*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: ffffea8003b95c80, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffff80002ade00c, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000007, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002d0f0e0
ffffea8003b95c80
FAULTING_IP:
nt!ObfDereferenceObject+2c
fffff800`02ade00c f0480fc11f lock xadd qword ptr [rdi],rbx
MM_INTERNAL_CODE: 7
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: LUCOMS~1.EXE
CURRENT_IRQL: 0
TRAP_FRAME: fffff88007410980 -- (.trap 0xfffff88007410980)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=ffffea8003b95cb0
rdx=0000000000000084 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002ade00c rsp=fffff88007410b10 rbp=fffff88007410c60
r8=fffff78000000008 r9=0000000000000001 r10=fffffa8003716501
r11=fffff80002c51e80 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na po nc
nt!ObfDereferenceObject+0x2c:
fffff800`02ade00c f0480fc11f lock xadd qword ptr [rdi],rbx ds:5cb0:00000000`00000000=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002b56b19 to fffff80002ad8f00
STACK_TEXT:
fffff880`07410818 fffff800`02b56b19 : 00000000`00000050 ffffea80`03b95c80 00000000`00000001 fffff880`07410980 : nt!KeBugCheckEx
fffff880`07410820 fffff800`02ad6fee : 00000000`00000001 ffffffff`ffffffff 00000000`00000000 00000000`00000001 : nt! ?? ::FNODOBFM::`string'+0x40edb
fffff880`07410980 fffff800`02ade00c : 00000000`00000001 00000000`00000000 00000000`026fd398 00000000`74822450 : nt!KiPageFault+0x16e
fffff880`07410b10 fffff800`02dd0acc : fffff880`07410c60 ffffea80`03b95cb0 fffff880`07410bb8 00000000`00000001 : nt!ObfDereferenceObject+0x2c
fffff880`07410b70 fffff800`02ad8153 : fffffa80`03b7eb60 00000000`00000000 fffff880`07410bb8 fffffa80`03b95cb0 : nt!NtWaitForSingleObject+0xcc
fffff880`07410be0 00000000`74822dd9 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`023af0f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x74822dd9
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+40edb
fffff800`02b56b19 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+40edb
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc600
FAILURE_BUCKET_ID: X64_0x50_nt!_??_::FNODOBFM::_string_+40edb
BUCKET_ID: X64_0x50_nt!_??_::FNODOBFM::_string_+40edb
Followup: MachineOwner
---------