Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\Mini121310-09.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 3) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp.080413-2111
Machine Name:
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
Debug session time: Mon Dec 13 12:13:43.593 2010 (UTC - 5:00)
System Uptime: 0 days 0:26:44.336
Loading Kernel Symbols
...............................................................
.........................................
Loading User Symbols
Loading unloaded module list
...........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 10000050, {bfd1314d, 0, bf83c6b8, 2}
Could not read faulting driver name
Probably caused by : win32k.sys ( win32k!xxxCallHook2+214 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: bfd1314d, memory referenced.
Arg2: 00000000, value 0 = read operation, 1 = write operation.
Arg3: bf83c6b8, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 00000002, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: bfd1314d
FAULTING_IP:
win32k!xxxCallHook2+214
bf83c6b8 f644810901 test byte ptr [ecx+eax*4+9],1
MM_INTERNAL_CODE: 2
CUSTOMER_CRASH_COUNT: 9
DEFAULT_BUCKET_ID: COMMON_SYSTEM_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: javaw.exe
LAST_CONTROL_TRANSFER: from bf8f5c31 to bf83c6b8
STACK_TEXT:
aef7fb5c bf8f5c31 13e824a8 00000000 00000200 win32k!xxxCallHook2+0x214
aef7fb78 bf82249f 00000200 00000002 00000001 win32k!xxxCallMouseHook+0x30
aef7fc94 bf801ebf 00000200 aef7fd14 00000000 win32k!xxxScanSysQueue+0x821
aef7fce8 bf8036ec aef7fd14 000025ff 00000000 win32k!xxxRealInternalGetMessage+0x335
aef7fd48 8054161c 499ff8f8 00000000 00000000 win32k!NtUserPeekMessage+0x40
aef7fd48 7c90e4f4 499ff8f8 00000000 00000000 nt!KiFastCallEntry+0xfc
WARNING: Frame IP not in any known module. Following frames may be wrong.
499ff8a4 00000000 00000000 00000000 00000000 0x7c90e4f4
STACK_COMMAND: kb
FOLLOWUP_IP:
win32k!xxxCallHook2+214
bf83c6b8 f644810901 test byte ptr [ecx+eax*4+9],1
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: win32k!xxxCallHook2+214
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: win32k
IMAGE_NAME: win32k.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 48025f2a
FAILURE_BUCKET_ID: 0x50_win32k!xxxCallHook2+214
BUCKET_ID: 0x50_win32k!xxxCallHook2+214
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\Mini121310-08.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 3) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp.080413-2111
Machine Name:
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
Debug session time: Mon Dec 13 11:42:58.265 2010 (UTC - 5:00)
System Uptime: 0 days 0:00:21.000
Loading Kernel Symbols
...............................................................
..........................................
Loading User Symbols
Loading unloaded module list
..
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1000008E, {c0000005, 0, aff09914, 0}
Probably caused by : Unknown_Image ( ANALYSIS_INCONCLUSIVE )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KERNEL_MODE_EXCEPTION_NOT_HANDLED_M (1000008e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: c0000005, The exception code that was not handled
Arg2: 00000000, The address that the exception occurred at
Arg3: aff09914, Trap Frame
Arg4: 00000000
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>
FAULTING_IP:
+0
00000000 ?? ???
TRAP_FRAME: aff09914 -- (.trap 0xffffffffaff09914)
ErrCode = 00000010
eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=afb09c1c edi=e292c8c8
eip=00000000 esp=aff09988 ebp=00000000 iopl=0 nv up ei pl zr na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
00000000 ?? ???
Resetting default scope
CUSTOMER_CRASH_COUNT: 8
DEFAULT_BUCKET_ID: COMMON_SYSTEM_FAULT
BUGCHECK_STR: 0x8E
PROCESS_NAME: HDeck.exe
LAST_CONTROL_TRANSFER: from 00000000 to 00000000
STACK_TEXT:
aff09984 00000000 00000000 00000000 00000000 0x0
STACK_COMMAND: .trap 0xffffffffaff09914 ; kb
SYMBOL_NAME: ANALYSIS_INCONCLUSIVE
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Unknown_Module
IMAGE_NAME: Unknown_Image
DEBUG_FLR_IMAGE_TIMESTAMP: 0
BUCKET_ID: ZEROED_STACK
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\Mini121310-04.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 3) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp.080413-2111
Machine Name:
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
Debug session time: Mon Dec 13 11:39:40.015 2010 (UTC - 5:00)
System Uptime: 0 days 0:56:03.753
Loading Kernel Symbols
...............................................................
.........................................
Loading User Symbols
Loading unloaded module list
..........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 10000050, {bfd10345, 0, bf83c6b8, 2}
Could not read faulting driver name
Probably caused by : win32k.sys ( win32k!xxxCallHook2+214 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: bfd10345, memory referenced.
Arg2: 00000000, value 0 = read operation, 1 = write operation.
Arg3: bf83c6b8, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 00000002, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: bfd10345
FAULTING_IP:
win32k!xxxCallHook2+214
bf83c6b8 f644810901 test byte ptr [ecx+eax*4+9],1
MM_INTERNAL_CODE: 2
CUSTOMER_CRASH_COUNT: 4
DEFAULT_BUCKET_ID: COMMON_SYSTEM_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: Skype.exe
LAST_CONTROL_TRANSFER: from bf8f631a to bf83c6b8
STACK_TEXT:
afa29790 bf8f631a 03e50b58 00000000 00000000 win32k!xxxCallHook2+0x214
afa297ac bf8e3174 00000000 00000000 00000000 win32k!xxxCallNextHookEx+0x2d
afa29800 bf8f6297 00000003 00000000 00000000 win32k!NtUserfnHkINLPMSG+0x3a
afa2981c 8054161c 00000000 00000000 0012fcec win32k!NtUserCallNextHookEx+0xa5
afa2981c 7c90e4f4 00000000 00000000 0012fcec nt!KiFastCallEntry+0xfc
WARNING: Frame IP not in any known module. Following frames may be wrong.
0012fc28 00000000 00000000 00000000 00000000 0x7c90e4f4
STACK_COMMAND: kb
FOLLOWUP_IP:
win32k!xxxCallHook2+214
bf83c6b8 f644810901 test byte ptr [ecx+eax*4+9],1
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: win32k!xxxCallHook2+214
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: win32k
IMAGE_NAME: win32k.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 48025f2a
FAILURE_BUCKET_ID: 0x50_win32k!xxxCallHook2+214
BUCKET_ID: 0x50_win32k!xxxCallHook2+214
Followup: MachineOwner
---------
0: kd> lmtn
start end module name
b7f79000 b7fa6f80 ACPI ACPI.sys Sun Apr 13 14:36:33 2008 (480252B1)
af96a000 af98cd00 aec aec.sys Thu May 24 15:53:32 2007 (4655ED3C)
b0b4b000 b0b6cb80 afd afd.sys Sun Apr 13 15:19:22 2008 (48025CBA)
b85c2000 b85c36c0 ASACPI ASACPI.sys Wed May 13 07:11:32 2009 (4A0AAAE4)
b7f0b000 b7f22900 atapi atapi.sys Sun Apr 13 14:40:29 2008 (4802539D)
bffa0000 bffe5c00 ATMFD ATMFD.DLL Sun Apr 13 23:08:11 2008 (4802CA9B)
b87dc000 b87dcc00 audstub audstub.sys Fri Aug 17 16:59:40 2001 (3B7D85BC)
b85d0000 b85d1080 Beep Beep.SYS Fri Aug 17 16:47:33 2001 (3B7D82E5)
b84b8000 b84bb000 BOOTVID BOOTVID.dll Fri Aug 17 16:49:09 2001 (3B7D8345)
b8308000 b8317900 Cdfs Cdfs.SYS Sun Apr 13 15:14:21 2008 (48025B8D)
b81e8000 b81f7600 cdrom cdrom.sys Sun Apr 13 14:40:45 2008 (480253AD)
b80e8000 b80f4180 CLASSPNP CLASSPNP.SYS Sun Apr 13 15:16:21 2008 (48025C05)
b80d8000 b80e0e00 disk disk.sys Sun Apr 13 14:40:46 2008 (480253AE)
b7f23000 b7f48900 dmio dmio.sys Sun Apr 13 14:44:45 2008 (4802549D)
b85ac000 b85ad700 dmload dmload.sys Fri Aug 17 16:58:15 2001 (3B7D8567)
afa6a000 afa76e80 DMusic DMusic.sys Sun Apr 13 14:45:00 2008 (480254AC)
b82a8000 b82b6b00 drmk drmk.sys Sun Apr 13 14:45:12 2008 (480254B8)
b8788000 b8788b80 drmkaud drmkaud.sys Sun Apr 13 14:45:13 2008 (480254B9)
b0a98000 b0aaf900 dump_atapi dump_atapi.sys Sun Apr 13 14:40:29 2008 (4802539D)
b85d8000 b85d9100 dump_WMILIB dump_WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
b33b9000 b33bb900 Dxapi Dxapi.sys Fri Aug 17 16:53:19 2001 (3B7D843F)
bd000000 bd011600 dxg dxg.sys Sun Apr 13 14:38:27 2008 (48025323)
b86de000 b86ded00 dxgthk dxgthk.sys Fri Aug 17 16:53:12 2001 (3B7D8438)
b83b8000 b83b9000 fdc fdc.sys unavailable (00000000)
b82e8000 b82f2e00 Fips Fips.SYS Sun Apr 13 14:33:27 2008 (480251F7)
b83e8000 b83ed000 flpydisk flpydisk.sys Sun Apr 13 14:40:24 2008 (48025398)
b7eeb000 b7f0ab00 fltMgr fltMgr.sys Sun Apr 13 14:32:58 2008 (480251DA)
b85ce000 b85cff00 Fs_Rec Fs_Rec.SYS Fri Aug 17 16:49:37 2001 (3B7D8361)
b7f49000 b7f67900 ftdisk ftdisk.sys Fri Aug 17 16:52:41 2001 (3B7D8419)
806e4000 80704d00 hal halmacpi.dll Sun Apr 13 14:31:27 2008 (4802517F)
b33f5000 b341d000 HDAudBus HDAudBus.sys Thu May 26 11:46:29 2005 (4295EF55)
b8218000 b8224b80 i8042prt i8042prt.sys Sun Apr 13 15:17:59 2008 (48025C67)
b81d8000 b81e2480 imapi imapi.sys Sun Apr 13 14:40:57 2008 (480253B9)
b0b6d000 b0b92500 ipnat ipnat.sys Sun Apr 13 14:57:10 2008 (48025786)
b0c3c000 b0c4e600 ipsec ipsec.sys Sun Apr 13 15:19:42 2008 (48025CCE)
b80a8000 b80b1180 isapnp isapnp.sys Sun Apr 13 14:36:40 2008 (480252B8)
b83c0000 b83c6000 kbdclass kbdclass.sys Sun Apr 13 14:39:46 2008 (48025372)
b85a8000 b85a9b80 kdcom kdcom.dll Fri Aug 17 16:49:10 2001 (3B7D8346)
af93f000 af969180 kmixer kmixer.sys Sun Apr 13 14:45:07 2008 (480254B3)
b341d000 b343f700 ks ks.sys Sun Apr 13 15:16:34 2008 (48025C12)
b7ec2000 b7ed8880 KSecDD KSecDD.sys Sun Apr 13 14:31:40 2008 (4802518C)
b81c8000 b81d6000 l1e51x86 l1e51x86.sys Wed May 20 01:58:27 2009 (4A139C03)
b85d2000 b85d3080 mnmdd mnmdd.SYS Fri Aug 17 16:57:28 2001 (3B7D8538)
b83c8000 b83cda00 mouclass mouclass.sys Sun Apr 13 14:39:47 2008 (48025373)
b80b8000 b80c2580 MountMgr MountMgr.sys Sun Apr 13 14:39:45 2008 (48025371)
b0ab0000 b0b1f780 mrxsmb mrxsmb.sys Sun Apr 13 15:16:58 2008 (48025C2A)
b8400000 b8404a80 Msfs Msfs.SYS Sun Apr 13 14:32:38 2008 (480251C6)
b8258000 b8260900 msgpc msgpc.sys Sun Apr 13 14:56:32 2008 (48025760)
b8590000 b8593c80 mssmbios mssmbios.sys Sun Apr 13 14:36:45 2008 (480252BD)
b7dee000 b7e07b80 Mup Mup.sys Sun Apr 13 15:17:05 2008 (48025C31)
b7e08000 b7e34980 NDIS NDIS.sys Sun Apr 13 15:20:35 2008 (48025D03)
b8574000 b8576780 ndistapi ndistapi.sys Sun Apr 13 14:57:27 2008 (48025797)
afd62000 afd65900 ndisuio ndisuio.sys Sun Apr 13 14:55:57 2008 (4802573D)
b33de000 b33f4580 ndiswan ndiswan.sys Sun Apr 13 15:20:41 2008 (48025D09)
b8288000 b8291e80 NDProxy NDProxy.SYS Sun Apr 13 14:57:28 2008 (48025798)
b82d8000 b82e0780 netbios netbios.sys Sun Apr 13 14:56:01 2008 (48025741)
b0b93000 b0bbac00 netbt netbt.sys Sun Apr 13 15:20:59 2008 (48025D1B)
b8408000 b840f880 Npfs Npfs.SYS Sun Apr 13 14:32:38 2008 (480251C6)
804d7000 806e4000 nt ntkrpamp.exe Sun Apr 13 14:31:06 2008 (4802516A)
b7e35000 b7ec1600 Ntfs Ntfs.sys Sun Apr 13 15:15:49 2008 (48025BE5)
b8743000 b8743b80 Null Null.SYS Fri Aug 17 16:47:39 2001 (3B7D82EB)
bd012000 bd622a00 nv4_disp nv4_disp.dll Sat Oct 16 12:48:09 2010 (4CB9D749)
b3478000 b3da5880 nv4_mini nv4_mini.sys Sat Oct 16 12:50:37 2010 (4CB9D7DD)
b8330000 b8334d00 PartMgr PartMgr.sys Sun Apr 13 14:40:48 2008 (480253B0)
b7f68000 b7f78c80 pci pci.sys Sun Apr 13 14:36:43 2008 (480252BB)
b8670000 b8670d00 pciide pciide.sys Fri Aug 17 16:51:49 2001 (3B7D83E5)
b8328000 b832e180 PCIIDEX PCIIDEX.SYS Sun Apr 13 14:40:29 2008 (4802539D)
b0ccf000 b0cf2a80 portcls portcls.sys Sun Apr 13 15:19:40 2008 (48025CCC)
b81b8000 b81c1b00 processr processr.sys Sun Apr 13 14:31:29 2008 (48025181)
b33cd000 b33dde00 psched psched.sys Sun Apr 13 14:56:36 2008 (48025764)
b83d8000 b83dc580 ptilink ptilink.sys Fri Aug 17 16:49:53 2001 (3B7D8371)
b8538000 b853a280 rasacd rasacd.sys Fri Aug 17 16:55:39 2001 (3B7D84CB)
b8228000 b8234880 rasl2tp rasl2tp.sys Sun Apr 13 15:19:43 2008 (48025CCF)
b8238000 b8242200 raspppoe raspppoe.sys Sun Apr 13 14:57:31 2008 (4802579B)
b8248000 b8253d00 raspptp raspptp.sys Sun Apr 13 15:19:47 2008 (48025CD3)
b83e0000 b83e4080 raspti raspti.sys Fri Aug 17 16:55:32 2001 (3B7D84C4)
b0b20000 b0b4ae80 rdbss rdbss.sys Sun Apr 13 15:28:38 2008 (48025EE6)
b85d4000 b85d5080 RDPCDD RDPCDD.sys Fri Aug 17 16:46:56 2001 (3B7D82C0)
b3375000 b33a4e80 rdpdr rdpdr.sys Sun Apr 13 14:32:50 2008 (480251D2)
b81f8000 b8206480 redbook redbook.sys Sun Apr 13 14:40:27 2008 (4802539B)
b856c000 b856fd80 serenum serenum.sys Sun Apr 13 14:40:12 2008 (4802538C)
b8208000 b8217b00 serial serial.sys Sun Apr 13 15:15:44 2008 (48025BE0)
b8626000 b8627880 splitter splitter.sys Sun Apr 13 14:45:07 2008 (480254B3)
b7ed9000 b7eeae80 sr sr.sys Sun Apr 13 14:36:50 2008 (480252C2)
b85c4000 b85c5100 swenum swenum.sys Sun Apr 13 14:39:52 2008 (48025378)
afa7a000 afa87d00 swmidi swmidi.sys Sun Apr 13 14:45:07 2008 (480254B3)
afa8a000 afa98d80 sysaudio sysaudio.sys Sun Apr 13 15:15:55 2008 (48025BEB)
b0be3000 b0c3b380 tcpip tcpip.sys Sun Apr 13 15:20:12 2008 (48025CEC)
b83d0000 b83d4a80 TDI TDI.SYS Sun Apr 13 15:00:04 2008 (48025834)
b8268000 b8271f00 termdd termdd.sys Sun Apr 13 14:38:36 2008 (4802532C)
b3277000 b32d4f00 update update.sys Sun Apr 13 14:39:46 2008 (48025372)
b85c6000 b85c7280 USBD USBD.SYS Fri Aug 17 17:02:58 2001 (3B7D8682)
b83b0000 b83b7600 usbehci usbehci.sys Sun Apr 13 14:45:34 2008 (480254CE)
b8278000 b8286880 usbhub usbhub.sys Sun Apr 13 14:45:36 2008 (480254D0)
b83a8000 b83ac300 usbohci usbohci.sys Sun Apr 13 14:45:34 2008 (480254CE)
b3440000 b3463200 USBPORT USBPORT.SYS Sun Apr 13 14:45:34 2008 (480254CE)
b83f8000 b83fd200 vga vga.sys Sun Apr 13 14:44:40 2008 (48025498)
b0cf3000 b0efb700 viahduaa viahduaa.sys Sat May 15 06:19:27 2010 (4BEE752F)
b3464000 b3477f00 VIDEOPRT VIDEOPRT.SYS Sun Apr 13 14:44:39 2008 (48025497)
b80c8000 b80d4d00 VolSnap VolSnap.sys Sun Apr 13 14:41:00 2008 (480253BC)
b82c8000 b82d0700 wanarp wanarp.sys Sun Apr 13 14:57:20 2008 (48025790)
b8418000 b841c500 watchdog watchdog.sys Sun Apr 13 14:44:59 2008 (480254AB)
af98d000 af9a1480 wdmaud wdmaud.sys Sun Apr 13 15:17:18 2008 (48025C3E)
bf800000 bf9c2980 win32k win32k.sys Sun Apr 13 15:29:46 2008 (48025F2A)
b8570000 b8572280 wmiacpi wmiacpi.sys Sun Apr 13 14:36:37 2008 (480252B5)
b85aa000 b85ab100 WMILIB WMILIB.SYS Fri Aug 17 17:07:23 2001 (3B7D878B)
Unloaded modules:
b83f0000 b83f5000 Cdaudio.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00005000
b3da6000 b3da9000 Sfloppy.SYS
Timestamp: unavailable (00000000)
Checksum: 00000000
ImageSize: 00003000