*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {80038000020, 2, 0, fffff80002e758d2}
*** WARNING: Unable to verify timestamp for rzudd.sys
*** ERROR: Module load completed but symbols could not be loaded for rzudd.sys
Probably caused by : kbdclass.sys ( kbdclass!KeyboardClassServiceCallback+47e )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000080038000020, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80002e758d2, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800030bb100
GetUlongFromAddress: unable to read from fffff800030bb1c0
0000080038000020 Nonpaged pool
CURRENT_IRQL: 2
FAULTING_IP:
nt!KiInsertQueueApc+322
fffff800`02e758d2 4c396220 cmp qword ptr [rdx+20h],r12
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: System
TAG_NOT_DEFINED_c000000f: FFFFF88002F22FB0
TRAP_FRAME: fffff88002f1ac30 -- (.trap 0xfffff88002f1ac30)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffffa800987fba0
rdx=0000080038000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002e758d2 rsp=fffff88002f1adc0 rbp=fffff880009ec180
r8=0000000000000000 r9=fffffa800987fba0 r10=0000000000000000
r11=fffff88002f1af02 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na po cy
nt!KiInsertQueueApc+0x322:
fffff800`02e758d2 4c396220 cmp qword ptr [rdx+20h],r12 ds:00000800`38000020=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002e83169 to fffff80002e83bc0
STACK_TEXT:
fffff880`02f1aae8 fffff800`02e83169 : 00000000`0000000a 00000800`38000020 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`02f1aaf0 fffff800`02e81de0 : 00000000`00000000 00000000`00000002 fffff880`02f1ac70 fffffa80`0987fb50 : nt!KiBugCheckDispatch+0x69
fffff880`02f1ac30 fffff800`02e758d2 : 0000057f`f71b6b08 00000000`00000198 0000057f`f64d2a78 0000057f`f822a998 : nt!KiPageFault+0x260
fffff880`02f1adc0 fffff800`02e646a4 : fffffa80`0987fb50 00000000`00000002 00000000`00000000 fffffa80`0a7cd088 : nt!KiInsertQueueApc+0x322
fffff880`02f1adf0 fffff800`02e87df3 : fffffa80`07ccc8a0 00000000`a000000c 00000000`00000000 fffff880`02f1b010 : nt!KeInsertQueueApc+0x80
fffff880`02f1ae50 fffff880`05863e0e : 00000000`00000004 fffffa80`07eafe06 fffffa80`07eafe30 00000000`00000000 : nt!IopfCompleteRequest+0xb63
fffff880`02f1af40 fffff880`06fb0d52 : fffffa80`09d5d4f0 fffff880`02f1b01c fffff880`02f1b230 fffff880`02f1b230 : kbdclass!KeyboardClassServiceCallback+0x47e
fffff880`02f1afc0 fffffa80`09d5d4f0 : fffff880`02f1b01c fffff880`02f1b230 fffff880`02f1b230 fffff880`02f1b010 : rzudd+0x15d52
fffff880`02f1afc8 fffff880`02f1b01c : fffff880`02f1b230 fffff880`02f1b230 fffff880`02f1b010 fffff880`06fb0fe0 : 0xfffffa80`09d5d4f0
fffff880`02f1afd0 fffff880`02f1b230 : fffff880`02f1b230 fffff880`02f1b010 fffff880`06fb0fe0 00000000`00000001 : 0xfffff880`02f1b01c
fffff880`02f1afd8 fffff880`02f1b230 : fffff880`02f1b010 fffff880`06fb0fe0 00000000`00000001 fffff880`02f1b230 : 0xfffff880`02f1b230
fffff880`02f1afe0 fffff880`02f1b010 : fffff880`06fb0fe0 00000000`00000001 fffff880`02f1b230 00000000`00000001 : 0xfffff880`02f1b230
fffff880`02f1afe8 fffff880`06fb0fe0 : 00000000`00000001 fffff880`02f1b230 00000000`00000001 fffffa80`088c0010 : 0xfffff880`02f1b010
fffff880`02f1aff0 00000000`00000001 : fffff880`02f1b230 00000000`00000001 fffffa80`088c0010 00000002`00510005 : rzudd+0x15fe0
fffff880`02f1aff8 fffff880`02f1b230 : 00000000`00000001 fffffa80`088c0010 00000002`00510005 00000000`00000000 : 0x1
fffff880`02f1b000 00000000`00000001 : fffffa80`088c0010 00000002`00510005 00000000`00000000 00000000`00000000 : 0xfffff880`02f1b230
fffff880`02f1b008 fffffa80`088c0010 : 00000002`00510005 00000000`00000000 00000000`00000000 00000000`00000000 : 0x1
fffff880`02f1b010 00000002`00510005 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0xfffffa80`088c0010
fffff880`02f1b018 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00000002`00510005
STACK_COMMAND: kb
FOLLOWUP_IP:
kbdclass!KeyboardClassServiceCallback+47e
fffff880`05863e0e 488d4e20 lea rcx,[rsi+20h]
SYMBOL_STACK_INDEX: 6
SYMBOL_NAME: kbdclass!KeyboardClassServiceCallback+47e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: kbdclass
IMAGE_NAME: kbdclass.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc116
FAILURE_BUCKET_ID: X64_0xA_kbdclass!KeyboardClassServiceCallback+47e
BUCKET_ID: X64_0xA_kbdclass!KeyboardClassServiceCallback+47e
Followup: MachineOwner
---------
1: kd> lmvm rzudd
start end module name
fffff880`06f9b000 fffff880`06fc3000 rzudd T (no symbols)
Loaded symbol image file: rzudd.sys
Image path: \SystemRoot\system32\DRIVERS\rzudd.sys
Image name: rzudd.sys
Timestamp: Fri Nov 15 12:04:51 2013 (5285C08B)
CheckSum: 0002F832
ImageSize: 00028000
Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4