMUSBDAC.sys
- ADA Info : C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Timestamp : Fri Jul 13 2018
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\iaStorE.sys
- Image name: iaStorE.sys
- Search : https://www.google.com/search?q=iaStorE.sys
- ADA Info : Intel SATA Storage Device RAID Controller
- Timestamp : Tue Aug 6 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_4cd2f01cfbce3160\IntcDAud.sys
- Image name: IntcDAud.sys
- Search : https://www.google.com/search?q=IntcDAud.sys
- ADA Info : Intel Display Audio Driver http://www.intel.com/
- Timestamp : Thu Aug 22 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\igdkmd64.sys
- Image name: igdkmd64.sys
- Search : https://www.google.com/search?q=igdkmd64.sys
- ADA Info : Intel HD graphics driver
- Timestamp : Wed Sep 25 2019
- Image path: \??\C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys
- Image name: cpuz149_x64.sys
- Search : https://www.google.com/search?q=cpuz149_x64.sys
- ADA Info : CPUID driver
- Timestamp : Thu Dec 5 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_93c9cab23ae4703b\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Mon Feb 3 2020
- Image path: \??\C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Fri Feb 14 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Wed Feb 19 2020
- Image path: \??\C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys
- Image name: BEDaisy.sys
- Search : https://www.google.com/search?q=BEDaisy.sys
- ADA Info : BattlEye Anti Cheat driver
- Timestamp : Wed May 13 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- ====================== Dump #2: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_iaStorE.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- MSPCLOCK.sys MS Proxy Clock (Microsoft)
- MSPQM.sys MS Proxy Quality Manager (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- nwifi.sys NativeWiFi Miniport Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- tpm.sys Trusted Platform Module Device driver (Microsoft)
- ucx01000.sys USB Controller Extension (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBSTOR.SYS USB Mass Storage Class driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- wcnfs.sys Windows Container Name Virtualization FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- ====================== Dump #2: UNLOADED MODULES =======================
- fffff800`8a490000 fffff800`8a4a1000 MSKSSRV.sys
- fffff800`8a150000 fffff800`8a43b000 BEDaisy.sys
- fffff800`8a440000 fffff800`8a451000 MSKSSRV.sys
- fffff800`405c0000 fffff800`405d1000 MSKSSRV.sys
- fffff800`44110000 fffff800`4411a000 CorsairVHidD
- fffff800`3ff70000 fffff800`3ff81000 MSKSSRV.sys
- fffff800`3e000000 fffff800`3e01d000 EhStorClass.
- fffff800`3e5d0000 fffff800`3e5e0000 dump_storpor
- fffff800`3ee00000 fffff800`3ef30000 dump_iaStorE
- fffff800`3ef50000 fffff800`3ef6e000 dump_dumpfve
- fffff800`3f5f0000 fffff800`3f60c000 dam.sys
- fffff800`3dae0000 fffff800`3daf1000 WdBoot.sys
- fffff800`3eaa0000 fffff800`3eab1000 hwpolicy.sys
- ====================== Dump #2: BIOS INFORMATION =======================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4506 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 1002
- BIOS Starting Address Segment f000
- BIOS Release Date 12/14/2017
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 10: - APM Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer PC Specialist LTD
- Product Name Intel Z270
- Version System Version
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber 1364299
- Family Intel Z270 Systems
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASUSTeK COMPUTER INC.
- Product PRIME Z270-K
- Version Rev X.0x
- Feature Flags 09h
- -808667424: - -808667376: - ÷7?
- ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0026h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0027h]
- Number of Strings 8
- 1 Default string
- 2 Default string
- 3 POTATO
- 4 Default string
- 5 FFFFFFFFFFFFF
- 6 FFFFFFFFFFFFF
- 7 FFFFFFFFFFFFF
- 8 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0028h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0043h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 0044h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0045h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM2
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0046h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0047h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM2
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0048h]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0043h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0049h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004ah]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004bh]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 004ch]
- Socket Designation LGA1151
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e9060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 4200MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0049h
- L2 Cache Handle 004ah
- L3 Cache Handle 004bh
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004dh]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 0044h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004eh]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 0045h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0046h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 0047h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #2: Extra #1 ===========================
- 1: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #2: Extra #2 ===========================
- 1: kd> !thread
- THREAD ffffdf83b09a2080 Cid 33f8.33fc Teb: 00000000011c9000 Win32Thread: ffffdf83b12cb5b0 RUNNING on processor 1
- IRP List:
- Unable to read nt!_IRP @ ffffdf83b17c20e0
- Not impersonating
- GetUlongFromAddress: unable to read from fffff8003b0b5204
- Owning Process ffffdf83b1309080 Image: iCUE.exe
- Attached Process N/A Image: N/A
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 86284
- Context Switch Count 1478573 IdealProcessor: 3
- ReadMemory error: Cannot get nt!KeMaximumIncrement value.
