Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 X86
- Copyright (c) Microsoft Corporation. All rights reserved.
- ========================================================================
- =================== Dump File: 072617-12500-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 10586 MP (6 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 10586.1007.amd64fre.th2_release.170706-2002
- Kernel base = 0xfffff800`8c47d000 PsLoadedModuleList = 0xfffff800`8c75ac70
- Debug session time: Tue Jul 25 12:39:17.836 2017 (UTC - 4:00)
- System Uptime: 0 days 21:22:19.560
- BugCheck 3B, {c0000005, fffff8008c54a132, ffffd00021fa2d00, 0}
- Probably caused by : ntkrnlmp.exe ( nt!KxWaitForLockOwnerShipWithIrql+12 )
- Followup: MachineOwner
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff8008c54a132, Address of the instruction which caused the bugcheck
- Arg3: ffffd00021fa2d00, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.10586.1007 (th2_release.170706-2002)
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: P1.00
- BIOS_DATE: 10/17/2012
- BASEBOARD_MANUFACTURER: ASRock
- BASEBOARD_PRODUCT: 970 Extreme3 R2.0
- BASEBOARD_VERSION:
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- nt!KxWaitForLockOwnerShipWithIrql+12
- fffff800`8c54a132 48890a mov qword ptr [rdx],rcx
- CONTEXT: ffffd00021fa2d00 -- (.cxr 0xffffd00021fa2d00)
- rax=0000000000000000 rbx=fffff8008c80e3c0 rcx=ffffd00021fa3770
- rdx=2000000000000000 rsi=0000000000000000 rdi=ffffd00021fa3770
- rip=fffff8008c54a132 rsp=ffffd00021fa3720 rbp=ffffd00021fa37b0
- r8=ffffd00021fa37e0 r9=0000000000000000 r10=7ffff8008c776690
- r11=7ffffffffffffffc r12=0000000000000000 r13=0000000000000000
- r14=0000000000000001 r15=0000000000000000
- iopl=0 nv up di ng nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010086
- nt!KxWaitForLockOwnerShipWithIrql+0x12:
- fffff800`8c54a132 48890a mov qword ptr [rdx],rcx ds:002b:20000000`00000000=????????????????
- Resetting default scope
- CPU_COUNT: 6
- CPU_MHZ: f97
- CPU_VENDOR: AuthenticAMD
- CPU_FAMILY: 15
- CPU_MODEL: 2
- CPU_STEPPING: 0
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: svchost.exe
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff8008c48eaaa to fffff8008c54a132
- STACK_TEXT:
- ffffd000`21fa3720 fffff800`8c48eaaa : fffff800`8c80e3c0 00000000`00000000 00000000`00000738 fffff800`8c860e05 : nt!KxWaitForLockOwnerShipWithIrql+0x12
- ffffd000`21fa3750 fffff800`8c858c1e : ffffc001`60ae9702 ffffc001`60ae97d0 00000000`00000000 ffffd000`00000019 : nt!ExAcquireResourceSharedLite+0x34a
- ffffd000`21fa37e0 fffff800`8c870da8 : 00000000`00000000 fffff800`8c89fb07 00000000`00000090 ffffc001`60ae97a0 : nt!CmpDeleteKeyObject+0x10e
- ffffd000`21fa38c0 fffff800`8c490d5f : 00000000`00000000 00000000`00000000 00000000`00000000 ffffc001`60ae97d0 : nt!ObpRemoveObjectRoutine+0x78
- ffffd000`21fa3920 fffff800`8c86238c : 00000000`00000000 fffff800`8c47d000 fffff800`8c47d000 00000000`00000000 : nt!ObfDereferenceObjectWithTag+0xbf
- ffffd000`21fa3960 fffff800`8c8a5e3d : 00000000`00000000 00000099`1fefe348 00000000`00000090 00000099`1fefdee0 : nt!ObCloseHandleTableEntry+0x89c
- ffffd000`21fa3aa0 fffff800`8c5ca2a3 : 00000000`00004000 00000099`1fefdf90 ffffe000`a3cc7080 ffffd000`21fa3b80 : nt!NtClose+0xcd
- ffffd000`21fa3b00 00007ffb`fa0b52b4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000099`1fefe2a8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffb`fa0b52b4
- THREAD_SHA1_HASH_MOD_FUNC: 56fb2e776b34bca08cf97a978a90518924177db1
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: ed3d9d73c7e3495effae3bc997fbd8f3ee626970
- THREAD_SHA1_HASH_MOD: cb5f414824c2521bcc505eaa03e92fa10922dad8
- FOLLOWUP_IP:
- nt!KxWaitForLockOwnerShipWithIrql+12
- fffff800`8c54a132 48890a mov qword ptr [rdx],rcx
- FAULT_INSTR_CODE: 4d0a8948
- SYMBOL_STACK_INDEX: 0
- SYMBOL_NAME: nt!KxWaitForLockOwnerShipWithIrql+12
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 595f32ce
- IMAGE_VERSION: 10.0.10586.1007
- STACK_COMMAND: .cxr 0xffffd00021fa2d00 ; kb
- BUCKET_ID_FUNC_OFFSET: 12
- FAILURE_BUCKET_ID: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- BUCKET_ID: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- PRIMARY_PROBLEM_CLASS: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- TARGET_TIME: 2017-07-25T16:39:17.000Z
- OSBUILD: 10586
- OSSERVICEPACK: 1007
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-07-07 03:05:50
- BUILDDATESTAMP_STR: 170706-2002
- BUILDLAB_STR: th2_release
- BUILDOSVER_STR: 10.0.10586.1007
- ANALYSIS_SESSION_ELAPSED_TIME: 47af
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x3b_nt!kxwaitforlockownershipwithirql
- FAILURE_ID_HASH: {c3fcce84-82a0-ac56-6588-32a985eb9681}
- Followup: MachineOwner
- =============================== Drivers ================================
- fffff800`89450000 fffff800`8946d000 mcupdate_AuthenticAMD (deferred)
- Image path: \SystemRoot\system32\mcupdate_AuthenticAMD.dll
- Image name: mcupdate_AuthenticAMD.dll
- Timestamp: Thu Oct 29 22:42:29 2015 (5632D915)
- fffff800`89820000 fffff800`8985f000 MBAMSwissArmy (deferred)
- Image path: \SystemRoot\system32\drivers\MBAMSwissArmy.sys
- Image name: MBAMSwissArmy.sys
- Timestamp: Wed Mar 15 15:00:41 2017 (58C98F59)
- fffff800`8a010000 fffff800`8a0d0000 peauth (deferred)
- Image path: \SystemRoot\system32\drivers\peauth.sys
- Image name: peauth.sys
- Timestamp: Thu Oct 29 22:32:55 2015 (5632D6D7)
- fffff800`8e320000 fffff800`8e32e000 aswbuniva (deferred)
- Image path: \SystemRoot\system32\drivers\aswbuniva.sys
- Image name: aswbuniva.sys
- Timestamp: Tue Jun 6 12:14:23 2017 (5936D4DF)
- fffff800`8e330000 fffff800`8e380000 aswbloga (deferred)
- Image path: \SystemRoot\system32\drivers\aswbloga.sys
- Image name: aswbloga.sys
- Timestamp: Tue Jun 6 12:14:26 2017 (5936D4E2)
- fffff800`8e380000 fffff800`8e3af000 aswbidsha (deferred)
- Image path: \SystemRoot\system32\drivers\aswbidsha.sys
- Image name: aswbidsha.sys
- Timestamp: Tue Jun 6 12:14:33 2017 (5936D4E9)
- fffff800`8e4b0000 fffff800`8e561000 aswSP (deferred)
- Image path: \SystemRoot\system32\drivers\aswSP.sys
- Image name: aswSP.sys
- Timestamp: Thu Jun 22 18:45:26 2017 (594C4886)
- fffff800`8e570000 fffff800`8e666000 aswSnx (deferred)
- Image path: \SystemRoot\system32\drivers\aswSnx.sys
- Image name: aswSnx.sys
- Timestamp: Mon Jun 19 18:37:45 2017 (59485239)
- fffff800`8ea40000 fffff800`8ea5a000 aswRdr2 (deferred)
- Image path: \SystemRoot\system32\drivers\aswRdr2.sys
- Image name: aswRdr2.sys
- Timestamp: Mon Jun 19 18:37:38 2017 (59485232)
- fffff800`8ecb0000 fffff800`8ecbc000 ElbyCDIO (deferred)
- Image path: \SystemRoot\System32\Drivers\ElbyCDIO.sys
- Image name: ElbyCDIO.sys
- Timestamp: Wed Dec 17 18:30:51 2014 (5492122B)
- fffff800`8ed10000 fffff800`8ed60000 aswbidsdrivera (deferred)
- Image path: \SystemRoot\system32\drivers\aswbidsdrivera.sys
- Image name: aswbidsdrivera.sys
- Timestamp: Tue Jun 6 12:14:24 2017 (5936D4E0)
- fffff800`8eeb0000 fffff800`8eee4000 nvhda64v (deferred)
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Timestamp: Thu Sep 29 09:25:06 2016 (57ED1632)
- fffff800`8f0e0000 fffff800`8f107000 aswMonFlt (deferred)
- Image path: \SystemRoot\system32\drivers\aswMonFlt.sys
- Image name: aswMonFlt.sys
- Timestamp: Sat Jul 15 12:15:08 2017 (596A3F8C)
- fffff800`8f150000 fffff800`8f181000 aswStm (deferred)
- Image path: \SystemRoot\system32\drivers\aswStm.sys
- Image name: aswStm.sys
- Timestamp: Mon Jun 19 18:56:07 2017 (59485687)
- fffff800`8f4c0000 fffff800`8f516000 aswVmm (deferred)
- Image path: \SystemRoot\system32\drivers\aswVmm.sys
- Image name: aswVmm.sys
- Timestamp: Thu Jun 29 10:44:20 2017 (59551244)
- fffff800`8f520000 fffff800`8f533000 aswRvrt (deferred)
- Image path: \SystemRoot\system32\drivers\aswRvrt.sys
- Image name: aswRvrt.sys
- Timestamp: Mon Jun 19 18:37:16 2017 (5948521C)
- fffff800`8f750000 fffff800`8fa0dc80 RTKVHD64 (deferred)
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Timestamp: Tue May 24 08:32:39 2011 (4DDBA567)
- fffff800`8fa10000 fffff800`8fa1e000 MBfilt64 (deferred)
- Image path: \SystemRoot\system32\drivers\MBfilt64.sys
- Image name: MBfilt64.sys
- Timestamp: Thu Jul 30 23:40:32 2009 (4A7267B0)
- fffff800`8fb40000 fffff800`8fb58000 LHidFilt (deferred)
- Image path: \SystemRoot\system32\DRIVERS\LHidFilt.Sys
- Image name: LHidFilt.Sys
- Timestamp: Tue Jun 9 15:25:40 2015 (55773DB4)
- fffff800`8fb70000 fffff800`8fb84000 LMouFilt (deferred)
- Image path: \SystemRoot\system32\DRIVERS\LMouFilt.Sys
- Image name: LMouFilt.Sys
- Timestamp: Tue Jun 9 15:25:39 2015 (55773DB3)
- fffff800`904d0000 fffff800`90545000 Rt64win7 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\Rt64win7.sys
- Image name: Rt64win7.sys
- Timestamp: Thu Apr 21 14:15:33 2011 (4DB07445)
- fffff800`90580000 fffff800`9058d000 nvvad64v (deferred)
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Timestamp: Fri Jul 1 09:12:29 2016 (57766C3D)
- fffff800`905c0000 fffff800`905ce000 ScpVBus (deferred)
- Image path: \SystemRoot\System32\drivers\ScpVBus.sys
- Image name: ScpVBus.sys
- Timestamp: Sun May 5 17:31:26 2013 (5186CFAE)
- fffff800`905d0000 fffff800`905de000 VClone (deferred)
- Image path: \SystemRoot\System32\drivers\VClone.sys
- Image name: VClone.sys
- Timestamp: Wed Jul 24 11:02:55 2013 (51EFEC9F)
- fffff800`90660000 fffff800`9068f000 BazisVirtualCDBus (deferred)
- Image path: \SystemRoot\System32\drivers\BazisVirtualCDBus.sys
- Image name: BazisVirtualCDBus.sys
- Timestamp: Sat Sep 26 22:51:28 2015 (560759B0)
- fffff800`906a0000 fffff800`91479000 nvlddmkm (deferred)
- Image path: \SystemRoot\system32\DRIVERS\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Timestamp: Thu Dec 29 07:39:24 2016 (586503FC)
- fffff800`91500000 fffff800`91521000 drmk (deferred)
- Image path: \SystemRoot\System32\drivers\drmk.sys
- Image name: drmk.sys
- Timestamp: Thu Oct 29 22:38:44 2015 (5632D834)
- fffff961`f6900000 fffff961`f690a000 TSDDD (deferred)
- Image path: \SystemRoot\System32\TSDDD.dll
- Image name: TSDDD.dll
- Timestamp: unavailable (00000000)
- fffff961`f6910000 fffff961`f6971000 ATMFD (deferred)
- Image path: \SystemRoot\System32\ATMFD.DLL
- Image name: ATMFD.DLL
- Timestamp: Sat Jun 3 07:20:13 2017 (59329B6D)
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- Unloaded modules:
- fffff800`89f90000 fffff800`89fa7000 aswHdsKe.sys
- fffff800`8e400000 fffff800`8e40f000 dump_ataport
- fffff800`8e420000 fffff800`8e42c000 dump_atapi.s
- fffff800`8e450000 fffff800`8e46c000 dump_dumpfve
- fffff800`8ecf0000 fffff800`8ed03000 dam.sys
- fffff800`8e470000 fffff800`8e4a1000 cdrom.sys
- fffff800`8e2f0000 fffff800`8e2fe000 hwpolicy.sys
- ============================= BIOS INFO ================================
- [SMBIOS Data Tables v2.7]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 1641 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version P1.00
- BIOS Starting Address Segment f000
- BIOS Release Date 10/17/2012
- BIOS ROM Size 400000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 4
- BIOS Minor Revision 6
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASRock
- Product 970 Extreme3 R2.0
- Version
- Feature Flags 09h
- 1612194312: - ?ÿU?ì?ì¡H.+`3Å?Eü3ÀW?}?Eô?Eø?ÿu
- ¸@
- 1612194352: - ?ÿU?ì?ì¡H.+`3Å?Eü3ÀW?}?Eô?Eø?ÿu
- ¸@
- Location
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Chassis Type Desktop
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 0
- [Processor Information (Type 4) - Length 42 - Handle 0004h]
- Socket Designation CPUSocket
- Processor Type Central Processor
- Processor Family 3fh - Specification Reserved
- Processor Manufacturer AMD
- Processor ID 200f6000fffb8b17
- Processor Version AMD FX(tm)-6300 Six-Core Processor
- Processor Voltage 8eh - 1.4V
- External Clock 200MHz
- Max Speed 4000MHz
- Current Speed 4000MHz
- Status Enabled Populated
- Processor Upgrade Specification Reserved
- L1 Cache Handle 0005h
- L2 Cache Handle 0006h
- L3 Cache Handle 0007h
- [Cache Information (Type 7) - Length 19 - Handle 0005h]
- Socket Designation L1-Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0120h - 288K
- Installed Size 0120h - 288K
- Supported SRAM Type 0010h - Pipeline-Burst
- Current SRAM Type 0010h - Pipeline-Burst
- Cache Speed 1ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 2-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0006h]
- Socket Designation L2-Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 1800h - 6144K
- Installed Size 1800h - 6144K
- Supported SRAM Type 0010h - Pipeline-Burst
- Current SRAM Type 0010h - Pipeline-Burst
- Cache Speed 1ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0007h]
- Socket Designation L3-Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0010h - Pipeline-Burst
- Current SRAM Type 0010h - Pipeline-Burst
- Cache Speed 1ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [OEM Strings (Type 11) - Length 5 - Handle 000eh]
- Number of Strings 1
- [Physical Memory Array (Type 16) - Length 23 - Handle 000fh]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 33554432KB
- Number of Memory Devices 4
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0010h]
- Starting Address 00000000h
- Ending Address 0087c000h
- Memory Array Handle 000fh
- Partition Width 255
- [Memory Device (Type 17) - Length 34 - Handle 0011h]
- Physical Memory Array Handle 000fh
- Total Width 64 bits
- Data Width 64 bits
- Size 4096MB
- Form Factor 09h - DIMM
- Device Locator A1_DIMM0
- Bank Locator A1_BANK0
- Memory Type 18h - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 800MHz
- Manufacturer Micron
- Part Number 8JTF51264AZ-1G6E1
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0012h]
- Starting Address 00000000h
- Ending Address 003fffffh
- Memory Device Handle 0011h
- Mem Array Mapped Adr Handle 0010h
- Partition Row Position 01
- Interleave Position [None]
- Interleave Data Depth [None]
- [Memory Device (Type 17) - Length 34 - Handle 0013h]
- Physical Memory Array Handle 000fh
- Total Width 64 bits
- Data Width 64 bits
- Size 4096MB
- Form Factor 09h - DIMM
- Device Locator A1_DIMM1
- Bank Locator A1_BANK1
- Memory Type 18h - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 800MHz
- Manufacturer Micron
- Part Number 8JTF51264AZ-1G6E1
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0014h]
- Starting Address 00400000h
- Ending Address 007fffffh
- Memory Device Handle 0013h
- Mem Array Mapped Adr Handle 0010h
- Partition Row Position 01
- Interleave Position [None]
- Interleave Data Depth [None]
- [Memory Device (Type 17) - Length 34 - Handle 0015h]
- Physical Memory Array Handle 000fh
- Total Width 0 bits
- Data Width 64 bits
- Form Factor 09h - DIMM
- Device Locator A1_DIMM2
- Bank Locator A1_BANK2
- Memory Type 02h - Unknown
- Type Detail 0080h - Synchronous
- Speed 0MHz
- Manufacturer A1_Manufacturer2
- Part Number Array1_PartNumber2
- [Memory Device (Type 17) - Length 34 - Handle 0017h]
- Physical Memory Array Handle 000fh
- Total Width 0 bits
- Data Width 64 bits
- Form Factor 09h - DIMM
- Device Locator A1_DIMM3
- Bank Locator A1_BANK3
- Memory Type 02h - Unknown
- Type Detail 0080h - Synchronous
- Speed 0MHz
- Manufacturer A1_Manufacturer3
- Part Number Array1_PartNumber3
- ========================================================================
- =================== Dump File: 072717-13843-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 10586 MP (6 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 10586.1007.amd64fre.th2_release.170706-2002
- Kernel base = 0xfffff803`d3e1d000 PsLoadedModuleList = 0xfffff803`d40fac70
- Debug session time: Wed Jul 26 20:10:20.357 2017 (UTC - 4:00)
- System Uptime: 1 days 7:30:30.079
- BugCheck 3B, {c0000005, fffff803d3eea132, ffffd00020431d20, 0}
- Probably caused by : dxgkrnl.sys ( dxgkrnl!DXGADAPTER::AcquireCoreResourceShared+63 )
- Followup: MachineOwner
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff803d3eea132, Address of the instruction which caused the bugcheck
- Arg3: ffffd00020431d20, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.10586.1007 (th2_release.170706-2002)
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: P1.00
- BIOS_DATE: 10/17/2012
- BASEBOARD_MANUFACTURER: ASRock
- BASEBOARD_PRODUCT: 970 Extreme3 R2.0
- BASEBOARD_VERSION:
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- nt!KxWaitForLockOwnerShipWithIrql+12
- fffff803`d3eea132 48890a mov qword ptr [rdx],rcx
- CONTEXT: ffffd00020431d20 -- (.cxr 0xffffd00020431d20)
- rax=0000000000000000 rbx=ffffe000591bdc80 rcx=ffffd00020432790
- rdx=3a08000000000000 rsi=0000000000000000 rdi=ffffd00020432790
- rip=fffff803d3eea132 rsp=ffffd00020432740 rbp=ffffd000204327d0
- r8=ffffd00020432800 r9=ffffd000204328b8 r10=7fffc001411e9950
- r11=7ffffffffffffffc r12=0000000000000000 r13=0000000000000000
- r14=0000000000000001 r15=0000000000000000
- iopl=0 nv up di ng nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010086
- nt!KxWaitForLockOwnerShipWithIrql+0x12:
- fffff803`d3eea132 48890a mov qword ptr [rdx],rcx ds:002b:3a080000`00000000=????????????????
- Resetting default scope
- CPU_COUNT: 6
- CPU_MHZ: f97
- CPU_VENDOR: AuthenticAMD
- CPU_FAMILY: 15
- CPU_MODEL: 2
- CPU_STEPPING: 0
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: dwm.exe
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff803d3e2eaaa to fffff803d3eea132
- STACK_TEXT:
- ffffd000`20432740 fffff803`d3e2eaaa : ffffe000`591bdc80 ffffd000`00000079 00000000`00000000 ffffd000`204328d8 : nt!KxWaitForLockOwnerShipWithIrql+0x12
- ffffd000`20432770 fffff800`bc81a033 : ffffe000`591bd002 ffffe000`591bd010 00000000`00000000 00000000`00000004 : nt!ExAcquireResourceSharedLite+0x34a
- ffffd000`20432800 fffff800`bc7a3a8c : ffffd000`20432a08 00000000`00000000 00000058`dc1ffad0 ffffe000`00000000 : dxgkrnl!DXGADAPTER::AcquireCoreResourceShared+0x63
- ffffd000`20432830 fffff800`bc88abcd : 00000058`dc1ffad0 00000058`dc1ffad0 00000000`00000000 00000000`00000020 : dxgkrnl!COREADAPTERACCESS::AcquireShared+0x4c
- ffffd000`20432870 fffff800`bc858e8e : 00000000`40000080 00000000`00000000 ffffd000`00000000 00000000`00000000 : dxgkrnl!DxgkSetSyncRefreshCountWaitTargetInternal+0x9f5
- ffffd000`20432ac0 fffff803`d3f6a2a3 : ffffe000`594e4600 00000000`00000000 ffffd000`20432ad8 ffffe000`59453500 : dxgkrnl!DxgkSetSyncRefreshCountWaitTarget+0x8e
- ffffd000`20432b00 00007ffe`64c06d74 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000058`dc1ffaa8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffe`64c06d74
- THREAD_SHA1_HASH_MOD_FUNC: 01f5be069b41ffdfedeec7f001c6cbcae028ed79
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 676628eb00138c6bfa201795ef7d4c8775d4ffbb
- THREAD_SHA1_HASH_MOD: d2496a4d735498beebaffc618e88b4ad5ec02e8c
- FOLLOWUP_IP:
- dxgkrnl!DXGADAPTER::AcquireCoreResourceShared+63
- fffff800`bc81a033 4084f6 test sil,sil
- FAULT_INSTR_CODE: ff68440
- SYMBOL_STACK_INDEX: 2
- SYMBOL_NAME: dxgkrnl!DXGADAPTER::AcquireCoreResourceShared+63
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: dxgkrnl
- IMAGE_NAME: dxgkrnl.sys
- DEBUG_FLR_IMAGE_TIMESTAMP: 59328b1e
- IMAGE_VERSION: 10.0.10586.962
- STACK_COMMAND: .cxr 0xffffd00020431d20 ; kb
- BUCKET_ID_FUNC_OFFSET: 63
- FAILURE_BUCKET_ID: 0x3B_dxgkrnl!DXGADAPTER::AcquireCoreResourceShared
- BUCKET_ID: 0x3B_dxgkrnl!DXGADAPTER::AcquireCoreResourceShared
- PRIMARY_PROBLEM_CLASS: 0x3B_dxgkrnl!DXGADAPTER::AcquireCoreResourceShared
- TARGET_TIME: 2017-07-27T00:10:20.000Z
- OSBUILD: 10586
- OSSERVICEPACK: 1007
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-07-07 03:05:50
- BUILDDATESTAMP_STR: 170706-2002
- BUILDLAB_STR: th2_release
- BUILDOSVER_STR: 10.0.10586.1007
- ANALYSIS_SESSION_ELAPSED_TIME: 5e69
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x3b_dxgkrnl!dxgadapter::acquirecoreresourceshared
- FAILURE_ID_HASH: {3a1d92ac-79ba-fee2-3481-6000a374bbc8}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 072817-12421-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 10586 MP (6 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 10586.1007.amd64fre.th2_release.170706-2002
- Kernel base = 0xfffff802`6a080000 PsLoadedModuleList = 0xfffff802`6a35dc70
- Debug session time: Thu Jul 27 13:39:15.195 2017 (UTC - 4:00)
- System Uptime: 0 days 17:28:22.917
- BugCheck 4A, {7ffbb19b61c4, 2, 0, ffffd00022d2db80}
- Probably caused by : ntkrnlmp.exe ( nt!KiSystemServiceExit+24a )
- Followup: MachineOwner
- IRQL_GT_ZERO_AT_SYSTEM_SERVICE (4a)
- Returning to usermode from a system call at an IRQL > PASSIVE_LEVEL.
- Arguments:
- Arg1: 00007ffbb19b61c4, Address of system function (system call routine)
- Arg2: 0000000000000002, Current IRQL
- Arg3: 0000000000000000, 0
- Arg4: ffffd00022d2db80, 0
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.10586.1007 (th2_release.170706-2002)
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: P1.00
- BIOS_DATE: 10/17/2012
- BASEBOARD_MANUFACTURER: ASRock
- BASEBOARD_PRODUCT: 970 Extreme3 R2.0
- BASEBOARD_VERSION:
- DUMP_TYPE: 2
- PROCESS_NAME: RuntimeBroker.
- BUGCHECK_STR: RAISED_IRQL_FAULT
- FAULTING_IP:
- +0
- 00007ffb`b19b61c4 ?? ???
- CPU_COUNT: 6
- CPU_MHZ: f97
- CPU_VENDOR: AuthenticAMD
- CPU_FAMILY: 15
- CPU_MODEL: 2
- CPU_STEPPING: 0
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- CURRENT_IRQL: 2
- LAST_CONTROL_TRANSFER: from fffff8026a1cd5e9 to fffff8026a1c29f0
- STACK_TEXT:
- ffffd000`22d2d948 fffff802`6a1cd5e9 : 00000000`0000004a 00007ffb`b19b61c4 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
- ffffd000`22d2d950 fffff802`6a1cd4f5 : 000000a1`459fe2a8 000000a1`459fe2a0 00000000`00000000 ffffd862`0d173f9c : nt!KiBugCheckDispatch+0x69
- ffffd000`22d2da90 00007ffb`b19b61c4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit+0x24a
- 000000a1`459fe428 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffb`b19b61c4
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: 713a38487ff3d82058f51d9870e0b3de39cbf964
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 246a369aaf459d947cd16ea5fd3045aca5047f8c
- THREAD_SHA1_HASH_MOD: 2a7ca9d3ab5386d53fea7498e1d81b9c4a4c036b
- FOLLOWUP_IP:
- nt!KiSystemServiceExit+24a
- fffff802`6a1cd4f5 4883ec50 sub rsp,50h
- FAULT_INSTR_CODE: 50ec8348
- SYMBOL_STACK_INDEX: 2
- SYMBOL_NAME: nt!KiSystemServiceExit+24a
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 595f32ce
- IMAGE_VERSION: 10.0.10586.1007
- BUCKET_ID_FUNC_OFFSET: 24a
- FAILURE_BUCKET_ID: RAISED_IRQL_FAULT_RuntimeBroker._nt!KiSystemServiceExit
- BUCKET_ID: RAISED_IRQL_FAULT_RuntimeBroker._nt!KiSystemServiceExit
- PRIMARY_PROBLEM_CLASS: RAISED_IRQL_FAULT_RuntimeBroker._nt!KiSystemServiceExit
- TARGET_TIME: 2017-07-27T17:39:15.000Z
- OSBUILD: 10586
- OSSERVICEPACK: 1007
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-07-07 03:05:50
- BUILDDATESTAMP_STR: 170706-2002
- BUILDLAB_STR: th2_release
- BUILDOSVER_STR: 10.0.10586.1007
- ANALYSIS_SESSION_ELAPSED_TIME: b85
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:raised_irql_fault_runtimebroker._nt!kisystemserviceexit
- FAILURE_ID_HASH: {51ce11f7-0789-ab36-c276-77026fa47e9d}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 072417-13750-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 10586 MP (6 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 10586.1007.amd64fre.th2_release.170706-2002
- Kernel base = 0xfffff802`77a79000 PsLoadedModuleList = 0xfffff802`77d56c70
- Debug session time: Sun Jul 23 23:26:31.759 2017 (UTC - 4:00)
- System Uptime: 1 days 6:01:07.480
- BugCheck 3B, {c0000005, fffff80277b46132, ffffd00024c1d8c0, 0}
- Probably caused by : ntkrnlmp.exe ( nt!KxWaitForLockOwnerShipWithIrql+12 )
- Followup: MachineOwner
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff80277b46132, Address of the instruction which caused the bugcheck
- Arg3: ffffd00024c1d8c0, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.10586.1007 (th2_release.170706-2002)
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: P1.00
- BIOS_DATE: 10/17/2012
- BASEBOARD_MANUFACTURER: ASRock
- BASEBOARD_PRODUCT: 970 Extreme3 R2.0
- BASEBOARD_VERSION:
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- nt!KxWaitForLockOwnerShipWithIrql+12
- fffff802`77b46132 48890a mov qword ptr [rdx],rcx
- CONTEXT: ffffd00024c1d8c0 -- (.cxr 0xffffd00024c1d8c0)
- rax=0000000000000000 rbx=ffffe00027316920 rcx=ffffd00024c1e330
- rdx=2000000000000000 rsi=fffff80278171600 rdi=ffffd00024c1e330
- rip=fffff80277b46132 rsp=ffffd00024c1e2e0 rbp=ffffd00024c1e370
- r8=ffffd00024c1e3a0 r9=0000000000000000 r10=0000000000000000
- r11=fffff80277bc768f r12=0000000000000000 r13=ffffe000280de030
- r14=0000000000000001 r15=0000000000000000
- iopl=0 nv up di ng nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010086
- nt!KxWaitForLockOwnerShipWithIrql+0x12:
- fffff802`77b46132 48890a mov qword ptr [rdx],rcx ds:002b:20000000`00000000=????????????????
- Resetting default scope
- CPU_COUNT: 6
- CPU_MHZ: f97
- CPU_VENDOR: AuthenticAMD
- CPU_FAMILY: 15
- CPU_MODEL: 2
- CPU_STEPPING: 0
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: RuntimeBroker.
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff80277a8aaaa to fffff80277b46132
- STACK_TEXT:
- ffffd000`24c1e2e0 fffff802`77a8aaaa : ffffe000`27316920 fffff802`000005dd 00000000`00000000 fffff802`77ad130e : nt!KxWaitForLockOwnerShipWithIrql+0x12
- ffffd000`24c1e310 fffff802`77e77dc8 : ffffc000`c8b74302 ffffe000`280de030 fffff802`78171658 ffffc000`d12f7350 : nt!ExAcquireResourceSharedLite+0x34a
- ffffd000`24c1e3a0 fffff802`77ad3677 : 00000000`00001000 00000660`00000000 00000000`00000660 ffffd000`24c1e524 : nt!SeLockSubjectContext+0x28
- ffffd000`24c1e3d0 fffff802`77ad2e62 : 00000000`00000001 fffff802`00000000 ffffc000`cecc1770 ffffe000`21a25800 : nt!SeAccessCheckWithHint+0x807
- ffffd000`24c1e580 fffff802`77e78521 : ffffe000`00000000 00000501`00010001 0000001c`00008004 ffffffff`00000002 : nt!SeAccessCheck+0x62
- ffffd000`24c1e5f0 fffff802`77e5f8e3 : 00000000`00000e18 00000000`c0000022 00000000`00000000 ffffd000`24c1e860 : nt!RtlIsSandboxedToken+0x7d
- ffffd000`24c1e670 fffff802`77e6160c : ffffe000`280de000 ffffd000`24c1e860 ffffc000`00000040 ffffe000`21b46d90 : nt!ObpLookupObjectName+0xe3
- ffffd000`24c1e7f0 fffff802`77e40866 : 00020019`00000001 ffffe000`21b46d90 00000033`e79fd588 00000000`00000000 : nt!ObOpenObjectByNameEx+0x1ec
- ffffd000`24c1e910 fffff802`77e405b3 : 00000033`e79fd8dc 00000033`e79fd8d8 00000000`0000254c 00000000`00000000 : nt!CmOpenKey+0x2a6
- ffffd000`24c1eac0 fffff802`77bc62a3 : 00000033`e79fdcd0 00000033`e79fdc80 ffffe000`2398f840 ffffd000`24c1eb80 : nt!NtOpenKeyEx+0xf
- ffffd000`24c1eb00 00007ff9`c07272a4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000033`e79fd518 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`c07272a4
- THREAD_SHA1_HASH_MOD_FUNC: e8b049dc017e1a805cf05ca51c9b5f5cb326d21f
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 3810b35f0207c6530b36e471cffd1da0d7a827e1
- THREAD_SHA1_HASH_MOD: b28610981796779b4ac02f58898fde25728a775c
- FOLLOWUP_IP:
- nt!KxWaitForLockOwnerShipWithIrql+12
- fffff802`77b46132 48890a mov qword ptr [rdx],rcx
- FAULT_INSTR_CODE: 4d0a8948
- SYMBOL_STACK_INDEX: 0
- SYMBOL_NAME: nt!KxWaitForLockOwnerShipWithIrql+12
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 595f32ce
- IMAGE_VERSION: 10.0.10586.1007
- STACK_COMMAND: .cxr 0xffffd00024c1d8c0 ; kb
- BUCKET_ID_FUNC_OFFSET: 12
- FAILURE_BUCKET_ID: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- BUCKET_ID: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- PRIMARY_PROBLEM_CLASS: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- TARGET_TIME: 2017-07-24T03:26:31.000Z
- OSBUILD: 10586
- OSSERVICEPACK: 1007
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-07-07 03:05:50
- BUILDDATESTAMP_STR: 170706-2002
- BUILDLAB_STR: th2_release
- BUILDOSVER_STR: 10.0.10586.1007
- ANALYSIS_SESSION_ELAPSED_TIME: 8d83
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x3b_nt!kxwaitforlockownershipwithirql
- FAILURE_ID_HASH: {c3fcce84-82a0-ac56-6588-32a985eb9681}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 072517-12546-01.dmp ===================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 10586 MP (6 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 10586.1007.amd64fre.th2_release.170706-2002
- Kernel base = 0xfffff801`f8a13000 PsLoadedModuleList = 0xfffff801`f8cf0c70
- Debug session time: Mon Jul 24 15:16:24.983 2017 (UTC - 4:00)
- System Uptime: 0 days 15:49:25.705
- BugCheck 3B, {c0000005, fffff801f8ae0132, ffffd00022cec9d0, 0}
- Probably caused by : ntkrnlmp.exe ( nt!KxWaitForLockOwnerShipWithIrql+12 )
- Followup: MachineOwner
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff801f8ae0132, Address of the instruction which caused the bugcheck
- Arg3: ffffd00022cec9d0, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.10586.1007 (th2_release.170706-2002)
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: P1.00
- BIOS_DATE: 10/17/2012
- BASEBOARD_MANUFACTURER: ASRock
- BASEBOARD_PRODUCT: 970 Extreme3 R2.0
- BASEBOARD_VERSION:
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- nt!KxWaitForLockOwnerShipWithIrql+12
- fffff801`f8ae0132 48890a mov qword ptr [rdx],rcx
- CONTEXT: ffffd00022cec9d0 -- (.cxr 0xffffd00022cec9d0)
- rax=0000000000000000 rbx=ffffe001af95b870 rcx=ffffd00022ced440
- rdx=2000000000000000 rsi=ffffe001b2a0db00 rdi=ffffd00022ced440
- rip=fffff801f8ae0132 rsp=ffffd00022ced3f0 rbp=ffffd00022ced480
- r8=ffffd00022ced4b0 r9=0000000000000001 r10=ffffe001b2a50010
- r11=ffffd00022ced4b0 r12=0000000000000000 r13=ffffe001b2a50010
- r14=0000000000000001 r15=0000000000000000
- iopl=0 nv up di ng nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010086
- nt!KxWaitForLockOwnerShipWithIrql+0x12:
- fffff801`f8ae0132 48890a mov qword ptr [rdx],rcx ds:002b:20000000`00000000=????????????????
- Resetting default scope
- CPU_COUNT: 6
- CPU_MHZ: f97
- CPU_VENDOR: AuthenticAMD
- CPU_FAMILY: 15
- CPU_MODEL: 2
- CPU_STEPPING: 0
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: SetPoint.exe
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff801f8a24aaa to fffff801f8ae0132
- STACK_TEXT:
- ffffd000`22ced3f0 fffff801`f8a24aaa : ffffe001`af95b870 fffff801`44bbb42b 00000000`00020000 00000000`00000000 : nt!KxWaitForLockOwnerShipWithIrql+0x12
- ffffd000`22ced420 fffff801`f8e11dc8 : 00000000`00000002 ffffe001`b2a50030 ffffe001`b2a0db10 00000000`00120000 : nt!ExAcquireResourceSharedLite+0x34a
- ffffd000`22ced4b0 fffff801`f8e00f02 : 00000000`00000002 00000000`00000004 ffffe001`b2a0db10 00000000`00000000 : nt!SeLockSubjectContext+0x28
- ffffd000`22ced4e0 fffff801`f8dfa192 : fffff801`f8a13000 fffff801`f8a13000 00000000`00000001 fffff801`f8e00880 : nt!IopParseDevice+0x682
- ffffd000`22ced6b0 fffff801`f8dfb60c : ffffe001`b2a50000 ffffd000`22ced8a0 ffffc001`00000040 ffffe001`abf50f20 : nt!ObpLookupObjectName+0x992
- ffffd000`22ced830 fffff801`f8dd9f38 : ffffd000`00000001 ffffe001`b2a0db10 00000000`00000000 00000000`00000000 : nt!ObOpenObjectByNameEx+0x1ec
- ffffd000`22ced950 fffff801`f8dd9a99 : 00000000`0467f5f8 00000000`00000000 00000000`0467f420 00000000`0467f450 : nt!IopCreateFile+0x3d8
- ffffd000`22ceda00 fffff801`f8b602a3 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000001 : nt!NtCreateFile+0x79
- ffffd000`22ceda90 00007ffc`a36e5b74 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000000`0467f3a8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffc`a36e5b74
- THREAD_SHA1_HASH_MOD_FUNC: 47058392d69e5c76d05c439ef4f4528607234fa7
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 19643d115682ca763f8f4a9e2bf498559c549a20
- THREAD_SHA1_HASH_MOD: 9f457f347057f10e1df248e166a3e95e6570ecfe
- FOLLOWUP_IP:
- nt!KxWaitForLockOwnerShipWithIrql+12
- fffff801`f8ae0132 48890a mov qword ptr [rdx],rcx
- FAULT_INSTR_CODE: 4d0a8948
- SYMBOL_STACK_INDEX: 0
- SYMBOL_NAME: nt!KxWaitForLockOwnerShipWithIrql+12
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 595f32ce
- IMAGE_VERSION: 10.0.10586.1007
- STACK_COMMAND: .cxr 0xffffd00022cec9d0 ; kb
- BUCKET_ID_FUNC_OFFSET: 12
- FAILURE_BUCKET_ID: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- BUCKET_ID: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- PRIMARY_PROBLEM_CLASS: 0x3B_nt!KxWaitForLockOwnerShipWithIrql
- TARGET_TIME: 2017-07-24T19:16:24.000Z
- OSBUILD: 10586
- OSSERVICEPACK: 1007
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-07-07 03:05:50
- BUILDDATESTAMP_STR: 170706-2002
- BUILDLAB_STR: th2_release
- BUILDOSVER_STR: 10.0.10586.1007
- ANALYSIS_SESSION_ELAPSED_TIME: 104b8
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x3b_nt!kxwaitforlockownershipwithirql
- FAILURE_ID_HASH: {c3fcce84-82a0-ac56-6588-32a985eb9681}
- Followup: MachineOwner
Advertisement
Add Comment
Please, Sign In to add comment