Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- ========================================================================
- =================== Dump File: 062417-18140-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff803`4de8f000 PsLoadedModuleList = 0xfffff803`4e1db5a0
- Debug session time: Fri Jun 23 21:46:57.221 2017 (UTC - 4:00)
- System Uptime: 0 days 15:33:21.859
- BugCheck D1, {ffffcc8185c02650, 8, 0, fffff80a42dc1f11}
- *** WARNING: Unable to verify timestamp for nvlddmkm.sys
- *** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys
- Probably caused by : nvlddmkm.sys ( nvlddmkm+111f11 )
- Followup: MachineOwner
- DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
- An attempt was made to access a pageable (or completely invalid) address at an
- interrupt request level (IRQL) that is too high. This is usually
- caused by drivers using improper addresses.
- If kernel debugger is available get stack backtrace.
- Arguments:
- Arg1: ffffcc8185c02650, memory referenced
- Arg2: 0000000000000008, IRQL
- Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
- Arg4: fffff80a42dc1f11, address which referenced memory
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- READ_ADDRESS: ffffcc8185c02650 Paged pool
- CURRENT_IRQL: 8
- FAULTING_IP:
- nvlddmkm+111f11
- fffff80a`42dc1f11 8b8c9650260000 mov ecx,dword ptr [rsi+rdx*4+2650h]
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: AV
- PROCESS_NAME: SpaceEngineers.exe
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 22:49:09.0971
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- TRAP_FRAME: fffff80350334a40 -- (.trap 0xfffff80350334a40)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=0000000000000004 rbx=0000000000000000 rcx=0000000000000000
- rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff80a42dc1f11 rsp=fffff80350334bd0 rbp=fffff80350334cd0
- r8=00000000003436b3 r9=0000000000000000 r10=ffffcc8165b12780
- r11=fffff80350334b10 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po nc
- nvlddmkm+0x111f11:
- fffff80a`42dc1f11 8b8c9650260000 mov ecx,dword ptr [rsi+rdx*4+2650h] ds:00000000`00002650=????????
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff8034e0067a9 to fffff8034dffb3f0
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: 57bd2645b6b0775b5c75d343f2a6e2cc4fdca6ac
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 9c0bffd076927d8d51e91229f766b825ab04ee24
- THREAD_SHA1_HASH_MOD: 99270aa9efddf51499339f5ea82e28c2a8c9f7b4
- FOLLOWUP_IP:
- nvlddmkm+111f11
- fffff80a`42dc1f11 8b8c9650260000 mov ecx,dword ptr [rsi+rdx*4+2650h]
- FAULT_INSTR_CODE: 50968c8b
- SYMBOL_STACK_INDEX: 3
- SYMBOL_NAME: nvlddmkm+111f11
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nvlddmkm
- IMAGE_NAME: nvlddmkm.sys
- DEBUG_FLR_IMAGE_TIMESTAMP: 590792c9
- BUCKET_ID_FUNC_OFFSET: 111f11
- FAILURE_BUCKET_ID: AV_nvlddmkm!unknown_function
- BUCKET_ID: AV_nvlddmkm!unknown_function
- PRIMARY_PROBLEM_CLASS: AV_nvlddmkm!unknown_function
- TARGET_TIME: 2017-06-24T01:46:57.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 1e18e
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:av_nvlddmkm!unknown_function
- FAILURE_ID_HASH: {7eea5677-f68d-2154-717e-887e07e55cd3}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 071017-31484-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Kernel base = 0xfffff802`4fc95000 PsLoadedModuleList = 0xfffff802`4ffe15a0
- Debug session time: Sun Jul 9 19:29:19.973 2017 (UTC - 4:00)
- System Uptime: 0 days 18:22:34.613
- BugCheck 116, {ffff82088cead010, fffff80f0b916028, ffffffffc000009a, 4}
- *** WARNING: Unable to verify timestamp for nvlddmkm.sys
- *** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys
- Probably caused by : nvlddmkm.sys ( nvlddmkm+a16028 )
- Followup: MachineOwner
- VIDEO_TDR_FAILURE (116)
- Attempt to reset the display driver and recover from timeout failed.
- Arguments:
- Arg1: ffff82088cead010, Optional pointer to internal TDR recovery context (TDR_RECOVERY_CONTEXT).
- Arg2: fffff80f0b916028, The pointer into responsible device driver module (e.g. owner tag).
- Arg3: ffffffffc000009a, Optional error code (NTSTATUS) of the last failed operation.
- Arg4: 0000000000000004, Optional internal context dependent data.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- DUMP_FILE_ATTRIBUTES: 0x8
- Kernel Generated Triage Dump
- FAULTING_IP:
- nvlddmkm+a16028
- fffff80f`0b916028 48ff251107e4ff jmp qword ptr [nvlddmkm+0x856740 (fffff80f`0b756740)]
- DEFAULT_BUCKET_ID: GRAPHICS_DRIVER_TDR_FAULT
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- BUGCHECK_STR: 0x116
- PROCESS_NAME: System
- CURRENT_IRQL: 0
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 22:52:47.0040
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: 56a150c818aff348d17e35fc9e822916b6c0190b
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 2b8e36420ad492fac55ee6ac7de8c9381dcb67f0
- THREAD_SHA1_HASH_MOD: 3225689ea8bf23dca00cdfd517975e0703e07271
- FOLLOWUP_IP:
- nvlddmkm+a16028
- fffff80f`0b916028 48ff251107e4ff jmp qword ptr [nvlddmkm+0x856740 (fffff80f`0b756740)]
- FAULT_INSTR_CODE: 1125ff48
- SYMBOL_NAME: nvlddmkm+a16028
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nvlddmkm
- IMAGE_NAME: nvlddmkm.sys
- DEBUG_FLR_IMAGE_TIMESTAMP: 5952b9c9
- FAILURE_BUCKET_ID: 0x116_IMAGE_nvlddmkm.sys
- BUCKET_ID: 0x116_IMAGE_nvlddmkm.sys
- PRIMARY_PROBLEM_CLASS: 0x116_IMAGE_nvlddmkm.sys
- TARGET_TIME: 2017-07-09T23:29:19.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 839
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x116_image_nvlddmkm.sys
- FAILURE_ID_HASH: {c89bfe8c-ed39-f658-ef27-f2898997fdbd}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 071017-22750-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Kernel base = 0xfffff801`6ae82000 PsLoadedModuleList = 0xfffff801`6b1ce5a0
- Debug session time: Sun Jul 9 21:50:16.839 2017 (UTC - 4:00)
- System Uptime: 0 days 0:32:10.478
- BugCheck 3B, {c0000005, ffff9dce9d26e996, ffff8b007650fdb0, 0}
- Probably caused by : memory_corruption
- Followup: memory_corruption
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: ffff9dce9d26e996, Address of the instruction which caused the bugcheck
- Arg3: ffff8b007650fdb0, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- DUMP_FILE_ATTRIBUTES: 0x8
- Kernel Generated Triage Dump
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- win32kbase!CSpatialProcessor::HitTest+22a
- ffff9dce`9d26e996 48a5 movs qword ptr [rdi],qword ptr [rsi]
- CONTEXT: ffff8b007650fdb0 -- (.cxr 0xffff8b007650fdb0)
- rax=ffff8b00765108e0 rbx=ffff8b0076510b20 rcx=0000000000000000
- rdx=0000000000000000 rsi=0000000000000000 rdi=ffff9da7400eb4c0
- rip=ffff9dce9d26e996 rsp=ffff8b00765107a0 rbp=ffff8b00765108a0
- r8=0000000000000000 r9=0000000000000007 r10=0000000000000000
- r11=ffff9dce9d2a85db r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=ffff8b0076510b00
- iopl=0 nv up ei pl zr na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246
- win32kbase!CSpatialProcessor::HitTest+0x22a:
- ffff9dce`9d26e996 48a5 movs qword ptr [rdi],qword ptr [rsi] ds:002b:ffff9da7`400eb4c0=???????????????? ds:002b:00000000`00000000=????????????????
