Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 X86
- Copyright (c) Microsoft Corporation. All rights reserved.
- Auto Dump Analyzer by gardenman
- Time to debug file(s): 00 hours and 07 minutes and 16 seconds
- =========================== BRIEF BIOS INFO ============================
- DATE: 03/22/2017
- VERSION: 0906
- VENDOR: American Megatrends Inc.
- =========================== MOTHERBOARD INFO ===========================
- VERSION: Rev 1.xx
- PRODUCT: STRIX Z270F GAMING
- MANUFACTURER: ASUSTeK COMPUTER INC.
- =============================== CPU INFO ===============================
- Processor Version: Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
- MICROCODE: 6,9e,9,0 (F,M,S,R) SIG: 42'00000000 (cache) 42'00000000 (init)
- STEPPING: 9
- MODEL: 9e
- FAMILY: 6
- VENDOR: GenuineIntel
- MHZ: 4200
- COUNT: 8
- =============================== OS INFO ================================
- BUILDOSVER: 10.0.15063.502
- BUILD_TIMESTAMP: 2017-07-28 00:07:59
- SERVICEPACK: 502
- BUILD_VERSION: 10.0.15063.502 (WinBuild.160101.0800)
- BUILDOSVER: 10.0.15063.483
- BUILD_TIMESTAMP: 2017-07-07 02:06:35
- SERVICEPACK: 483
- BUILD_VERSION: 10.0.15063.483 (WinBuild.160101.0800)
- BUILDOSVER: 10.0.15063.540
- BUILDLAB: WinBuild
- BUILDDATESTAMP: 160101.0800
- BUILD_TIMESTAMP: 2017-07-31 21:23:25
- EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- NAME: Windows 10
- PLATFORM_TYPE: x64
- SERVICEPACK: 540
- BUILD: 15063
- BUILD_VERSION: 10.0.15063.540 (WinBuild.160101.0800)
- Built by: 15063.0.amd64fre.rs2_release.170317-1834
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- If you see multiple OS versions listed above it's likely because the
- dump files were created at different times and Windows has updated to
- a new version. This is normal. The same goes for BIOS Versions/Dates.
- ========================================================================
- ==================== Dump File: 081417-5062-01.dmp =====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (8 procs) Free x64
- Kernel base = 0xfffff801`6da99000 PsLoadedModuleList = 0xfffff801`6dde55c0
- Debug session time: Mon Aug 14 02:11:06.407 2017 (UTC - 4:00)
- System Uptime: 4 days 2:58:41.071
- BugCheck 19, {e, ffffd60d09a6a190, ce33200119d4d, 389086fa5575390}
- Probably caused by : Npfs.SYS ( Npfs!NpAddDataQueueEntry+237 )
- Followup: MachineOwner
- BAD_POOL_HEADER (19)
- The pool is already corrupt at the time of the current request.
- This may or may not be due to the caller.
- The internal pool links must be walked to figure out a possible cause of
- the problem, and then special pool applied to the suspect tags or the driver
- verifier to a suspect driver.
- Arguments:
- Arg1: 000000000000000e,
- Arg2: ffffd60d09a6a190
- Arg3: 000ce33200119d4d
- Arg4: 0389086fa5575390
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x19_e
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- PROCESS_NAME: DSAService.exe
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff8016dd19c49 to fffff8016dc05560
- STACK_TEXT:
- ffffe600`1e67d4f8 fffff801`6dd19c49 : 00000000`00000019 00000000`0000000e ffffd60d`09a6a190 000ce332`00119d4d : nt!KeBugCheckEx
- ffffe600`1e67d500 fffff801`6db3c31b : ffffd60d`0352b9c0 00000000`7246704e 00000000`00000000 00000000`00000000 : nt!ExAllocatePoolWithTag+0x18a9
- ffffe600`1e67d5f0 fffff80c`441ea4b7 : 00000000`00000000 00000000`0000010f ffffd60d`7246704e fffff801`00000000 : nt!ExAllocatePoolWithQuotaTag+0x6b
- ffffe600`1e67d680 fffff80c`441ea982 : ffffbf0c`3a111700 00000000`0000010f ffffbf0c`3a1117a8 00000000`0000010f : Npfs!NpAddDataQueueEntry+0x237
- ffffe600`1e67d6e0 fffff80c`441ea6ef : ffffbf0c`397e2810 00000000`02206198 ffffd60d`01494060 ffffd60d`0cfe0400 : Npfs!NpCommonWrite+0x222
- ffffe600`1e67d770 fffff80c`3fd93502 : ffffd60c`ffa82df0 fffff801`6df1da90 00000000`7e000000 00000000`00000000 : Npfs!NpFsdWrite+0x5f
- ffffe600`1e67d7e0 fffff801`6df2f6ef : ffffd60d`02f40ef0 ffffe600`1e67db00 00000000`00000000 fffff801`00000000 : FLTMGR!FltpDispatch+0xe2
- ffffe600`1e67d840 fffff801`6df58a48 : ffffbf0c`00000000 00000000`00000004 ffffd60c`fbebbb20 ffffe600`1e67db00 : nt!IopSynchronousServiceTail+0x1af
- ffffe600`1e67d900 fffff801`6dc10413 : ffffd60d`0cfe0400 00000000`00000a05 00000000`00000001 00000000`00000000 : nt!NtWriteFile+0x6d8
- ffffe600`1e67da10 00000000`560a21cc : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000000`0138efd8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x560a21cc
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: e4790fe0bac6de0fd79539d81c423e2e030ddb09
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: c76527a82a4fa79aaba0de7816e8c1fa7829c317
- THREAD_SHA1_HASH_MOD: 6ecd44f80943a3f36be683021b93ae6184283233
- FOLLOWUP_IP:
- Npfs!NpAddDataQueueEntry+237
- fffff80c`441ea4b7 488bf8 mov rdi,rax
- FAULT_INSTR_CODE: 48f88b48
- SYMBOL_STACK_INDEX: 3
- SYMBOL_NAME: Npfs!NpAddDataQueueEntry+237
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: Npfs
- IMAGE_NAME: Npfs.SYS
- DEBUG_FLR_IMAGE_TIMESTAMP: 71dcd8d9
- IMAGE_VERSION: 10.0.15058.0
- BUCKET_ID_FUNC_OFFSET: 237
- FAILURE_BUCKET_ID: 0x19_e_Npfs!NpAddDataQueueEntry
- BUCKET_ID: 0x19_e_Npfs!NpAddDataQueueEntry
- PRIMARY_PROBLEM_CLASS: 0x19_e_Npfs!NpAddDataQueueEntry
- TARGET_TIME: 2017-08-14T06:11:06.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:0x19_e_npfs!npadddataqueueentry
- FAILURE_ID_HASH: {25f9d0b9-97e0-491a-4da5-b9bf5576c742}
- Followup: MachineOwner
- ========================================================================
- ========================== 3RD PARTY DRIVERS ===========================
- ============================ Sorted by Date ============================
- ========================================================================
- Image path: \SystemRoot\SysWow64\drivers\AsIO.sys
- Image name: AsIO.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=AsIO.sys
- ADA Info : Asus Input Output driver http://www.asus.com/
- Timestamp : Wed Aug 22 2012
- Image path: \SystemRoot\system32\DRIVERS\Hamdrv.sys
- Image name: Hamdrv.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=Hamdrv.sys
- Timestamp : Mon Mar 30 2015
- Image path: \SystemRoot\sysWOW64\drivers\npf_devolo.sys
- Image name: npf_devolo.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=npf_devolo.sys
- ADA Info : NetGroup Packet Filter driver http://www.cacetech.com/
- Timestamp : Thu Aug 13 2015
- Image path: \SystemRoot\System32\drivers\asmthub3.sys
- Image name: asmthub3.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=asmthub3.sys
- ADA Info : ASMedia USB 3.0 Hub driver http://www.asmedia.com.tw/
- Timestamp : Mon Aug 29 2016
- Image path: \SystemRoot\system32\DRIVERS\asmtxhci.sys
- Image name: asmtxhci.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=asmtxhci.sys
- ADA Info : ASMedia USB 3.0 driver http://www.asmedia.com.tw/
- Timestamp : Mon Aug 29 2016
- Image path: \SystemRoot\system32\drivers\netfilter2.sys
- Image name: netfilter2.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=netfilter2.sys
- Timestamp : Sat Sep 17 2016
- Image path: \SystemRoot\system32\DRIVERS\e1d65x64.sys
- Image name: e1d65x64.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=e1d65x64.sys
- ADA Info : Intel(R) Gigabit Adapter NDIS 6.x driver https://downloadcenter.intel.com/
- Timestamp : Wed Oct 5 2016
- Image path: \SystemRoot\System32\drivers\rzendpt.sys
- Image name: rzendpt.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=rzendpt.sys
- ADA Info : Razer RzEndPt driver https://www.razerzone.com/
- Timestamp : Wed Oct 26 2016
- Image path: \SystemRoot\System32\drivers\rzudd.sys
- Image name: rzudd.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=rzudd.sys
- ADA Info : Razer Rzudd Engine Driver https://www.razerzone.com/
- Timestamp : Wed Oct 26 2016
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Tue Dec 27 2016
- Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=TeeDriverW8x64.sys
- ADA Info : Intel® Management Engine Interface
- Timestamp : Tue Apr 4 2017
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio Driver http://www.nvidia.com/
- Timestamp : Wed Apr 12 2017
- Image path: \SystemRoot\system32\drivers\nvhda64v.sys
- Image name: nvhda64v.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Tue May 16 2017
- Image path: \SystemRoot\System32\Drivers\dump_iaStorA.sys
- Image name: dump_iaStorA.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=dump_iaStorA.sys
- Timestamp : Mon Jun 12 2017
- Image path: \SystemRoot\System32\drivers\iaStorA.sys
- Image name: iaStorA.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=iaStorA.sys
- ADA Info : Intel SATA Storage Device RAID Controller
- Timestamp : Mon Jun 12 2017
- Image path: \??\C:\WINDOWS\system32\drivers\rzpnk.sys
- Image name: rzpnk.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=rzpnk.sys
- ADA Info : Razer Overlay Support https://www.razerzone.com/
- Timestamp : Sun Jul 16 2017
- Image path: \??\C:\WINDOWS\system32\drivers\rzpmgrk.sys
- Image name: rzpmgrk.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=rzpmgrk.sys
- ADA Info : Razer Overlay Support https://www.razerzone.com/
- Timestamp : Tue Jul 18 2017
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_24ddebfb518b5a55\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Info Link : http://www.carrona.org/drivers/driver.php?id=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Tue Jul 18 2017
- ========================================================================
- ========================== MICROSOFT DRIVERS ===========================
- ========================================================================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device Driver
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump Driver
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys Crash Dump Disk Driver
- dump_dumpfve.sys Bitlocker Drive Encryption Crashdump Filter
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HdAudio.sys High Definition Audio Function Driver
- HIDCLASS.SYS Hid Class Library
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- NTFS.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- qwavedrv.sys Microsoft Quality Windows Audio Video Experience (qWave) Support Driver
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- registry.sys Registry Container driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator
- serial.sys Serial Device Driver
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv.sys Server driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storport.sys A storage port driver that is especially suitable for use with high-performance buses, such as fibre channel buses, and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- TSDDD.dll Framebuffer Display Driver (Microsoft)
- ucx01000.sys USB Controller Extension
- UEFI.sys UEFI Driver for NT
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB Driver
- USBXHCI.SYS USB XHCI Driver
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- vmbkmclr.sys Hyper-V VMBus Root KMCL (Microsoft)
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WudfPf.sys Windows Driver Foundation - User-mode Driver Framework Platform driver (Microsoft)
- Unloaded modules:
- fffff80c`42360000 fffff80c`4236e000 MpKsl43c2c16
- fffff80c`42310000 fffff80c`4231e000 MpKsld84a02a
- fffff80c`42350000 fffff80c`4235f000 hiber_storpo
- fffff801`8a360000 fffff801`8aead000 hiber_iaStor
- fffff801`8aeb0000 fffff801`8aecd000 hiber_dumpfv
- fffff80c`42340000 fffff80c`4234f000 hiber_storpo
- fffff801`8a7b0000 fffff801`8b2fd000 hiber_iaStor
- fffff801`8b300000 fffff801`8b31d000 hiber_dumpfv
- fffff80c`42330000 fffff80c`4233f000 hiber_storpo
- fffff801`8b1e0000 fffff801`8bd2d000 hiber_iaStor
- fffff801`8bd30000 fffff801`8bd4d000 hiber_dumpfv
- fffff80c`42320000 fffff80c`4232f000 hiber_storpo
- fffff801`86e80000 fffff801`879cd000 hiber_iaStor
- fffff801`879d0000 fffff801`879ed000 hiber_dumpfv
- fffff80c`422e0000 fffff80c`422ee000 MpKsl4959130
- fffff80c`42300000 fffff80c`4230f000 hiber_storpo
- fffff801`8a7d0000 fffff801`8b31d000 hiber_iaStor
- fffff801`8b320000 fffff801`8b33d000 hiber_dumpfv
- fffff80c`422f0000 fffff80c`422ff000 hiber_storpo
- fffff801`8acd0000 fffff801`8b81d000 hiber_iaStor
- fffff801`8b820000 fffff801`8b83d000 hiber_dumpfv
- fffff80c`42260000 fffff80c`4226e000 MpKslaa2df84
- fffff80c`422d0000 fffff80c`422df000 hiber_storpo
- fffff801`8b410000 fffff801`8bf5d000 hiber_iaStor
- fffff801`8bf60000 fffff801`8bf7d000 hiber_dumpfv
- fffff80c`422a0000 fffff80c`422af000 hiber_storpo
- fffff801`88760000 fffff801`892ad000 hiber_iaStor
- fffff801`892b0000 fffff801`892cd000 hiber_dumpfv
- fffff80c`42290000 fffff80c`42297000 semav6msr64.
- fffff80c`42280000 fffff80c`4228b000 cpuz143_x64.
- fffff80c`42270000 fffff80c`4227f000 hiber_storpo
- fffff801`6cd30000 fffff801`6d87d000 hiber_iaStor
- fffff801`6d880000 fffff801`6d89d000 hiber_dumpfv
- fffff80c`45d40000 fffff80c`45d4b000 cldflt.sys
- fffff80c`41610000 fffff80c`4161f000 dump_storpor
- fffff80c`42a00000 fffff80c`4354d000 dump_iaStorA
- fffff80c`43570000 fffff80c`4358d000 dump_dumpfve
- fffff80c`41e00000 fffff80c`41e20000 dam.sys
- fffff80c`3fc80000 fffff80c`3fc8f000 WdBoot.sys
- fffff80c`41520000 fffff80c`4152f000 hwpolicy.sys
- ========================================================================
- ============================== BIOS INFO ===============================
- ========================================================================
- [SMBIOS Data Tables v3.0]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 4338 bytes]
- [BIOS Information (Type 0) - Length 24 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 0906
- BIOS Starting Address Segment f000
- BIOS Release Date 03/22/2017
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 10: - APM Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 12
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer System manufacturer
- Product Name System Product Name
- Version System Version
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- SKUNumber SKU
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer ASUSTeK COMPUTER INC.
