[FONT="Lucida Console"]*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck D1, {fffffa800a11ce48, 2, 0, fffff88006013a60}
*** WARNING: Unable to verify timestamp for NETw5s64.sys
*** ERROR: Module load completed but symbols could not be loaded for NETw5s64.sys
Probably caused by : NETw5s64.sys ( NETw5s64+373a60 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: fffffa800a11ce48, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
Arg4: fffff88006013a60, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff8000310d100
GetUlongFromAddress: unable to read from fffff8000310d1c0
fffffa800a11ce48 Nonpaged pool
CURRENT_IRQL: 2
FAULTING_IP:
NETw5s64+373a60
fffff880`06013a60 488b040a mov rax,qword ptr [rdx+rcx]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0xD1
PROCESS_NAME: System
TAG_NOT_DEFINED_c000000f: FFFFF80000BA2FB0
TRAP_FRAME: fffff80000b9c000 -- (.trap 0xfffff80000b9c000)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=000000000000003c rbx=0000000000000000 rcx=fffff88007320000
rdx=0000020002dfce48 rsi=0000000000000000 rdi=0000000000000000
rip=fffff88006013a60 rsp=fffff80000b9c198 rbp=fffff88005e67450
r8=000000000000003c r9=0000000000000001 r10=fffffa800a10afb0
r11=fffff88007320000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na pe cy
NETw5s64+0x373a60:
fffff880`06013a60 488b040a mov rax,qword ptr [rdx+rcx] ds:fffffa80`0a11ce48=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002edd569 to fffff80002eddfc0
STACK_TEXT:
fffff800`00b9beb8 fffff800`02edd569 : 00000000`0000000a fffffa80`0a11ce48 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff800`00b9bec0 fffff800`02edc1e0 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`0000000e : nt!KiBugCheckDispatch+0x69
fffff800`00b9c000 fffff880`06013a60 : fffff880`05e6b805 00000000`00000000 fffff880`050edc2d fffffa80`073b4b40 : nt!KiPageFault+0x260
fffff800`00b9c198 fffff880`05e6b805 : 00000000`00000000 fffff880`050edc2d fffffa80`073b4b40 00000000`00000000 : NETw5s64+0x373a60
fffff800`00b9c1a0 00000000`00000000 : fffff880`050edc2d fffffa80`073b4b40 00000000`00000000 fffffa80`0b2b65c0 : NETw5s64+0x1cb805
STACK_COMMAND: kb
FOLLOWUP_IP:
NETw5s64+373a60
fffff880`06013a60 488b040a mov rax,qword ptr [rdx+rcx]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: NETw5s64+373a60
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: NETw5s64
IMAGE_NAME: NETw5s64.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4ba1b871
FAILURE_BUCKET_ID: X64_0xD1_NETw5s64+373a60
BUCKET_ID: X64_0xD1_NETw5s64+373a60
Followup: MachineOwner
---------[/FONT]