Guest User

Untitled

a guest
Aug 6th, 2020
79
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 36.21 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 00 minutes and 51 seconds
  5.  
  6. ================================ SYSTEM ================================
  7. MANUFACTURER: Acer
  8. PRODUCT_NAME: Aspire E5-551G
  9. SKU: [Removed]
  10. VERSION: V1.15
  11.  
  12. ================================= BIOS =================================
  13. VENDOR: Insyde Corp.
  14. VERSION: V1.15
  15. DATE: 07/06/2015
  16.  
  17. ============================= MOTHERBOARD ==============================
  18. MANUFACTURER: Acer
  19. PRODUCT: EA50_KV
  20. VERSION: V1.15
  21.  
  22. ================================= RAM ==================================
  23. Size Speed Manufacturer Part No.
  24. -------------- -------------- ------------------- ----------------------
  25. 0MHz Empty Empty
  26. 8192MB 1600MHz Kingston ACR16D3LS1KNG/8G
  27.  
  28. ================================= CPU ==================================
  29. Processor Version: AMD A10-7300 Radeon R6, 10 Compute Cores 4C+6G
  30. COUNT: 4
  31. MHZ: 1896
  32. VENDOR: AuthenticAMD
  33. FAMILY: 15
  34. MODEL: 30
  35. STEPPING: 1
  36.  
  37. ================================== OS ==================================
  38. Product: WinNt, suite: TerminalServer SingleUserTS
  39. Built by: 19041.1.amd64fre.vb_release.191206-1406
  40. BUILD_VERSION: 10.0.19041.388 (WinBuild.160101.0800)
  41. BUILD: 19041
  42. SERVICEPACK: 388
  43. PLATFORM_TYPE: x64
  44. NAME: Windows 10
  45. EDITION: Windows 10 WinNt TerminalServer SingleUserTS
  46. BUILD_TIMESTAMP: unknown_date
  47. BUILDDATESTAMP: 160101.0800
  48. BUILDLAB: WinBuild
  49. BUILDOSVER: 10.0.19041.388
  50.  
  51. =============================== DEBUGGER ===============================
  52. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  53. Copyright (c) Microsoft Corporation. All rights reserved.
  54.  
  55. =============================== COMMENTS ===============================
  56. * Information gathered from different dump files may be different. If
  57. Windows updates between two dump files, two or more OS versions may
  58. be shown above.
  59. * If the user updates the BIOS between dump files, two or more versions
  60. and dates may be shown above.
  61. * More RAM information can be found below in a full BIOS section.
  62.  
  63. ========================================================================
  64. ======================= Dump #1: ANALYZE VERBOSE =======================
  65. ====================== File: 080620-38343-01.dmp =======================
  66. ========================================================================
  67.  
  68. Mini Kernel Dump File: Only registers and stack trace are available
  69. Windows 10 Kernel Version 19041 MP (4 procs) Free x64
  70. Kernel base = 0xfffff803`36808000 PsLoadedModuleList = 0xfffff803`37432310
  71. Debug session time: Thu Aug 6 04:31:04.815 2020 (UTC - 4:00)
  72. System Uptime: 0 days 0:16:34.620
  73.  
  74. BugCheck 139, {3, ffff8e818ee9fab0, ffff8e818ee9fa08, 0}
  75. Probably caused by : memory_corruption
  76. Followup: memory_corruption
  77.  
  78. KERNEL_SECURITY_CHECK_FAILURE (139)
  79. A kernel component has corrupted a critical data structure. The corruption
  80. could potentially allow a malicious user to gain control of this machine.
  81.  
  82. Arguments:
  83. Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
  84. Arg2: ffff8e818ee9fab0, Address of the trap frame for the exception that caused the bugcheck
  85. Arg3: ffff8e818ee9fa08, Address of the exception record for the exception that caused the bugcheck
  86. Arg4: 0000000000000000, Reserved
  87.  
  88. Debugging Details:
  89. DUMP_CLASS: 1
  90. DUMP_QUALIFIER: 400
  91. DUMP_TYPE: 2
  92. TRAP_FRAME: ffff8e818ee9fab0 -- (.trap 0xffff8e818ee9fab0)
  93. NOTE: The trap frame does not contain all registers.
  94. Some register values may be zeroed or incorrect.
  95. rax=ffffa208e55ed708 rbx=0000000000000000 rcx=0000000000000003
  96. rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
  97. rip=fffff80f2d7b769a rsp=ffff8e818ee9fc40 rbp=ffffa208e1d6d2a0
  98. r8=ffffa208e3da4e88 r9=7fffcd0b555b4eb0 r10=0000000000000000
  99. r11=ffff8e818ee9fdf8 r12=0000000000000000 r13=0000000000000000
  100. r14=0000000000000000 r15=0000000000000000
  101. iopl=0 nv up ei pl nz na po nc
  102. dxgmms2!VidSchiInterlockedRemoveHeadListIfExist+0x7a:
  103. fffff80f`2d7b769a cd29 int 29h
  104. Resetting default scope
  105. EXCEPTION_RECORD: ffff8e818ee9fa08 -- (.exr 0xffff8e818ee9fa08)
  106. ExceptionAddress: fffff80f2d7b769a (dxgmms2!VidSchiInterlockedRemoveHeadListIfExist+0x000000000000007a)
  107. ExceptionCode: c0000409 (Security check failure or stack buffer overrun)
  108. ExceptionFlags: 00000001
  109. NumberParameters: 1
  110. Parameter[0]: 0000000000000003
  111. Subcode: 0x3 FAST_FAIL_CORRUPT_LIST_ENTRY
  112. CUSTOMER_CRASH_COUNT: 1
  113. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  114. BUGCHECK_STR: 0x139
  115.  
  116. PROCESS_NAME: firefox.exe
  117.  
  118. CURRENT_IRQL: 2
  119. ERROR_CODE: (NTSTATUS) 0xc0000409 - The system detected an overrun of a stack-based buffer in this application. This overrun could potentially allow a malicious user to gain control of this application.
  120. EXCEPTION_CODE: (NTSTATUS) 0xc0000409 - The system detected an overrun of a stack-based buffer in this application. This overrun could potentially allow a malicious user to gain control of this application.
  121. EXCEPTION_CODE_STR: c0000409
  122. EXCEPTION_PARAMETER1: 0000000000000003
  123. LAST_CONTROL_TRANSFER: from fffff80336bf7a29 to fffff80336be5b60
  124. STACK_TEXT:
  125. ffff8e81`8ee9f788 fffff803`36bf7a29 : 00000000`00000139 00000000`00000003 ffff8e81`8ee9fab0 ffff8e81`8ee9fa08 : nt!KeBugCheckEx
  126. ffff8e81`8ee9f790 fffff803`36bf7e50 : 00000000`00000000 fffff803`36a47046 ffff8a80`00000000 ffffa208`d8fec5c0 : nt!KiBugCheckDispatch+0x69
  127. ffff8e81`8ee9f8d0 fffff803`36bf61e3 : ffffa208`d8fec5c0 00000000`00000000 00000000`00000246 fffff803`36a46821 : nt!KiFastFailDispatch+0xd0
  128. ffff8e81`8ee9fab0 fffff80f`2d7b769a : 00000000`00000000 ffffa208`dd4d76b0 00000000`00000000 fffff803`36be0000 : nt!KiRaiseSecurityCheckFailure+0x323
  129. ffff8e81`8ee9fc40 fffff80f`2d82a95a : ffffa208`dd40ec00 ffffa208`dd40ec00 ffffa208`dd40ec00 ffffa208`e3da4bb0 : dxgmms2!VidSchiInterlockedRemoveHeadListIfExist+0x7a
  130. ffff8e81`8ee9fc90 fffff80f`2c59a3f4 : ffff8e81`8ee9ff10 ffffa208`dd40ec00 00000000`08000000 ffff817c`07963090 : dxgmms2!VidSchSubmitCommand+0xea
  131. ffff8e81`8ee9fe00 fffff80f`2c59ab41 : ffffcd0b`5611cd60 00000000`00000001 00000000`00000001 ffffcd0b`5611cd60 : dxgkrnl!DXGCONTEXT::SubmitCommand+0x464
  132. ffff8e81`8eea05c0 fffff80f`2c599f4d : ffffa208`e2488080 00000000`00000000 ffffcd0b`555b4de0 00000083`792bfab0 : dxgkrnl!DxgkSubmitCommandInternal+0x551
  133. ffff8e81`8eea0ac0 fffff803`36bf7475 : ffffa208`e2488080 00000000`00000000 00000000`00000000 00000000`00000000 : dxgkrnl!DxgkSubmitCommand+0x5d
  134. ffff8e81`8eea0b00 00007fff`d8b45ae4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25
  135. 00000083`792bf9e8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007fff`d8b45ae4
  136. STACK_COMMAND: kb
  137. CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
  138. fffff80336a1f349-fffff80336a1f34a 2 bytes - nt!MiAddWorkingSetEntries+479
  139. [ 80 f6:00 81 ]
  140. fffff80336a910ab-fffff80336a910ac 2 bytes - nt!MiSynchronizeSystemVa+11b (+0x71d62)
  141. [ 80 f6:00 81 ]
  142. fffff80336b8cf3e-fffff80336b8cf41 4 bytes - nt!MiFreeUltraMapping+32 (+0xfbe93)
  143. [ a0 7d fb f6:40 a0 40 81 ]
  144. 8 errors : !nt (fffff80336a1f349-fffff80336b8cf41)
  145. MODULE_NAME: memory_corruption
  146.  
  147. IMAGE_NAME: memory_corruption
  148.  
  149. FOLLOWUP_NAME: memory_corruption
  150. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  151. MEMORY_CORRUPTOR: LARGE
  152. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  153. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  154. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  155. TARGET_TIME: 2020-08-06T08:31:04.000Z
  156. SUITE_MASK: 272
  157. PRODUCT_TYPE: 1
  158. USER_LCID: 0
  159. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  160. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  161. Followup: memory_corruption
  162.  
  163. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  164.  
  165. Mar 29 2015 - amd_sata.sys - AMD SATA Controller AHCI Device driver http://support.amd.com/
  166. Mar 29 2015 - amd_xata.sys - AMD Stor Filter driver http://support.amd.com/
  167. Mar 31 2015 - HWiNFO64A.SYS - HWiNFO AMD64 Kernel driver https://www.hwinfo.com/
  168. Jul 07 2015 - AtihdWT6.sys - AMD High Definition Audio Function driver http://support.amd.com/
  169. Mar 13 2018 - athw10x.sys - Qualcomm Atheros Extensible Wireless LAN device driver
  170. Mar 13 2018 - btfilter.sys - Qualcomm Atheros BT Filter driver https://www.qualcomm.com/
  171. Mar 19 2018 - SynRMIHID.sys - Synaptics I2C Driver (Synaptics Incorporated) https://www.symantec.com/
  172. Mar 19 2018 - SynTP.sys - Synaptics TouchPad Driver http://www.synaptics.com/
  173. May 09 2018 - RtsPer.sys - Realtek RTS PCIE Reader driver https://www.realtek.com/en/
  174. Jul 02 2019 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  175. Aug 16 2019 - atikmdag.sys - ATI Radeon Kernel Mode driver
  176. Aug 16 2019 - atikmpag.sys - ATI video card driver
  177. Nov 20 2019 - mbamswissarmy.sys - MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
  178. May 26 2020 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  179.  
  180. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  181.  
  182. Image path: \SystemRoot\System32\drivers\amd_sata.sys
  183. Image name: amd_sata.sys
  184. Search : https://www.google.com/search?q=amd_sata.sys
  185. ADA Info : AMD SATA Controller AHCI Device driver http://support.amd.com/
  186. Timestamp : Sun Mar 29 2015
  187.  
  188. Image path: \SystemRoot\System32\drivers\amd_xata.sys
  189. Image name: amd_xata.sys
  190. Search : https://www.google.com/search?q=amd_xata.sys
  191. ADA Info : AMD Stor Filter driver http://support.amd.com/
  192. Timestamp : Sun Mar 29 2015
  193.  
  194. Image path: \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS
  195. Image name: HWiNFO64A.SYS
  196. Search : https://www.google.com/search?q=HWiNFO64A.SYS
  197. ADA Info : HWiNFO AMD64 Kernel driver https://www.hwinfo.com/
  198. Timestamp : Tue Mar 31 2015
  199.  
  200. Image path: \SystemRoot\system32\drivers\AtihdWT6.sys
  201. Image name: AtihdWT6.sys
  202. Search : https://www.google.com/search?q=AtihdWT6.sys
  203. ADA Info : AMD High Definition Audio Function driver http://support.amd.com/
  204. Timestamp : Tue Jul 7 2015
  205.  
  206. Image path: \SystemRoot\System32\drivers\athw10x.sys
  207. Image name: athw10x.sys
  208. Search : https://www.google.com/search?q=athw10x.sys
  209. ADA Info : Qualcomm Atheros Extensible Wireless LAN device driver
  210. Timestamp : Tue Mar 13 2018
  211.  
  212. Image path: \SystemRoot\system32\DRIVERS\btfilter.sys
  213. Image name: btfilter.sys
  214. Search : https://www.google.com/search?q=btfilter.sys
  215. ADA Info : Qualcomm Atheros BT Filter driver https://www.qualcomm.com/
  216. Timestamp : Tue Mar 13 2018
  217.  
  218. Image path: \SystemRoot\system32\DRIVERS\SynRMIHID.sys
  219. Image name: SynRMIHID.sys
  220. Search : https://www.google.com/search?q=SynRMIHID.sys
  221. ADA Info : Synaptics I2C Driver (Synaptics Incorporated) https://www.symantec.com/
  222. Timestamp : Mon Mar 19 2018
  223.  
  224. Image path: \SystemRoot\system32\DRIVERS\SynTP.sys
  225. Image name: SynTP.sys
  226. Search : https://www.google.com/search?q=SynTP.sys
  227. ADA Info : Synaptics TouchPad Driver http://www.synaptics.com/
  228. Timestamp : Mon Mar 19 2018
  229.  
  230. Image path: \SystemRoot\system32\DRIVERS\RtsPer.sys
  231. Image name: RtsPer.sys
  232. Search : https://www.google.com/search?q=RtsPer.sys
  233. ADA Info : Realtek RTS PCIE Reader driver https://www.realtek.com/en/
  234. Timestamp : Wed May 9 2018
  235.  
  236. Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
  237. Image name: RTKVHD64.sys
  238. Search : https://www.google.com/search?q=RTKVHD64.sys
  239. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  240. Timestamp : Tue Jul 2 2019
  241.  
  242. Image path: \SystemRoot\System32\DriverStore\FileRepository\u0346830.inf_amd64_35731e557194973d\B345901\atikmdag.sys
  243. Image name: atikmdag.sys
  244. Search : https://www.google.com/search?q=atikmdag.sys
  245. ADA Info : ATI Radeon Kernel Mode driver
  246. Timestamp : Fri Aug 16 2019
  247.  
  248. Image path: \SystemRoot\System32\DriverStore\FileRepository\u0346830.inf_amd64_35731e557194973d\B345901\atikmpag.sys
  249. Image name: atikmpag.sys
  250. Search : https://www.google.com/search?q=atikmpag.sys
  251. ADA Info : ATI video card driver
  252. Timestamp : Fri Aug 16 2019
  253.  
  254. Image path: \SystemRoot\System32\Drivers\mbamswissarmy.sys
  255. Image name: mbamswissarmy.sys
  256. Search : https://www.google.com/search?q=mbamswissarmy.sys
  257. ADA Info : MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
  258. Timestamp : Wed Nov 20 2019
  259.  
  260. Image path: \SystemRoot\System32\drivers\rt640x64.sys
  261. Image name: rt640x64.sys
  262. Search : https://www.google.com/search?q=rt640x64.sys
  263. ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  264. Timestamp : Tue May 26 2020
  265.  
  266. ====================== Dump #1: MICROSOFT DRIVERS ======================
  267.  
  268. ACPI.sys ACPI Driver for NT (Microsoft)
  269. acpiex.sys ACPIEx Driver (Microsoft)
  270. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  271. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  272. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  273. ahcache.sys Application Compatibility Cache (Microsoft)
  274. amdppm.sys Processor Device Driver
  275. bam.sys BAM Kernal driver (Microsoft)
  276. BasicDisplay.sys Basic Display driver (Microsoft)
  277. BasicRender.sys Basic Render driver (Microsoft)
  278. BATTC.SYS Battery Class driver (Microsoft)
  279. Beep.SYS BEEP driver (Microsoft)
  280. bindflt.sys Windows Bind Filter driver (Microsoft)
  281. BOOTVID.dll VGA Boot Driver (Microsoft)
  282. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  283. BTHport.sys Bluetooth Bus driver (Microsoft)
  284. BTHUSB.sys Bluetooth Miniport driver (Microsoft)
  285. CAD.sys Charge Arbiration driver (Microsoft)
  286. cdd.dll Canonical Display Driver (Microsoft)
  287. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  288. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  289. CI.dll Code Integrity Module (Microsoft)
  290. CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
  291. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  292. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  293. CLFS.SYS Common Log File System Driver (Microsoft)
  294. clipsp.sys CLIP Service (Microsoft)
  295. CmBatt.sys Control Method Battery driver (Microsoft)
  296. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  297. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  298. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  299. condrv.sys Console Driver (Microsoft)
  300. crashdmp.sys Crash Dump driver (Microsoft)
  301. csc.sys Windows Client Side Caching driver (Microsoft)
  302. dfsc.sys DFS Namespace Client Driver (Microsoft)
  303. disk.sys PnP Disk Driver (Microsoft)
  304. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  305. dump_amd_sata.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  306. dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  307. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  308. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  309. dxgmms2.sys DirectX Graphics MMS
  310. EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
  311. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  312. fileinfo.sys FileInfo Filter Driver (Microsoft)
  313. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  314. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  315. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  316. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  317. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  318. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  319. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  320. HIDCLASS.SYS Hid Class Library (Microsoft)
  321. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  322. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  323. HTTP.sys HTTP Protocol Stack (Microsoft)
  324. i8042prt.sys i8042 Keyboard / PS/2 Mouse driver (Microsoft)
  325. intelpep.sys Intel Power Engine Plugin (Microsoft)
  326. IntelTA.sys Intel Telemetry Driver
  327. iorate.sys I/O rate control Filter (Microsoft)
  328. kbdclass.sys Keyboard Class Driver (Microsoft)
  329. kd.dll Local Kernal Debugger (Microsoft)
  330. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  331. ks.sys Kernal CSA Library (Microsoft)
  332. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  333. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  334. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  335. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  336. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  337. mcupdate_AuthenticAMD.dll AMD Microcode Update Library (Microsoft)
  338. mmcss.sys MMCSS Driver (Microsoft)
  339. monitor.sys Monitor Driver (Microsoft)
  340. mouclass.sys Mouse Class Driver (Microsoft)
  341. mouhid.sys HID Mouse Filter Driver (Microsoft)
  342. mountmgr.sys Mount Point Manager (Microsoft)
  343. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  344. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  345. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  346. Msfs.SYS Mailslot driver (Microsoft)
  347. msisadrv.sys ISA Driver (Microsoft)
  348. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  349. msquic.sys Windows QUIC Driver
  350. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  351. mssecflt.sys Microsoft Security Events Component file system filter driver (Microsoft)
  352. mssmbios.sys System Management BIOS driver (Microsoft)
  353. MTConfig.sys Microsoft Multi-Touch HID Driver (Microsoft)
  354. mup.sys Multiple UNC Provider driver (Microsoft)
  355. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  356. ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
  357. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  358. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  359. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  360. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  361. NDProxy.sys NDIS Proxy driver (Microsoft)
  362. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  363. netbios.sys NetBIOS Interface driver (Microsoft)
  364. netbt.sys MBT Transport driver (Microsoft)
  365. NETIO.SYS Network I/O Subsystem (Microsoft)
  366. Npfs.SYS NPFS driver (Microsoft)
  367. npsvctrig.sys Named pipe service triggers (Microsoft)
  368. nsiproxy.sys NSI Proxy driver (Microsoft)
  369. Ntfs.sys NT File System Driver (Microsoft)
  370. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  371. ntosext.sys NTOS Extension Host driver (Microsoft)
  372. Null.SYS NULL Driver (Microsoft)
  373. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  374. pacer.sys QoS Packet Scheduler (Microsoft)
  375. partmgr.sys Partition driver (Microsoft)
  376. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  377. pcw.sys Performance Counter Driver (Microsoft)
  378. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  379. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  380. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  381. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  382. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  383. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  384. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  385. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  386. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  387. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  388. rdyboost.sys ReadyBoost Driver (Microsoft)
  389. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  390. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  391. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  392. spaceport.sys Storage Spaces driver (Microsoft)
  393. srv2.sys Smb 2.0 Server driver (Microsoft)
  394. srvnet.sys Server Network driver (Microsoft)
  395. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  396. storqosflt.sys Storage QoS Filter driver (Microsoft)
  397. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  398. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  399. tcpip.sys TCP/IP Protocol driver (Microsoft)
  400. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  401. TDI.SYS TDI Wrapper driver (Microsoft)
  402. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  403. tm.sys Kernel Transaction Manager driver (Microsoft)
  404. ucx01000.sys USB Controller Extension (Microsoft)
  405. umbus.sys User-Mode Bus Enumerator (Microsoft)
  406. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  407. USBD.SYS Universal Serial Bus Driver (Microsoft)
  408. usbehci.sys EHCI eUSB Miniport Driver (Microsoft)
  409. usbhub.sys Default Hub Driver for USB (Microsoft)
  410. UsbHub3.sys USB3 HUB driver (Microsoft)
  411. usbohci.sys OHCI USB Miniport Driver (Microsoft)
  412. USBPORT.SYS USB 1.1 & 2.0 Port Driver (Microsoft)
  413. usbvideo.sys USB Video Class Driver (Microsoft)
  414. USBXHCI.SYS USB XHCI driver (Microsoft)
  415. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  416. VerifierExt.sys Driver Verifier Extension
  417. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  418. volmgr.sys Volume Manager Driver (Microsoft)
  419. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  420. volsnap.sys Volume Shadow Copy driver (Microsoft)
  421. volume.sys Volume driver (Microsoft)
  422. vwifibus.sys Virtual Wireless Bus driver (Microsoft)
  423. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  424. vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
  425. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  426. watchdog.sys Watchdog driver (Microsoft)
  427. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  428. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  429. WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
  430. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  431. WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
  432. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  433. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  434. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  435. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  436. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  437. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  438. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  439. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  440. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  441. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  442. Wof.sys Windows Overlay Filter (Microsoft)
  443. WppRecorder.sys WPP Trace Recorder (Microsoft)
  444.  
  445. ====================== Dump #1: UNLOADED MODULES =======================
  446.  
  447. fffff803`397a0000 fffff803`397b1000 MSKSSRV.sys
  448. fffff80f`2da30000 fffff80f`2da41000 MSKSSRV.sys
  449. fffff80f`2cd70000 fffff80f`2cd7f000 dump_storpor
  450. fffff80f`2cda0000 fffff80f`2cdba000 dump_amd_sat
  451. fffff80f`2cde0000 fffff80f`2cdfe000 dump_dumpfve
  452. fffff80f`2d670000 fffff80f`2d67c000 WdmCompanion
  453. fffff80f`2db90000 fffff80f`2dbac000 dam.sys
  454. fffff803`37de0000 fffff803`37df2000 WdBoot.sys
  455. fffff803`37dd0000 fffff803`37dd9000 MbamElam.sys
  456. fffff803`38fd0000 fffff803`38fe0000 hwpolicy.sys
  457.  
  458. ====================== Dump #1: BIOS INFORMATION =======================
  459.  
  460. [SMBIOS Data Tables v2.8]
  461. [DMI Version - 0]
  462. [2.0 Calling Convention - No]
  463. [Table Size - 1471 bytes]
  464. [BIOS Information (Type 0) - Length 24 - Handle 0000h]
  465. Vendor Insyde Corp.
  466. BIOS Version V1.15
  467. BIOS Starting Address Segment e000
  468. BIOS Release Date 07/06/2015
  469. BIOS ROM Size 800000
  470. BIOS Characteristics
  471. 07: - PCI Supported
  472. 11: - Upgradeable FLASH BIOS
  473. 12: - BIOS Shadowing Supported
  474. 15: - CD-Boot Supported
  475. 16: - Selectable Boot Supported
  476. 19: - EDD Supported
  477. 20: - NEC 9800 J-Floppy Supported
  478. 21: - Toshiba J-Floppy Supported
  479. 22: - 360KB Floppy Supported
  480. 23: - 1.2MB Floppy Supported
  481. 24: - 720KB Floppy Supported
  482. 25: - 2.88MB Floppy Supported
  483. 27: - Keyboard Services Supported
  484. 30: - CGA/Mono Services Supported
  485. BIOS Characteristic Extensions
  486. 00: - ACPI Supported
  487. 01: - USB Legacy Supported
  488. 08: - BIOS Boot Specification Supported
  489. 10: - Specification Reserved
  490. 11: - Specification Reserved
  491. BIOS Major Revision 1
  492. BIOS Minor Revision 15
  493. EC Firmware Major Revision 1
  494. EC Firmware Minor Revision 15
  495. [System Information (Type 1) - Length 27 - Handle 0001h]
  496. Manufacturer Acer
  497. Product Name Aspire E5-551G
  498. Version V1.15
  499. UUID 00000000-0000-0000-0000-000000000000
  500. Wakeup Type Power Switch
  501. SKUNumber Aspire E5-551G_086A_V1.15
  502. Family KV
  503. [BaseBoard Information (Type 2) - Length 16 - Handle 0002h]
  504. Manufacturer Acer
  505. Product EA50_KV
  506. Version V1.15
  507. Feature Flags 09h
  508. 1361295072: - 1361295120: - «g?ú
  509. Location Base Board Chassis Location
  510. Chassis Handle 0003h
  511. Board Type 0ah - Processor/Memory Module
  512. Number of Child Handles 0
  513. [System Enclosure (Type 3) - Length 23 - Handle 0003h]
  514. Manufacturer Acer
  515. Chassis Type Notebook
  516. Version Chassis Version
  517. Bootup State Safe
  518. Power Supply State Safe
  519. Thermal State Safe
  520. Security Status None
  521. OEM Defined 0
  522. Height 0U
  523. Number of Power Cords 1
  524. Number of Contained Elements 0
  525. Contained Element Size 0
  526. [Processor Information (Type 4) - Length 42 - Handle 0004h]
  527. Socket Designation Socket FP3
  528. Processor Type Central Processor
  529. Processor Family 48h - Specification Reserved
  530. Processor Manufacturer AMD processor
  531. Processor ID 010f6300fffb8b17
  532. Processor Version AMD A10-7300 Radeon R6, 10 Compute Cores 4C+6G
  533. Processor Voltage 8ah - 1.0V
  534. External Clock 100MHz
  535. Max Speed 1900MHz
  536. Current Speed 1900MHz
  537. Status Enabled Populated
  538. Processor Upgrade None
  539. L1 Cache Handle 0005h
  540. L2 Cache Handle 0006h
  541. L3 Cache Handle [Not Present]
  542. Part Number FFFF
  543. [Cache Information (Type 7) - Length 19 - Handle 0005h]
  544. Socket Designation L1 Cache
  545. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  546. Maximum Cache Size 0100h - 256K
  547. Installed Size 0100h - 256K
  548. Supported SRAM Type 0010h - Pipeline-Burst
  549. Current SRAM Type 0010h - Pipeline-Burst
  550. Cache Speed 1ns
  551. Error Correction Type Specification Reserved
  552. System Cache Type Unified
  553. Associativity 2-way Set-Associative
  554. [Cache Information (Type 7) - Length 19 - Handle 0006h]
  555. Socket Designation L2 Cache
  556. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  557. Maximum Cache Size 8040h - 4096K
  558. Installed Size 8040h - 4096K
  559. Supported SRAM Type 0010h - Pipeline-Burst
  560. Current SRAM Type 0010h - Pipeline-Burst
  561. Cache Speed 1ns
  562. Error Correction Type Specification Reserved
  563. System Cache Type Unified
  564. Associativity 16-way Set-Associative
  565. [Onboard Devices Information (Type 10) - Length 6 - Handle 0007h]
  566. Number of Devices 1
  567. 01: Type Video [enabled]
  568. 01: Description Video Graphics Controller
  569. [Onboard Devices Information (Type 10) - Length 6 - Handle 0008h]
  570. Number of Devices 1
  571. 01: Type Ethernet [enabled]
  572. 01: Description Realtek Lan Controller
  573. [OEM Strings (Type 11) - Length 5 - Handle 0009h]
  574. Number of Strings 5
  575. 1 Acer System
  576. 2 String2 for Original Equipment Manufacturer
  577. 3 String3 for Original Equipment Manufacturer
  578. 4 String4 for Original Equipment Manufacturer
  579. 5 String5 for Original Equipment Manufacturer
  580. [System Configuration Options (Type 12) - Length 5 - Handle 000ah]
  581. [Physical Memory Array (Type 16) - Length 23 - Handle 000bh]
  582. Location 03h - SystemBoard/Motherboard
  583. Use 03h - System Memory
  584. Memory Error Correction 03h - None
  585. Maximum Capacity 33554432KB
  586. Number of Memory Devices 2
  587. [Memory Device (Type 17) - Length 40 - Handle 000ch]
  588. Physical Memory Array Handle 000bh
  589. Total Width 0 bits
  590. Data Width 0 bits
  591. Form Factor 00h - Specification Reserved
  592. Device Locator DIMM 0
  593. Bank Locator CHANNEL A
  594. Memory Type 02h - Unknown
  595. Type Detail 0004h - Unknown
  596. Speed 0MHz
  597. Manufacturer Empty
  598. Part Number Empty
  599. [Memory Device (Type 17) - Length 40 - Handle 000dh]
  600. Physical Memory Array Handle 000bh
  601. Total Width 64 bits
  602. Data Width 64 bits
  603. Size 8192MB
  604. Form Factor 0dh - SODIMM
  605. Device Locator DIMM 0
  606. Bank Locator CHANNEL B
  607. Memory Type 18h - Specification Reserved
  608. Type Detail 4080h - Synchronous
  609. Speed 1600MHz
  610. Manufacturer Kingston
  611. Part Number ACR16D3LS1KNG/8G
  612. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 000eh]
  613. Starting Address 00000000h
  614. Ending Address 007fffffh
  615. Memory Array Handle 000bh
  616. Partition Width 255
  617. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 000fh]
  618. Starting Address 00000000h
  619. Ending Address 007fffffh
  620. Memory Device Handle 000dh
  621. Mem Array Mapped Adr Handle 000eh
  622.  
  623. ========================== Dump #1: Extra #1 ===========================
  624.  
  625. 3: kd> !verifier
  626. Verify Flags Level 0x0012892b
  627. STANDARD FLAGS:
  628. [X] (0x00000000) Automatic Checks
  629. [X] (0x00000001) Special pool
  630. [X] (0x00000002) Force IRQL checking
  631. [X] (0x00000008) Pool tracking
  632. [ ] (0x00000010) I/O verification
  633. [X] (0x00000020) Deadlock detection
  634. [ ] (0x00000080) DMA checking
  635. [X] (0x00000100) Security checks
  636. [X] (0x00000800) Miscellaneous checks
  637. [X] (0x00020000) DDI compliance checking
  638. ADDITIONAL FLAGS:
  639. [ ] (0x00000004) Randomized low resources simulation
  640. [ ] (0x00000200) Force pending I/O requests
  641. [ ] (0x00000400) IRP logging
  642. [ ] (0x00002000) Invariant MDL checking for stack
  643. [ ] (0x00004000) Invariant MDL checking for driver
  644. [X] (0x00008000) Power framework delay fuzzing
  645. [ ] (0x00010000) Port/miniport interface checking
  646. [ ] (0x00040000) Systematic low resources simulation
  647. [ ] (0x00080000) DDI compliance checking (additional)
  648. [ ] (0x00200000) NDIS/WIFI verification
  649. [ ] (0x00800000) Kernel synchronization delay fuzzing
  650. [ ] (0x01000000) VM switch verification
  651. [ ] (0x02000000) Code integrity checks
  652. RESERVED FLAGS (use of these flags is unsupported):
  653. [X] (0x00100000) Unused or reserved flag
  654. [X] Indicates flag is enabled
  655. Summary of All Verifier Statistics
  656. RaiseIrqls 0x2
  657. AcquireSpinLocks 0x26e15
  658. Synch Executions 0x0
  659. Trims 0xcc8
  660. Pool Allocations Attempted 0x13763
  661. Pool Allocations Succeeded 0x13763
  662. Pool Allocations Succeeded SpecialPool 0x13763
  663. Pool Allocations With NO TAG 0x17
  664. Pool Allocations Failed 0x0
  665. Current paged pool allocations 0x3b22 for 01114A19 bytes
  666. Peak paged pool allocations 0x3b8c for 021E0DAE bytes
  667. Current nonpaged pool allocations 0x2306 for 00D13982 bytes
  668. Peak nonpaged pool allocations 0x23cc for 00D5DFEA bytes
  669.  
  670. ========================== Dump #1: Extra #2 ===========================
  671.  
  672. 3: kd> !thread
  673. THREAD ffffa208e2488080 Cid 1f80.1514 Teb: 00000083768fe000 Win32Thread: ffffa208e2ae9b40 RUNNING on processor 3
  674. Not impersonating
  675. GetUlongFromAddress: unable to read from fffff8033741943c
  676. Owning Process ffffa208e354a080 Image: firefox.exe
  677. Attached Process N/A Image: N/A
  678. fffff78000000000: Unable to get shared data
  679. Wait Start TickCount 63655
  680. Context Switch Count 763 IdealProcessor: 3
  681. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  682. UserTime 00:00:00.000
  683. KernelTime 00:00:00.000
  684. Win32 Start Address 0x00007fffcb61bf64
  685. Stack Init ffff8e818eea0c90 Current ffff8e818eea06a0
  686. Base ffff8e818eea1000 Limit ffff8e818ee9b000 Call 0000000000000000
  687. Priority 9 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
  688. Child-SP RetAddr : Args to Child : Call Site
  689. ffff8e81`8ee9f788 fffff803`36bf7a29 : 00000000`00000139 00000000`00000003 ffff8e81`8ee9fab0 ffff8e81`8ee9fa08 : nt!KeBugCheckEx
  690. ffff8e81`8ee9f790 fffff803`36bf7e50 : 00000000`00000000 fffff803`36a47046 ffff8a80`00000000 ffffa208`d8fec5c0 : nt!KiBugCheckDispatch+0x69
  691. ffff8e81`8ee9f8d0 fffff803`36bf61e3 : ffffa208`d8fec5c0 00000000`00000000 00000000`00000246 fffff803`36a46821 : nt!KiFastFailDispatch+0xd0
  692. ffff8e81`8ee9fab0 fffff80f`2d7b769a : 00000000`00000000 ffffa208`dd4d76b0 00000000`00000000 fffff803`36be0000 : nt!KiRaiseSecurityCheckFailure+0x323 (TrapFrame @ ffff8e81`8ee9fab0)
  693. ffff8e81`8ee9fc40 fffff80f`2d82a95a : ffffa208`dd40ec00 ffffa208`dd40ec00 ffffa208`dd40ec00 ffffa208`e3da4bb0 : dxgmms2!VidSchiInterlockedRemoveHeadListIfExist+0x7a
  694. ffff8e81`8ee9fc90 fffff80f`2c59a3f4 : ffff8e81`8ee9ff10 ffffa208`dd40ec00 00000000`08000000 ffff817c`07963090 : dxgmms2!VidSchSubmitCommand+0xea
  695. ffff8e81`8ee9fe00 fffff80f`2c59ab41 : ffffcd0b`5611cd60 00000000`00000001 00000000`00000001 ffffcd0b`5611cd60 : dxgkrnl!DXGCONTEXT::SubmitCommand+0x464
  696. ffff8e81`8eea05c0 fffff80f`2c599f4d : ffffa208`e2488080 00000000`00000000 ffffcd0b`555b4de0 00000083`792bfab0 : dxgkrnl!DxgkSubmitCommandInternal+0x551
  697. ffff8e81`8eea0ac0 fffff803`36bf7475 : ffffa208`e2488080 00000000`00000000 00000000`00000000 00000000`00000000 : dxgkrnl!DxgkSubmitCommand+0x5d
  698. ffff8e81`8eea0b00 00007fff`d8b45ae4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25 (TrapFrame @ ffff8e81`8eea0b00)
  699. 00000083`792bf9e8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007fff`d8b45ae4
Add Comment
Please, Sign In to add comment