2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
[COLOR=Red]BAD_POOL_HEADER (19)[/COLOR]
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, [COLOR=Red]and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.[/COLOR]
Arguments:
Arg1: 0000000000000020, a pool block header size is corrupt.
Arg2: fffff8a0013392b0, The pool entry we were looking for within the page.
Arg3: fffff8a0013392f0, The next pool entry.
Arg4: 0000000005040103, (reserved)
Debugging Details:
------------------
GetUlongFromAddress: unable to read from fffff80002c33a38
BUGCHECK_STR: 0x19_20
POOL_ADDRESS: fffff8a0013392b0 Paged pool
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002bc0cae to fffff80002a95fc0
STACK_TEXT:
fffff880`031bd9c8 fffff800`02bc0cae : 00000000`00000019 00000000`00000020 fffff8a0`013392b0 fffff8a0`013392f0 : nt!KeBugCheckEx
fffff880`031bd9d0 fffff800`02d7712c : fffff800`02c93600 fffff8a0`06917100 fffff8a0`624e4d43 00000000`50e7b159 : nt!ExDeferredFreePool+0x12da
fffff880`031bda80 fffff800`02d771c0 : fffff8a0`0120e6f8 00000000`6a37a282 fffff8a0`00023370 00000000`00000000 : nt!CmpDereferenceNameControlBlockWithLock+0xdc
fffff880`031bdab0 fffff800`02d571ef : fffff8a0`0120e6f8 fffff800`02d75730 fffff800`02c332d8 fffff800`00000000 : nt!CmpCleanUpKcbCacheWithLock+0x34
fffff880`031bdae0 fffff800`02d75921 : fffff8a0`0120e6f8 00000000`fcd5df3d fffff8a0`00023370 00000000`00000000 : nt!CmpDereferenceKeyControlBlockWithLock+0x13f
fffff880`031bdb10 fffff800`02a9f641 : fffff800`02c332d8 fffffa80`03d94b50 00000000`00000000 00000000`00000000 : nt!CmpDelayDerefKCBWorker+0x1f1
fffff880`031bdb70 fffff800`02d2ce5a : 00000000`00000000 fffffa80`03d94b50 00000000`00000080 fffffa80`03cbe040 : nt!ExpWorkerThread+0x111
fffff880`031bdc00 fffff800`02a86d26 : fffff880`02fd7180 fffffa80`03d94b50 fffff880`02fe1fc0 00000000`00000000 : nt!PspSystemThreadStartup+0x5a
fffff880`031bdc40 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x16
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!CmpDereferenceNameControlBlockWithLock+dc
fffff800`02d7712c 488b157dc7f1ff mov rdx,qword ptr [nt!CmpNameCacheTable (fffff800`02c938b0)]
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: nt!CmpDereferenceNameControlBlockWithLock+dc
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 503f82be
FAILURE_BUCKET_ID: X64_0x19_20_nt!CmpDereferenceNameControlBlockWithLock+dc
BUCKET_ID: X64_0x19_20_nt!CmpDereferenceNameControlBlockWithLock+dc
Followup: MachineOwner
---------