*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 0000000000000000, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, value 0 = read operation, 1 = write operation
Arg4: fffffa80063762ed, address which referenced memory
Debugging Details:
------------------
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800032b50e0
0000000000000000
CURRENT_IRQL: 2
FAULTING_IP:
+390952f00abdfdc
fffffa80`063762ed 488941e0 mov qword ptr [rcx-20h],rax
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xD1
PROCESS_NAME: svchost.exe
TRAP_FRAME: fffff88008655b40 -- (.trap 0xfffff88008655b40)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000008900000000 rbx=0000000000000000 rcx=0000000000000020
rdx=fffffa8049170008 rsi=0000000000000000 rdi=0000000000000000
rip=fffffa80063762ed rsp=fffff88008655cd8 rbp=fffffa80062e3980
r8=0000000000009ca8 r9=00000000000004e5 r10=0000000000000004
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
fffffa80`063762ed 488941e0 mov qword ptr [rcx-20h],rax ds:3980:00000000`00000000=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff8000307cb69 to fffff8000307d600
STACK_TEXT:
fffff880`086559f8 fffff800`0307cb69 : 00000000`0000000a 00000000`00000000 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`08655a00 fffff800`0307b7e0 : 0000002a`0000002a 00000000`00000687 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`08655b40 fffffa80`063762ed : fffffa80`063337df fffff880`00000064 00000000`0000b028 fffff880`08655d40 : nt!KiPageFault+0x260
fffff880`08655cd8 fffffa80`063337df : fffff880`00000064 00000000`0000b028 fffff880`08655d40 00000000`00000610 : 0xfffffa80`063762ed
fffff880`08655ce0 fffff880`00000064 : 00000000`0000b028 fffff880`08655d40 00000000`00000610 fffffa80`06383200 : 0xfffffa80`063337df
fffff880`08655ce8 00000000`0000b028 : fffff880`08655d40 00000000`00000610 fffffa80`06383200 fffffa80`062e35f8 : 0xfffff880`00000064
fffff880`08655cf0 fffff880`08655d40 : 00000000`00000610 fffffa80`06383200 fffffa80`062e35f8 fffff880`08656330 : 0xb028
fffff880`08655cf8 00000000`00000610 : fffffa80`06383200 fffffa80`062e35f8 fffff880`08656330 fffffa80`062e3018 : 0xfffff880`08655d40
fffff880`08655d00 fffffa80`06383200 : fffffa80`062e35f8 fffff880`08656330 fffffa80`062e3018 00000000`00000679 : 0x610
fffff880`08655d08 fffffa80`062e35f8 : fffff880`08656330 fffffa80`062e3018 00000000`00000679 fffffa80`06332163 : 0xfffffa80`06383200
fffff880`08655d10 fffff880`08656330 : fffffa80`062e3018 00000000`00000679 fffffa80`06332163 00000000`00000687 : 0xfffffa80`062e35f8
fffff880`08655d18 fffffa80`062e3018 : 00000000`00000679 fffffa80`06332163 00000000`00000687 fffffa80`062e3980 : 0xfffff880`08656330
fffff880`08655d20 00000000`00000679 : fffffa80`06332163 00000000`00000687 fffffa80`062e3980 ffffffff`ffffffff : 0xfffffa80`062e3018
fffff880`08655d28 fffffa80`06332163 : 00000000`00000687 fffffa80`062e3980 ffffffff`ffffffff 00000000`00000000 : 0x679
fffff880`08655d30 00000000`00000687 : fffffa80`062e3980 ffffffff`ffffffff 00000000`00000000 0000f8b7`60119d2e : 0xfffffa80`06332163
fffff880`08655d38 fffffa80`062e3980 : ffffffff`ffffffff 00000000`00000000 0000f8b7`60119d2e 00000000`00000610 : 0x687
fffff880`08655d40 ffffffff`ffffffff : 00000000`00000000 0000f8b7`60119d2e 00000000`00000610 fffff880`08656311 : 0xfffffa80`062e3980
fffff880`08655d48 00000000`00000000 : 0000f8b7`60119d2e 00000000`00000610 fffff880`08656311 fffffa80`062e3018 : 0xffffffff`ffffffff
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiPageFault+260
fffff800`0307b7e0 440f20c0 mov rax,cr8
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: nt!KiPageFault+260
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4b88cfeb
FAILURE_BUCKET_ID: X64_0xD1_nt!KiPageFault+260
BUCKET_ID: X64_0xD1_nt!KiPageFault+260