Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\K\Desktop\Windows_NT6_BSOD_jcgriff2\071110-18501-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols;srv*e:\symbols
*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16539.amd64fre.win7_gdr.100226-1909
Machine Name:
Kernel base = 0xfffff800`0301e000 PsLoadedModuleList = 0xfffff800`0325be50
Debug session time: Sun Jul 11 14:43:04.340 2010 (GMT-4)
System Uptime: 0 days 0:08:25.542
Loading Kernel Symbols
.
Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.
..............................................................
................................................................
................................................................
.......
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {403, fffff68000068168, fad000011fbd6867, fffff68000308168}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+31f32 )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000000403, The subtype of the bugcheck.
Arg2: fffff68000068168
Arg3: fad000011fbd6867
Arg4: fffff68000308168
Debugging Details:
------------------
BUGCHECK_STR: 0x1a_403
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: AvastSvc.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80003100608 to fffff8000308e600
STACK_TEXT:
fffff880`06f7f7b8 fffff800`03100608 : 00000000`0000001a 00000000`00000403 fffff680`00068168 fad00001`1fbd6867 : nt!KeBugCheckEx
fffff880`06f7f7c0 fffff800`030bf251 : 00000000`00000000 fffff680`00068ff8 fffffa80`0918ab30 ffffffff`ffffffff : nt! ?? ::FNODOBFM::`string'+0x31f32
fffff880`06f7f970 fffff800`030cffca : 00000000`00000000 00000000`0da00fff fffffa80`00000000 fffffa80`0918ab30 : nt!MiDeleteVirtualAddresses+0x408
fffff880`06f7fb30 fffff800`0308d853 : ffffffff`ffffffff 00000000`0874e810 00000000`0874e808 00000000`00008000 : nt!NtFreeVirtualMemory+0x5ca
fffff880`06f7fc20 00000000`76f0ff3a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0874e7d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76f0ff3a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+31f32
fffff800`03100608 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+31f32
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4b88cfeb
FAILURE_BUCKET_ID: X64_0x1a_403_nt!_??_::FNODOBFM::_string_+31f32
BUCKET_ID: X64_0x1a_403_nt!_??_::FNODOBFM::_string_+31f32
Followup: MachineOwner
---------