- Resetting default scope
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: dwm.exe
- CURRENT_IRQL: 0
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 22:54:12.0037
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- LAST_CONTROL_TRANSFER: from ffff9dce9d26e4eb to ffff9dce9d26e996
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !win32kbase
- ffff9dce9d26e997 - win32kbase!CSpatialProcessor::HitTest+22b
- [ 85:a5 ]
- 1 error : !win32kbase (ffff9dce9d26e997)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: ONE_BIT
- STACK_COMMAND: .cxr 0xffff8b007650fdb0 ; kb
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_ONE_BIT
- BUCKET_ID: MEMORY_CORRUPTION_ONE_BIT
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_ONE_BIT
- TARGET_TIME: 2017-07-10T01:50:16.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 16de
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:memory_corruption_one_bit
- FAILURE_ID_HASH: {e3faf315-c3d0-81db-819a-6c43d23c63a7}
- Followup: memory_corruption
- ========================================================================
- =================== Dump File: 071017-22203-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Kernel base = 0xfffff802`d2893000 PsLoadedModuleList = 0xfffff802`d2bdf5a0
- Debug session time: Sun Jul 9 21:17:37.864 2017 (UTC - 4:00)
- System Uptime: 0 days 1:47:50.503
- BugCheck 3B, {c0000096, fffff802d28c6c57, ffffd58200dc3e00, 0}
- Probably caused by : ntkrnlmp.exe ( nt!KiSwapThread+327 )
- Followup: MachineOwner
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000096, Exception code that caused the bugcheck
- Arg2: fffff802d28c6c57, Address of the instruction which caused the bugcheck
- Arg3: ffffd58200dc3e00, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- DUMP_FILE_ATTRIBUTES: 0x8
- Kernel Generated Triage Dump
- EXCEPTION_CODE: (NTSTATUS) 0xc0000096 - {EXCEPTION} Privileged instruction.
- FAULTING_IP:
- nt!KiSwapThread+327
- fffff802`d28c6c57 450f22c5 mov cr8,r13
- CONTEXT: ffffd58200dc3e00 -- (.cxr 0xffffd58200dc3e00)
- rax=00000000006b0001 rbx=ffffa000f12987c0 rcx=ffffd58200dc47b0
- rdx=0000000000000000 rsi=ffffa000f5493080 rdi=0000000000000100
- rip=fffff802d28c6c57 rsp=ffffd58200dc47f0 rbp=0000000000000000
- r8=00000000ffffffff r9=0000000000000004 r10=0000000000000000
- r11=fffff802d2a0b90f r12=0000000000000000 r13=2000000000000001
- r14=0000000000000001 r15=0000000000000000
- iopl=0 nv up ei pl nz na pe nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010202
- nt!KiSwapThread+0x327:
- fffff802`d28c6c57 450f22c5 mov cr8,r13
- Resetting default scope
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: NVIDIA Web Hel
- CURRENT_IRQL: 2
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 22:55:48.0455
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- LAST_CONTROL_TRANSFER: from fffff802d28c6461 to fffff802d28c6c57
- THREAD_SHA1_HASH_MOD_FUNC: 2c9e5ff4c69ccb6dea44fe5779330b58e221e4e8
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: b9d800238219f33f4506f682306d4205c42e8fd7
- THREAD_SHA1_HASH_MOD: f08ac56120cad14894587db086f77ce277bfae84
- FOLLOWUP_IP:
- nt!KiSwapThread+327
- fffff802`d28c6c57 450f22c5 mov cr8,r13
- FAULT_INSTR_CODE: c5220f45
- SYMBOL_STACK_INDEX: 0
- SYMBOL_NAME: nt!KiSwapThread+327
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 59327910
- IMAGE_VERSION: 10.0.15063.413
- STACK_COMMAND: .cxr 0xffffd58200dc3e00 ; kb
- BUCKET_ID_FUNC_OFFSET: 327
- FAILURE_BUCKET_ID: 0x3B_nt!KiSwapThread
- BUCKET_ID: 0x3B_nt!KiSwapThread
- PRIMARY_PROBLEM_CLASS: 0x3B_nt!KiSwapThread
- TARGET_TIME: 2017-07-10T01:17:37.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 5b1
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x3b_nt!kiswapthread
- FAILURE_ID_HASH: {4bbb03b1-b1a9-e91c-de6a-a23403255511}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 070917-23093-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff803`0b296000 PsLoadedModuleList = 0xfffff803`0b5e25a0
- Debug session time: Sat Jul 8 21:37:22.524 2017 (UTC - 4:00)
- System Uptime: 0 days 16:46:04.164
- BugCheck 7F, {8, fffff8030d736e70, ffffce804faa95c0, fffff802c097adea}
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- UNEXPECTED_KERNEL_MODE_TRAP (7f)
- This means a trap occurred in kernel mode, and it's a trap of a kind
- that the kernel isn't allowed to have/catch (bound trap) or that
- is always instant death (double fault). The first number in the
- bugcheck params is the number of the trap (8 = double fault, etc)
- Consult an Intel x86 family manual to learn more about what these
- traps are. Here is a *portion* of those codes:
- If kv shows a taskGate
- use .tss on the part before the colon, then kv.
- Else if kv shows a trapframe
- use .trap on that value
- Else
- .trap on the appropriate frame will show where the trap was taken
- (on x86, this will be the ebp that goes with the procedure KiTrap)
- Endif
- kb will then show the corrected stack.
- Arguments:
- Arg1: 0000000000000008, EXCEPTION_DOUBLE_FAULT
- Arg2: fffff8030d736e70
- Arg3: ffffce804faa95c0
- Arg4: fffff802c097adea
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x7f_8
- TRAP_FRAME: fffff8030d736e70 -- (.trap 0xfffff8030d736e70)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=ffffba0c6df96280 rbx=0000000000000000 rcx=4901cc8b4a430000
- rdx=ffffba0c6df96280 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff802c097adea rsp=ffffce804faa95c0 rbp=0000000000000033
- r8=ffffba0c6df96280 r9=0000000000000000 r10=ffffba0c6dad9200
- r11=ffffba0c7588be80 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po nc
- afd!AfdTLFastDgramSendComplete+0x16a:
- fffff802`c097adea 5f pop rdi
- Resetting default scope
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- PROCESS_NAME: System
- CURRENT_IRQL: 2
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 22:57:56.0215
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- BAD_STACK_POINTER: ffffce804faa95c0
- LAST_CONTROL_TRANSFER: from fffff8030b40d7a9 to fffff8030b4023f0
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8030b2ff0b9-fffff8030b2ff0ba 2 bytes - nt!MiIdentifyPfn+39
- [ 80 fa:00 8a ]
- fffff8030b516383-fffff8030b516385 3 bytes - nt!ExFreePoolWithTag+363
- [ 40 fb f6:80 44 89 ]
- 5 errors : !nt (fffff8030b2ff0b9-fffff8030b516385)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2017-07-09T01:37:22.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 5c17
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- =================== Dump File: 070817-24203-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff801`9e47e000 PsLoadedModuleList = 0xfffff801`9e7ca5a0
- Debug session time: Sat Jul 8 03:14:15.854 2017 (UTC - 4:00)
- System Uptime: 0 days 7:57:54.442
- BugCheck 3B, {c0000005, fffff8019e9066dc, ffffc601a1baa870, 0}
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff8019e9066dc, Address of the instruction which caused the bugcheck
- Arg3: ffffc601a1baa870, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- nt!ObWaitForMultipleObjects+1fc
- fffff801`9e9066dc 4c8b84cb90263e00 mov r8,qword ptr [rbx+rcx*8+3E2690h]
- CONTEXT: ffffc601a1baa870 -- (.cxr 0xffffc601a1baa870)
- rax=000000000000008a rbx=000000000000ff01 rcx=000000000000000f
- rdx=00000000001f0003 rsi=ffff8e81ed7ebe60 rdi=ffff8e81ed7ebe30
- rip=fffff8019e9066dc rsp=ffffc601a1bab268 rbp=ffffc601a1bab2b0
- r8=ffffd784841a6001 r9=ffff8e81e48077c0 r10=0000000000000001
- r11=0000000000000001 r12=0000000000000000 r13=ffffd78482420800
- r14=0000000000000001 r15=0000000000000000
- iopl=0 nv up ei pl nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206
- nt!ObWaitForMultipleObjects+0x1fc:
- fffff801`9e9066dc 4c8b84cb90263e00 mov r8,qword ptr [rbx+rcx*8+3E2690h] ds:002b:00000000`003f2609=????????????????
- Resetting default scope
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: audiodg.exe
- CURRENT_IRQL: 0
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 22:59:55.0674
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- LAST_CONTROL_TRANSFER: from fffff8019e9064a9 to fffff8019e9066dc
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8019e50bc97-fffff8019e50bc98 2 bytes - nt!MiResolvePageTablePage+3b7
- [ ff f6:7f 8a ]
- fffff8019e50bcb8-fffff8019e50bcbc 5 bytes - nt!MiResolvePageTablePage+3d8 (+0x21)
- [ df be 7d fb f6:4f 91 22 45 8a ]
- fffff8019e50fac4 - nt!MiGetPage+a4 (+0x3e0c)
- [ fa:ed ]
- fffff8019e50fc33 - nt!MiGetFreeOrZeroPage+73 (+0x16f)
- [ fa:ed ]
- fffff8019e6fe383-fffff8019e6fe385 3 bytes - nt!ExFreePoolWithTag+363
- [ 40 fb f6:00 45 8a ]
- fffff8019e6fe6b6-fffff8019e6fe6b7 2 bytes - nt!ExFreePoolWithTag+696 (+0x333)
- [ 80 f6:00 8a ]
- 14 errors : !nt (fffff8019e50bc97-fffff8019e6fe6b7)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- STACK_COMMAND: .cxr 0xffffc601a1baa870 ; kb
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2017-07-08T07:14:15.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 1a72
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- =================== Dump File: 070817-22562-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff802`7fe99000 PsLoadedModuleList = 0xfffff802`801e55a0
- Debug session time: Sat Jul 8 04:50:49.171 2017 (UTC - 4:00)
- System Uptime: 0 days 1:36:01.810
- BugCheck 1E, {ffffffffc0000005, fffff80989be894e, 0, ffffffffffffffff}
- *** WARNING: Unable to verify timestamp for nvlddmkm.sys
- *** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- KMODE_EXCEPTION_NOT_HANDLED (1e)
- This is a very common bugcheck. Usually the exception address pinpoints
- the driver/function that caused the problem. Always note this address
- as well as the link date of the driver/image that contains this address.
- Arguments:
- Arg1: ffffffffc0000005, The exception code that was not handled
- Arg2: fffff80989be894e, The address that the exception occurred at
- Arg3: 0000000000000000, Parameter 0 of the exception
- Arg4: ffffffffffffffff, Parameter 1 of the exception
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- READ_ADDRESS: ffffffffffffffff
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- dxgmms2!VidSchiProcessCompletedQueuePacketInternal+75e
- fffff809`89be894e 48a12003000080f7ffff mov rax,qword ptr [FFFFF78000000320h]
- EXCEPTION_PARAMETER2: ffffffffffffffff
- BUGCHECK_STR: 0x1E_c0000005_R
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- PROCESS_NAME: System
- CURRENT_IRQL: 2
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 23:01:35.0779
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- LAST_CONTROL_TRANSFER: from fffff802800940f6 to fffff802800053f0
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8027ff0394b-fffff8027ff0394c 2 bytes - nt!MiInsertNonPagedPoolOnSlist+40b
- [ 80 fa:00 a0 ]
- fffff8027ff03983 - nt!MiInsertNonPagedPoolOnSlist+443 (+0x38)
- [ f6:fc ]
- 3 errors : !nt (fffff8027ff0394b-fffff8027ff03983)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2017-07-08T08:50:49.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 1a41
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- =================== Dump File: 070317-21781-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff802`7ce0c000 PsLoadedModuleList = 0xfffff802`7d1585a0
- Debug session time: Mon Jul 3 07:23:14.365 2017 (UTC - 4:00)
- System Uptime: 0 days 2:23:36.004
- BugCheck 3B, {c0000005, fffff39a60864fa3, ffffba0038019420, 0}
- Probably caused by : memory_corruption
- Followup: memory_corruption
- 0: kd> !analyze -v
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff39a60864fa3, Address of the instruction which caused the bugcheck
- Arg3: ffffba0038019420, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- win32kfull!NtUserCallOneParam+43
- fffff39a`60864fa3 ff153f7e2f00 call qword ptr [win32kfull!_imp_UserSessionSwitchLeaveCrit (fffff39a`60b5cde8)]
- CONTEXT: ffffba0038019420 -- (.cxr 0xffffba0038019420)
- rax=0000000000000000 rbx=000000000000003b rcx=0000000000000000
- rdx=0200000010000000 rsi=00000000571f68f0 rdi=0000000000000000
- rip=fffff39a60864fa3 rsp=ffffba0038019e10 rbp=ffffba0038019ec0
- r8=0000000000000200 r9=00000000571f0000 r10=fffff39a61771a58
- r11=0000000001a31000 r12=0000000001a31000 r13=000000000189fda0
- r14=000000000199da30 r15=0000000057274600
- iopl=0 nv up ei pl nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00210206
- win32kfull!NtUserCallOneParam+0x43:
- fffff39a`60864fa3 ff153f7e2f00 call qword ptr [win32kfull!_imp_UserSessionSwitchLeaveCrit (fffff39a`60b5cde8)] ds:002b:fffff39a`60b5cde8=000000000036448c
- Resetting default scope
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: Battle.net.exe
- CURRENT_IRQL: 0
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 23:06:07.0473
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- LAST_CONTROL_TRANSFER: from fffff8027cf83313 to fffff39a60864fa3
- STACK_TEXT:
- ffffba00`38019e10 fffff802`7cf83313 : ffffcd09`7345d080 ffffcd09`7345d080 ffffba00`35cb1b00 00000000`00000000 : win32kfull!NtUserCallOneParam+0x43
- ffffba00`38019e40 00000000`572018c4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000000`0189c5d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x572018c4
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff8027ce4c287 - nt!MiMapArbitraryPage+37
- [ fa:df ]
- 1 error : !nt (fffff8027ce4c287)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: ONE_BYTE
- STACK_COMMAND: .cxr 0xffffba0038019420 ; kb
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_ONE_BYTE
- BUCKET_ID: MEMORY_CORRUPTION_ONE_BYTE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_ONE_BYTE
- TARGET_TIME: 2017-07-03T11:23:14.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 1c79c
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:memory_corruption_one_byte
- FAILURE_ID_HASH: {ad110d6a-3b33-2c0a-c931-570eae1ba92d}
- Followup: memory_corruption
- ========================================================================
- =================== Dump File: 070317-21093-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff801`0541e000 PsLoadedModuleList = 0xfffff801`0576a5a0
- Debug session time: Mon Jul 3 04:59:06.585 2017 (UTC - 4:00)
- System Uptime: 2 days 9:03:41.224
- BugCheck 7F, {8, ffff9d008bb88af0, 1, fffff8059b0073cd}
- *** WARNING: Unable to verify timestamp for nvlddmkm.sys
- *** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys
- Probably caused by : nvlddmkm.sys ( nvlddmkm+f73cd )
- Followup: MachineOwner
- UNEXPECTED_KERNEL_MODE_TRAP (7f)
- This means a trap occurred in kernel mode, and it's a trap of a kind
- that the kernel isn't allowed to have/catch (bound trap) or that
- is always instant death (double fault). The first number in the
- bugcheck params is the number of the trap (8 = double fault, etc)
- Consult an Intel x86 family manual to learn more about what these
- traps are. Here is a *portion* of those codes:
- If kv shows a taskGate
- use .tss on the part before the colon, then kv.
- Else if kv shows a trapframe
- use .trap on that value
- Else
- .trap on the appropriate frame will show where the trap was taken
- (on x86, this will be the ebp that goes with the procedure KiTrap)
- Endif
- kb will then show the corrected stack.
- Arguments:
- Arg1: 0000000000000008, EXCEPTION_DOUBLE_FAULT
- Arg2: ffff9d008bb88af0
- Arg3: 0000000000000001
- Arg4: fffff8059b0073cd
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x7f_8
- TRAP_FRAME: ffff9d008bb88af0 -- (.trap 0xffff9d008bb88af0)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000024
- rdx=ffff9d00935a27f0 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff8059b0073cd rsp=0000000000000001 rbp=ffff9d00935a2370
- r8=0000000000000001 r9=0000000000000007 r10=0000000000000000
- r11=fffff8059b51c69b r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei pl zr na po nc
- nvlddmkm+0xf73cd:
- fffff805`9b0073cd e862dcfcff call nvlddmkm+0xc5034 (fffff805`9afd5034)
- Resetting default scope
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR:
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- PROCESS_NAME: dwm.exe
- CURRENT_IRQL: 0
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 23:12:03.0351
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- LAST_CONTROL_TRANSFER: from fffff801055957a9 to fffff8010558a3f0
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: e636d4ec340919d2f06ae79550c90fca55a5b946
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 9c9bd513e1db84418d542fab8130ee99c9fe903d
- THREAD_SHA1_HASH_MOD: 99270aa9efddf51499339f5ea82e28c2a8c9f7b4
- FOLLOWUP_IP:
- nvlddmkm+f73cd
- fffff805`9b0073cd e862dcfcff call nvlddmkm+0xc5034 (fffff805`9afd5034)
- FAULT_INSTR_CODE: fcdc62e8
- SYMBOL_STACK_INDEX: 3
- SYMBOL_NAME: nvlddmkm+f73cd
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nvlddmkm
- IMAGE_NAME: nvlddmkm.sys
- DEBUG_FLR_IMAGE_TIMESTAMP: 590792c9
- BUCKET_ID_FUNC_OFFSET: f73cd
- FAILURE_BUCKET_ID: 0x7f_8_nvlddmkm!unknown_function
- BUCKET_ID: 0x7f_8_nvlddmkm!unknown_function
- PRIMARY_PROBLEM_CLASS: 0x7f_8_nvlddmkm!unknown_function
- TARGET_TIME: 2017-07-03T08:59:06.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 1a98
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x7f_8_nvlddmkm!unknown_function
- FAILURE_ID_HASH: {1e2b201d-3868-7883-c455-91a3ec283c76}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 062617-23500-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff801`61499000 PsLoadedModuleList = 0xfffff801`617e55a0
- Debug session time: Mon Jun 26 04:21:09.883 2017 (UTC - 4:00)
- System Uptime: 0 days 2:54:27.523
- BugCheck D1, {ffffffff8b480001, 2, 0, fffff80cea00d006}
- Probably caused by : NETIO.SYS ( NETIO!KfdClassify+116 )
- Followup: MachineOwner
- DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
- An attempt was made to access a pageable (or completely invalid) address at an
- interrupt request level (IRQL) that is too high. This is usually
- caused by drivers using improper addresses.
- If kernel debugger is available get stack backtrace.
- Arguments:
- Arg1: ffffffff8b480001, memory referenced
- Arg2: 0000000000000002, IRQL
- Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
- Arg4: fffff80cea00d006, address which referenced memory
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- READ_ADDRESS: ffffffff8b480001
- CURRENT_IRQL: 2
- FAULTING_IP:
- NETIO!KfdClassify+116
- fffff80c`ea00d006 0f8334f50100 jae NETIO!memset+0x4980 (fffff80c`ea02c540)
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: AV
- PROCESS_NAME: Steam.exe
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 23:16:05.0890
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- TRAP_FRAME: ffff8900cbb05600 -- (.trap 0xffff8900cbb05600)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=ffffe6055c916290 rbx=0000000000000000 rcx=ffffe6055bdf1b78
- rdx=ffffe6055c916290 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff80cea00d006 rsp=ffff8900cbb05790 rbp=ffff8900cbb05890
- r8=0000000000000000 r9=0000000000000000 r10=0000000000000000
- r11=0000000000000011 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po cy
- NETIO!KfdClassify+0x116:
- fffff80c`ea00d006 0f8334f50100 jae NETIO!memset+0x4980 (fffff80c`ea02c540) [br=0]
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff801616107a9 to fffff801616053f0
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: 0f09db56764d26e852d4027091986877510e511e
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: af006dc936f70f736bbadac524588a15983cb612
- THREAD_SHA1_HASH_MOD: 3ad98fffa28025df23b969ad6e4c7e7dc3f55f27
- FOLLOWUP_IP:
- NETIO!KfdClassify+116
- fffff80c`ea00d006 0f8334f50100 jae NETIO!memset+0x4980 (fffff80c`ea02c540)
- FAULT_INSTR_CODE: f534830f
- SYMBOL_STACK_INDEX: 3
- SYMBOL_NAME: NETIO!KfdClassify+116
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: NETIO
- IMAGE_NAME: NETIO.SYS
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- IMAGE_VERSION: 10.0.15058.0
- BUCKET_ID_FUNC_OFFSET: 116
- FAILURE_BUCKET_ID: AV_NETIO!KfdClassify
- BUCKET_ID: AV_NETIO!KfdClassify
- PRIMARY_PROBLEM_CLASS: AV_NETIO!KfdClassify
- TARGET_TIME: 2017-06-26T08:21:09.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 1e25
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:av_netio!kfdclassify
- FAILURE_ID_HASH: {0e14637a-385d-0a7b-00b2-7ee608277b22}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 062417-19062-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Kernel base = 0xfffff801`f3800000 PsLoadedModuleList = 0xfffff801`f3b4c5a0
- Debug session time: Fri Jun 23 22:45:54.113 2017 (UTC - 4:00)
- System Uptime: 0 days 0:58:19.751
- BugCheck D1, {ffffb501010c1fce, ff, 0, fffff8036c2b16e5}
- Probably caused by : memory_corruption
- Followup: memory_corruption
- ------------------------------ BIOS INFO -------------------------------
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4407 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 0316
- BIOS Starting Address Segment f000
- BIOS Release Date 11/08/2016
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 10: - APM Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer System manufacturer
- Product Name System Product Name
- Version System Version
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber SKU
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASUSTeK COMPUTER INC.
