Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 X86
- Copyright (c) Microsoft Corporation. All rights reserved.
- Auto Dump Analyzer by gardenman
- Time to debug file(s): 00 hours and 04 minutes and 40 seconds
- ========================================================================
- =================== Dump File: 080317-4906-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 14393 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 14393.0.amd64fre.rs1_release.160715-1616
- Kernel base = 0xfffff801`b3a13000 PsLoadedModuleList = 0xfffff801`b3d18060
- Debug session time: Thu Aug 3 16:17:27.127 2017 (UTC - 4:00)
- System Uptime: 0 days 0:00:19.802
- BugCheck D1, {fffffadbb3a4ccdc, 2, 8, fffffadbb3a4ccdc}
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
- An attempt was made to access a pageable (or completely invalid) address at an
- interrupt request level (IRQL) that is too high. This is usually
- caused by drivers using improper addresses.
- If kernel debugger is available get stack backtrace.
- Arguments:
- Arg1: fffffadbb3a4ccdc, memory referenced
- Arg2: 0000000000000002, IRQL
- Arg3: 0000000000000008, value 0 = read operation, 1 = write operation
- Arg4: fffffadbb3a4ccdc, address which referenced memory
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.14393.0 (rs1_release.160715-1616)
- SYSTEM_SKU: SKU
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 3401
- BIOS_DATE: 01/25/2017
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: Z170-A
- BASEBOARD_VERSION: Rev 1.xx
- DUMP_TYPE: 2
- READ_ADDRESS: fffff801b3dba338: Unable to get MiVisibleState
- fffffadbb3a4ccdc
- CURRENT_IRQL: 2
- FAULTING_IP:
- +0
- fffffadb`b3a4ccdc ?? ???
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 5e
- CPU_STEPPING: 3
- CPU_MICROCODE: 6,5e,3,0 (F,M,S,R) SIG: 9E'00000000 (cache) 9E'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: AV
- PROCESS_NAME: System
- TRAP_FRAME: ffffb400ccff74d0 -- (.trap 0xffffb400ccff74d0)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=0000000000000000 rbx=0000000000000000 rcx=ffffb400ccff7620
- rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
- rip=fffffadbb3a4ccdc rsp=ffffb400ccff7660 rbp=0000000000000000
- r8=0000000000000000 r9=0000000000000000 r10=000000000000000b
- r11=ffffc68fcd745c58 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na pe nc
- fffffadb`b3a4ccdc ?? ???
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff801b3b68129 to fffff801b3b5cf90
- FAILED_INSTRUCTION_ADDRESS:
- +0
- fffffadb`b3a4ccdc ?? ???
- STACK_TEXT:
- ffffb400`ccff7388 fffff801`b3b68129 : 00000000`0000000a fffffadb`b3a4ccdc 00000000`00000002 00000000`00000008 : nt!KeBugCheckEx
- ffffb400`ccff7390 fffff801`b3b66707 : fffff801`b3d55180 fffff801`b3b6237f 00000000`0413f7df ffffc68f`cd35f040 : nt!KiBugCheckDispatch+0x69
- ffffb400`ccff74d0 fffffadb`b3a4ccdc : 00000000`00000000 00000000`00000001 00000000`00006a00 ffffc68f`ce2879a0 : nt!KiPageFault+0x247
- ffffb400`ccff7660 00000000`00000000 : 00000000`00000001 00000000`00006a00 ffffc68f`ce2879a0 ffffb2da`0066f000 : 0xfffffadb`b3a4ccdc
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff801b3a57bd9 - nt!MiUnlinkFreeOrZeroedPage+29
- [ fa:ea ]
- fffff801b3afdcd9 - nt!MiReplacePageTablePage+5d (+0xa6100)
- [ fa:ea ]
- fffff801b3b0433e - nt!RemoveListEntryPte+32 (+0x6665)
- [ f6:b2 ]
- fffff801b3b211de - nt!MiPurgeZeroList+6e (+0x1cea0)
- [ fa:ea ]
- 4 errors : !nt (fffff801b3a57bd9-fffff801b3b211de)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2017-08-03T20:17:27.000Z
- OSBUILD: 14393
- OSSERVICEPACK: 0
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2016-07-15 22:16:17
- BUILDDATESTAMP_STR: 160715-1616
- BUILDLAB_STR: rs1_release
- BUILDOSVER_STR: 10.0.14393.0
- ANALYSIS_SESSION_ELAPSED_TIME: 2abc
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- ============================== Drivers ===============================
- ========================================================================
- Image path: \SystemRoot\System32\drivers\e1i63x64.sys
- Image name: e1i63x64.sys
- Possible Info Link: http://www.carrona.org/drivers/driver.php?id=e1i63x64.sys
- Timestamp: Fri Mar 4 2016
- Unloaded modules:
- fffff802`52ce0000 fffff802`52d1c000 WUDFRd.sys
- fffff802`516b0000 fffff802`516bf000 dump_storpor
- fffff802`516f0000 fffff802`51714000 dump_storahc
- fffff802`51740000 fffff802`5175d000 dump_dumpfve
- fffff802`51d40000 fffff802`51d53000 dam.sys
- fffff802`506b0000 fffff802`506c0000 WdBoot.sys
- fffff802`515c0000 fffff802`515cf000 hwpolicy.sys
- ========================================================================
- ============================== BIOS INFO =============================
- ========================================================================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4359 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 3401
- BIOS Starting Address Segment f000
- BIOS Release Date 01/25/2017
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 10: - APM Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer System manufacturer
- Product Name System Product Name
- Version System Version
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber SKU
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASUSTeK COMPUTER INC.
- Product Z170-A
- Version Rev 1.xx
- Feature Flags 09h
- 1644700168: - ?ÿU?ì?ì¡H.b3Å?Eü3ÀW?}?Eô?Eø?ÿu
- ¸@
- 1644700208: - ?ÿU?ì?ì¡H.b3Å?Eü3ÀW?}?Eô?Eø?ÿu
- ¸@
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0028h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0029h]
- Number of Strings 4
- 1 Default string
- 2 Default string
- 3 ORC
- 4 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 002ah]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0045h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 0046h]
- Physical Memory Array Handle 0045h
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 0
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0047h]
- Physical Memory Array Handle 0045h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM2
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer G-Skill
- Part Number F4-2133C15-8GRR
- [Memory Device (Type 17) - Length 40 - Handle 0048h]
- Physical Memory Array Handle 0045h
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 2
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0049h]
- Physical Memory Array Handle 0045h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM2
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer G-Skill
- Part Number F4-2133C15-8GRR
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 004ah]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Array Handle 0045h
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 004bh]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004ch]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004dh]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 1800h - 6144K
- Installed Size 1800h - 6144K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity Specification Reserved
- [Processor Information (Type 4) - Length 48 - Handle 004eh]
- Socket Designation LGA1151
- Processor Type Central Processor
- Processor Family cdh - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e3060500fffbebbf
- Processor Version Intel(R) Core(TM) i5-6600K CPU @ 3.50GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 3500MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 004bh
- L2 Cache Handle 004ch
- L3 Cache Handle 004dh
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 0047h
- Mem Array Mapped Adr Handle 004ah
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0049h
- Mem Array Mapped Adr Handle 004ah
- Interleave Position 02
- Interleave Data Depth 02
- ========================================================================
- =================== Dump File: 080317-4453-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 14393 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 14393.0.amd64fre.rs1_release.160715-1616
- Kernel base = 0xfffff803`d2a1f000 PsLoadedModuleList = 0xfffff803`d2d24060
- Debug session time: Thu Aug 3 16:18:48.030 2017 (UTC - 4:00)
- System Uptime: 0 days 0:00:27.726
- BugCheck D1, {fffffd03d2b6c74a, 2, 8, fffffd03d2b6c74a}
- Probably caused by : ntkrnlmp.exe ( nt!KiPageFault+247 )
- Followup: MachineOwner
- DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
- An attempt was made to access a pageable (or completely invalid) address at an
- interrupt request level (IRQL) that is too high. This is usually
- caused by drivers using improper addresses.
- If kernel debugger is available get stack backtrace.
- Arguments:
- Arg1: fffffd03d2b6c74a, memory referenced
- Arg2: 0000000000000002, IRQL
- Arg3: 0000000000000008, value 0 = read operation, 1 = write operation
- Arg4: fffffd03d2b6c74a, address which referenced memory
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.14393.0 (rs1_release.160715-1616)
- SYSTEM_SKU: SKU
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 3401
- BIOS_DATE: 01/25/2017
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: Z170-A
- BASEBOARD_VERSION: Rev 1.xx
- DUMP_TYPE: 2
- READ_ADDRESS: fffff803d2dc6338: Unable to get MiVisibleState
- fffffd03d2b6c74a
- CURRENT_IRQL: 2
- FAULTING_IP:
- +0
- fffffd03`d2b6c74a ?? ???
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 5e
- CPU_STEPPING: 3
- CPU_MICROCODE: 6,5e,3,0 (F,M,S,R) SIG: 9E'00000000 (cache) 9E'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: AV
- PROCESS_NAME: conhost.exe
- TRAP_FRAME: ffffc5811ce5c510 -- (.trap 0xffffc5811ce5c510)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=000000da57fdd000 rbx=0000000000000000 rcx=ffffc5811ce5c660
- rdx=00000000000000da rsi=0000000000000000 rdi=0000000000000000
- rip=fffffd03d2b6c74a rsp=ffffc5811ce5c6a0 rbp=ffffc5811ce5c720
- r8=0000000000000000 r9=0000000000000000 r10=000000000000000c
- r11=ffff878c275d5a9c r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na pe nc
- fffffd03`d2b6c74a ?? ???
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff803d2b74129 to fffff803d2b68f90
- FAILED_INSTRUCTION_ADDRESS:
- +0
- fffffd03`d2b6c74a ?? ???
- STACK_TEXT:
- ffffc581`1ce5c3c8 fffff803`d2b74129 : 00000000`0000000a fffffd03`d2b6c74a 00000000`00000002 00000000`00000008 : nt!KeBugCheckEx
- ffffc581`1ce5c3d0 fffff803`d2b72707 : fffff803`d2d61180 fffff803`d2b6e37f 00000000`05b1c234 ffff878c`29e02800 : nt!KiBugCheckDispatch+0x69
- ffffc581`1ce5c510 fffffd03`d2b6c74a : ffff878c`29885800 00000000`000000aa ffffc53b`00000000 ffffc53b`8005c100 : nt!KiPageFault+0x247
- ffffc581`1ce5c6a0 ffff878c`29885800 : 00000000`000000aa ffffc53b`00000000 ffffc53b`8005c100 00000000`00000000 : 0xfffffd03`d2b6c74a
- ffffc581`1ce5c6a8 00000000`000000aa : ffffc53b`00000000 ffffc53b`8005c100 00000000`00000000 00001f80`00b600a6 : 0xffff878c`29885800
- ffffc581`1ce5c6b0 ffffc53b`00000000 : ffffc53b`8005c100 00000000`00000000 00001f80`00b600a6 00000000`00000086 : 0xaa
- ffffc581`1ce5c6b8 ffffc53b`8005c100 : 00000000`00000000 00001f80`00b600a6 00000000`00000086 ffffc53b`81c00820 : 0xffffc53b`00000000
- ffffc581`1ce5c6c0 00000000`00000000 : 00001f80`00b600a6 00000000`00000086 ffffc53b`81c00820 00000000`00000000 : 0xffffc53b`8005c100
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: bf99962f16aee8a6a536cfcc5454c0cd4db15ac9
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 3fc3928ee7b2857c7b0acb22199e00ab7dceb90c
- THREAD_SHA1_HASH_MOD: 2a7ca9d3ab5386d53fea7498e1d81b9c4a4c036b
- FOLLOWUP_IP:
- nt!KiPageFault+247
- fffff803`d2b72707 33c0 xor eax,eax
- FAULT_INSTR_CODE: ffb0c033
- SYMBOL_STACK_INDEX: 2
- SYMBOL_NAME: nt!KiPageFault+247
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 578998f1
- IMAGE_VERSION: 10.0.14393.0
- BUCKET_ID_FUNC_OFFSET: 247
- FAILURE_BUCKET_ID: AV_CODE_AV_BAD_IP_nt!KiPageFault
- BUCKET_ID: AV_CODE_AV_BAD_IP_nt!KiPageFault
- PRIMARY_PROBLEM_CLASS: AV_CODE_AV_BAD_IP_nt!KiPageFault
- TARGET_TIME: 2017-08-03T20:18:48.000Z
- OSBUILD: 14393
- OSSERVICEPACK: 0
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2016-07-15 22:16:17
- BUILDDATESTAMP_STR: 160715-1616
- BUILDLAB_STR: rs1_release
- BUILDOSVER_STR: 10.0.14393.0
- ANALYSIS_SESSION_ELAPSED_TIME: 9b6
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:av_code_av_bad_ip_nt!kipagefault
- FAILURE_ID_HASH: {73cd60cc-83fa-6b76-df08-1961c31d7403}
- Followup: MachineOwner
- ========================================================================
- =================== Dump File: 080317-4609-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 14393 MP (4 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 14393.0.amd64fre.rs1_release.160715-1616
- Kernel base = 0xfffff802`9f400000 PsLoadedModuleList = 0xfffff802`9f705060
- Debug session time: Thu Aug 3 16:15:36.781 2017 (UTC - 4:00)
- System Uptime: 0 days 0:00:10.455
- BugCheck D1, {ffffffff9f439cdc, 2, 8, ffffffff9f439cdc}
- Probably caused by : ntkrnlmp.exe ( nt!KiPageFault+247 )
- Followup: MachineOwner
- DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
- An attempt was made to access a pageable (or completely invalid) address at an
- interrupt request level (IRQL) that is too high. This is usually
- caused by drivers using improper addresses.
- If kernel debugger is available get stack backtrace.
- Arguments:
- Arg1: ffffffff9f439cdc, memory referenced
- Arg2: 0000000000000002, IRQL
- Arg3: 0000000000000008, value 0 = read operation, 1 = write operation
- Arg4: ffffffff9f439cdc, address which referenced memory
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- BUILD_VERSION_STRING: 10.0.14393.0 (rs1_release.160715-1616)
- SYSTEM_SKU: SKU
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: 3401
- BIOS_DATE: 01/25/2017
- BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
- BASEBOARD_PRODUCT: Z170-A
- BASEBOARD_VERSION: Rev 1.xx
- DUMP_TYPE: 2
- READ_ADDRESS: fffff8029f7a7338: Unable to get MiVisibleState
- ffffffff9f439cdc
- CURRENT_IRQL: 2
- FAULTING_IP:
- +0
- ffffffff`9f439cdc ?? ???
- CPU_COUNT: 4
- CPU_MHZ: db0
- CPU_VENDOR: GenuineIntel
- CPU_FAMILY: 6
- CPU_MODEL: 5e
- CPU_STEPPING: 3
- CPU_MICROCODE: 6,5e,3,0 (F,M,S,R) SIG: 9E'00000000 (cache) 9E'00000000 (init)
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: AV
- PROCESS_NAME: msoobe.exe
- TRAP_FRAME: ffffb1802182d390 -- (.trap 0xffffb1802182d390)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=0000003c2903e000 rbx=0000000000000000 rcx=ffffb1802182d4e0
- rdx=000000000000003c rsi=0000000000000000 rdi=0000000000000000
- rip=ffffffff9f439cdc rsp=ffffb1802182d520 rbp=0000000000000000
- r8=0000000000000002 r9=0000000000000000 r10=0000000000000009
- r11=ffffa18de4ba40e4 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po nc
- ffffffff`9f439cdc ?? ???
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff8029f555129 to fffff8029f549f90
- FAILED_INSTRUCTION_ADDRESS:
- +0
- ffffffff`9f439cdc ?? ???
- STACK_TEXT:
- ffffb180`2182d248 fffff802`9f555129 : 00000000`0000000a ffffffff`9f439cdc 00000000`00000002 00000000`00000008 : nt!KeBugCheckEx
- ffffb180`2182d250 fffff802`9f553707 : fffff802`9f742180 fffff802`9f54f37f 00000000`022d288e ffffa18d`eac0a080 : nt!KiBugCheckDispatch+0x69
- ffffb180`2182d390 ffffffff`9f439cdc : ffffb180`00000000 fffff80f`00000000 00000000`00000000 ffffa18d`eac0a450 : nt!KiPageFault+0x247
- ffffb180`2182d520 ffffb180`00000000 : fffff80f`00000000 00000000`00000000 ffffa18d`eac0a450 ffffb180`2182d6e8 : 0xffffffff`9f439cdc
- ffffb180`2182d528 fffff80f`00000000 : 00000000`00000000 ffffa18d`eac0a450 ffffb180`2182d6e8 ffffb180`21829000 : 0xffffb180`00000000
- ffffb180`2182d530 00000000`00000000 : ffffa18d`eac0a450 ffffb180`2182d6e8 ffffb180`21829000 ffffa18d`00000000 : 0xfffff80f`00000000
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: bf99962f16aee8a6a536cfcc5454c0cd4db15ac9
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 3fc3928ee7b2857c7b0acb22199e00ab7dceb90c
- THREAD_SHA1_HASH_MOD: 2a7ca9d3ab5386d53fea7498e1d81b9c4a4c036b
- FOLLOWUP_IP:
- nt!KiPageFault+247
- fffff802`9f553707 33c0 xor eax,eax
- FAULT_INSTR_CODE: ffb0c033
- SYMBOL_STACK_INDEX: 2
- SYMBOL_NAME: nt!KiPageFault+247
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 578998f1
- IMAGE_VERSION: 10.0.14393.0
- BUCKET_ID_FUNC_OFFSET: 247
- FAILURE_BUCKET_ID: AV_CODE_AV_BAD_IP_nt!KiPageFault
- BUCKET_ID: AV_CODE_AV_BAD_IP_nt!KiPageFault
- PRIMARY_PROBLEM_CLASS: AV_CODE_AV_BAD_IP_nt!KiPageFault
- TARGET_TIME: 2017-08-03T20:15:36.000Z
- OSBUILD: 14393
- OSSERVICEPACK: 0
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2016-07-15 22:16:17
- BUILDDATESTAMP_STR: 160715-1616
- BUILDLAB_STR: rs1_release
- BUILDOSVER_STR: 10.0.14393.0
- ANALYSIS_SESSION_ELAPSED_TIME: 9da
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:av_code_av_bad_ip_nt!kipagefault
- FAILURE_ID_HASH: {73cd60cc-83fa-6b76-df08-1961c31d7403}
- Followup: MachineOwner
Advertisement
Add Comment
Please, Sign In to add comment