Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
- Online Crash Dump Analysis Service
- See http://www.osronline.com for more information
- Windows 8 Kernel Version 17134 MP (6 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 17134.1.amd64fre.rs4_release.180410-1804
- Machine Name:
- Kernel base = 0xfffff801`e7092000 PsLoadedModuleList = 0xfffff801`e7440290
- Debug session time: Thu Oct 25 03:13:53.323 2018 (UTC - 4:00)
- System Uptime: 1 days 6:57:13.018
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff801e70b7e38, Address of the instruction which caused the bugcheck
- Arg3: ffffd60889164c60, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- ------------------
- TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
- FAULTING_IP:
- nt!KiBeginThreadAccountingPeriod+128
- fffff801`e70b7e38 f6417002 test byte ptr [rcx+70h],2
- CONTEXT: ffffd60889164c60 -- (.cxr 0xffffd60889164c60)
- rax=00000000000008c8 rbx=ffff80006a3e2090 rcx=0008000000032908
- rdx=ffffd88034885d01 rsi=ffff80006a3e2001 rdi=ffffd88034880180
- rip=fffff801e70b7e38 rsp=ffffd60889165650 rbp=0000000000000000
- r8=ffffd60888fb1c90 r9=0000000000000001 r10=0000000000000000
- r11=000000000000003e r12=0000000000000bcc r13=0000000000000002
- r14=ffff80006ae18518 r15=0000000000000000
- iopl=0 nv up ei pl nz na pe nc
- cs=0010 ss=0000 ds=002b es=002b fs=0053 gs=002b efl=00010202
- nt!KiBeginThreadAccountingPeriod+0x128:
- fffff801`e70b7e38 f6417002 test byte ptr [rcx+70h],2 ds:002b:00080000`00032978=??
- Resetting default scope
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: SearchUI.exe
- CURRENT_IRQL: 2
- LAST_CONTROL_TRANSFER: from fffff801e72427e4 to fffff801e70b7e38
- STACK_TEXT:
- ffffd608`89165650 fffff801`e72427e4 : ffffd880`34880180 ffff8000`6a3e2090 00000000`00000000 fffff801`e71caafd : nt!KiBeginThreadAccountingPeriod+0x128
- ffffd608`89165680 fffff801`e7242136 : ffff8000`6a3e2080 fffff801`e70a40ec 00000000`00000002 ffffd608`891658c0 : nt!SwapContext+0x3e4
- ffffd608`891656c0 fffff801`e70cb5d6 : ffff8000`00000000 ffff8000`6a931080 ffff8000`6ad7f080 00000000`00000000 : nt!KiSwapContext+0x76
- ffffd608`89165800 fffff801`e70cadcb : ffffd608`89165a00 ffffa500`059c9ae0 ffffa552`8002ce58 ffffa552`a9400170 : nt!KiSwapThread+0x2c6
- ffffd608`891658d0 fffff801`e71c8bb1 : ffff8000`6a931080 ffff8000`00000000 ffffd608`00000000 00000000`00000000 : nt!KiCommitThreadWait+0x13b
- ffffd608`89165970 fffff801`e7648e67 : ffffd608`89165a80 00000000`00000000 0000000b`3935ed60 00000000`00000000 : nt!KeWaitForAlertByThreadId+0xd1
- ffffd608`891659d0 fffff801`e724bb43 : 00000000`00000000 00000000`00000000 0000000b`3935f0c0 0000000b`3935f010 : nt!NtWaitForAlertByThreadId+0x57
- ffffd608`89165a00 00007ffb`e4e5d7e4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
- 0000000b`3935ece9 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7ffb`e4e5d7e4
- FOLLOWUP_IP:
- nt!KiBeginThreadAccountingPeriod+128
- fffff801`e70b7e38 f6417002 test byte ptr [rcx+70h],2
- SYMBOL_STACK_INDEX: 0
- SYMBOL_NAME: nt!KiBeginThreadAccountingPeriod+128
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 5ba316ae
- STACK_COMMAND: .cxr 0xffffd60889164c60 ; kb
- FAILURE_BUCKET_ID: X64_0x3B_nt!KiBeginThreadAccountingPeriod+128
- BUCKET_ID: X64_0x3B_nt!KiBeginThreadAccountingPeriod+128
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement