Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 10.0.18869.1002 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- Loading Dump File [C:\WINDOWS\MEMORY.DMP]
- Kernel Bitmap Dump File: Kernel address space is available, User address space may not be available.
- ************* Path validation summary **************
- Response Time (ms) Location
- Deferred srv*
- Symbol search path is: srv*
- Executable search path is:
- Windows 10 Kernel Version 17763 MP (12 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 17763.1.amd64fre.rs5_release.180914-1434
- Machine Name:
- Kernel base = 0xfffff807`4b400000 PsLoadedModuleList = 0xfffff807`4b81b5d0
- Debug session time: Tue Jun 4 22:42:21.005 2019 (UTC + 2:00)
- System Uptime: 0 days 1:36:06.745
- Loading Kernel Symbols
- ...............................................................
- .................Page 7f8fff not present in the dump file. Type ".hh dbgerr004" for details
- ...............................................
- ................................................................
- ..........
- Loading User Symbols
- PEB is paged out (Peb.Ldr = 00000000`00208018). Type ".hh dbgerr001" for details
- Loading unloaded module list
- ...................................
- For analysis of this file, run !analyze -v
- nt!KeBugCheckEx:
- fffff807`4b5b3ef0 48894c2408 mov qword ptr [rsp+8],rcx ss:0018:fffffa8c`3ea02530=000000000000003b
- 7: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff8074ba11d29, Address of the instruction which caused the bugcheck
- Arg3: fffffa8c3ea02e60, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- ------------------
- KEY_VALUES_STRING: 1
- Key : Analysis.CPU.Sec
- Value: 3
- Key : Analysis.Elapsed.Sec
- Value: 4
- Key : Analysis.Memory.CommitPeak.Mb
- Value: 61
- PROCESSES_ANALYSIS: 1
- SERVICE_ANALYSIS: 1
- STACKHASH_ANALYSIS: 1
- TIMELINE_ANALYSIS: 1
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 401
- BUILD_VERSION_STRING: 17763.1.amd64fre.rs5_release.180914-1434
- SYSTEM_MANUFACTURER: Gigabyte Technology Co., Ltd.
- SYSTEM_PRODUCT_NAME: X470 AORUS ULTRA GAMING
- SYSTEM_SKU: Default string
- SYSTEM_VERSION: Default string
- BIOS_VENDOR: American Megatrends Inc.
- BIOS_VERSION: F31
- BIOS_DATE: 05/06/2019
- BASEBOARD_MANUFACTURER: Gigabyte Technology Co., Ltd.
- BASEBOARD_PRODUCT: X470 AORUS ULTRA GAMING-CF
- BASEBOARD_VERSION: Default string
- DUMP_TYPE: 1
- BUGCHECK_P1: c0000005
- BUGCHECK_P2: fffff8074ba11d29
- BUGCHECK_P3: fffffa8c3ea02e60
- BUGCHECK_P4: 0
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Die Anweisung in 0x%p verwies auf Arbeitsspeicher bei 0x%p. Der Vorgang %s konnte im Arbeitsspeicher nicht durchgef hrt werden.