- Product PRIME B250M-A
- Version Rev X.0x
- Feature Flags 09h
- -1146439968: - -1146439920: - ØÉ¿u;
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0025h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0026h]
- Number of Strings 8
- 1 Default string
- 2 Default string
- 3 GODIVA
- 4 Default string
- 5 FFFFFFFFFFFFF
- 6 FFFFFFFFFFFFF
- 7 FFFFFFFFFFFFF
- 8 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 0027h]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0042h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 0043h]
- Physical Memory Array Handle 0042h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 0
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMK16GX4M2A2400C16
- [Memory Device (Type 17) - Length 40 - Handle 0044h]
- Physical Memory Array Handle 0042h
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelA-DIMM2
- Bank Locator BANK 1
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0045h]
- Physical Memory Array Handle 0042h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 2
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer Corsair
- Part Number CMK16GX4M2A2400C16
- [Memory Device (Type 17) - Length 40 - Handle 0046h]
- Physical Memory Array Handle 0042h
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelB-DIMM2
- Bank Locator BANK 3
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0047h]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Array Handle 0042h
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 0048h]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0049h]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004ah]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 1800h - 6144K
- Installed Size 1800h - 6144K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [Processor Information (Type 4) - Length 48 - Handle 004bh]
- Socket Designation LGA1151
- Processor Type Central Processor
- Processor Family cdh - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e9060900fffbebbf
- Processor Version Intel(R) Core(TM) i5-7600 CPU @ 3.50GHz
- Processor Voltage 8ah - 1.0V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3500MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 0048h
- L2 Cache Handle 0049h
- L3 Cache Handle 004ah
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004ch]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 0043h
- Mem Array Mapped Adr Handle 0047h
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004dh]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0045h
- Mem Array Mapped Adr Handle 0047h
- Interleave Position 02
- Interleave Data Depth 02
- ----------------------------- DRIVER LIST ------------------------------
- start end module name
- fffff803`69d50000 fffff803`69e07000 ACPI ACPI.sys Tue Dec 9 06:17:08 1975 (0B2AD2B4)
- fffff803`69d10000 fffff803`69d33000 acpiex acpiex.sys ***** Invalid (DC6150EE)
- fffff803`6e2e0000 fffff803`6e2eb000 acpipagr acpipagr.sys ***** Invalid (D0E95064)
- fffff803`6c530000 fffff803`6c5cb000 afd afd.sys ***** Invalid (ED6FDF1B)
- fffff803`6c760000 fffff803`6c7a1000 ahcache ahcache.sys Thu Jul 29 00:52:50 2004 (410882A2)
- fffff803`6c190000 fffff803`6c1a5000 BasicDisplay BasicDisplay.sys ***** Invalid (E7A205B4)
- fffff803`6c450000 fffff803`6c460000 BasicRender BasicRender.sys Mon Jul 9 18:39:00 2007 (4692B904)
- fffff803`6c180000 fffff803`6c18a000 Beep Beep.SYS ***** Invalid (A94A035E)
- fffff803`69b80000 fffff803`69b8b000 BOOTVID BOOTVID.dll ***** Invalid (9EAF733C)
- fffff803`6cfa0000 fffff803`6cfc1000 bowser bowser.sys ***** Invalid (B0913486)
- ffff831a`cc030000 ffff831a`cc071000 cdd cdd.dll ***** Invalid (9A421E1E)
- fffff803`6c110000 fffff803`6c13e000 cdrom cdrom.sys Thu Jul 20 18:39:41 1972 (04CCA32D)
- fffff803`69f60000 fffff803`69f78000 CEA CEA.sys Wed Dec 16 23:50:10 1970 (01CDB102)
- fffff803`6a670000 fffff803`6a718000 CI CI.dll Sat Aug 27 15:22:09 2016 (57C1E861)
- fffff803`6b1b0000 fffff803`6b215000 CLASSPNP CLASSPNP.SYS Mon May 4 12:41:45 1992 (2A056949)
- fffff803`69ac0000 fffff803`69b25000 CLFS CLFS.SYS ***** Invalid (B5B5D3D6)
- fffff803`69800000 fffff803`698e0000 clipsp clipsp.sys Sat Mar 18 00:54:13 2017 (58CCBD75)
- fffff803`698e0000 fffff803`698ee000 cmimcext cmimcext.sys ***** Invalid (FF4D5961)
- fffff803`6a720000 fffff803`6a7c2000 cng cng.sys ***** Invalid (F2E91F26)
- fffff803`6c7b0000 fffff803`6c7c1000 CompositeBus CompositeBus.sys ***** Invalid (A29FEBD9)
- fffff801`f36a0000 fffff801`f36b2000 condrv condrv.sys Wed Jun 25 21:27:43 2031 (73A5288F)
- fffff803`6b2a0000 fffff803`6b2bb000 crashdmp crashdmp.sys Mon Jun 7 22:16:33 1993 (2C13F681)
- fffff803`6c710000 fffff803`6c73b000 dfsc dfsc.sys Sat Mar 4 05:04:07 2023 (64031797)
- fffff803`6b190000 fffff803`6b1ae000 disk disk.sys Sat Mar 28 14:37:28 2009 (49CE6E68)
- fffff803`6e000000 fffff803`6e021000 drmk drmk.sys ***** Invalid (A01C1986)
- fffff803`6c810000 fffff803`6c81f000 dump_diskdump dump_diskdump.sys Wed Aug 28 09:02:36 2013 (521DF4EC)
- fffff803`6c0f0000 fffff803`6c10d000 dump_dumpfve dump_dumpfve.sys ***** Invalid (B65817D6)
- fffff803`6bc00000 fffff803`6c0d0000 dump_iaStorA dump_iaStorA.sys Fri Dec 30 07:25:28 2016 (58665238)
- fffff803`6c1d0000 fffff803`6c42a000 dxgkrnl dxgkrnl.sys Wed Aug 5 15:47:00 2037 (7F24BE34)
