*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff88000e0437e, fffff8800b3b1b50, 0}
Probably caused by : fltmgr.sys ( fltmgr!FltpAllocateIrpCtrl+4e )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff88000e0437e, Address of the instruction which caused the bugcheck
Arg3: fffff8800b3b1b50, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
fltmgr!FltpAllocateIrpCtrl+4e
fffff880`00e0437e 8b8670030000 mov eax,dword ptr [rsi+370h]
CONTEXT: fffff8800b3b1b50 -- (.cxr 0xfffff8800b3b1b50;r)
rax=fffffa80061a9cb0 rbx=fffffa8007d965f0 rcx=fffffa80061a9b60
rdx=0000000000000001 rsi=0000000000000000 rdi=0000000000000003
rip=fffff88000e0437e rsp=fffff8800b3b2530 rbp=fffff8800b3b2560
r8=fffffa8007d965f0 r9=fffff8800b3b2610 r10=fffffa800630a800
r11=fffff8800b3b2640 r12=0000000000000001 r13=fffffa8007d965f0
r14=0000000000000000 r15=fffff8800b3b2610
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010202
fltmgr!FltpAllocateIrpCtrl+0x4e:
fffff880`00e0437e 8b8670030000 mov eax,dword ptr [rsi+370h] ds:002b:00000000`00000370=????????
Last set context:
rax=fffffa80061a9cb0 rbx=fffffa8007d965f0 rcx=fffffa80061a9b60
rdx=0000000000000001 rsi=0000000000000000 rdi=0000000000000003
rip=fffff88000e0437e rsp=fffff8800b3b2530 rbp=fffff8800b3b2560
r8=fffffa8007d965f0 r9=fffff8800b3b2610 r10=fffffa800630a800
r11=fffff8800b3b2640 r12=0000000000000001 r13=fffffa8007d965f0
r14=0000000000000000 r15=fffff8800b3b2610
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010202
fltmgr!FltpAllocateIrpCtrl+0x4e:
fffff880`00e0437e 8b8670030000 mov eax,dword ptr [rsi+370h] ds:002b:00000000`00000370=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: WmiPrvSE.exe
CURRENT_IRQL: 0
ANALYSIS_VERSION: 6.3.9600.16384 (debuggers(dbg).130821-1623) amd64fre
LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff88000e0437e
STACK_TEXT:
fffff880`0b3b2530 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : fltmgr!FltpAllocateIrpCtrl+0x4e
FOLLOWUP_IP:
fltmgr!FltpAllocateIrpCtrl+4e
fffff880`00e0437e 8b8670030000 mov eax,dword ptr [rsi+370h]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: fltmgr!FltpAllocateIrpCtrl+4e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: fltmgr
IMAGE_NAME: fltmgr.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4ce7929c
IMAGE_VERSION: 6.1.7601.17514
STACK_COMMAND: .cxr 0xfffff8800b3b1b50 ; kb
FAILURE_BUCKET_ID: X64_0x3B_fltmgr!FltpAllocateIrpCtrl+4e
BUCKET_ID: X64_0x3B_fltmgr!FltpAllocateIrpCtrl+4e
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:x64_0x3b_fltmgr!fltpallocateirpctrl+4e
FAILURE_ID_HASH: {234bac55-0e4c-b5f0-aee1-d98cd2e9e2f7}
Followup: MachineOwner
---------