- FAULTING_IP:
- nt!AlpcpReceiveSynchronousReply+119
- fffff807`4ba11d29 488b6c2470 mov rbp,qword ptr [rsp+70h]
- CONTEXT: fffffa8c3ea02e60 -- (.cxr 0xfffffa8c3ea02e60)
- rax=0000000000000020 rbx=000000000a7d3f38 rcx=a0c2281d2bc70000
- rdx=0000000000000001 rsi=fffffa8c3ea038f8 rdi=0000000000000000
- rip=fffff8074ba11d29 rsp=fffffa8c3ea03850 rbp=ffffd4850cbd1080
- r8=0000000000000001 r9=7ffff8074b81bab8 r10=7ffffffffffffffc
- r11=0000000000000000 r12=0000000000000000 r13=ffffd4850c6c0c80
- r14=000000007e000000 r15=ffffd4850c6c0c80
- iopl=0 nv up ei ng nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010286
- nt!AlpcpReceiveSynchronousReply+0x119:
- fffff807`4ba11d29 488b6c2470 mov rbp,qword ptr [rsp+70h] ss:0018:fffffa8c`3ea038c0=0000000022843a48
- Resetting default scope
- BUGCHECK_STR: 0x3B_c0000005
- CPU_COUNT: c
- CPU_MHZ: e10
- CPU_VENDOR: AuthenticAMD
- CPU_FAMILY: 17
- CPU_MODEL: 1
- CPU_STEPPING: 1
- BLACKBOXBSD: 1 (!blackboxbsd)
- BLACKBOXPNP: 1 (!blackboxpnp)
- DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
- PROCESS_NAME: Wow.exe
- CURRENT_IRQL: 0
- ANALYSIS_SESSION_HOST: DESKTOP-OVERTRY
- ANALYSIS_SESSION_TIME: 06-04-2019 22:49:30.0679
- ANALYSIS_VERSION: 10.0.18869.1002 amd64fre
- LAST_CONTROL_TRANSFER: from fffff8074ba1182f to fffff8074ba11d29
- STACK_TEXT:
- fffffa8c`3ea03850 fffff807`4ba1182f : fffffa8c`3ea03820 00000000`0a7d3f38 00000000`22843a48 00000000`7e000000 : nt!AlpcpReceiveSynchronousReply+0x119
- fffffa8c`3ea038b0 fffff807`4ba0f802 : ffffd485`0c6c0c80 ffffa653`c0020000 00000000`22843a48 00000000`0a7d3f38 : nt!AlpcpProcessSynchronousRequest+0x34f
- fffffa8c`3ea039d0 fffff807`4b5c5088 : ffffd485`0cbd1080 fffffa8c`3ea03b80 00000000`0009e5c8 fffffa8c`3ea03aa8 : nt!NtAlpcSendWaitReceivePort+0x1e2
- fffffa8c`3ea03a90 00007ffd`e3640894 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
- 00000000`0009e5a8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`e3640894
- THREAD_SHA1_HASH_MOD_FUNC: 8e3828ddfd60e1eaee661b7dacaefe6696669028
- THREAD_SHA1_HASH_MOD_FUNC_OFFSET: becaec470ec2559d4729be95ca11a4506b2df9d7
- THREAD_SHA1_HASH_MOD: d084f7dfa548ce4e51810e4fd5914176ebc66791
- FOLLOWUP_IP:
- nt!AlpcpReceiveSynchronousReply+119
- fffff807`4ba11d29 488b6c2470 mov rbp,qword ptr [rsp+70h]
- FAULT_INSTR_CODE: 246c8b48
- SYMBOL_STACK_INDEX: 0
- SYMBOL_NAME: nt!AlpcpReceiveSynchronousReply+119
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 7fd0bac2
- STACK_COMMAND: .cxr 0xfffffa8c3ea02e60 ; kb
- BUCKET_ID_FUNC_OFFSET: 119
- FAILURE_BUCKET_ID: 0x3B_c0000005_nt!AlpcpReceiveSynchronousReply
- BUCKET_ID: 0x3B_c0000005_nt!AlpcpReceiveSynchronousReply
- PRIMARY_PROBLEM_CLASS: 0x3B_c0000005_nt!AlpcpReceiveSynchronousReply
- TARGET_TIME: 2019-06-04T20:42:21.000Z
- OSBUILD: 17763
- OSSERVICEPACK: 0
- SERVICEPACK_NUMBER: 0
- OS_REVISION: 0
- SUITE_MASK: 272
- PRODUCT_TYPE: 1
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
- OS_LOCALE:
- USER_LCID: 0
- OSBUILD_TIMESTAMP: 2037-12-14 07:42:10
- BUILDDATESTAMP_STR: 180914-1434
- BUILDLAB_STR: rs5_release
- BUILDOSVER_STR: 10.0.17763.1.amd64fre.rs5_release.180914-1434
- ANALYSIS_SESSION_ELAPSED_TIME: fbc
- ANALYSIS_SOURCE: KM
- FAILURE_ID_HASH_STRING: km:0x3b_c0000005_nt!alpcpreceivesynchronousreply
- FAILURE_ID_HASH: {c96a81f0-da4a-df0c-6260-e946f8c63145}
- Followup: MachineOwner
- ---------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement