Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
- Online Crash Dump Analysis Service
- See http://www.osronline.com for more information
- Windows 8 Kernel Version 17134 MP (12 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 17134.1.amd64fre.rs4_release.180410-1804
- Machine Name:
- Kernel base = 0xfffff802`5389b000 PsLoadedModuleList = 0xfffff802`53c581d0
- Debug session time: Sun May 27 18:39:45.065 2018 (UTC - 4:00)
- System Uptime: 0 days 22:41:30.782
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- KMODE_EXCEPTION_NOT_HANDLED (1e)
- This is a very common bugcheck. Usually the exception address pinpoints
- the driver/function that caused the problem. Always note this address
- as well as the link date of the driver/image that contains this address.
- Arguments:
- Arg1: ffffffffc0000005, The exception code that was not handled
- Arg2: fffff80253d787fc, The address that the exception occurred at
- Arg3: 0000000000000000, Parameter 0 of the exception
- Arg4: 00000000000000b4, Parameter 1 of the exception
- Debugging Details:
- ------------------
- TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
- FAULTING_IP:
- nt!NtWaitForSingleObject+13c
- fffff802`53d787fc 0fb790b4000000 movzx edx,word ptr [rax+0B4h]
- EXCEPTION_PARAMETER1: 0000000000000000
- EXCEPTION_PARAMETER2: 00000000000000b4
- READ_ADDRESS: unable to get nt!MmSpecialPoolStart
- unable to get nt!MmSpecialPoolEnd
- unable to get nt!MmPagedPoolEnd
- unable to get nt!MmNonPagedPoolStart
- unable to get nt!MmSizeOfNonPagedPoolInBytes
- 00000000000000b4
- ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
- BUGCHECK_STR: 0x1e_c0000005
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- PROCESS_NAME: Overwatch.exe
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff802538abb5d to fffff80253a32670
- CONTEXT: c18b000000b0888b -- (.cxr 0xc18b000000b0888b)
- Unable to read context, Win32 error 0n30
- STACK_TEXT:
- fffffb03`d0013068 fffff802`538abb5d : 00000000`0000001e ffffffff`c0000005 fffff802`53d787fc 00000000`00000000 : nt!KeBugCheckEx
- fffffb03`d0013070 fffff802`53a45902 : 00000000`00000000 00000000`00000fff fffffb03`d00137f8 00000000`00000000 : nt!KiDispatchException+0x58d
- fffffb03`d0013720 fffff802`53a41aac : ffff8d0e`9b523700 00000000`00000000 00007ff6`214b0410 00000000`00000000 : nt!KiExceptionDispatch+0xc2
- fffffb03`d0013900 fffff802`53d787fc : ffff8d0e`9a159a74 00000000`00000056 00000000`00000083 fffff802`53d78d82 : nt!KiPageFault+0x4ac
- fffffb03`d0013a90 fffff802`53a45223 : ffff8d0e`9b523700 00000000`00000000 00000000`00000000 ffff8d0e`9a159a70 : nt!NtWaitForSingleObject+0x13c
- fffffb03`d0013b00 0000027f`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00001f80`00000000 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x27f`00000000
- FOLLOWUP_IP:
- nt!NtWaitForSingleObject+13c
- fffff802`53d787fc 0fb790b4000000 movzx edx,word ptr [rax+0B4h]
- SYMBOL_STACK_INDEX: 4
- SYMBOL_NAME: nt!NtWaitForSingleObject+13c
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 5ae3f148
- STACK_COMMAND: .cxr 0xc18b000000b0888b ; kb
- FAILURE_BUCKET_ID: X64_0x1e_c0000005_nt!NtWaitForSingleObject+13c
- BUCKET_ID: X64_0x1e_c0000005_nt!NtWaitForSingleObject+13c
- Followup: MachineOwner
- ---------
Add Comment
Please, Sign In to add comment