Windows 7 Forums

Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.

Windows 7: win 7 memory dump help

09 Mar 2011   #1

Windows 7 home 64bit oem
win 7 memory dump help

windows 7 64bit oem version, 1 month old, new mobo, cpu, RAM, hard drive, video card.

i've been getting memory dump errors recently while playing world of warcraft, sometimes i get the BSoD memory dump error sometimes WoW crashes with their "error 132 memory could not be read."

this is the most recent, the past couple of errors are the same as this:

2: kd> !analyze -v
* *
* Bugcheck Analysis *
* *

If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
parameters are the exception record and context record. Do a .cxr
on the 3rd parameter and then kb to obtain a more informative stack
Arg1: 00000000001904fb
Arg2: fffff88007b5c2b8
Arg3: fffff88007b5bb20
Arg4: fffff880012cab69

Debugging Details:

EXCEPTION_RECORD: fffff88007b5c2b8 -- (.exr 0xfffff88007b5c2b8)
ExceptionAddress: fffff880012cab69 (Ntfs!NtfsFlushVolume+0x0000000000000449)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff

CONTEXT: fffff88007b5bb20 -- (.cxr 0xfffff88007b5bb20)
rax=fffbf8a00df31b40 rbx=0000000000000000 rcx=0000000000000000
rdx=fffff88007b5c580 rsi=0000000000000001 rdi=fffffa8003c76b10
rip=fffff880012cab69 rsp=fffff88007b5c4f0 rbp=fffff88007b5c8a0
r8=0000000000000000 r9=fffff8a010df3d40 r10=fffff88007b5c580
r11=fffff88007b5c4a0 r12=fffff8a00dfc0b40 r13=fffff8a00dfc0cf0
r14=fffffa80047e2180 r15=0000000000000702
iopl=0 nv up ei ng nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282
fffff880`012cab69 f0017014 lock add dword ptr [rax+14h],esi ds:002b:fffbf8a0`0df31b54=????????
Resetting default scope



PROCESS_NAME: explorer.exe


ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_PARAMETER1: 0000000000000000

EXCEPTION_PARAMETER2: ffffffffffffffff

READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002f0b0e0

fffff880`012cab69 f0017014 lock add dword ptr [rax+14h],esi

fffff880`012cab69 f0017014 lock add dword ptr [rax+14h],esi


LAST_CONTROL_TRANSFER: from fffff8800126cb7c to fffff880012cab69

fffff880`07b5c4f0 fffff880`0126cb7c : fffffa80`03c76b10 fffffa80`047e2180 fffff6fc`00000001 fffffa80`00000000 : Ntfs!NtfsFlushVolume+0x449
fffff880`07b5c620 fffff880`01260bed : fffffa80`03c76b10 fffff880`01100d01 fffffa80`0460cb10 fffff880`07b5c700 : Ntfs!NtfsVolumeDasdIo+0x1dc
fffff880`07b5c6d0 fffff880`01261f78 : fffffa80`03c76b10 fffffa80`05cbb810 fffff880`07b5c801 fffffa80`03b79b00 : Ntfs!NtfsCommonRead+0x1e61
fffff880`07b5c870 fffff880`010f423f : fffffa80`05cbbbb0 fffffa80`05cbb810 fffffa80`03b79bd0 00000000`00000000 : Ntfs!NtfsFsdRead+0x1b8
fffff880`07b5c920 fffff880`010f26df : fffffa80`04605860 00000000`00000001 fffffa80`04605800 fffffa80`05cbb810 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
fffff880`07b5c9b0 fffff800`02fe7ae9 : 00000000`00000000 fffffa80`05c0fdc0 00000000`00000001 fffffa80`05cbb810 : fltmgr!FltpDispatch+0xcf
fffff880`07b5ca10 fffff800`02fef2e3 : fffffa80`05c0fdc0 fffffa80`05c0fdc0 fffffa80`05c0fdc0 fffff880`02f63180 : nt!IopSynchronousServiceTail+0xf9
fffff880`07b5ca80 fffff800`02cd2993 : 00000000`000045f8 00000000`00000000 00000000`00000000 00000000`00000000 : nt!NtReadFile+0x631
fffff880`07b5cb70 00000000`7701f71a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0c7fe398 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7701f71a


SYMBOL_NAME: Ntfs!NtfsFlushVolume+449



IMAGE_NAME: Ntfs.sys


STACK_COMMAND: .cxr 0xfffff88007b5bb20 ; kb

FAILURE_BUCKET_ID: X64_0x24_Ntfs!NtfsFlushVolume+449

BUCKET_ID: X64_0x24_Ntfs!NtfsFlushVolume+449

Followup: MachineOwner

My System SpecsSystem Spec

09 Mar 2011   #2

Windows 7 x64

My System SpecsSystem Spec

 win 7 memory dump help

Thread Tools

Similar help and support threads
Thread Forum
Memory Dump
Hello, I am getting a memory dump error when I am playing computer games. Attached is the memory dump log. Any help will be greatly appreciated. Thanks, Boonjives 121009-19890-01.dmp
BSOD Help and Support
memory dump : (
I am running Windows 7 Enterprise 64-bit (licensed through my university) on a Gigabyte GA-73PVM-S2H motherboard and Intel E7300 Core 2 Duo processor. The computer starts up as normal, but whenever I try to move files or install anything I am met with a memory dump. I can leave the computer...
BSOD Help and Support
Memory Dump
hello. as you see i get memory dump error. its like. i start the chess game on win 7. i choose begginner and after 2 sec it gives me bluescreen and some memory dump error on it. my brother said it may be the graphics drivers but i installed vista graphic drivers and still same shiet. any help...
BSOD Help and Support
memory dump
please help me to check this problem....tq..
BSOD Help and Support
Memory dump
Blue screen of death...memory dump. Any help is appreciated
BSOD Help and Support
Memory Dump
I kept getting blue screen after the boot logo.... i'll upload a *dmp file. can anyone give me some ideas its the ram problem...
BSOD Help and Support

Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 20:49.

Twitter Facebook Google+

Windows 7 Forums

Seven Forums Android App Seven Forums IOS App