- Product STRIX Z270F GAMING
- Version Rev 1.xx
- Feature Flags 09h
- Location Default string
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Default string
- Chassis Type Desktop
- Version Default string
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [Onboard Devices Information (Type 10) - Length 6 - Handle 0028h]
- Number of Devices 1
- 01: Type Video [enabled]
- [OEM Strings (Type 11) - Length 5 - Handle 0029h]
- Number of Strings 4
- 1 Default string
- 2 Default string
- 3 EINSTEIN
- 4 Default string
- [System Configuration Options (Type 12) - Length 5 - Handle 002ah]
- [Physical Memory Array (Type 16) - Length 23 - Handle 0045h]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 67108864KB
- Number of Memory Devices 4
- [Memory Device (Type 17) - Length 40 - Handle 0046h]
- Physical Memory Array Handle 0045h
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelA-DIMM1
- Bank Locator BANK 0
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0047h]
- Physical Memory Array Handle 0045h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelA-DIMM2
- Bank Locator BANK 1
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer G-Skill
- Part Number F4-2400C15-8GTZR
- [Memory Device (Type 17) - Length 40 - Handle 0048h]
- Physical Memory Array Handle 0045h
- Total Width 0 bits
- Data Width 0 bits
- Form Factor 02h - Unknown
- Device Locator ChannelB-DIMM1
- Bank Locator BANK 2
- Memory Type 02h - Unknown
- Type Detail 0000h -
- Speed 0MHz
- [Memory Device (Type 17) - Length 40 - Handle 0049h]
- Physical Memory Array Handle 0045h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator ChannelB-DIMM2
- Bank Locator BANK 3
- Memory Type 1ah - Specification Reserved
- Type Detail 0080h - Synchronous
- Speed 2133MHz
- Manufacturer G-Skill
- Part Number F4-2400C15-8GTZR
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 004ah]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Array Handle 0045h
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 004bh]
- Socket Designation L1 Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0100h - 256K
- Installed Size 0100h - 256K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type ParitySingle-Bit ECC
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004ch]
- Socket Designation L2 Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0400h - 1024K
- Installed Size 0400h - 1024K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Multi-Bit ECC
- System Cache Type Unified
- Associativity 4-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 004dh]
- Socket Designation L3 Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 2000h - 8192K
- Installed Size 2000h - 8192K
- Supported SRAM Type 0020h - Synchronous
- Current SRAM Type 0020h - Synchronous
- Cache Speed 0ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 004eh]
- Socket Designation LGA1151
- Processor Type Central Processor
- Processor Family c6h - Specification Reserved
- Processor Manufacturer Intel(R) Corporation
- Processor ID e9060900fffbebbf
- Processor Version Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 8300MHz
- Current Speed 4200MHz
- Status Enabled Populated
- Processor Upgrade Other
- L1 Cache Handle 004bh
- L2 Cache Handle 004ch
- L3 Cache Handle 004dh
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 004fh]
- Starting Address 00000000h
- Ending Address 007fffffh
- Memory Device Handle 0047h
- Mem Array Mapped Adr Handle 004ah
- Interleave Position 01
- Interleave Data Depth 02
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0050h]
- Starting Address 00800000h
- Ending Address 00ffffffh
- Memory Device Handle 0049h
- Mem Array Mapped Adr Handle 004ah
- Interleave Position 02
- Interleave Data Depth 02
- ========================================================================
- ==================== Dump File: 073117-4250-01.dmp =====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (8 procs) Free x64
- Kernel base = 0xfffff803`a1207000 PsLoadedModuleList = 0xfffff803`a15535e0
- Debug session time: Mon Jul 31 17:05:54.827 2017 (UTC - 4:00)
- System Uptime: 1 days 0:44:53.481
- BugCheck 11D, {7, ffffdb0353830000, 10000, 40000}
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- EVENT_TRACING_FATAL_ERROR (11d)
- Event Tracing subsystem has encountered an unexpected fatal error. First parameter indicates
- the type of failure.
- Arguments:
- Arg1: 0000000000000007, Trace buffer corruption.
- Arg2: ffffdb0353830000
- Arg3: 0000000000010000
- Arg4: 0000000000040000
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x11D
- PROCESS_NAME: svchost.exe
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff803a138badb to fffff803a13734c0
- STACK_TEXT:
- ffffad01`85759418 fffff803`a138badb : 00000000`0000011d 00000000`00000007 ffffdb03`53830000 00000000`00010000 : nt!KeBugCheckEx
- ffffad01`85759420 fffff803`a1226a29 : ffffdb03`5b1e3000 00000000`00000000 ffff860e`6e1f6b40 00000000`00000000 : nt!EtwpDequeueFreeBuffer+0x164ee3
- ffffad01`85759470 fffff803`a1225706 : ffff860e`6e1f6b40 00000000`00000208 ffff860e`6deb6000 00000000`00000000 : nt!EtwpSwitchBuffer+0x29
- ffffad01`857594b0 fffff803`a164dbc2 : ffffad01`0000000a ffff860e`6e1f6b40 ffffad01`85759570 ffffad01`85759620 : nt!EtwpReserveTraceBuffer+0x136
- ffffad01`85759530 fffff803`a1224f96 : ffff860e`6d010000 ffffad01`85759a80 00000096`06ffecd8 ffffdb03`5b186340 : nt!EtwpWriteUserEvent+0x4c2
- ffffad01`857598e0 fffff803`a137e413 : ffff860e`75bbf7c0 00000000`00000000 00000000`00000000 00000292`48b70040 : nt!NtTraceEvent+0x236
- ffffad01`85759a80 00007ffd`ce835f54 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000096`06ffec68 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`ce835f54
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff803a12900cf-fffff803a12900d0 2 bytes - nt!MiSetProtectionOnSection+12f
- [ 80 f6:00 80 ]
- 2 errors : !nt (fffff803a12900cf-fffff803a12900d0)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2017-07-31T21:05:54.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- ==================== Dump File: 080517-5390-01.dmp =====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (8 procs) Free x64
- Kernel base = 0xfffff800`58c8b000 PsLoadedModuleList = 0xfffff800`58fd75c0
- Debug session time: Fri Aug 4 21:21:34.033 2017 (UTC - 4:00)
- System Uptime: 2 days 5:46:13.692
- BugCheck 19, {3, ffffe201c60ab470, ffffe201c608b470, ffffe201c60ab470}
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : ntkrnlmp.exe ( nt!ExAllocatePoolWithTag+197a )
- Followup: MachineOwner
- BAD_POOL_HEADER (19)
- The pool is already corrupt at the time of the current request.
- This may or may not be due to the caller.
- The internal pool links must be walked to figure out a possible cause of
- the problem, and then special pool applied to the suspect tags or the driver
- verifier to a suspect driver.
- Arguments:
- Arg1: 0000000000000003, the pool freelist is corrupt.
- Arg2: ffffe201c60ab470, the pool entry being checked.
- Arg3: ffffe201c608b470, the read back flink freelist value (should be the same as 2).
- Arg4: ffffe201c60ab470, the read back blink freelist value (should be the same as 2).
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x19_3
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- PROCESS_NAME: SearchIndexer.exe
- CURRENT_IRQL: 1
- LAST_CONTROL_TRANSFER: from fffff80058f0bd1a to fffff80058df7550
- STACK_TEXT:
- ffff9001`862a7248 fffff800`58f0bd1a : 00000000`00000019 00000000`00000003 ffffe201`c60ab470 ffffe201`c608b470 : nt!KeBugCheckEx
- ffff9001`862a7250 fffff80f`06d67e36 : 00000000`00000004 00000000`000000a8 00000000`000028c5 fffff800`00000000 : nt!ExAllocatePoolWithTag+0x197a
- ffff9001`862a7340 fffff80f`06e14f69 : ffffe201`befdf450 ffffd206`aa727602 ffffd206`aa7276c8 ffffd206`aa7276c8 : NTFS!NtfsPerformPrefetch+0xba
- ffff9001`862a73b0 fffff80f`06e136ba : ffff9001`862a75f8 fffff80f`06d6ac15 ffffd206`a3b62360 ffffd206`aa96cc00 : NTFS!NtfsReadUsnJournal+0x3c9
- ffff9001`862a7540 fffff80f`06e13546 : ffffd206`aa7276c8 00000000`00000000 00000000`00000000 00000000`00000000 : NTFS!NtfsUserFsRequest+0xe6
- ffff9001`862a75c0 fffff80f`05f8563d : ffffd206`aa96cc00 ffff9001`862a7770 ffffd206`a3a0d8c0 ffffd206`a88fc650 : NTFS!NtfsFsdFileSystemControl+0x356
- ffff9001`862a76d0 fffff80f`05fb5640 : ffff9001`862a7760 00000000`00000001 00000000`00000001 ffffd206`9fa2c140 : FLTMGR!FltpLegacyProcessingAfterPreCallbacksCompleted+0x18d
- ffff9001`862a7740 fffff800`591216ef : ffffd206`a57f6630 00000000`00000002 00000000`00000000 ffffd206`a8051240 : FLTMGR!FltpFsControl+0x110
- ffff9001`862a77a0 fffff800`591214f4 : ffff9001`00000001 ffffd206`a57f6604 fffff780`000002dc ffff9001`862a7b00 : nt!IopSynchronousServiceTail+0x1af
- ffff9001`862a7860 fffff800`591bbef6 : 00000090`0677d268 00000000`000008d0 00000000`00000000 0000023e`3b376548 : nt!IopXxxControlFile+0xdc4
- ffff9001`862a79a0 fffff800`58e02413 : 00000000`000008b4 fffff800`59130e6b ffff9001`862a7a28 0000023e`318b7db0 : nt!NtFsControlFile+0x56
- ffff9001`862a7a10 00007ffc`03b95ac4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000090`0677d1f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffc`03b95ac4
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: d92d1167310f0a3c4c6d67228dde6bc941cf33f9
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 39a0a0543f3e693aff8d5227a69cf699fb0bdeb6
- THREAD_SHA1_HASH_MOD: 9fd74f6e9409a708d8636cf30aeb592ae9bf3855
- FOLLOWUP_IP:
- nt!ExAllocatePoolWithTag+197a
- fffff800`58f0bd1a cc int 3
- FAULT_INSTR_CODE: ffdb33cc
- SYMBOL_STACK_INDEX: 1
- SYMBOL_NAME: nt!ExAllocatePoolWithTag+197a
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 597ab89f
- IMAGE_VERSION: 10.0.15063.502
- BUCKET_ID_FUNC_OFFSET: 197a
- FAILURE_BUCKET_ID: 0x19_3_nt!ExAllocatePoolWithTag
- BUCKET_ID: 0x19_3_nt!ExAllocatePoolWithTag
- PRIMARY_PROBLEM_CLASS: 0x19_3_nt!ExAllocatePoolWithTag
- TARGET_TIME: 2017-08-05T01:21:34.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:0x19_3_nt!exallocatepoolwithtag
- FAILURE_ID_HASH: {4b68972e-e926-5fd8-7b97-1ce977bc62b9}
- Followup: MachineOwner
- ========================================================================
- ==================== Dump File: 080717-4437-01.dmp =====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (8 procs) Free x64
- Kernel base = 0xfffff800`71889000 PsLoadedModuleList = 0xfffff800`71bd55c0
- Debug session time: Mon Aug 7 09:00:04.194 2017 (UTC - 4:00)
- System Uptime: 2 days 11:38:00.547
- BugCheck 3B, {c0000005, fffff80071cc8722, ffffb001e3887df0, 0}
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff80071cc8722, Address of the instruction which caused the bugcheck
- Arg3: ffffb001e3887df0, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
- FAULTING_IP:
- nt!ObQueryNameStringMode+1d2
- fffff800`71cc8722 0820 or byte ptr [rax],ah
- CONTEXT: ffffb001e3887df0 -- (.cxr 0xffffb001e3887df0)
- rax=0000000000000000 rbx=ffff998897f273d0 rcx=ffff998897f273d0
- rdx=0000000000000022 rsi=ffff99889a37f150 rdi=0000000000000000
- rip=fffff80071cc8722 rsp=ffffb001e38887e0 rbp=ffffb001e3888b00
- r8=0000000000000000 r9=7fff99889a37f160 r10=7ffffffffffffffc
- r11=ffff9988ade1c040 r12=fffff80071889000 r13=000000002bfde570
- r14=fffff80071889000 r15=ffff99889a37f180
- iopl=0 nv up ei ng nz na pe nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282
- nt!ObQueryNameStringMode+0x1d2:
- fffff800`71cc8722 0820 or byte ptr [rax],ah ds:002b:00000000`00000000=??
- Resetting default scope
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: playstv.exe
- CURRENT_IRQL: 0
- LAST_CONTROL_TRANSFER: from fffff80071cc8183 to fffff80071cc8722
- STACK_TEXT:
- ffffb001`e38887e0 fffff800`71cc8183 : ffff9988`9a37f180 00000000`2bfde570 00000000`00000210 ffffb001`e3888928 : nt!ObQueryNameStringMode+0x1d2
- ffffb001`e38888d0 fffff800`71a00413 : ffffce07`8fb42600 00000000`2bfde518 ffffb001`e3888a28 00000000`00f75000 : nt!NtQueryObject+0x2a3
- ffffb001`e3888a10 00007ffa`7ad755a4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 00000000`2bfde4f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffa`7ad755a4
- CHKIMG_EXTENSION: !chkimg -lo 50 -db !nt
- 104 errors : !nt (fffff80071cc8002-fffff80071cc8f7a)
- fffff80071cc8000 01 00 *08 41 83 fe 03 0f 84 31 *d9 19 00 48 8d 8c ...A.....1...H..
- fffff80071cc8020 00 00 *cb 89 4c 24 20 44 0f b6 c8 45 33 c0 33 d2 ....L$ D...E3.3.
- fffff80071cc8030 48 8b *d8 e8 c8 2a 06 00 44 8b *80 48 8b b4 24 e0 H....*..D..H..$.
- fffff80071cc8040 00 00 00 48 89 74 24 78 89 44 *04 54 85 c0 0f 88 ...H.t$x.D.T....
- fffff80071cc8050 e0 00 00 00 44 8b 84 24 a4 00 *04 00 44 89 44 24 ....D..$....D.D$
- fffff80071cc8070 48 c1 *e0 08 0f b6 c8 0f b6 42 *08 48 33 c8 0f b6 H........B.H3...
- fffff80071cc8300 00 00 *e8 0d 4c 8b bc 24 60 01 00 00 48 8b 74 24 ....L..$`...H.t$
- fffff80071cc8310 78 44 *02 64 24 54 e9 f1 fd ff *d7 41 83 ee 01 0f xD.d$T.....A....
- fffff80071cc8320 85 4f *70 19 00 4c 8d 4c 24 58 *40 8b c5 48 8b d7 .Op..L.L$X@..H..
- fffff80071cc8330 e8 0b *48 10 00 e9 49 fe ff ff *48 8b bc 24 60 01 ..H...I...H..$`.
- fffff80071cc8340 00 00 *80 bc fc ff ff 0f b6 c0 *82 e0 03 48 8d 1d .............H..
