Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\K\Desktop\072310-19765-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\symbols*http://msdl.microsoft.com/download/symbols;srv*e:\symbols
*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16385.amd64fre.win7_rtm.090713-1255
Machine Name:
Kernel base = 0xfffff800`02a01000 PsLoadedModuleList = 0xfffff800`02c3ee50
Debug session time: Thu Jul 22 20:59:23.937 2010 (GMT-4)
System Uptime: 3 days 2:18:25.539
Loading Kernel Symbols
...............................................................
................................................................
................
Loading User Symbols
Loading unloaded module list
..........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 19, {22, 86000000, 0, 0}
GetPointerFromAddress: unable to read from fffff80002ca90e0
GetUlongFromAddress: unable to read from fffff80002c171b0
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+7338 )
Followup: MachineOwner
---------
7: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000022,
Arg2: 0000000086000000
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
GetUlongFromAddress: unable to read from fffff80002c171b0
BUGCHECK_STR: 0x19_22
POOL_ADDRESS: 0000000086000000
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: firefox.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff80002aca330 to fffff80002a72f00
STACK_TEXT:
fffff880`04688488 fffff800`02aca330 : 00000000`00000019 00000000`00000022 00000000`86000000 00000000`00000000 : nt!KeBugCheckEx
fffff880`04688490 fffff800`02ba6518 : 00000000`00000000 fffff880`046885e0 fffff880`04688550 fffffa80`00000001 : nt! ?? ::FNODOBFM::`string'+0x7338
fffff880`04688520 fffff880`012ab8fa : fffffa80`04e21180 fffff880`046887e0 fffff8a0`01d5b250 00000000`00000000 : nt!ExFreePoolWithTag+0x468
fffff880`046885d0 fffff880`012b3adc : fffffa80`03f97b20 fffff8a0`01d5b380 fffff8a0`01d5b250 fffffa80`04e21180 : Ntfs!NtfsCommonClose+0x43a
fffff880`046886a0 fffff880`010f623f : fffff880`04688801 fffffa80`0431dc60 fffff880`04688000 00000000`00000003 : Ntfs!NtfsFsdClose+0x2dc
fffff880`046887a0 fffff880`010f46df : fffffa80`04cdf8e0 fffffa80`0431dc60 fffffa80`04ab4f00 fffffa80`0431dc60 : fltmgr!FltpLegacyProcessingAfterPreCallbacksCompleted+0x24f
fffff880`04688830 fffff800`02d8640e : fffffa80`03f35c70 fffffa80`04c8e820 fffffa80`040b1b30 fffffa80`04cdf8e0 : fltmgr!FltpDispatch+0xcf
fffff880`04688890 fffff800`02a780b4 : fffffa80`04e02bd0 fffff8a0`0e9c5a60 fffffa80`03cebde0 fffffa80`03cebde0 : nt!IopDeleteFile+0x11e
fffff880`04688920 fffff800`02d86194 : fffff8a0`0e9c5a60 00000000`00000000 fffffa80`045fab60 00000000`00000000 : nt!ObfDereferenceObject+0xd4
fffff880`04688980 fffff800`02d2f870 : 00000000`00000348 fffff8a0`0e9c5a60 fffff8a0`0844dd20 00000000`00000348 : nt!ObpCloseHandleTableEntry+0xc4
fffff880`04688a10 fffff800`02d2f7e4 : 00000000`00000004 00000000`00000000 fffffa80`040b1b30 fffff800`02d18f21 : nt!ObpCloseHandleProcedure+0x30
fffff880`04688a50 fffff800`02d2e6ae : fffff8a0`0ac41a01 00000000`00000001 fffffa80`040b1b30 fffffa80`040b1c01 : nt!ExSweepHandleTable+0x74
fffff880`04688a90 fffff800`02d55724 : fffff8a0`0ac41a50 00000000`00000000 00000000`00000000 fffffa80`046ad090 : nt!ObKillProcess+0x62
fffff880`04688ad0 fffff800`02d2ecb8 : 00000000`00000000 00000000`00000001 00000000`7efdb000 00000000`00000000 : nt!PspExitThread+0x3f4
fffff880`04688ba0 fffff800`02a72153 : fffffa80`040b1b30 00000000`00000000 fffffa80`045fab60 fffffa80`0404bc30 : nt!NtTerminateProcess+0x138
fffff880`04688c20 00000000`777c017a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0011def8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x777c017a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+7338
fffff800`02aca330 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+7338
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc600
FAILURE_BUCKET_ID: X64_0x19_22_nt!_??_::FNODOBFM::_string_+7338
BUCKET_ID: X64_0x19_22_nt!_??_::FNODOBFM::_string_+7338
Followup: MachineOwner
---------