New
#51
Code:Microsoft (R) Windows Debugger Version 6.11.0001.404 X86 Copyright (c) Microsoft Corporation. All rights reserved. Loading Dump File [F:\Kingston\BSODDmpFiles\XplicitMind\Windows_NT6_BSOD_jcgriff2\020412-22713-01.dmp] Mini Kernel Dump File: Only registers and stack trace are available Symbol search path is: SRV*C:\SymCache*http://msdl.microsoft.com/download/symbols Executable search path is: Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64 Product: WinNt, suite: TerminalServer SingleUserTS Built by: 7601.17640.amd64fre.win7sp1_gdr.110622-1506 Machine Name: Kernel base = 0xfffff800`02a55000 PsLoadedModuleList = 0xfffff800`02c9a670 Debug session time: Sat Feb 4 13:39:40.268 2012 (GMT-7) System Uptime: 0 days 6:57:57.439 Loading Kernel Symbols ............................................................... ................................................................ ............................. Loading User Symbols Loading unloaded module list ...... ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck A, {ffffffffffffff8b, 2, 1, fffff80002aaf733} Probably caused by : win32k.sys ( win32k!SetForegroundPriorityProcess+ce ) Followup: MachineOwner --------- 0: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* IRQL_NOT_LESS_OR_EQUAL (a) An attempt was made to access a pageable (or completely invalid) address at an interrupt request level (IRQL) that is too high. This is usually caused by drivers using improper addresses. If a kernel debugger is available get the stack backtrace. Arguments: Arg1: ffffffffffffff8b, memory referenced Arg2: 0000000000000002, IRQL Arg3: 0000000000000001, bitfield : bit 0 : value 0 = read operation, 1 = write operation bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status) Arg4: fffff80002aaf733, address which referenced memory Debugging Details: ------------------ WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002d04100 ffffffffffffff8b CURRENT_IRQL: 2 FAULTING_IP: nt! ?? ::FNODOBFM::`string'+6ee0 fffff800`02aaf733 4088788b mov byte ptr [rax-75h],dil CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0xA PROCESS_NAME: explorer.exe TRAP_FRAME: fffff88007c886d0 -- (.trap 0xfffff88007c886d0) NOTE: The trap frame does not contain all registers. Some register values may be zeroed or incorrect. rax=0000000000000000 rbx=0000000000000000 rcx=fffffa80095c1a20 rdx=fffff88007c88898 rsi=0000000000000000 rdi=0000000000000000 rip=fffff80002aaf733 rsp=fffff88007c88860 rbp=0000000000000012 r8=0000000000000012 r9=0000000000000000 r10=fffff900c0580a70 r11=fffff900c06aa6a0 r12=0000000000000000 r13=0000000000000000 r14=0000000000000000 r15=0000000000000000 iopl=0 nv up ei pl nz na pe cy nt! ?? ::FNODOBFM::`string'+0x6ee0: fffff800`02aaf733 4088788b mov byte ptr [rax-75h],dil ds:ffffffff`ffffff8b=?? Resetting default scope LAST_CONTROL_TRANSFER: from fffff80002ad11e9 to fffff80002ad1c40 STACK_TEXT: fffff880`07c88588 fffff800`02ad11e9 : 00000000`0000000a ffffffff`ffffff8b 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx fffff880`07c88590 fffff800`02acfe60 : 00000000`00000000 00000000`00000000 00000000`00000000 fffffa80`095c19f0 : nt!KiBugCheckDispatch+0x69 fffff880`07c886d0 fffff800`02aaf733 : fffffa80`095c19f0 fffff960`0004fbfd 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x260 fffff880`07c88860 fffff800`02a9e8f5 : fffff900`c28d42a0 fffff800`02adb800 00000000`00000000 fffff900`c06aa6a0 : nt! ?? ::FNODOBFM::`string'+0x6ee0 fffff880`07c88890 fffff960`00134c32 : 00000000`00000000 00000000`00000000 00000000`00000012 00000000`00000000 : nt!KeSetPriorityAndQuantumProcess+0x31 fffff880`07c88940 fffff960`00085c88 : fffff880`07c88c20 fffff900`c2906610 00000000`00000000 fffff880`07c88aa0 : win32k!SetForegroundPriorityProcess+0xce fffff880`07c88980 fffff960`0006c0a5 : fffff900`c2906610 00000000`02c2ec30 00000000`00000018 fffff880`07c88aa8 : win32k!xxxSetForegroundThread+0x150 fffff880`07c889c0 fffff960`00085a08 : 00000000`00000001 fffff900`c0858080 fffff880`07c88ca0 fffff900`c2906610 : win32k!xxxSetForegroundWindow2+0x1b5 fffff880`07c88ad0 fffff960`001425e0 : fffff900`c0858080 00000000`00000001 00000000`00000001 00000000`00000000 : win32k!xxxSetForegroundWindow+0x274 fffff880`07c88b60 fffff960`0010b342 : 00000000`00000000 00000000`001002d6 00000000`00000003 fffff960`00109df6 : win32k!xxxSwitchToThisWindow+0xa4 fffff880`07c88bd0 fffff800`02ad0ed3 : fffffa80`09511580 fffff880`07c88ca0 00000000`001002d6 00000000`02c2f338 : win32k!NtUserCallHwndParamLock+0xc6 fffff880`07c88c20 00000000`7749cc3a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13 00000000`02c2f438 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7749cc3a STACK_COMMAND: kb FOLLOWUP_IP: win32k!SetForegroundPriorityProcess+ce fffff960`00134c32 0fba630c16 bt dword ptr [rbx+0Ch],16h SYMBOL_STACK_INDEX: 5 SYMBOL_NAME: win32k!SetForegroundPriorityProcess+ce FOLLOWUP_NAME: MachineOwner MODULE_NAME: win32k IMAGE_NAME: win32k.sys DEBUG_FLR_IMAGE_TIMESTAMP: 4ecdcd5a FAILURE_BUCKET_ID: X64_0xA_win32k!SetForegroundPriorityProcess+ce BUCKET_ID: X64_0xA_win32k!SetForegroundPriorityProcess+ce Followup: MachineOwner ---------
Your most recent was rather inconclusive.
From Bug Check 0xA: IRQL_NOT_LESS_OR_EQUALThis bug check is issued if paged memory (or invalid memory) is accessed when the IRQL is too high.
The error that generates this bug check usually occurs after the installation of a faulty device driver, system service, or BIOS.
If you encounter bug check 0xA while upgrading to a later version of Windows, this error might be caused by a device driver, a system service, a virus scanner, or a backup tool that is incompatible with the new version.