- UserTime 00:00:00.000
- KernelTime 00:00:00.000
- Win32 Start Address 0x00000000002518f2
- Stack Init fffff3089a30fb90 Current fffff3089a30e740
- Base fffff3089a310000 Limit fffff3089a309000 Call 0000000000000000
- Priority 10 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
- Child-SP RetAddr : Args to Child : Call Site
- fffff308`9a30f268 fffff800`3ae94b73 : 00000000`00000050 fffff63c`c45ae770 00000000`00000000 fffff308`9a30f550 : nt!KeBugCheckEx
- fffff308`9a30f270 fffff800`3ad61c68 : 00000000`00000000 ffff8000`00000000 00000000`00003dff fffff63c`c45ae770 : nt!MiSystemFault+0x1b9673
- fffff308`9a30f3b0 fffff800`3ae765c9 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MmAccessFault+0x1d8
- fffff308`9a30f550 fffff697`dae386ef : ffffdf83`abed7710 fffff800`3ad6f0de ffffc9f1`559e898b fffff697`db1a334b : nt!KiPageFault+0x349 (TrapFrame @ fffff308`9a30f550)
- fffff308`9a30f6e0 fffff697`daf4eeff : fffff308`9a30f920 00000000`00000400 00000000`00000000 00000000`00000001 : win32kfull!PhkFirstValid+0x17
- fffff308`9a30f710 fffff697`dae6ba2f : fffff6b6`c62518a0 fffff308`9a30fa80 00000000`00003dff 00000000`00060001 : win32kfull!xxxCallHook+0x57
- fffff308`9a30f750 fffff697`dae6a9b7 : fffff308`9a30f920 fffff308`9a303dbf 00000000`00000000 00000000`00000f33 : win32kfull!xxxRealInternalGetMessage+0xfff
- fffff308`9a30f8e0 fffff800`3ae7a23e : 00000000`00f1e0c0 ffffdf83`b09a2080 fffff308`9a30f9a8 00000000`011c9000 : win32kfull!NtUserPeekMessage+0x157
- fffff308`9a30f990 00007ffc`0304f4e4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExitPico+0x2b9 (TrapFrame @ fffff308`9a30fa00)
- 00000000`00f1e088 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffc`0304f4e4
- ========================================================================
- ======================= Dump #3: ANALYZE VERBOSE =======================
- ====================== File: 060120-16593-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 17763 MP (8 procs) Free x64
- Kernel base = 0xfffff806`60c07000 PsLoadedModuleList = 0xfffff806`610216f0
- Debug session time: Mon Jun 1 11:45:00.217 2020 (UTC - 4:00)
- System Uptime: 0 days 2:18:50.894
- BugCheck 3B, {c0000005, fffff80663e2ef49, fffffb8728ad6520, 0}
- Probably caused by : memory_corruption
- Followup: memory_corruption
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff80663e2ef49, Address of the instruction which caused the bugcheck
- Arg3: fffffb8728ad6520, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- Ntfs!memset+c9
- fffff806`63e2ef49 12660f adc ah,byte ptr [rsi+0Fh]
- CONTEXT: fffffb8728ad6520 -- (.cxr 0xfffffb8728ad6520)
- rax=00000000b9636fe7 rbx=fffffb8728ad6fe8 rcx=ffff80072d685b30
- rdx=0000000000000000 rsi=0000000000000000 rdi=ffff80072d6859a8
- rip=fffff80663e2ef49 rsp=fffffb8728ad6f18 rbp=ffff800733aa5010
- r8=0000000000000048 r9=0000000000000048 r10=ffff800716adf2c0
- r11=fffffb8728ad71e8 r12=0000000000000001 r13=ffff800716d89180
- r14=0000000000080000 r15=00000000000001d0
- iopl=0 nv up ei ng nz na po cy
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010287
- Ntfs!memset+0xc9:
- fffff806`63e2ef49 12660f adc ah,byte ptr [rsi+0Fh] ds:002b:00000000`0000000f=??
- Resetting default scope
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17763.1150_none_5707061f9905
- CURRENT_IRQL: 0
- MISALIGNED_IP:
- Ntfs!memset+c9
- fffff806`63e2ef49 12660f adc ah,byte ptr [rsi+0Fh]
- LAST_CONTROL_TRANSFER: from fffff80663e18e52 to fffff80663e2ef49
- STACK_TEXT:
- fffffb87`28ad6f18 fffff806`63e18e52 : ffff8007`23b1f8a0 ffff8007`2f4daa88 fffff806`6362b080 fffffb87`28ad6f58 : Ntfs!memset+0xc9
- fffffb87`28ad6f20 fffff806`63f03f42 : ffff8007`33aa5000 ffff8007`33aa5010 ffff8007`33aa5000 00000000`00000000 : Ntfs!NtfsInitializeIrpContext+0xe2
- fffffb87`28ad6f90 fffff806`60d103c9 : ffff8007`16d89030 ffff8007`33aa5010 ffff8007`16c0a800 ffff8007`2c874a10 : Ntfs!NtfsFsdCreate+0xb2
- fffffb87`28ad71f0 fffff806`6360621e : ffff8007`33aa5010 ffff8007`2c874a10 ffff8007`33aa53f8 ffff8007`16bca8d0 : nt!IofCallDriver+0x59
- fffffb87`28ad7230 fffff806`6363d559 : fffffb87`28ad72e0 ffff8007`2c874a10 00000000`000000c0 00000000`00000000 : FLTMGR!FltpLegacyProcessingAfterPreCallbacksCompleted+0x28e
- fffffb87`28ad72a0 fffff806`60d103c9 : ffff8007`2c874900 ffff8007`14fd15d0 00000000`00000000 ffff8007`00000030 : FLTMGR!FltpCreate+0x2f9
- fffffb87`28ad7350 fffff806`60d117b4 : 00000000`00000000 00000000`00000005 ffff8007`16d5ac60 fffff806`60d121b3 : nt!IofCallDriver+0x59