- fffff80071cc8350 ac 0c *b6 ff 0f b6 84 18 a0 bf 34 00 49 8b ce 48 ..........4.I..H
- fffff80071cc8360 2b c8 *08 89 4c 24 60 0f 84 ec *b6 ff ff 48 8b 09 +...L$`......H..
- fffff80071cc8370 48 89 *04 24 70 48 85 c9 0f 84 *c3 fe ff ff e8 4d H..$pH.........M
- fffff80071cc8400 88 00 00 00 0f b6 41 1a a8 02 *34 22 0f b6 c0 83 ......A...4"....
- fffff80071cc8410 e0 03 *0c b6 84 18 a0 bf 34 00 *88 8b d1 48 2b d0 ........4....H+.
- fffff80071cc8420 74 0c *8c 8b 02 4d 85 c0 0f 85 *a5 00 00 00 48 8d t....M........H.
- fffff80071cc8430 59 10 b8 11 00 00 00 f0 4c 0f *a1 23 0f 85 80 fc Y.......L..#....
- fffff80071cc8440 19 00 48 8b cb e8 96 43 c2 ff *05 48 8b 0c 25 88 ..H....C...H..%.
- fffff80071cc8450 01 00 *0c e8 68 f7 c2 ff 48 8b *7c 24 70 48 85 c0 ....h...H.|$pH..
- fffff80071cc8460 74 08 48 8b c8 e8 96 47 c2 ff *01 c6 12 e9 12 fe t.H....G........
- fffff80071cc8470 ff ff *6d 84 24 98 00 00 00 0f 00 00 00 44 89 64 ..m.$........D.d
- fffff80071cc8700 0f 84 *e6 00 00 00 48 3b 0d 13 *a6 f0 ff 0f 84 e8 ......H;........
- fffff80071cc8710 00 00 *09 48 85 c9 0f 84 df 00 *0a 00 8b 81 50 01 ...H..........P.
- fffff80071cc8720 00 00 *08 20 0f 85 d1 00 00 00 48 8d 41 d0 48 89 ... ......H.A.H.
- fffff80071cc8730 84 24 80 00 00 00 65 48 8b 0c *01 88 01 00 00 0f .$....eH........
- fffff80071cc8740 bf 81 *9c 01 00 00 ff c8 66 89 81 e4 01 00 00 4c ........f......L
- fffff80071cc8750 8b b4 *84 80 00 00 00 33 d2 49 *cc 4e 10 e8 ce 39 .......3.I.N...9
- fffff80071cc8760 c2 ff *c8 0f b6 46 1a a8 02 0f *9c 2f 01 00 00 0f .....F...../....
- fffff80071cc8770 b6 c0 *81 e0 03 42 0f b6 84 20 *80 bf 34 00 49 8b .....B... ..4.I.
- fffff80071cc8800 00 0f *00 cc 00 00 00 4c 8d 35 *c2 07 bc ff 44 8b .......L.5....D.
- fffff80071cc8810 a4 24 00 01 00 00 48 8d 42 12 *8a 44 24 60 48 8b .$....H.B..D$`H.
- fffff80071cc8820 8c 24 *0a 01 00 00 89 01 eb 3e *81 84 24 98 00 00 .$.......>..$...
- fffff80071cc8830 00 89 *40 24 44 c6 44 24 40 00 *13 ff 4c 8d 35 bd ..@$D.D$@...L.5.
- fffff80071cc8840 07 bc *ec 4c 8b ac 24 f8 00 00 00 4c 8b bc 24 f0 ...L..$....L..$.
- fffff80071cc8850 00 00 *ac 48 8b b4 24 90 00 00 *24 44 8b a4 24 00 ...H..$...$D..$.
- fffff80071cc8860 01 00 *24 e9 97 00 00 00 44 3b 64 24 60 0f 83 8c ..$.....D;d$`...
- fffff80071cc8870 00 00 *20 c7 44 24 44 04 00 00 *61 c6 44 24 40 00 .. .D$D...a.D$@.
- fffff80071cc8b00 48 8b *10 08 e8 f7 8a d3 ff b8 *99 00 00 00 f0 49 H..............I
- fffff80071cc8b10 0f b1 *10 24 75 64 49 8b cc e8 *40 3c c2 ff e8 6d ...$udI...@<...m
- fffff80071cc8b20 42 c2 *14 e9 d1 fe ff ff 48 8b *00 24 50 4d 8d 65 B.......H..$PM.e
- fffff80071cc8b30 10 48 *01 e9 02 48 89 4c 24 50 *90 5c 00 00 00 66 .H...H.L$P.\...f
- fffff80071cc8b40 89 01 *00 b7 44 24 60 66 2b c1 *00 41 03 c5 0f b7 ....D$`f+..A....
- fffff80071cc8b50 c0 89 *00 24 9c 00 00 00 66 41 *88 45 02 8b d8 48 ...$....fA.E...H
- fffff80071cc8b60 83 c0 *dc 66 41 89 45 00 4d 89 *fd 08 4c 3b e1 0f ...fA.E.M...L;..
- fffff80071cc8b70 85 c5 00 00 00 e9 dc 00 00 00 *09 8b cc e8 ae 8f ................
- fffff80071cc8c00 4d 8d *20 10 49 3b cc 49 0f 42 *00 48 89 4c 24 50 M. .I;.I.B.H.L$P
- fffff80071cc8c10 8b 05 *22 f8 e6 ff 89 01 0f b7 *00 5d f8 e6 ff 66 .."........]...f
- fffff80071cc8c20 89 41 *00 49 3b cc 0f 85 05 ff ff ff 48 83 c1 02 .A.I;.......H...
- fffff80071cc8c30 48 89 *40 24 50 e9 f7 fe ff ff *40 8b c3 48 8b d1 H.@$P.....@..H..
- WARNING: !chkimg output was truncated to 50 lines. Invoke !chkimg without '-lo [num_lines]' to view entire output.
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: STRIDE
- STACK_COMMAND: .cxr 0xffffb001e3887df0 ; kb
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_STRIDE
- BUCKET_ID: MEMORY_CORRUPTION_STRIDE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_STRIDE
- TARGET_TIME: 2017-08-07T13:00:04.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_stride
- FAILURE_ID_HASH: {574dbc1b-92cb-fb09-cb7a-cacc1bb2c511}
- Followup: memory_corruption
- ========================================================================
- ==================== Dump File: 081017-4343-01.dmp =====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 15063 MP (8 procs) Free x64
- Kernel base = 0xfffff803`da60c000 PsLoadedModuleList = 0xfffff803`da9585c0
- Debug session time: Wed Aug 9 23:11:49.150 2017 (UTC - 4:00)
- System Uptime: 1 days 4:20:15.805
- BugCheck 1A, {41201, ffffb48122c21010, 8200000251415825, ffffcb0d847e2950}
- Probably caused by : memory_corruption ( nt!MiGetPageProtection+1183bf )
- Followup: MachineOwner
- MEMORY_MANAGEMENT (1a)
- # Any other values for parameter 1 must be individually examined.
- Arguments:
- Arg1: 0000000000041201, The subtype of the bugcheck.
- Arg2: ffffb48122c21010
- Arg3: 8200000251415825
- Arg4: ffffcb0d847e2950
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x1a_41201
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- PROCESS_NAME: chrome.exe
- CURRENT_IRQL: 2
- LAST_CONTROL_TRANSFER: from fffff803da7ac64f to fffff803da778560
- STACK_TEXT:
- ffffa200`137266c8 fffff803`da7ac64f : 00000000`0000001a 00000000`00041201 ffffb481`22c21010 82000002`51415825 : nt!KeBugCheckEx
- ffffa200`137266d0 fffff803`da693ae3 : ffffb481`22c21010 00000000`00001000 82000002`51415825 00000000`00000000 : nt!MiGetPageProtection+0x1183bf
- ffffa200`13726720 fffff803`da69363e : 00000245`00000000 fffff803`daaadd00 00000000`00000000 ffffcb0d`840a0cc0 : nt!MiQueryAddressState+0x2b3
- ffffa200`137267b0 fffff803`daa9901f : ffffcb0d`00000006 00000000`00000001 00000000`00000000 00000245`84202000 : nt!MiQueryAddressSpan+0x12e
- ffffa200`13726860 fffff803`daa988c1 : 00000190`1b220b30 fffff803`daa96907 ffffcb0d`00001000 0000002a`00000004 : nt!MmQueryVirtualMemory+0x74f
- ffffa200`137269c0 fffff803`da783413 : ffffb4da`40640730 ffffb4da`6d203200 ffffb4da`6d369018 ffffdec2`4e533711 : nt!NtQueryVirtualMemory+0x25
- ffffa200`13726a10 00007ffc`66945804 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 0000002a`81dfea38 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffc`66945804
- STACK_COMMAND: kb
- THREAD_SHA1_HASH_MOD_FUNC: daeab5d68ba3ecb3234b5b8938d47aee75235996
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: ab74cfc1f0ddbd58ad4e35e049a5c63d44d1b33b
- THREAD_SHA1_HASH_MOD: 30a3e915496deaace47137d5b90c3ecc03746bf6
- FOLLOWUP_IP:
- nt!MiGetPageProtection+1183bf
- fffff803`da7ac64f cc int 3
- FAULT_INSTR_CODE: a88d49cc
- SYMBOL_STACK_INDEX: 1
- SYMBOL_NAME: nt!MiGetPageProtection+1183bf
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- DEBUG_FLR_IMAGE_TIMESTAMP: 597fd80d
- IMAGE_VERSION: 10.0.15063.540
- IMAGE_NAME: memory_corruption
- BUCKET_ID_FUNC_OFFSET: 1183bf
- FAILURE_BUCKET_ID: 0x1a_41201_nt!MiGetPageProtection
- BUCKET_ID: 0x1a_41201_nt!MiGetPageProtection
- PRIMARY_PROBLEM_CLASS: 0x1a_41201_nt!MiGetPageProtection
- TARGET_TIME: 2017-08-10T03:11:49.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:0x1a_41201_nt!migetpageprotection
- FAILURE_ID_HASH: {c1fe3b27-3ba8-d99e-656f-85f3d58dc669}
- Followup: MachineOwner
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement