*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff800033c4e98, fffff88007537c60, 0}
[COLOR=Red]Probably caused by : memory_corruption[/COLOR]
Followup: memory_corruption
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800033c4e98, Address of the instruction which caused the bugcheck
Arg3: fffff88007537c60, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!IopParseDevice+908
fffff800`033c4e98 49898424e0000000 mov qword ptr [r12+0E0h],rax
CONTEXT: fffff88007537c60 -- (.cxr 0xfffff88007537c60)
rax=0000000000000011 rbx=0000000000000004 rcx=0000000000000001
rdx=0000000000000001 rsi=fffff880075389e0 rdi=fffffa8004d15900
rip=fffff800033c4e98 rsp=fffff88007538640 rbp=fffffa80097361c8
r8=0000000000000000 r9=0000000000000000 r10=fffffa8004d15940
r11=fffff880075387c8 r12=0000000000000001 r13=fffff800033ceb00
r14=0000000000000080 r15=0000000000000080
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010202
nt!IopParseDevice+0x908:
fffff800`033c4e98 49898424e0000000 mov qword ptr [r12+0E0h],rax ds:002b:00000000`000000e1=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: CODE_CORRUPTION
BUGCHECK_STR: 0x3B
PROCESS_NAME: dota.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff800033c13d8 to fffff800033c4e98
STACK_TEXT:
fffff880`07538640 fffff800`033c13d8 : fffffa80`04d15940 fffff800`00000000 fffffa80`09736010 00000000`00000001 : nt!IopParseDevice+0x908
fffff880`075387d0 fffff800`033c25f6 : 00000000`00000000 fffffa80`09736010 00000000`00000000 fffffa80`03d06080 : nt!ObpLookupObjectName+0x588
fffff880`075388c0 fffff800`033a2536 : fffff680`000a30d8 00000000`0019ddc8 fffffa80`02138d01 00000000`0001c233 : nt!ObOpenObjectByName+0x306
fffff880`07538990 fffff800`030ca253 : 00000000`00000001 00000000`1461bd22 fffffa80`08c56650 00000000`0e2f0000 : nt!NtQueryAttributesFile+0x145
fffff880`07538c20 00000000`770d16ea : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0019dd88 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x770d16ea
CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
fffff800033c4e98 - nt!IopParseDevice+908
[ 48:49 ]
1 error : !nt (fffff800033c4e98)
[COLOR=Red]MODULE_NAME: memory_corruption
IMAGE_NAME: memory_corruption
FOLLOWUP_NAME: memory_corruption[/COLOR]
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MEMORY_CORRUPTOR: ONE_BIT
STACK_COMMAND: .cxr 0xfffff88007537c60 ; kb
[COLOR=Red]
FAILURE_BUCKET_ID: X64_MEMORY_CORRUPTION_ONE_BIT
BUCKET_ID: X64_MEMORY_CORRUPTION_ONE_BIT
Followup: memory_corruption[/COLOR]
---------