- fffffb87`28ad7390 fffff806`61273442 : fffffb87`28ad7650 ffff8007`14fd15d0 00000000`00000005 ffff8007`16ba88f0 : nt!IoCallDriverWithTracing+0x34
- fffffb87`28ad73e0 fffff806`612477e9 : ffff8007`16ba88f0 ffff8007`16ba8800 ffff8007`32ae99a0 ffffcb8a`cee24401 : nt!IopParseDevice+0x632
- fffffb87`28ad7550 fffff806`61245def : ffff8007`32ae9900 fffffb87`28ad77b8 ffff8007`00000040 ffff8007`14b25400 : nt!ObpLookupObjectName+0x719
- fffffb87`28ad7720 fffff806`6129d632 : ffffdb80`00000001 00000060`c16fe358 00000000`00000000 00000000`00004021 : nt!ObOpenObjectByNameEx+0x1df
- fffffb87`28ad7860 fffff806`6129cdf9 : 00000060`c16fe0d8 00000000`00100080 00000060`c16fe358 00000060`c16fe3b0 : nt!IopCreateFile+0x822
- fffffb87`28ad7900 fffff806`60dcfd05 : 00000000`00000000 00000000`00000001 00000000`00000000 00000253`fdc0c610 : nt!NtCreateFile+0x79
- fffffb87`28ad7990 00007ffd`dd040204 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25
- 00000060`c16fdb08 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`dd040204
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff80660cfb35f - nt!MiInPagePageTable+31f
- [ f6:fd ]
- fffff80660cfb37c-fffff80660cfb380 5 bytes - nt!MiInPagePageTable+33c (+0x1d)
- [ df be 7d fb f6:bf 7f ff fe fd ]
- fffff80660cfbf10-fffff80660cfbf11 2 bytes - nt!KiIpiSendRequest+340 (+0xb94)
- [ 48 ff:4c 8b ]
- fffff80660cfbf17-fffff80660cfbf1a 4 bytes - nt!KiIpiSendRequest+347 (+0x07)
- [ 0f 1f 44 00:e8 b4 d6 97 ]
- fffff80660d7c0b2-fffff80660d7c0b3 2 bytes - nt!PpmResetPerformanceAccumulation+32 (+0x8019b)
- [ 48 ff:4c 8b ]
- fffff80660d7c0b9-fffff80660d7c0bc 4 bytes - nt!PpmResetPerformanceAccumulation+39 (+0x07)
- [ 0f 1f 44 00:e8 12 c5 8f ]
- fffff80660d7e5b1 - nt!MiZeroPageThread+191 (+0x24f8)
- [ f6:fd ]
- fffff80660dc0a88-fffff80660dc0a89 2 bytes - nt!KiInterruptDispatchNoLockNoEtw+b8 (+0x424d7)
- [ 48 ff:4c 8b ]
- fffff80660dc0a8f-fffff80660dc0a92 4 bytes - nt!KiInterruptDispatchNoLockNoEtw+bf (+0x07)
- [ 0f 1f 44 00:e8 4c 8a 8b ]
- 25 errors : !nt (fffff80660cfb35f-fffff80660dc0a92)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- STACK_COMMAND: .cxr 0xfffffb8728ad6520 ; kb
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-06-01T15:45:00.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #3: 3RD PARTY DRIVERS ======================
- Oct 22 2012 - lvrs64.sys - Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Oct 22 2012 - lvuvc64.sys - Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Jun 03 2016 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- Jul 18 2017 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Jul 13 2018 - CMUSBDAC.sys - C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Aug 06 2019 - iaStorE.sys - Intel SATA Storage Device RAID Controller
- Aug 22 2019 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
- Sep 25 2019 - igdkmd64.sys - Intel HD graphics driver
- Dec 05 2019 - cpuz149_x64.sys - CPUID driver
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Feb 03 2020 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Feb 14 2020 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Feb 19 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ================== Dump #3: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\system32\DRIVERS\lvrs64.sys
- Image name: lvrs64.sys
- Search : https://www.google.com/search?q=lvrs64.sys
- ADA Info : Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\DRIVERS\lvuvc64.sys
- Image name: lvuvc64.sys
- Search : https://www.google.com/search?q=lvuvc64.sys
- ADA Info : Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Fri Jun 3 2016
- Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Tue Jul 18 2017
- Image path: \SystemRoot\system32\DRIVERS\CMUSBDAC.sys
- Image name: CMUSBDAC.sys
- Search : https://www.google.com/search?q=CMUSBDAC.sys
- ADA Info : C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Timestamp : Fri Jul 13 2018
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\iaStorE.sys
- Image name: iaStorE.sys
- Search : https://www.google.com/search?q=iaStorE.sys
- ADA Info : Intel SATA Storage Device RAID Controller
- Timestamp : Tue Aug 6 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_4cd2f01cfbce3160\IntcDAud.sys
- Image name: IntcDAud.sys
- Search : https://www.google.com/search?q=IntcDAud.sys
- ADA Info : Intel Display Audio Driver http://www.intel.com/
- Timestamp : Thu Aug 22 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\igdkmd64.sys
- Image name: igdkmd64.sys
- Search : https://www.google.com/search?q=igdkmd64.sys
- ADA Info : Intel HD graphics driver
- Timestamp : Wed Sep 25 2019
- Image path: \??\C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys
- Image name: cpuz149_x64.sys
- Search : https://www.google.com/search?q=cpuz149_x64.sys
- ADA Info : CPUID driver
- Timestamp : Thu Dec 5 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_93c9cab23ae4703b\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Mon Feb 3 2020
- Image path: \??\C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Fri Feb 14 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Wed Feb 19 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- ====================== Dump #3: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_iaStorE.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- tpm.sys Trusted Platform Module Device driver (Microsoft)
- ucx01000.sys USB Controller Extension (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBSTOR.SYS USB Mass Storage Class driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- wcnfs.sys Windows Container Name Virtualization FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- ====================== Dump #3: UNLOADED MODULES =======================
- fffff806`64360000 fffff806`643b8000 WdFilter.sys
- fffff806`603b0000 fffff806`603c3000 WdNisDrv.sys
- fffff806`69cb0000 fffff806`69cc0000 MpKsl8ab10c8
- fffff806`aeaa0000 fffff806`aeab1000 MSKSSRV.sys
- fffff806`aea90000 fffff806`aea9e000 MSTEE.sys
- fffff806`aea70000 fffff806`aea81000 MSKSSRV.sys
- fffff806`aff50000 fffff806`aff61000 MSKSSRV.sys
- fffff806`aeab0000 fffff806`aeabd000 MSPCLOCK.sys
- fffff806`aeaa0000 fffff806`aeaad000 MSPQM.sys
- fffff806`aea00000 fffff806`aea0b000 drmkaud.sys
- fffff806`aff70000 fffff806`aff7e000 MSTEE.sys
- fffff806`aeb00000 fffff806`aeb11000 nvvhci.sys
- fffff806`69c30000 fffff806`69c68000 nvhda64v.sys
- fffff806`686b0000 fffff806`69c26000 nvlddmkm.sys
- fffff806`aea20000 fffff806`aea31000 MSKSSRV.sys
- fffff806`aeaf0000 fffff806`aeafb000 drmkaud.sys
- fffff806`aeae0000 fffff806`aeaee000 MSTEE.sys
- fffff806`aea90000 fffff806`aea9b000 drmkaud.sys
- fffff806`aea80000 fffff806`aea8e000 MSTEE.sys
- fffff806`aea70000 fffff806`aea7d000 MSPQM.sys
- fffff806`aea60000 fffff806`aea6d000 MSPCLOCK.sys
- fffff806`aea50000 fffff806`aea5b000 drmkaud.sys
- fffff806`aea40000 fffff806`aea4e000 MSTEE.sys
- fffff806`aea10000 fffff806`aea1d000 MSPQM.sys
- fffff806`aea00000 fffff806`aea0d000 MSPCLOCK.sys
- fffff806`aff10000 fffff806`aff79000 HdAudio.sys
- fffff806`ac0d0000 fffff806`ac5e9000 RTKVHD64.sys
- fffff806`60410000 fffff806`60421000 MSKSSRV.sys
- fffff806`ab620000 fffff806`ab62b000 drmkaud.sys
- fffff806`ab610000 fffff806`ab61e000 MSTEE.sys
- fffff806`ab600000 fffff806`ab60d000 MSPQM.sys
- fffff806`ac5f0000 fffff806`ac5fd000 MSPCLOCK.sys
- fffff806`65f90000 fffff806`65ff9000 HdAudio.sys
- fffff806`69cc0000 fffff806`69cdd000 EhStorClass.
- fffff806`69ca0000 fffff806`69cab000 drmkaud.sys
- fffff806`69c80000 fffff806`69c8e000 MSTEE.sys
- fffff806`69c90000 fffff806`69c9d000 MSPQM.sys
- fffff806`69c70000 fffff806`69c7d000 MSPCLOCK.sys
- fffff806`603d0000 fffff806`603e1000 MSKSSRV.sys
- fffff806`60920000 fffff806`60931000 MSKSSRV.sys
- fffff806`642e0000 fffff806`642fd000 EhStorClass.
- fffff806`64a90000 fffff806`64aa0000 dump_storpor
- fffff806`64bd0000 fffff806`64d00000 dump_iaStorE
- fffff806`64d20000 fffff806`64d3e000 dump_dumpfve
- fffff806`656d0000 fffff806`656ec000 dam.sys
- fffff806`638e0000 fffff806`638f0000 WdBoot.sys
- fffff806`64990000 fffff806`649a1000 hwpolicy.sys
- ====================== Dump #3: BIOS INFORMATION =======================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4506 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 1002
- BIOS Starting Address Segment f000
- BIOS Release Date 12/14/2017
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 10: - APM Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer PC Specialist LTD
- Product Name Intel Z270
- Version System Version
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber 1364299
- Family Intel Z270 Systems
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASUSTeK COMPUTER INC.
- Product PRIME Z270-K
- Version Rev X.0x
- Feature Flags 09h
- -808667424: - -808667376: - ÷7?
- ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0026h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0027h]
- Number of Strings 8
- 1 Default string
- 2 Default string
- 3 POTATO
- 4 Default string
- 5 FFFFFFFFFFFFF
- 6 FFFFFFFFFFFFF
- 7 FFFFFFFFFFFFF
- 8 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0028h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0043h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 0044h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0045h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM2
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0046h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0047h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM2
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0048h]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0043h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0049h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004ah]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004bh]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 004ch]
- Socket Designation LGA1151
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e9060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 4200MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0049h
- L2 Cache Handle 004ah
- L3 Cache Handle 004bh
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004dh]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 0044h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004eh]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 0045h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0046h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 0047h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #3: Extra #1 ===========================
- 5: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #3: Extra #2 ===========================
- 5: kd> !thread
- THREAD ffff800732bf4400 Cid 2dd4.1738 Teb: 00000060c1187000 Win32Thread: 0000000000000000 RUNNING on processor 5
- IRP List:
- ffff800733aa5010: (0006,0478) Flags: 00000884 Mdl: 00000000
- Impersonation token: ffffcb8af840f770 (Level Impersonation)
- GetUlongFromAddress: unable to read from fffff8066100b204
- Owning Process ffff800726815480 Image: amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17763.1150_none_5707061f9905
- Attached Process N/A Image: N/A
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 533177
- Context Switch Count 99506 IdealProcessor: 7
- ReadMemory error: Cannot get nt!KeMaximumIncrement value.
- UserTime 00:00:00.000
- KernelTime 00:00:00.000
- Win32 Start Address 0x00007ffd93300960
- Stack Init fffffb8728ad7b90 Current fffffb8728ad7870
- Base fffffb8728ad8000 Limit fffffb8728ad1000 Call 0000000000000000
- Priority 8 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
- Child-SP RetAddr : Args to Child : Call Site
- fffffb87`28ad5be8 fffff806`60dd02e9 : 00000000`0000003b 00000000`c0000005 fffff806`63e2ef49 fffffb87`28ad6520 : nt!KeBugCheckEx
- fffffb87`28ad5bf0 fffff806`60dcf73c : fffffb87`28ad6cd8 fffffb87`28ad6520 fffffb87`28ad6cd8 00000000`00000000 : nt!KiBugCheckDispatch+0x69
- fffffb87`28ad5d30 fffff806`60dc75bf : fffff806`610e9000 fffff806`60c07000 0005b824`00a6f000 00000000`0010001f : nt!KiSystemServiceHandler+0x7c
- fffffb87`28ad5d70 fffff806`60c23620 : fffffb87`28ad63c0 00000000`00000000 fffffb87`28ad62e0 fffff806`60fd6c68 : nt!RtlpExecuteHandlerForException+0xf
- fffffb87`28ad5da0 fffff806`60c66694 : fffffb87`28ad6cd8 fffffb87`28ad6a20 fffffb87`28ad6cd8 ffff8007`2d6859a8 : nt!RtlDispatchException+0x430
- fffffb87`28ad64f0 fffff806`60dd03c2 : 00000000`00000000 fffffb87`28ad6d80 00000000`00001000 00000000`0000000f : nt!KiDispatchException+0x144
- fffffb87`28ad6ba0 fffff806`60dcc6ae : fffffb87`28ad74e0 ffff958c`81228000 ffff8007`00000000 fffff806`60cc3317 : nt!KiExceptionDispatch+0xc2
- fffffb87`28ad6d80 fffff806`63e2ef49 : fffff806`63e18e52 ffff8007`23b1f8a0 ffff8007`2f4daa88 fffff806`6362b080 : nt!KiPageFault+0x42e (TrapFrame @ fffffb87`28ad6d80)
- fffffb87`28ad6f18 fffff806`63e18e52 : ffff8007`23b1f8a0 ffff8007`2f4daa88 fffff806`6362b080 fffffb87`28ad6f58 : Ntfs!memset+0xc9
- fffffb87`28ad6f20 fffff806`63f03f42 : ffff8007`33aa5000 ffff8007`33aa5010 ffff8007`33aa5000 00000000`00000000 : Ntfs!NtfsInitializeIrpContext+0xe2
- fffffb87`28ad6f90 fffff806`60d103c9 : ffff8007`16d89030 ffff8007`33aa5010 ffff8007`16c0a800 ffff8007`2c874a10 : Ntfs!NtfsFsdCreate+0xb2
- fffffb87`28ad71f0 fffff806`6360621e : ffff8007`33aa5010 ffff8007`2c874a10 ffff8007`33aa53f8 ffff8007`16bca8d0 : nt!IofCallDriver+0x59
- fffffb87`28ad7230 fffff806`6363d559 : fffffb87`28ad72e0 ffff8007`2c874a10 00000000`000000c0 00000000`00000000 : FLTMGR!FltpLegacyProcessingAfterPreCallbacksCompleted+0x28e
- fffffb87`28ad72a0 fffff806`60d103c9 : ffff8007`2c874900 ffff8007`14fd15d0 00000000`00000000 ffff8007`00000030 : FLTMGR!FltpCreate+0x2f9
- fffffb87`28ad7350 fffff806`60d117b4 : 00000000`00000000 00000000`00000005 ffff8007`16d5ac60 fffff806`60d121b3 : nt!IofCallDriver+0x59
- fffffb87`28ad7390 fffff806`61273442 : fffffb87`28ad7650 ffff8007`14fd15d0 00000000`00000005 ffff8007`16ba88f0 : nt!IoCallDriverWithTracing+0x34
- fffffb87`28ad73e0 fffff806`612477e9 : ffff8007`16ba88f0 ffff8007`16ba8800 ffff8007`32ae99a0 ffffcb8a`cee24401 : nt!IopParseDevice+0x632
- fffffb87`28ad7550 fffff806`61245def : ffff8007`32ae9900 fffffb87`28ad77b8 ffff8007`00000040 ffff8007`14b25400 : nt!ObpLookupObjectName+0x719
- fffffb87`28ad7720 fffff806`6129d632 : ffffdb80`00000001 00000060`c16fe358 00000000`00000000 00000000`00004021 : nt!ObOpenObjectByNameEx+0x1df
- fffffb87`28ad7860 fffff806`6129cdf9 : 00000060`c16fe0d8 00000000`00100080 00000060`c16fe358 00000060`c16fe3b0 : nt!IopCreateFile+0x822
- fffffb87`28ad7900 fffff806`60dcfd05 : 00000000`00000000 00000000`00000001 00000000`00000000 00000253`fdc0c610 : nt!NtCreateFile+0x79
- fffffb87`28ad7990 00007ffd`dd040204 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25 (TrapFrame @ fffffb87`28ad7a00)
- 00000060`c16fdb08 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`dd040204
- ========================================================================
- ======================= Dump #4: ANALYZE VERBOSE =======================
- ====================== File: 060120-13390-01.dmp =======================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 17763 MP (8 procs) Free x64
- Kernel base = 0xfffff805`2b204000 PsLoadedModuleList = 0xfffff805`2b61e6f0
- Debug session time: Mon Jun 1 17:31:02.880 2020 (UTC - 4:00)
- System Uptime: 0 days 5:14:19.557
- BugCheck 7F, {8, ffffab006efac050, ffffd0006ee70ff0, fffff8057efcf803}
- *** WARNING: Unable to verify timestamp for BEDaisy.sys
- *** ERROR: Module load completed but symbols could not be loaded for BEDaisy.sys
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- UNEXPECTED_KERNEL_MODE_TRAP (7f)
- This means a trap occurred in kernel mode, and it's a trap of a kind
- that the kernel isn't allowed to have/catch (bound trap) or that
- is always instant death (double fault). The first number in the
- bugcheck params is the number of the trap (8 = double fault, etc)
- Consult an Intel x86 family manual to learn more about what these
- traps are. Here is a *portion* of those codes:
- If kv shows a taskGate
- use .tss on the part before the colon, then kv.
- Else if kv shows a trapframe
- use .trap on that value
- Else
- .trap on the appropriate frame will show where the trap was taken
- (on x86, this will be the ebp that goes with the procedure KiTrap)
- Endif
- kb will then show the corrected stack.
- Arguments:
- Arg1: 0000000000000008, EXCEPTION_DOUBLE_FAULT
- Arg2: ffffab006efac050
- Arg3: ffffd0006ee70ff0
- Arg4: fffff8057efcf803
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x7f_8
- TRAP_FRAME: ffffab006efac050 -- (.trap 0xffffab006efac050)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=0000000140001354 rbx=0000000000000000 rcx=0000000000000100
- rdx=ffffd0006ee71030 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff8057efcf803 rsp=ffffd0006ee70ff0 rbp=fffff8057ef9554d
- r8=ffffd0006ee70ff0 r9=00000000000000c0 r10=ffffd0006ee71170
- r11=fffff8057eeb77f0 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po nc
- BEDaisy+0x23f803:
- fffff805`7efcf803 56 push rsi
- Resetting default scope
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- PROCESS_NAME: System
- CURRENT_IRQL: 0
- STACK_OVERFLOW: Stack Limit: ffffd0006ee71000. Use (kF) and (!stackusage) to investigate stack usage.
- LAST_CONTROL_TRANSFER: from fffff8052b3cd2e9 to fffff8052b3bbab0
- STACK_TEXT:
- ffffab00`6efabf08 fffff805`2b3cd2e9 : 00000000`0000007f 00000000`00000008 ffffab00`6efac050 ffffd000`6ee70ff0 : nt!KeBugCheckEx
- ffffab00`6efabf10 fffff805`2b3c82ee : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
- ffffab00`6efac050 fffff805`7efcf803 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDoubleFaultAbort+0x2ae
- ffffd000`6ee70ff0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : BEDaisy+0x23f803
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8052b24a47f - nt!MmUnmapIoSpace+7f
- [ f6:f9 ]
- fffff8052b3790b2-fffff8052b3790b3 2 bytes - nt!PpmResetPerformanceAccumulation+32 (+0x12ec33)
- [ 48 ff:4c 8b ]
- fffff8052b3790b9-fffff8052b3790bc 4 bytes - nt!PpmResetPerformanceAccumulation+39 (+0x07)
- [ 0f 1f 44 00:e8 12 c5 8f ]
- 7 errors : !nt (fffff8052b24a47f-fffff8052b3790bc)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2020-06-01T21:31:02.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ====================== Dump #4: 3RD PARTY DRIVERS ======================
- Oct 22 2012 - lvrs64.sys - Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Oct 22 2012 - lvuvc64.sys - Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Jun 03 2016 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
- Jul 18 2017 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Jul 13 2018 - CMUSBDAC.sys - C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Aug 06 2019 - iaStorE.sys - Intel SATA Storage Device RAID Controller
- Aug 22 2019 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
- Sep 25 2019 - igdkmd64.sys - Intel HD graphics driver
- Dec 05 2019 - cpuz149_x64.sys - CPUID driver
- Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Feb 03 2020 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
- Feb 14 2020 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Feb 19 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- May 13 2020 - BEDaisy.sys - BattlEye Anti Cheat driver
- May 15 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ================== Dump #4: 3RD PARTY DRIVERS (FULL) ===================
- Image path: \SystemRoot\system32\DRIVERS\lvrs64.sys
- Image name: lvrs64.sys
- Search : https://www.google.com/search?q=lvrs64.sys
- ADA Info : Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\DRIVERS\lvuvc64.sys
- Image name: lvuvc64.sys
- Search : https://www.google.com/search?q=lvuvc64.sys
- ADA Info : Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio System driver https://www.realtek.com/en/
- Timestamp : Fri Jun 3 2016
- Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Tue Jul 18 2017
- Image path: \SystemRoot\system32\DRIVERS\CMUSBDAC.sys
- Image name: CMUSBDAC.sys
- Search : https://www.google.com/search?q=CMUSBDAC.sys
- ADA Info : C-Media USB Audio Class 1.0 and 2.0 DAC Device driver https://www.cmedia.com.tw/
- Timestamp : Fri Jul 13 2018
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\iaStorE.sys
- Image name: iaStorE.sys
- Search : https://www.google.com/search?q=iaStorE.sys
- ADA Info : Intel SATA Storage Device RAID Controller
- Timestamp : Tue Aug 6 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_4cd2f01cfbce3160\IntcDAud.sys
- Image name: IntcDAud.sys
- Search : https://www.google.com/search?q=IntcDAud.sys
- ADA Info : Intel Display Audio Driver http://www.intel.com/
- Timestamp : Thu Aug 22 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\igdkmd64.sys
- Image name: igdkmd64.sys
- Search : https://www.google.com/search?q=igdkmd64.sys
- ADA Info : Intel HD graphics driver
- Timestamp : Wed Sep 25 2019
- Image path: \??\C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys
- Image name: cpuz149_x64.sys
- Search : https://www.google.com/search?q=cpuz149_x64.sys
- ADA Info : CPUID driver
- Timestamp : Thu Dec 5 2019
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Fri Jan 10 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_93c9cab23ae4703b\e1d68x64.sys
- Image name: e1d68x64.sys
- Search : https://www.google.com/search?q=e1d68x64.sys
- ADA Info : Intel(R) Gigabit Adapter driver
- Timestamp : Mon Feb 3 2020
- Image path: \??\C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Fri Feb 14 2020
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Wed Feb 19 2020
- Image path: \??\C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys
- Image name: BEDaisy.sys
- Search : https://www.google.com/search?q=BEDaisy.sys
- ADA Info : BattlEye Anti Cheat driver
- Timestamp : Wed May 13 2020
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri May 15 2020
- ====================== Dump #4: MICROSOFT DRIVERS ======================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_iaStorE.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- MpKslDrv.sys Microsoft Anti-malware Protection driver
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- qwavedrv.sys Quality Windows Audio Video Experience (qWave) Support driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- tpm.sys Trusted Platform Module Device driver (Microsoft)
- ucx01000.sys USB Controller Extension (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBSTOR.SYS USB Mass Storage Class driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- wcnfs.sys Windows Container Name Virtualization FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- ====================== Dump #4: UNLOADED MODULES =======================
- fffff805`763c0000 fffff805`763e8000 tunnel.sys
- fffff805`7f490000 fffff805`7f77b000 BEDaisy.sys
- fffff805`75f20000 fffff805`75f31000 MSKSSRV.sys
- fffff805`30400000 fffff805`30570000 EasyAntiChea
- fffff805`75fd0000 fffff805`75fe1000 MSKSSRV.sys
- fffff805`75fa0000 fffff805`75fad000 MSPCLOCK.sys
- fffff805`75f90000 fffff805`75f9d000 MSPQM.sys
- fffff805`75f70000 fffff805`75f81000 MSKSSRV.sys
- fffff805`75f20000 fffff805`75f31000 MSKSSRV.sys
- fffff805`333e0000 fffff805`333ea000 CorsairVHidD
- fffff805`30b30000 fffff805`30b41000 MSKSSRV.sys
- fffff805`30b10000 fffff805`30b2d000 EhStorClass.
- fffff805`2e2a0000 fffff805`2e2bd000 EhStorClass.
- fffff805`2eef0000 fffff805`2ef00000 dump_storpor
- fffff805`2f030000 fffff805`2f160000 dump_iaStorE
- fffff805`2f180000 fffff805`2f19e000 dump_dumpfve
- fffff805`2ff90000 fffff805`2ffac000 dam.sys
- fffff805`2dd80000 fffff805`2dd91000 WdBoot.sys
- fffff805`2edf0000 fffff805`2ee01000 hwpolicy.sys
- ====================== Dump #4: BIOS INFORMATION =======================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4506 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 1002
- BIOS Starting Address Segment f000
- BIOS Release Date 12/14/2017
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 10: - APM Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer PC Specialist LTD
- Product Name Intel Z270
- Version System Version
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber 1364299
- Family Intel Z270 Systems
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASUSTeK COMPUTER INC.
- Product PRIME Z270-K
- Version Rev X.0x
- Feature Flags 09h
- -808667424: - -808667376: - ÷7?
- ü
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0026h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0027h]
- Number of Strings 8
- 1 Default string
- 2 Default string
- 3 POTATO
- 4 Default string
- 5 FFFFFFFFFFFFF
- 6 FFFFFFFFFFFFF
- 7 FFFFFFFFFFFFF
- 8 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0028h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0043h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 0044h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0045h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM2
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0046h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Device (Type 17) - Length 40 - Handle 0047h]
- Physical Memory Array Handle 0043h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM2
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMR32GX4M4C3000C16
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0048h]
- Starting Address 00000000h
- Ending Address 01ffffffh
- Memory Array Handle 0043h
- Partition Width 04
- [Cache Information (Type 7) - Length 19 - Handle 0049h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004ah]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004bh]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 004ch]
- Socket Designation LGA1151
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e9060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 4200MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0049h
- L2 Cache Handle 004ah
- L3 Cache Handle 004bh
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004dh]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 0044h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004eh]
- Starting Address 01000000h
- Ending Address 017fffffh
- Memory Device Handle 0045h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0046h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
- Starting Address 01800000h
- Ending Address 01ffffffh
- Memory Device Handle 0047h
- Mem Array Mapped Adr Handle 0048h
- Interleave Position 02
- Interleave Data Depth 02
- ========================== Dump #4: Extra #1 ===========================
- 7: kd> !verifier
- Verify Flags Level 0x00000000
- STANDARD FLAGS:
- [X] (0x00000000) Automatic Checks
- [ ] (0x00000001) Special pool
- [ ] (0x00000002) Force IRQL checking
- [ ] (0x00000008) Pool tracking
- [ ] (0x00000010) I/O verification
- [ ] (0x00000020) Deadlock detection
- [ ] (0x00000080) DMA checking
- [ ] (0x00000100) Security checks
- [ ] (0x00000800) Miscellaneous checks
- [ ] (0x00020000) DDI compliance checking
- ADDITIONAL FLAGS:
- [ ] (0x00000004) Randomized low resources simulation
- [ ] (0x00000200) Force pending I/O requests
- [ ] (0x00000400) IRP logging
- [ ] (0x00002000) Invariant MDL checking for stack
- [ ] (0x00004000) Invariant MDL checking for driver
- [ ] (0x00008000) Power framework delay fuzzing
- [ ] (0x00010000) Port/miniport interface checking
- [ ] (0x00040000) Systematic low resources simulation
- [ ] (0x00080000) DDI compliance checking (additional)
- [ ] (0x00200000) NDIS/WIFI verification
- [ ] (0x00800000) Kernel synchronization delay fuzzing
- [ ] (0x01000000) VM switch verification
- [ ] (0x02000000) Code integrity checks
- [X] Indicates flag is enabled
- Summary of All Verifier Statistics
- RaiseIrqls 0x0
- AcquireSpinLocks 0x0
- Synch Executions 0x0
- Trims 0x0
- Pool Allocations Attempted 0x0
- Pool Allocations Succeeded 0x0
- Pool Allocations Succeeded SpecialPool 0x0
- Pool Allocations With NO TAG 0x0
- Pool Allocations Failed 0x0
- Current paged pool allocations 0x0 for 00000000 bytes
- Peak paged pool allocations 0x0 for 00000000 bytes
- Current nonpaged pool allocations 0x0 for 00000000 bytes
- Peak nonpaged pool allocations 0x0 for 00000000 bytes
- ========================== Dump #4: Extra #2 ===========================
- 7: kd> !thread
- THREAD ffffbe010ca38040 Cid 0004.3ad4 Teb: 0000000000000000 Win32Thread: 0000000000000000 RUNNING on processor 7
- Not impersonating
- GetUlongFromAddress: unable to read from fffff8052b608204
- Owning Process ffffbe0ffa073080 Image: System
- Attached Process N/A Image: N/A
- fffff78000000000: Unable to get shared data
- Wait Start TickCount 1207011
- Context Switch Count 3915647 IdealProcessor: 1
- UserTime 00:00:00.000
- KernelTime 00:03:25.562
- Win32 Start Address BEDaisy (0xfffff8057ed94830)
- Stack Init ffffd0006ee77b90 Current ffffd0006ee773a0
- Base ffffd0006ee78000 Limit ffffd0006ee71000 Call 0000000000000000
- Priority 8 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
- Child-SP RetAddr : Args to Child : Call Site
- ffffab00`6efabf08 fffff805`2b3cd2e9 : 00000000`0000007f 00000000`00000008 ffffab00`6efac050 ffffd000`6ee70ff0 : nt!KeBugCheckEx
- ffffab00`6efabf10 fffff805`2b3c82ee : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
- ffffab00`6efac050 fffff805`7efcf803 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDoubleFaultAbort+0x2ae (TrapFrame @ ffffab00`6efac050)
- ffffd000`6ee70ff0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : BEDaisy+0x23f803
Add Comment
Please, Sign In to add comment