*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {fffffa8022fa4010, 2, 1, fffff80002f3ecb6}
Probably caused by : memory_corruption ( nt!MiReleaseConfirmedPageFileSpace+86 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: fffffa8022fa4010, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80002f3ecb6, address which referenced memory
Debugging Details:
------------------
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800030b9100
GetUlongFromAddress: unable to read from fffff800030b91c0
fffffa8022fa4010 Nonpaged pool
CURRENT_IRQL: 2
FAULTING_IP:
nt!MiReleaseConfirmedPageFileSpace+86
fffff800`02f3ecb6 480fb328 btr qword ptr [rax],rbp
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: GUI.exe
ANALYSIS_VERSION: 6.3.9600.16384 (debuggers(dbg).130821-1623) amd64fre
TRAP_FRAME: fffff8800a21c2b0 -- (.trap 0xfffff8800a21c2b0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffffa8008ba4010 rbx=0000000000000000 rcx=0000000000000000
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002f3ecb6 rsp=fffff8800a21c440 rbp=00000000d2000000
r8=fffff8800a21c470 r9=fffffa8009c75060 r10=0000000000000000
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
nt!MiReleaseConfirmedPageFileSpace+0x86:
fffff800`02f3ecb6 480fb328 btr qword ptr [rax],rbp ds:fffffa80`08ba4010=ffffffffffffffff
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002e81169 to fffff80002e81bc0
STACK_TEXT:
fffff880`0a21c168 fffff800`02e81169 : 00000000`0000000a fffffa80`22fa4010 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`0a21c170 fffff800`02e7fde0 : ffffd9d0`c10ad2d4 fffff800`02fb5e80 fffff880`0a21c490 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`0a21c2b0 fffff800`02f3ecb6 : 00000000`00000000 00000000`00000000 fffffa80`08b97230 fffffa80`08b97230 : nt!KiPageFault+0x260
fffff880`0a21c440 fffff800`02ef2bea : 00000000`000001e8 fffff800`02ffce80 00000000`07a71000 00000000`00000000 : nt!MiReleaseConfirmedPageFileSpace+0x86
fffff880`0a21c4c0 fffff800`02e6e3df : fffffa80`00000000 00000000`07b0ffff 00000000`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x34f16
fffff880`0a21c680 fffff800`02e80e53 : ffffffff`ffffffff fffff880`0a21c950 fffff880`0a21c958 00000000`00008000 : nt!NtFreeVirtualMemory+0x61f
fffff880`0a21c780 fffff800`02e7d410 : fffff800`030ff477 00000000`00000010 00000000`00000082 fffff880`0a21c948 : nt!KiSystemServiceCopyEnd+0x13
fffff880`0a21c918 fffff800`030ff477 : 00000000`00000010 00000000`00000082 fffff880`0a21c948 00000000`00000001 : nt!KiServiceLinkage
fffff880`0a21c920 fffff800`031570cd : 00000000`07a10000 00000000`00000000 00000000`00000001 00000000`00000000 : nt!RtlFreeUserStack+0x27
fffff880`0a21c950 fffff800`03157431 : fffff880`00000001 00000000`07a0e800 00000000`7efd5000 00000000`00000000 : nt!PspExitThread+0x5dd
fffff880`0a21ca50 fffff800`03157539 : fffffa80`06cdc060 00000000`00000001 fffffa80`06cdc060 00000000`0000008c : nt!PspTerminateThreadByPointer+0x4d
fffff880`0a21caa0 fffff800`02e80e53 : fffffa80`06cdc060 fffff880`0a21cb60 00000000`7efd5000 ffffffff`fffffffe : nt!NtTerminateThread+0x45
fffff880`0a21cae0 00000000`77dd01af : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`07a0e728 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77dd01af
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiReleaseConfirmedPageFileSpace+86
fffff800`02f3ecb6 480fb328 btr qword ptr [rax],rbp
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!MiReleaseConfirmedPageFileSpace+86
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 531590fb
IMAGE_VERSION: 6.1.7601.18409
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0xA_nt!MiReleaseConfirmedPageFileSpace+86
BUCKET_ID: X64_0xA_nt!MiReleaseConfirmedPageFileSpace+86
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:x64_0xa_nt!mireleaseconfirmedpagefilespace+86
FAILURE_ID_HASH: {60ecfce8-0ae8-e101-bee9-632596f9724b}
Followup: MachineOwner
---------