Loading Dump File [D:\ DOWNLOADS\1_31_11\Windows_NT6_BSOD_jcgriff2\013111-17612-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\XSymCache*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`0280f000 PsLoadedModuleList = 0xfffff800`02a4ce50
Debug session time: Tue Feb 1 03:11:13.828 2011 (UTC + 0:00)
System Uptime: 0 days 0:36:30.467
Loading Kernel Symbols
...............................................................
................................................................
...................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {8, 2, 1, fffff8000288b3f2}
Probably caused by : ntkrnlmp.exe ( nt!KiTimerExpiration+f2 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000000000008, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff8000288b3f2, address which referenced memory
Debugging Details:
------------------
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002ab70e0
0000000000000008
CURRENT_IRQL: 2
FAULTING_IP:
nt!KiTimerExpiration+f2
fffff800`0288b3f2 48894808 mov qword ptr [rax+8],rcx
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: System
TRAP_FRAME: fffff88002f1baa0 -- (.trap 0xfffff88002f1baa0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffff880009eb528
rdx=000000000000007d rsi=0000000000000000 rdi=0000000000000000
rip=fffff8000288b3f2 rsp=fffff88002f1bc30 rbp=000000000002247d
r8=fffffa8003576420 r9=00000000000000c2 r10=000000000000007d
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz ac po cy
nt!KiTimerExpiration+0xf2:
fffff800`0288b3f2 48894808 mov qword ptr [rax+8],rcx ds:0d20:00000000`00000008=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff8000287eca9 to fffff8000287f740
STACK_TEXT:
fffff880`02f1b958 fffff800`0287eca9 : 00000000`0000000a 00000000`00000008 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
fffff880`02f1b960 fffff800`0287d920 : fffffa80`04a2c300 00000005`199ed4e2 00000000`0002247d 00000000`00000000 : nt!KiBugCheckDispatch+0x69
fffff880`02f1baa0 fffff800`0288b3f2 : fffffa80`04730050 fffff880`0427bd83 fffffa80`04730050 fffffa80`04c595a0 : nt!KiPageFault+0x260
fffff880`02f1bc30 fffff800`0288acb7 : 00000001`7daefdc2 00000001`0002247d 00000001`7daefdbe 00000000`0000007d : nt!KiTimerExpiration+0xf2
fffff880`02f1bcd0 fffff800`02887eea : fffff880`009e8180 fffff880`009f2f40 00000000`00000000 fffff880`0426cdb0 : nt!KiRetireDpcList+0x277
fffff880`02f1bd80 00000000`00000000 : fffff880`02f1c000 fffff880`02f16000 fffff880`02f1bd40 00000000`00000000 : nt!KiIdleLoop+0x5a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiTimerExpiration+f2
fffff800`0288b3f2 48894808 mov qword ptr [rax+8],rcx
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!KiTimerExpiration+f2
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0xA_nt!KiTimerExpiration+f2
BUCKET_ID: X64_0xA_nt!KiTimerExpiration+f2
Followup: MachineOwner