Guest User

Untitled

a guest
Apr 24th, 2020
565
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 34.54 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 02 minutes and 02 seconds
  5.  
  6. ================================= BIOS =================================
  7. VENDOR: American Megatrends Inc.
  8. VERSION: 1009
  9. DATE: 07/23/2017
  10.  
  11. ============================= MOTHERBOARD ==============================
  12. MANUFACTURER: ASUSTeK COMPUTER INC.
  13. PRODUCT: PRIME Z270-A
  14. VERSION: Rev 1.xx
  15.  
  16. ================================= RAM ==================================
  17. Size Speed Manufacturer Part No.
  18. -------------- -------------- ------------------- ----------------------
  19. 0MHz
  20. 0MHz
  21. 8192MB 2133MHz Corsair CMK16GX4M2B3200C16
  22. 8192MB 2133MHz Corsair CMK16GX4M2B3200C16
  23.  
  24. ================================= CPU ==================================
  25. Processor Version: Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
  26. COUNT: 8
  27. MHZ: 4200
  28. VENDOR: GenuineIntel
  29. FAMILY: 6
  30. MODEL: 9e
  31. STEPPING: 9
  32. MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 8E'00000000 (cache) 8E'00000000 (init)
  33.  
  34. ================================== OS ==================================
  35. Product: WinNt, suite: TerminalServer SingleUserTS
  36. BUILD_VERSION: 10.0.18362.720 (WinBuild.160101.0800)
  37. BUILD: 18362
  38. SERVICEPACK: 720
  39. PLATFORM_TYPE: x64
  40. NAME: Windows 10
  41. EDITION: Windows 10 WinNt TerminalServer SingleUserTS
  42. BUILD_TIMESTAMP: unknown_date
  43. BUILDDATESTAMP: 160101.0800
  44. BUILDLAB: WinBuild
  45. BUILDOSVER: 10.0.18362.720
  46.  
  47. =============================== DEBUGGER ===============================
  48. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  49. Copyright (c) Microsoft Corporation. All rights reserved.
  50.  
  51. =============================== COMMENTS ===============================
  52. * Information gathered from different dump files may be different. If
  53. Windows updates between two dump files, two or more OS versions may
  54. be shown above.
  55. * If the user updates the BIOS between dump files, two or more versions
  56. and dates may be shown above.
  57. * More RAM information can be found below in a full BIOS section.
  58.  
  59. ========================================================================
  60. ======================= Dump #1: ANALYZE VERBOSE =======================
  61. ======================= File: 042420-7984-01.dmp =======================
  62. ========================================================================
  63.  
  64. Mini Kernel Dump File: Only registers and stack trace are available
  65. Windows 10 Kernel Version 18362 MP (8 procs) Free x64
  66. Kernel base = 0xfffff804`49600000 PsLoadedModuleList = 0xfffff804`49a48150
  67. Debug session time: Fri Apr 24 13:32:08.175 2020 (UTC - 4:00)
  68. System Uptime: 1 days 15:30:13.020
  69.  
  70. BugCheck 1A, {4477, f450080, 0, 0}
  71. Probably caused by : memory_corruption ( nt!MiCheckFatalAccessViolation+1a2bd8 )
  72. Followup: MachineOwner
  73.  
  74. MEMORY_MANAGEMENT (1a)
  75. # Any other values for parameter 1 must be individually examined.
  76.  
  77. Arguments:
  78. Arg1: 0000000000004477, A driver tried to write to an unallocated address in the
  79. user space of the system process. Parameter 2 contains the
  80. address of the attempted write.
  81. Arg2: 000000000f450080
  82. Arg3: 0000000000000000
  83. Arg4: 0000000000000000
  84.  
  85. Debugging Details:
  86. DUMP_CLASS: 1
  87. DUMP_QUALIFIER: 400
  88. DUMP_TYPE: 2
  89. DUMP_FILE_ATTRIBUTES: 0x8
  90. Kernel Generated Triage Dump
  91. BUGCHECK_STR: 0x1a_4477
  92. CUSTOMER_CRASH_COUNT: 1
  93. DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
  94.  
  95. PROCESS_NAME: System
  96.  
  97. CURRENT_IRQL: 2
  98. TRAP_FRAME: fffff989aee3f540 -- (.trap 0xfffff989aee3f540)
  99. NOTE: The trap frame does not contain all registers.
  100. Some register values may be zeroed or incorrect.
  101. rax=fffff989aee3f868 rbx=0000000000000000 rcx=000000000f450084
  102. rdx=fffff804497e54b0 rsi=0000000000000000 rdi=0000000000000000
  103. rip=fffff804497d54c1 rsp=fffff989aee3f6d0 rbp=ffff8f81b8a1f010
  104. r8=0000000000000004 r9=0000000000000000 r10=fffff80466c515a0
  105. r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
  106. r14=0000000000000000 r15=0000000000000000
  107. iopl=0 nv up ei pl nz na pe nc
  108. nt!memset+0x41:
  109. fffff804`497d54c1 4a895401f8 mov qword ptr [rcx+r8-8],rdx ds:00000000`0f450080=????????????????
  110. Resetting default scope
  111. LAST_CONTROL_TRANSFER: from fffff804497fce80 to fffff804497c2380
  112. STACK_TEXT:
  113. fffff989`aee3f158 fffff804`497fce80 : 00000000`0000001a 00000000`00004477 00000000`0f450080 00000000`00000000 : nt!KeBugCheckEx
  114. fffff989`aee3f160 fffff804`496f8512 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000010 : nt!MiCheckFatalAccessViolation+0x1a2bd8
  115. fffff989`aee3f1a0 fffff804`496c9c8c : ffff86ff`ffffffff ffff8680`00000000 ffff8680`00000000 ffff86c3`400003d0 : nt!MiInPagePageTable+0x2f2
  116. fffff989`aee3f2f0 fffff804`496c8fbe : ffff8f81`c8fe46c0 ffff8f81`c3ff9300 9c9ee1fe`00000002 00000000`00000000 : nt!MiUserFault+0x7dc
  117. fffff989`aee3f3a0 fffff804`497d0420 : 00000000`00000000 00000000`00000000 00000000`00000003 00000000`00000000 : nt!MmAccessFault+0x14e
  118. fffff989`aee3f540 fffff804`497d54c1 : fffff989`aee3f868 fffff804`496bb946 00014a31`afb32b8c ffff8f81`b8a1f010 : nt!KiPageFault+0x360
  119. fffff989`aee3f6d0 fffff989`aee3f868 : fffff804`496bb946 00014a31`afb32b8c ffff8f81`b8a1f010 00000000`00000000 : nt!memset+0x41
  120. fffff989`aee3f6d8 fffff804`496bb946 : 00014a31`afb32b8c ffff8f81`b8a1f010 00000000`00000000 00000000`00000004 : 0xfffff989`aee3f868
  121. fffff989`aee3f6e0 fffff804`496badee : 00000000`00000000 7ca647f9`a5900000 00000000`00000001 00000000`00000000 : nt!PpmIdleExecuteTransition+0x9b6
  122. fffff989`aee3fa00 fffff804`497c5e88 : ffffffff`00000000 ffff9f81`1e2a5180 ffff8f81`cb080080 00000000`00000347 : nt!PoIdle+0x36e
  123. fffff989`aee3fb60 00000000`00000000 : fffff989`aee40000 fffff989`aee39000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x48
  124. STACK_COMMAND: kb
  125. THREAD_SHA1_HASH_MOD_FUNC: a8e19c2f9ec0d9a8d6c1a1ef0f54bacec83310b1
  126. THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 186e7d6a9fc314e9582fde9341994056a056dca3
  127. THREAD_SHA1_HASH_MOD: bc100a5647b828107ac4e18055e00abcbe1ec406
  128. FOLLOWUP_IP:
  129. nt!MiCheckFatalAccessViolation+1a2bd8
  130. fffff804`497fce80 cc int 3
  131. FAULT_INSTR_CODE: 648348cc
  132. SYMBOL_STACK_INDEX: 1
  133. SYMBOL_NAME: nt!MiCheckFatalAccessViolation+1a2bd8
  134. FOLLOWUP_NAME: MachineOwner
  135. MODULE_NAME: nt
  136. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  137. IMAGE_VERSION: 10.0.18362.720
  138.  
  139. IMAGE_NAME: memory_corruption
  140.  
  141. BUCKET_ID_FUNC_OFFSET: 1a2bd8
  142. FAILURE_BUCKET_ID: 0x1a_4477_nt!MiCheckFatalAccessViolation
  143. BUCKET_ID: 0x1a_4477_nt!MiCheckFatalAccessViolation
  144. PRIMARY_PROBLEM_CLASS: 0x1a_4477_nt!MiCheckFatalAccessViolation
  145. TARGET_TIME: 2020-04-24T17:32:08.000Z
  146. SUITE_MASK: 272
  147. PRODUCT_TYPE: 1
  148. USER_LCID: 0
  149. FAILURE_ID_HASH_STRING: km:0x1a_4477_nt!micheckfatalaccessviolation
  150. FAILURE_ID_HASH: {4da9db58-787b-9fc4-c06b-a8dad5cf4f73}
  151. Followup: MachineOwner
  152.  
  153. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  154.  
  155. Sep 06 2016 - bcmpciedhd63.sys - Broadcom WIFI driver
  156. Oct 04 2016 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
  157. Nov 22 2016 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  158. Apr 11 2018 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
  159. May 31 2018 - tapnordvpn.sys - Nord VPN TAP driver https://nordvpn.com
  160. Jun 11 2018 - e1i65x64.sys - Intel(R) Gigabit Adapter driver
  161. Sep 25 2019 - igdkmd64.sys - Intel HD graphics driver
  162. Dec 09 2019 - iaStorAC.sys - Intel Rapid Storage Technology driver
  163. Apr 02 2020 - nlwt.sys -
  164.  
  165. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  166.  
  167. Image name: bcmpciedhd63.sys
  168. Search : https://www.google.com/search?q=bcmpciedhd63.sys
  169. ADA Info : Broadcom WIFI driver
  170. Timestamp : Tue Sep 6 2016
  171.  
  172. Image name: IntcDAud.sys
  173. Search : https://www.google.com/search?q=IntcDAud.sys
  174. ADA Info : Intel Display Audio Driver http://www.intel.com/
  175. Timestamp : Tue Oct 4 2016
  176.  
  177. Image name: RTKVHD64.sys
  178. Search : https://www.google.com/search?q=RTKVHD64.sys
  179. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  180. Timestamp : Tue Nov 22 2016
  181.  
  182. Image name: TeeDriverW8x64.sys
  183. Search : https://www.google.com/search?q=TeeDriverW8x64.sys
  184. ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
  185. Timestamp : Wed Apr 11 2018
  186.  
  187. Image name: tapnordvpn.sys
  188. Search : https://www.google.com/search?q=tapnordvpn.sys
  189. ADA Info : Nord VPN TAP driver https://nordvpn.com
  190. Timestamp : Thu May 31 2018
  191.  
  192. Mapped memory image file: C:\ProgramData\dbg\sym\e1i65x64.sys\5B1EB8E28e000\e1i65x64.sys
  193. Image name: e1i65x64.sys
  194. Search : https://www.google.com/search?q=e1i65x64.sys
  195. ADA Info : Intel(R) Gigabit Adapter driver
  196. Timestamp : Mon Jun 11 2018
  197. File version: 12.17.10.8
  198. Product version: 10.0.10011.16384
  199. File flags: 8 (Mask 3F) Private
  200. File OS: 40004 NT Win32
  201. File type: 3.6 Driver
  202. File date: 00000000.00000000
  203. CompanyName: Intel Corporation
  204. ProductName: Intel(R) Gigabit Adapter
  205. InternalName: e1i65x64.sys
  206. OriginalFilename: e1i65x64.sys
  207. ProductVersion: 12.17.10.8
  208. FileVersion: 12.17.10.8
  209. FileDescription: Intel(R) Gigabit Adapter NDIS 6.x driver
  210. LegalCopyright: Copyright(C) 2013, Intel Corporation. All rights reserved.
  211.  
  212. Image name: igdkmd64.sys
  213. Search : https://www.google.com/search?q=igdkmd64.sys
  214. ADA Info : Intel HD graphics driver
  215. Timestamp : Wed Sep 25 2019
  216.  
  217. Image name: iaStorAC.sys
  218. Search : https://www.google.com/search?q=iaStorAC.sys
  219. ADA Info : Intel Rapid Storage Technology driver
  220. Timestamp : Mon Dec 9 2019
  221.  
  222. Image name: nlwt.sys
  223. Search : https://www.google.com/search?q=nlwt.sys
  224. Timestamp : Thu Apr 2 2020
  225.  
  226. ====================== Dump #1: MICROSOFT DRIVERS ======================
  227.  
  228. ACPI.sys ACPI Driver for NT (Microsoft)
  229. acpiex.sys ACPIEx Driver (Microsoft)
  230. acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
  231. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  232. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  233. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  234. ahcache.sys Application Compatibility Cache (Microsoft)
  235. asyncmac.sys MS Remote Access serial network driver
  236. bam.sys BAM Kernal driver (Microsoft)
  237. BasicDisplay.sys Basic Display driver (Microsoft)
  238. BasicRender.sys Basic Render driver (Microsoft)
  239. Beep.SYS BEEP driver (Microsoft)
  240. bindflt.sys Windows Bind Filter driver (Microsoft)
  241. BOOTVID.dll VGA Boot Driver (Microsoft)
  242. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  243. cdd.dll Canonical Display Driver (Microsoft)
  244. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  245. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  246. CI.dll Code Integrity Module (Microsoft)
  247. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  248. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  249. CLFS.SYS Common Log File System Driver (Microsoft)
  250. clipsp.sys CLIP Service (Microsoft)
  251. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  252. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  253. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  254. condrv.sys Console Driver (Microsoft)
  255. crashdmp.sys Crash Dump driver (Microsoft)
  256. csc.sys Windows Client Side Caching driver (Microsoft)
  257. dfsc.sys DFS Namespace Client Driver (Microsoft)
  258. disk.sys PnP Disk Driver (Microsoft)
  259. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  260. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  261. dump_iaStorAC.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  262. dump_storport.sys Provides disk access during crash dump file generation (Microsoft)
  263. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  264. dxgmms2.sys DirectX Graphics MMS
  265. EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
  266. fastfat.SYS Fast FAT File System Driver (Microsoft)
  267. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  268. fileinfo.sys FileInfo Filter Driver (Microsoft)
  269. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  270. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  271. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  272. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  273. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  274. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  275. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  276. HIDCLASS.SYS Hid Class Library (Microsoft)
  277. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  278. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  279. HTTP.sys HTTP Protocol Stack (Microsoft)
  280. intelpep.sys Intel Power Engine Plugin (Microsoft)
  281. intelppm.sys Processor Device Driver (Microsoft)
  282. iorate.sys I/O rate control Filter (Microsoft)
  283. kbdclass.sys Keyboard Class Driver (Microsoft)
  284. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  285. kdcom.dll Kernel Debugger HW Extension DLL (Microsoft)
  286. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  287. ks.sys Kernal CSA Library (Microsoft)
  288. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  289. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  290. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  291. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  292. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  293. mcupdate.dll Media Center Update (Microsoft)
  294. mmcss.sys MMCSS Driver (Microsoft)
  295. monitor.sys Monitor Driver (Microsoft)
  296. mouclass.sys Mouse Class Driver (Microsoft)
  297. mouhid.sys HID Mouse Filter Driver (Microsoft)
  298. mountmgr.sys Mount Point Manager (Microsoft)
  299. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  300. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  301. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  302. Msfs.SYS Mailslot driver (Microsoft)
  303. msisadrv.sys ISA Driver (Microsoft)
  304. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  305. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  306. mssecflt.sys Microsoft Security Events Component file system filter driver (Microsoft)
  307. mssmbios.sys System Management BIOS driver (Microsoft)
  308. mup.sys Multiple UNC Provider driver (Microsoft)
  309. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  310. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  311. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  312. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  313. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  314. NDProxy.sys NDIS Proxy driver (Microsoft)
  315. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  316. netbios.sys NetBIOS Interface driver (Microsoft)
  317. netbt.sys MBT Transport driver (Microsoft)
  318. NETIO.SYS Network I/O Subsystem (Microsoft)
  319. Npfs.SYS NPFS driver (Microsoft)
  320. npsvctrig.sys Named pipe service triggers (Microsoft)
  321. nsiproxy.sys NSI Proxy driver (Microsoft)
  322. Ntfs.sys NT File System Driver (Microsoft)
  323. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  324. ntosext.sys NTOS Extension Host driver (Microsoft)
  325. Null.SYS NULL Driver (Microsoft)
  326. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  327. pacer.sys QoS Packet Scheduler (Microsoft)
  328. partmgr.sys Partition driver (Microsoft)
  329. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  330. pcw.sys Performance Counter Driver (Microsoft)
  331. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  332. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  333. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  334. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  335. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  336. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  337. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  338. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  339. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  340. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  341. rdyboost.sys ReadyBoost Driver (Microsoft)
  342. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  343. serenum.sys Serial Port Enumerator (Microsoft)
  344. serial.sys Serial Device Driver
  345. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  346. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  347. spaceport.sys Storage Spaces driver (Microsoft)
  348. srv2.sys Smb 2.0 Server driver (Microsoft)
  349. srvnet.sys Server Network driver (Microsoft)
  350. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  351. storqosflt.sys Storage QoS Filter driver (Microsoft)
  352. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  353. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  354. tcpip.sys TCP/IP Protocol driver (Microsoft)
  355. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  356. TDI.SYS TDI Wrapper driver (Microsoft)
  357. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  358. tm.sys Kernel Transaction Manager driver (Microsoft)
  359. ucx01000.sys USB Controller Extension (Microsoft)
  360. UEFI.sys UEFI NT driver (Microsoft)
  361. umbus.sys User-Mode Bus Enumerator (Microsoft)
  362. umpass.sys Generic pass-through driver (Microsoft)
  363. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  364. USBD.SYS Universal Serial Bus Driver (Microsoft)
  365. UsbHub3.sys USB3 HUB driver (Microsoft)
  366. USBXHCI.SYS USB XHCI driver (Microsoft)
  367. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  368. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  369. volmgr.sys Volume Manager Driver (Microsoft)
  370. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  371. volsnap.sys Volume Shadow Copy driver (Microsoft)
  372. volume.sys Volume driver (Microsoft)
  373. vwifibus.sys Virtual Wireless Bus driver (Microsoft)
  374. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  375. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  376. watchdog.sys Watchdog driver (Microsoft)
  377. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  378. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  379. WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
  380. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  381. wdiwifi.sys WDI Driver Framework driver (Microsoft)
  382. WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
  383. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  384. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  385. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  386. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  387. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  388. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  389. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  390. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  391. winquic.sys QUIC Transport Protocol driver (Microsoft)
  392. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  393. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  394. Wof.sys Windows Overlay Filter (Microsoft)
  395. WppRecorder.sys WPP Trace Recorder (Microsoft)
  396. WSDPrint.sys Web Services Print Device driver (Microsoft)
  397. WSDScan.sys Web Service Based Scan Device driver (Microsoft)
  398.  
  399. ====================== Dump #1: UNLOADED MODULES =======================
  400.  
  401. fffff804`47a80000 fffff804`47a8c000 umpass.sys
  402. fffff804`47a70000 fffff804`47a7f000 hiber_storpo
  403. fffff804`6dcb0000 fffff804`6e894000 hiber_iaStor
  404. fffff804`6e8a0000 fffff804`6e8be000 hiber_dumpfv
  405. fffff804`47a60000 fffff804`47a6c000 umpass.sys
  406. fffff804`47990000 fffff804`4799e000 WSDScan.sys
  407. fffff804`47980000 fffff804`4798e000 WSDPrint.sys
  408. fffff804`47a20000 fffff804`47a2c000 umpass.sys
  409. fffff804`47a30000 fffff804`47a3f000 hiber_storpo
  410. fffff804`6d6c0000 fffff804`6e2a4000 hiber_iaStor
  411. fffff804`6e2b0000 fffff804`6e2ce000 hiber_dumpfv
  412. fffff804`47a00000 fffff804`47a0c000 umpass.sys
  413. fffff804`47a10000 fffff804`47a1f000 hiber_storpo
  414. fffff804`6da60000 fffff804`6e644000 hiber_iaStor
  415. fffff804`6e650000 fffff804`6e66e000 hiber_dumpfv
  416. fffff804`479f0000 fffff804`479ff000 hiber_storpo
  417. fffff804`6d9b0000 fffff804`6e594000 hiber_iaStor
  418. fffff804`6e5a0000 fffff804`6e5be000 hiber_dumpfv
  419. fffff804`479e0000 fffff804`479ec000 umpass.sys
  420. fffff804`479b0000 fffff804`479c1000 MpKslDrv.sys
  421. fffff804`479d0000 fffff804`479df000 hiber_storpo
  422. fffff804`6dcc0000 fffff804`6e8a4000 hiber_iaStor
  423. fffff804`6e8b0000 fffff804`6e8ce000 hiber_dumpfv
  424. fffff804`479a0000 fffff804`479ac000 umpass.sys
  425. fffff804`47970000 fffff804`4797c000 umpass.sys
  426. fffff804`47950000 fffff804`4795e000 WSDScan.sys
  427. fffff804`47940000 fffff804`4794e000 WSDPrint.sys
  428. fffff804`47960000 fffff804`4796f000 hiber_storpo
  429. fffff804`6ac10000 fffff804`6b7f4000 hiber_iaStor
  430. fffff804`6a400000 fffff804`6a41e000 hiber_dumpfv
  431. fffff804`47930000 fffff804`4793c000 umpass.sys
  432. fffff804`478e0000 fffff804`478ee000 WSDScan.sys
  433. fffff804`478d0000 fffff804`478de000 WSDPrint.sys
  434. fffff804`47920000 fffff804`4792f000 hiber_storpo
  435. fffff804`6a650000 fffff804`6b234000 hiber_iaStor
  436. fffff804`6b240000 fffff804`6b25e000 hiber_dumpfv
  437. fffff804`478c0000 fffff804`478ce000 WSDScan.sys
  438. fffff804`478b0000 fffff804`478be000 WSDPrint.sys
  439. fffff804`47bf0000 fffff804`47bfe000 WSDScan.sys
  440. fffff804`47be0000 fffff804`47bee000 WSDPrint.sys
  441. fffff804`478a0000 fffff804`478ac000 umpass.sys
  442. fffff804`47880000 fffff804`4788c000 umpass.sys
  443. fffff804`47840000 fffff804`47851000 usbprint.sys
  444. fffff804`47ad0000 fffff804`47adc000 umpass.sys
  445. fffff804`47960000 fffff804`4796e000 WSDScan.sys
  446. fffff804`47950000 fffff804`4795e000 WSDPrint.sys
  447. fffff804`47970000 fffff804`4797c000 umpass.sys
  448. fffff804`47ac0000 fffff804`47acf000 hiber_storpo
  449. fffff804`6a020000 fffff804`6ac04000 hiber_iaStor
  450. fffff804`6ac10000 fffff804`6ac2e000 hiber_dumpfv
  451.  
  452. ====================== Dump #1: BIOS INFORMATION =======================
  453.  
  454. [SMBIOS Data Tables v3.0]
  455. [DMI Version - 0]
  456. [2.0 Calling Convention - No]
  457. [Table Size - 4288 bytes]
  458. [BIOS Information (Type 0) - Length 24 - Handle 0000h]
  459. Vendor American Megatrends Inc.
  460. BIOS Version 1009
  461. BIOS Starting Address Segment f000
  462. BIOS Release Date 07/23/2017
  463. BIOS ROM Size 1000000
  464. BIOS Characteristics
  465. 07: - PCI Supported
  466. 10: - APM Supported
  467. 11: - Upgradeable FLASH BIOS
  468. 12: - BIOS Shadowing Supported
  469. 15: - CD-Boot Supported
  470. 16: - Selectable Boot Supported
  471. 17: - BIOS ROM Socketed
  472. 19: - EDD Supported
  473. 23: - 1.2MB Floppy Supported
  474. 24: - 720KB Floppy Supported
  475. 25: - 2.88MB Floppy Supported
  476. 26: - Print Screen Device Supported
  477. 27: - Keyboard Services Supported
  478. 28: - Serial Services Supported
  479. 29: - Printer Services Supported
  480. 32: - BIOS Vendor Reserved
  481. BIOS Characteristic Extensions
  482. 00: - ACPI Supported
  483. 01: - USB Legacy Supported
  484. 08: - BIOS Boot Specification Supported
  485. 10: - Specification Reserved
  486. 11: - Specification Reserved
  487. BIOS Major Revision 5
  488. BIOS Minor Revision 12
  489. EC Firmware Major Revision 255
  490. EC Firmware Minor Revision 255
  491. [System Information (Type 1) - Length 27 - Handle 0001h]
  492. Manufacturer System manufacturer
  493. Product Name System Product Name
  494. Version System Version
  495. UUID 00000000-0000-0000-0000-000000000000
  496. Wakeup Type Power Switch
  497. SKUNumber SKU
  498. [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
  499. Manufacturer ASUSTeK COMPUTER INC.
  500. Product PRIME Z270-A
  501. Version Rev 1.xx
  502. Feature Flags 09h
  503. -374556960: - -374556912: - ÷7£ý
  504. Location Default string
  505. Chassis Handle 0003h
  506. Board Type 0ah - Processor/Memory Module
  507. Number of Child Handles 0
  508. [System Enclosure (Type 3) - Length 22 - Handle 0003h]
  509. Manufacturer Default string
  510. Chassis Type Desktop
  511. Version Default string
  512. Bootup State Safe
  513. Power Supply State Safe
  514. Thermal State Safe
  515. Security Status None
  516. OEM Defined 0
  517. Height 0U
  518. Number of Power Cords 1
  519. Number of Contained Elements 0
  520. Contained Element Size 3
  521. [Onboard Devices Information (Type 10) - Length 6 - Handle 0028h]
  522. Number of Devices 1
  523. 01: Type Video [enabled]
  524. [OEM Strings (Type 11) - Length 5 - Handle 0029h]
  525. Number of Strings 4
  526. 1 Default string
  527. 2 Default string
  528. 3 YOSHI
  529. 4 Default string
  530. [System Configuration Options (Type 12) - Length 5 - Handle 002ah]
  531. [Physical Memory Array (Type 16) - Length 23 - Handle 0045h]
  532. Location 03h - SystemBoard/Motherboard
  533. Use 03h - System Memory
  534. Memory Error Correction 03h - None
  535. Maximum Capacity 67108864KB
  536. Number of Memory Devices 4
  537. [Memory Device (Type 17) - Length 40 - Handle 0046h]
  538. Physical Memory Array Handle 0045h
  539. Total Width 0 bits
  540. Data Width 0 bits
  541. Form Factor 02h - Unknown
  542. Device Locator ChannelA-DIMM1
  543. Bank Locator BANK 0
  544. Memory Type 02h - Unknown
  545. Type Detail 0000h -
  546. Speed 0MHz
  547. [Memory Device (Type 17) - Length 40 - Handle 0047h]
  548. Physical Memory Array Handle 0045h
  549. Total Width 0 bits
  550. Data Width 0 bits
  551. Form Factor 02h - Unknown
  552. Device Locator ChannelA-DIMM2
  553. Bank Locator BANK 1
  554. Memory Type 02h - Unknown
  555. Type Detail 0000h -
  556. Speed 0MHz
  557. [Memory Device (Type 17) - Length 40 - Handle 0048h]
  558. Physical Memory Array Handle 0045h
  559. Total Width 64 bits
  560. Data Width 64 bits
  561. Size 8192MB
  562. Form Factor 09h - DIMM
  563. Device Locator ChannelB-DIMM1
  564. Bank Locator BANK 2
  565. Memory Type 1ah - Specification Reserved
  566. Type Detail 4080h - Synchronous
  567. Speed 2133MHz
  568. Manufacturer Corsair
  569. Part Number CMK16GX4M2B3200C16
  570. [Memory Device (Type 17) - Length 40 - Handle 0049h]
  571. Physical Memory Array Handle 0045h
  572. Total Width 64 bits
  573. Data Width 64 bits
  574. Size 8192MB
  575. Form Factor 09h - DIMM
  576. Device Locator ChannelB-DIMM2
  577. Bank Locator BANK 3
  578. Memory Type 1ah - Specification Reserved
  579. Type Detail 4080h - Synchronous
  580. Speed 2133MHz
  581. Manufacturer Corsair
  582. Part Number CMK16GX4M2B3200C16
  583. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 004ah]
  584. Starting Address 00000000h
  585. Ending Address 00ffffffh
  586. Memory Array Handle 0045h
  587. Partition Width 02
  588. [Cache Information (Type 7) - Length 19 - Handle 004bh]
  589. Socket Designation L1 Cache
  590. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  591. Maximum Cache Size 0100h - 256K
  592. Installed Size 0100h - 256K
  593. Supported SRAM Type 0020h - Synchronous
  594. Current SRAM Type 0020h - Synchronous
  595. Cache Speed 0ns
  596. Error Correction Type ParitySingle-Bit ECC
  597. System Cache Type Unified
  598. Associativity 8-way Set-Associative
  599. [Cache Information (Type 7) - Length 19 - Handle 004ch]
  600. Socket Designation L2 Cache
  601. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  602. Maximum Cache Size 0400h - 1024K
  603. Installed Size 0400h - 1024K
  604. Supported SRAM Type 0020h - Synchronous
  605. Current SRAM Type 0020h - Synchronous
  606. Cache Speed 0ns
  607. Error Correction Type Multi-Bit ECC
  608. System Cache Type Unified
  609. Associativity 4-way Set-Associative
  610. [Cache Information (Type 7) - Length 19 - Handle 004dh]
  611. Socket Designation L3 Cache
  612. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  613. Maximum Cache Size 2000h - 8192K
  614. Installed Size 2000h - 8192K
  615. Supported SRAM Type 0020h - Synchronous
  616. Current SRAM Type 0020h - Synchronous
  617. Cache Speed 0ns
  618. Error Correction Type Specification Reserved
  619. System Cache Type Unified
  620. Associativity 16-way Set-Associative
  621. [Processor Information (Type 4) - Length 48 - Handle 004eh]
  622. Socket Designation LGA1151
  623. Processor Type Central Processor
  624. Processor Family c6h - Specification Reserved
  625. Processor Manufacturer Intel(R) Corporation
  626. Processor ID e9060900fffbebbf
  627. Processor Version Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
  628. Processor Voltage 8bh - 1.1V
  629. External Clock 100MHz
  630. Max Speed 8300MHz
  631. Current Speed 4200MHz
  632. Status Enabled Populated
  633. Processor Upgrade Other
  634. L1 Cache Handle 004bh
  635. L2 Cache Handle 004ch
  636. L3 Cache Handle 004dh
  637. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
  638. Starting Address 00000000h
  639. Ending Address 007fffffh
  640. Memory Device Handle 0048h
  641. Mem Array Mapped Adr Handle 004ah
  642. Interleave Position [None]
  643. Interleave Data Depth [None]
  644. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
  645. Starting Address 00800000h
  646. Ending Address 00ffffffh
  647. Memory Device Handle 0049h
  648. Mem Array Mapped Adr Handle 004ah
  649. Interleave Position [None]
  650. Interleave Data Depth [None]
  651.  