- fffff803`6ccf0000 fffff803`6cda3000 dxgmms2 dxgmms2.sys ***** Invalid (ABB616E9)
- fffff803`6a650000 fffff803`6a66c000 EhStorClass EhStorClass.sys ***** Invalid (DDF6ADD3)
- fffff803`6e370000 fffff803`6e3cc000 fastfat fastfat.SYS ***** Invalid (CC46D5C9)
- fffff803`6c140000 fffff803`6c154000 filecrypt filecrypt.sys Tue May 28 04:10:59 2030 (719E1813)
- fffff803`6a7d0000 fffff803`6a7ea000 fileinfo fileinfo.sys ***** Invalid (885C5414)
- fffff803`69b90000 fffff803`69bf5000 FLTMGR FLTMGR.SYS ***** Invalid (90D626DF)
- fffff803`6aa50000 fffff803`6aa5d000 Fs_Rec Fs_Rec.sys ***** Invalid (9836443C)
- fffff803`6afa0000 fffff803`6b056000 fvevol fvevol.sys Wed Feb 3 02:04:49 1999 (36B7F511)
- fffff803`6af00000 fffff803`6af6a000 fwpkclnt fwpkclnt.sys Thu Jan 28 01:39:38 1999 (36B0062A)
- fffff803`6c700000 fffff803`6c70a000 gpuenergydrv gpuenergydrv.sys Sat Nov 11 03:01:57 1972 (05622075)
- fffff801`f4089000 fffff801`f4105000 hal hal.dll ***** Invalid (CEA0A646)
- fffff803`6f970000 fffff803`6f98d000 HDAudBus HDAudBus.sys Wed Jan 27 01:21:45 1988 (21FD8579)
- fffff803`6ea60000 fffff803`6ea93000 HIDCLASS HIDCLASS.SYS Wed Aug 14 04:52:13 1991 (28A8EF3D)
- fffff803`6eaa0000 fffff803`6eab2000 HIDPARSE HIDPARSE.SYS ***** Invalid (CCA57185)
- fffff803`6ea40000 fffff803`6ea52000 hidusb hidusb.sys Tue May 3 03:23:27 2016 (572851EF)
- fffff803`6ce80000 fffff803`6cf94000 HTTP HTTP.sys ***** Invalid (C93DA7E1)
- fffff803`6a0f0000 fffff803`6a5c0000 iaStorA iaStorA.sys Fri Dec 30 07:25:28 2016 (58665238)
- fffff803`69e30000 fffff803`69e47000 intelpep intelpep.sys Thu Apr 19 04:53:10 2007 (46272DF6)
- fffff803`6e2a0000 fffff803`6e2d8000 intelppm intelppm.sys ***** Invalid (CDD5C2DE)
- fffff803`6b160000 fffff803`6b171000 iorate iorate.sys Fri Feb 1 18:15:43 2013 (510C4C9F)
- fffff803`6e340000 fffff803`6e34c000 iwdbus iwdbus.sys Thu Nov 5 18:10:07 2015 (563BE1CF)
- fffff803`6eb00000 fffff803`6eb13000 kbdclass kbdclass.sys ***** Invalid (D67B605D)
- fffff803`6eaf0000 fffff803`6eb00000 kbdhid kbdhid.sys Sun Apr 24 00:10:44 2022 (6264CDC4)
- fffff801`f4200000 fffff801`f420b000 kd kd.dll ***** Invalid (91688416)
- fffff803`6c7d0000 fffff803`6c7dd000 kdnic kdnic.sys ***** Invalid (E88EF29A)
- fffff803`6e030000 fffff803`6e097000 ks ks.sys Thu Nov 29 22:12:24 1979 (12A4A318)
- fffff803`69a70000 fffff803`69a99000 ksecdd ksecdd.sys ***** Invalid (85DBC708)
- fffff803`6ac30000 fffff803`6ac60000 ksecpkg ksecpkg.sys ***** Invalid (AC6D7E9B)
- fffff803`6e310000 fffff803`6e31e000 ksthunk ksthunk.sys ***** Invalid (A98424C7)
- fffff803`6ce20000 fffff803`6ce36000 lltdio lltdio.sys ***** Invalid (DD624815)
- fffff801`f2bd0000 fffff801`f2bf6000 luafv luafv.sys Mon Jun 8 05:55:59 2037 (7ED7BCAF)
- fffff803`69980000 fffff803`69a0e000 mcupdate_GenuineIntel mcupdate_GenuineIntel.dll Tue Jul 17 20:27:54 1979 (11F2820A)
- fffff803`6c740000 fffff803`6c754000 mmcss mmcss.sys ***** Invalid (95EC281D)
- fffff801`f2810000 fffff801`f2821000 monitor monitor.sys Mon Nov 17 20:45:15 2014 (546AA4AB)
- fffff803`6eb30000 fffff803`6eb43000 mouclass mouclass.sys Tue Oct 23 10:38:45 2035 (7BC8E3F5)
- fffff803`6eb20000 fffff803`6eb2f000 mouhid mouhid.sys ***** Invalid (E277736F)
- fffff803`6a0d0000 fffff803`6a0ee000 mountmgr mountmgr.sys ***** Invalid (EA4F8C7B)
- fffff801`f3710000 fffff801`f371e000 MpKsl58917173 MpKsl58917173.sys Tue May 19 21:50:37 2015 (555BE86D)
- fffff803`6cfd0000 fffff803`6cfea000 mpsdrv mpsdrv.sys Wed Nov 26 21:16:18 1980 (14832672)
- fffff803`6b2e0000 fffff803`6b35b000 mrxsmb mrxsmb.sys Fri Oct 15 21:47:34 2004 (41707DB6)
- fffff801`f3760000 fffff801`f37ae000 mrxsmb10 mrxsmb10.sys ***** Invalid (9D6730FF)
- fffff803`6b360000 fffff803`6b39d000 mrxsmb20 mrxsmb20.sys ***** Invalid (D0396718)
- fffff803`6c480000 fffff803`6c490000 Msfs Msfs.SYS Tue Oct 24 07:07:15 2000 (39F56D63)
- fffff803`69ea0000 fffff803`69eab000 msisadrv msisadrv.sys ***** Invalid (BAF553EF)
- fffff803`6ce40000 fffff803`6ce5a000 mslldp mslldp.sys ***** Invalid (C33AB00E)
- fffff803`69a10000 fffff803`69a6f000 msrpc msrpc.sys Sun Jan 17 07:05:49 1982 (16A8209D)
- fffff803`6c6f0000 fffff803`6c700000 mssmbios mssmbios.sys ***** Invalid (BC4E1F4C)
- fffff803`6b130000 fffff803`6b154000 mup mup.sys ***** Invalid (98323F4C)
- fffff803`6aa60000 fffff803`6ab96000 ndis ndis.sys Tue Dec 15 00:19:38 1981 (167C3FEA)
- fffff801`f36f0000 fffff801`f3706000 ndisuio ndisuio.sys ***** Invalid (FC456479)
- fffff803`6e320000 fffff803`6e32d000 NdisVirtualBus NdisVirtualBus.sys ***** Invalid (B2B82E4C)
- fffff801`f37b0000 fffff801`f37d6000 Ndu Ndu.sys ***** Invalid (84A42893)
- fffff803`6c620000 fffff803`6c632000 netbios netbios.sys ***** Invalid (93C21EE7)
- fffff803`6c4d0000 fffff803`6c522000 netbt netbt.sys ***** Invalid (B2AD25BE)
- fffff803`6aba0000 fffff803`6ac25000 NETIO NETIO.SYS ***** Invalid (8CC6BF38)
- fffff803`6c460000 fffff803`6c479000 Npfs Npfs.SYS Sun Jul 14 18:34:01 2030 (71DCD8D9)
- fffff803`6c6e0000 fffff803`6c6ef000 npsvctrig npsvctrig.sys ***** Invalid (EFF190DD)
- fffff803`6c6c0000 fffff803`6c6d1000 nsiproxy nsiproxy.sys ***** Invalid (E796A4DD)
- fffff801`f3800000 fffff801`f4089000 nt ntkrnlmp.exe Sat Jun 3 04:53:36 2017 (59327910)
- fffff803`6a800000 fffff803`6aa43000 NTFS NTFS.sys Wed Jul 6 00:59:02 1994 (2E1A3A16)
- fffff803`698f0000 fffff803`698fc000 ntosext ntosext.sys ***** Invalid (CC2A33AD)
- fffff803`6c170000 fffff803`6c17a000 Null Null.SYS ***** Invalid (D1CBAAAB)
- fffff803`6e3d0000 fffff803`6e405000 nvhda64v nvhda64v.sys Wed Mar 15 08:48:41 2017 (58C93829)
- fffff803`6eb50000 fffff803`6f96d000 nvlddmkm nvlddmkm.sys Mon May 1 15:55:53 2017 (590792C9)
- fffff803`6e300000 fffff803`6e30d000 nvvad64v nvvad64v.sys Tue Oct 4 03:20:09 2016 (57F35829)
- fffff803`6c5f0000 fffff803`6c619000 pacer pacer.sys ***** Invalid (C07DAF10)
- fffff803`6e240000 fffff803`6e25e000 parport parport.sys ***** Invalid (A8120830)
- fffff803`69f80000 fffff803`69fab000 partmgr partmgr.sys Tue Dec 23 08:10:05 2025 (694A94AD)
- fffff803`69eb0000 fffff803`69f0b000 pci pci.sys Sat Aug 2 05:15:37 2025 (688DD739)
- fffff803`69e80000 fffff803`69e93000 pcw pcw.sys Sat Jan 10 14:29:41 1970 (000CEFA5)
- fffff803`69f30000 fffff803`69f53000 pdc pdc.sys Sun Mar 12 08:41:46 2034 (78BEF38A)
- fffff801`f3400000 fffff801`f34c6000 peauth peauth.sys Sat Dec 9 21:03:08 1989 (2581B95C)
- fffff803`6f990000 fffff803`6f9f3000 portcls portcls.sys ***** Invalid (ABE570C2)
- fffff803`69b60000 fffff803`69b77000 PSHED PSHED.dll Thu Nov 5 03:56:53 2026 (6AEC44D5)
- fffff801`f36c0000 fffff801`f36d3000 qwavedrv qwavedrv.sys ***** Invalid (F52C11F3)
- fffff803`6c640000 fffff803`6c6b5000 rdbss rdbss.sys ***** Invalid (E291A5CA)
- fffff803`6e360000 fffff803`6e36d000 rdpbus rdpbus.sys Sun Feb 1 16:17:30 2004 (401D6CEA)
- fffff803`6b0e0000 fffff803`6b12c000 rdyboost rdyboost.sys ***** Invalid (CA830C4C)
- fffff803`6ce10000 fffff803`6ce1b000 registry registry.sys ***** Invalid (A10D8E26)
- fffff803`6ce60000 fffff803`6ce7a000 rspndr rspndr.sys Sun May 19 22:37:53 1991 (28373681)
- fffff803`6e150000 fffff803`6e237000 rt640x64 rt640x64.sys Thu Jul 14 05:04:28 2016 (5787559C)
- fffff803`6e4b0000 fffff803`6e9f9000 RTKVHD64 RTKVHD64.sys Tue Sep 20 07:47:12 2016 (57E121C0)
- fffff803`6e350000 fffff803`6e35e000 ScpVBus ScpVBus.sys Sun May 5 17:31:26 2013 (5186CFAE)
- fffff803`6e280000 fffff803`6e28f000 serenum serenum.sys ***** Invalid (EB7AAB2E)
- fffff803`6e260000 fffff803`6e27c000 serial serial.sys Wed Jul 26 21:01:20 2023 (64C1C1E0)
- fffff803`69d00000 fffff803`69d0e000 SleepStudyHelper SleepStudyHelper.sys ***** Invalid (EFF776F3)
- fffff803`69fb0000 fffff803`6a044000 spaceport spaceport.sys Wed Apr 25 01:38:08 2035 (7AD9C5C0)
- fffff801`f35b0000 fffff801`f363d000 srv srv.sys Mon Dec 11 21:16:29 2028 (6EE066FD)
- fffff801`f34f0000 fffff801`f35a8000 srv2 srv2.sys Sun Dec 12 08:38:44 2021 (61B5FB64)
- fffff803`6b3a0000 fffff803`6b3e6000 srvnet srvnet.sys Wed Oct 16 11:29:36 2013 (525EB0E0)
- fffff803`6a5c0000 fffff803`6a64a000 storport storport.sys Fri Mar 13 13:18:28 1970 (005E8DE4)
- fffff803`6cdf0000 fffff803`6ce09000 storqosflt storqosflt.sys Thu Dec 17 22:36:27 2015 (56737F3B)
- fffff803`6e330000 fffff803`6e33c000 swenum swenum.sys ***** Invalid (B9D78944)
- fffff803`6c160000 fffff803`6c16d000 tbs tbs.sys Sat Jul 24 03:49:47 2027 (6C444C9B)
- fffff803`6ac60000 fffff803`6aefc000 tcpip tcpip.sys Sun Jun 4 00:23:17 2000 (3939D9B5)
- fffff801`f34d0000 fffff801`f34e3000 tcpipreg tcpipreg.sys ***** Invalid (F09C8E9F)
- fffff803`6c4c0000 fffff803`6c4d0000 TDI TDI.SYS ***** Invalid (D2C3B059)
- fffff803`6c490000 fffff803`6c4b2000 tdx tdx.sys ***** Invalid (92AD75A7)
- fffff803`69b30000 fffff803`69b55000 tm tm.sys Mon Jan 12 01:52:09 2026 (69649A19)
- ffff831a`cc020000 ffff831a`cc02a000 TSDDD TSDDD.dll unavailable (00000000)
- fffff801`f3640000 fffff801`f3670000 tunnel tunnel.sys Thu Jun 4 18:42:24 1981 (157D7150)
- fffff803`6e110000 fffff803`6e149000 ucx01000 ucx01000.sys Tue Feb 22 09:51:48 1994 (2D6A1C04)
- fffff803`6e2f0000 fffff803`6e2fd000 UEFI UEFI.sys Fri Sep 30 17:36:44 2022 (6337616C)
- fffff803`6c7e0000 fffff803`6c7f5000 umbus umbus.sys Tue Jul 1 10:26:17 2025 (6863F009)
- fffff803`6eac0000 fffff803`6eae7000 usbaudio usbaudio.sys ***** Invalid (DAF8C276)
- fffff803`6ea00000 fffff803`6ea31000 usbccgp usbccgp.sys Sat Jul 21 06:16:10 2018 (5B5307EA)
- fffff803`6e4a0000 fffff803`6e4ae000 USBD USBD.SYS Mon Jun 14 00:32:36 1971 (02B9A964)
- fffff803`6e410000 fffff803`6e49c000 UsbHub3 UsbHub3.sys ***** Invalid (B99F418D)
- fffff803`6e0a0000 fffff803`6e104000 USBXHCI USBXHCI.SYS Sun Jul 17 23:39:46 2005 (42DB2482)
- fffff803`69f10000 fffff803`69f22000 vdrvroot vdrvroot.sys ***** Invalid (C0C6BED0)
- fffff803`6c430000 fffff803`6c44a000 vmbkmclr vmbkmclr.sys Fri Oct 29 22:55:38 1993 (2CD1D7AA)
- fffff803`6a050000 fffff803`6a069000 volmgr volmgr.sys ***** Invalid (D7133847)
- fffff803`6a070000 fffff803`6a0ce000 volmgrx volmgrx.sys unavailable (00000000)
- fffff803`6b070000 fffff803`6b0d4000 volsnap volsnap.sys ***** Invalid (DC1CFF91)
- fffff803`6b060000 fffff803`6b06b000 volume volume.sys ***** Invalid (9CBEE8B7)
- fffff803`6c5d0000 fffff803`6c5ea000 vwififlt vwififlt.sys Sat Jun 12 08:15:16 2032 (7575D054)
- fffff803`6c1b0000 fffff803`6c1c4000 watchdog watchdog.sys ***** Invalid (DFC4C1CD)
- fffff803`6cdb0000 fffff803`6cdd6000 wcifs wcifs.sys ***** Invalid (DF08FEDB)
- fffff803`69c00000 fffff803`69cde000 Wdf01000 Wdf01000.sys Wed Sep 12 21:32:07 1990 (26EEE197)
- fffff803`6b250000 fffff803`6b29e000 WdFilter WdFilter.sys ***** Invalid (F9B582DD)
- fffff803`69ce0000 fffff803`69cf3000 WDFLDR WDFLDR.SYS Thu Sep 29 09:06:05 1977 (0E910A3D)
- fffff801`f3670000 fffff801`f3693000 WdNisDrv WdNisDrv.sys Tue Nov 17 01:07:50 1981 (16576136)
- fffff803`69aa0000 fffff803`69ab1000 werkernel werkernel.sys ***** Invalid (C3403C42)
- fffff803`6af70000 fffff803`6af9c000 wfplwfs wfplwfs.sys Mon Apr 5 15:35:50 2010 (4BBA3B96)
- ffff831a`cbc30000 ffff831a`cbca4000 win32k win32k.sys Fri Sep 28 19:46:23 2007 (46FD924F)
- ffff831a`cbe00000 ffff831a`cc006000 win32kbase win32kbase.sys ***** Invalid (93D0007B)
- ffff831a`cc350000 ffff831a`cc6e3000 win32kfull win32kfull.sys Thu Aug 31 15:43:39 1978 (104C5F6B)
- fffff803`69e50000 fffff803`69e66000 WindowsTrustedRT WindowsTrustedRT.sys ***** Invalid (E3FF4AF6)
- fffff803`69e70000 fffff803`69e7b000 WindowsTrustedRTProxy WindowsTrustedRTProxy.sys Fri Jul 28 09:32:40 2006 (44CA11F8)
- fffff803`6e290000 fffff803`6e29c000 wmiacpi wmiacpi.sys Thu Jul 23 13:29:52 1981 (15BDC190)
- fffff803`69e10000 fffff803`69e1c000 WMILIB WMILIB.SYS Fri Sep 28 12:44:04 2018 (5BAE5A54)
- fffff803`69900000 fffff803`6993b000 Wof Wof.sys Mon Mar 11 18:47:45 1974 (07E25791)
- fffff803`69d40000 fffff803`69d4e000 WppRecorder WppRecorder.sys Mon Feb 10 03:02:55 1986 (1E4DAB2F)
- Unloaded modules:
- fffff801`f36e0000 fffff801`f36e6000 GPCIDrv64.sy
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00006000
- fffff803`6cde0000 fffff803`6cdeb000 cldflt.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000B000
- fffff803`6b2d0000 fffff803`6b2df000 dump_storpor
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000F000
- fffff803`6bc00000 fffff803`6c0d0000 dump_iaStorA
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 004D0000
- fffff803`6c0f0000 fffff803`6c10d000 dump_dumpfve
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0001D000
- fffff803`6c740000 fffff803`6c760000 dam.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00020000
- fffff803`69e20000 fffff803`69e2f000 WdBoot.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000F000
- fffff803`6b180000 fffff803`6b18f000 hwpolicy.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000F000
- DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
- An attempt was made to access a pageable (or completely invalid) address at an
- interrupt request level (IRQL) that is too high. This is usually
- caused by drivers using improper addresses.
- If kernel debugger is available get stack backtrace.
- Arguments:
- Arg1: ffffb501010c1fce, memory referenced
- Arg2: 00000000000000ff, IRQL
- Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
- Arg4: fffff8036c2b16e5, address which referenced memory
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.15063.413 (WinBuild.160101.0800)
- SYSTEM_MANUFACTURER: System manufacturer
- SYSTEM_PRODUCT_NAME: System Product Name
- SYSTEM_SKU: SKU
- SYSTEM_VERSION: System Version
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 0316
- BIOS_DATE: 11/08/2016
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: PRIME B250M-A
- BASEBOARD_VERSION: Rev X.0x
- DUMP_TYPE: 2
- READ_ADDRESS: ffffb501010c1fce
- CURRENT_IRQL: 0
- FAULTING_IP:
- dxgkrnl!DxgkGetPresentHistory+45
- fffff803`6c2b16e5 c0740df680 sal byte ptr [rbp+rcx-0Ah],80h
- ADDITIONAL_DEBUG_TEXT: The trap occurred when interrupts are disabled on the target.
- BUGCHECK_STR: DISABLED_INTERRUPT_FAULT
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 9e
- CPU_STEPPING: 9
- CPU_MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- PROCESS_NAME: dwm.exe
- ANALYSIS_SESSION_HOST: USERNAME-PC
- ANALYSIS_SESSION_TIME: 07-09-2017 23:16:27.0784
- ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
- TRAP_FRAME: ffffda8080860c30 -- (.trap 0xffffda8080860c30)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=ffff83883e2f17c0 rbx=0000000000000000 rcx=ffffda8080860f88
- rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff8036c2b16e5 rsp=ffffda8080860dc8 rbp=ffffda8080861050
- r8=ffff835c01d1e010 r9=ffff835c000059a8 r10=ffff835c0240b7c0
- r11=ffff83883e59e4c0 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up di ng nz ac po nc
- dxgkrnl!DxgkGetPresentHistory+0x45:
- fffff803`6c2b16e5 c0740df680 sal byte ptr [rbp+rcx-0Ah],80h ss:0018:ffffb501`010c1fce=??
- Resetting default scope
- MISALIGNED_IP:
- dxgkrnl!DxgkGetPresentHistory+45
- fffff803`6c2b16e5 c0740df680 sal byte ptr [rbp+rcx-0Ah],80h
- LAST_CONTROL_TRANSFER: from fffff801f39777a9 to fffff801f396c3f0
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff801f381bdae - nt!MiPerformCombineScan+1e
- [ f6:af ]
- fffff801f38f8388-fffff801f38f8389 2 bytes - nt!MiDecayPfnFullyInitialized+18 (+0xdc5da)
- [ 80 fa:00 94 ]
- fffff801f39062e9-fffff801f39062ea 2 bytes - nt!MiModifiedWriterNoReservationSort+9 (+0xdf61)
- [ 80 fa:00 94 ]
- fffff801f3a80383-fffff801f3a80385 3 bytes - nt!ExFreePoolWithTag+363
- [ 40 fb f6:c0 d7 af ]
- 8 errors : !nt (fffff801f381bdae-fffff801f3a80385)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2017-06-24T02:45:54.000Z
- OSBUILD: 15063
- OSSERVICEPACK: 413
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2017-06-03 04:53:36
- BUILDDATESTAMP_STR: 160101.0800
- BUILDLAB_STR: WinBuild
- BUILDOSVER_STR: 10.0.15063.413
- ANALYSIS_SESSION_ELAPSED_TIME: 2313
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement