Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\Icarus\Downloads\Dumps\031312-9328-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17640.amd64fre.win7sp1_gdr.110622-1506
Machine Name:
Kernel base = 0xfffff800`02e1d000 PsLoadedModuleList = 0xfffff800`03062670
Debug session time: Tue Mar 13 07:22:31.079 2012 (UTC - 4:00)
System Uptime: 0 days 0:00:58.891
Loading Kernel Symbols
...............................................................
................................................................
................
Loading User Symbols
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff800031b39bf, fffff880021e6230, 0}
Unable to load image \SystemRoot\System32\Drivers\aswSnx.SYS, Win32 error 0n2
*** WARNING: Unable to verify timestamp for aswSnx.SYS
*** ERROR: Module load completed but symbols could not be loaded for aswSnx.SYS
Probably caused by : aswSnx.SYS ( aswSnx+1d6d2 )
Followup: MachineOwner
---------
6: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800031b39bf, Address of the instruction which caused the bugcheck
Arg3: fffff880021e6230, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!MmExtendSection+1f
fffff800`031b39bf 0fba66380a bt dword ptr [rsi+38h],0Ah
CONTEXT: fffff880021e6230 -- (.cxr 0xfffff880021e6230)
rax=0000000000000000 rbx=000000000000000c rcx=fffff8a002602400
rdx=fffff880021e6de0 rsi=0000000000000000 rdi=fffff8a002602400
rip=fffff800031b39bf rsp=fffff880021e6c10 rbp=fffffa800e66b198
r8=0000000000000000 r9=fffffa800ccf0340 r10=fffffa800ccf0148
r11=fffff880021e6d20 r12=fffff8a002602418 r13=fffffa800e660048
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010282
nt!MmExtendSection+0x1f:
fffff800`031b39bf 0fba66380a bt dword ptr [rsi+38h],0Ah ds:002b:00000000`00000038=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: winlogon.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80003196cc6 to fffff800031b39bf
STACK_TEXT:
fffff880`021e6c10 fffff800`03196cc6 : 00000000`0000000c 00000000`0000000c 00000000`08000000 00000000`00004080 : nt!MmExtendSection+0x1f
fffff880`021e6d40 fffff800`03175596 : fffff880`021e6f90 00000000`000aeb78 00000000`00000000 fffff880`021e6f88 : nt!MmCreateSection+0x5a6
fffff880`021e6f40 fffff880`02cef6d2 : 00000000`00000000 00000000`c0000001 00000000`00000008 00000000`00000000 : nt!NtCreateSection+0x171
fffff880`021e6fc0 00000000`00000000 : 00000000`c0000001 00000000`00000008 00000000`00000000 00000000`00000002 : aswSnx+0x1d6d2
FOLLOWUP_IP:
aswSnx+1d6d2
fffff880`02cef6d2 ?? ???
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: aswSnx+1d6d2
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: aswSnx
IMAGE_NAME: aswSnx.SYS
DEBUG_FLR_IMAGE_TIMESTAMP: 4ed3cabd
STACK_COMMAND: .cxr 0xfffff880021e6230 ; kb
FAILURE_BUCKET_ID: X64_0x3B_aswSnx+1d6d2
BUCKET_ID: X64_0x3B_aswSnx+1d6d2
Followup: MachineOwner
---------