  652. ========================== Dump #1: Extra #1 ===========================
  653.  
  654. 2: kd> !verifier
  655. fffff80449a48580: Unable to get verifier list.
  656.  
  657. ========================== Dump #1: Extra #2 ===========================
  658.  
  659. 2: kd> !thread
  660. THREAD ffff9f811e2b6240 Cid 0000.0000 Teb: 0000000000000000 Win32Thread: 0000000000000000 RUNNING on processor 2
  661. Not impersonating
  662. GetUlongFromAddress: unable to read from fffff80449a2ca14
  663. Owning Process fffff80449b8e9c0 Image:
  664. Attached Process ffff8f81b6aac040 Image: System
  665. fffff78000000000: Unable to get shared data
  666. Wait Start TickCount 586229
  667. Context Switch Count 72136832 IdealProcessor: 2
  668. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  669. UserTime 00:00:00.000
  670. KernelTime 00:00:00.000
  671. Win32 Start Address nt!KiIdleLoop (0xfffff804497c5e40)
  672. Stack Init fffff989aee3fb90 Current fffff989aee3fb20
  673. Base fffff989aee40000 Limit fffff989aee39000 Call 0000000000000000
  674. Priority 0 BasePriority 0 PriorityDecrement 0 IoPriority 0 PagePriority 0
  675. Child-SP RetAddr : Args to Child : Call Site
  676. fffff989`aee3f158 fffff804`497fce80 : 00000000`0000001a 00000000`00004477 00000000`0f450080 00000000`00000000 : nt!KeBugCheckEx
  677. fffff989`aee3f160 fffff804`496f8512 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000010 : nt!MiCheckFatalAccessViolation+0x1a2bd8
  678. fffff989`aee3f1a0 fffff804`496c9c8c : ffff86ff`ffffffff ffff8680`00000000 ffff8680`00000000 ffff86c3`400003d0 : nt!MiInPagePageTable+0x2f2
  679. fffff989`aee3f2f0 fffff804`496c8fbe : ffff8f81`c8fe46c0 ffff8f81`c3ff9300 9c9ee1fe`00000002 00000000`00000000 : nt!MiUserFault+0x7dc
  680. fffff989`aee3f3a0 fffff804`497d0420 : 00000000`00000000 00000000`00000000 00000000`00000003 00000000`00000000 : nt!MmAccessFault+0x14e
  681. fffff989`aee3f540 fffff804`497d54c1 : fffff989`aee3f868 fffff804`496bb946 00014a31`afb32b8c ffff8f81`b8a1f010 : nt!KiPageFault+0x360 (TrapFrame @ fffff989`aee3f540)
  682. fffff989`aee3f6d0 fffff989`aee3f868 : fffff804`496bb946 00014a31`afb32b8c ffff8f81`b8a1f010 00000000`00000000 : nt!memset+0x41
  683. fffff989`aee3f6d8 fffff804`496bb946 : 00014a31`afb32b8c ffff8f81`b8a1f010 00000000`00000000 00000000`00000004 : 0xfffff989`aee3f868
  684. fffff989`aee3f6e0 fffff804`496badee : 00000000`00000000 7ca647f9`a5900000 00000000`00000001 00000000`00000000 : nt!PpmIdleExecuteTransition+0x9b6
  685. fffff989`aee3fa00 fffff804`497c5e88 : ffffffff`00000000 ffff9f81`1e2a5180 ffff8f81`cb080080 00000000`00000347 : nt!PoIdle+0x36e
  686. fffff989`aee3fb60 00000000`00000000 : fffff989`aee40000 fffff989`aee39000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x48
Advertisement
Add Comment
Please, Sign In to add comment