*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 50, {fffff8804dc5e4fe, 1, fffff80002a7ecd7, 5}
Could not read faulting driver name
Probably caused by : memory_corruption
Followup: memory_corruption
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff8804dc5e4fe, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffff80002a7ecd7, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000005, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002cab0e0
GetUlongFromAddress: unable to read from fffff80002cab198
fffff8804dc5e4fe Nonpaged pool
FAULTING_IP:
nt!SepMandatoryIntegrityCheck+337
fffff800`02a7ecd7 8f84e3feffff45 pop qword ptr [rbx+45FFFFFEh]
MM_INTERNAL_CODE: 5
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: CODE_CORRUPTION
BUGCHECK_STR: 0x50
PROCESS_NAME: avgui.exe
CURRENT_IRQL: 0
TRAP_FRAME: fffff88007c5e250 -- (.trap 0xfffff88007c5e250)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=00000000fffdfbef rbx=0000000000000000 rcx=00000000fffdfbef
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002a7ecd7 rsp=fffff88007c5e3e0 rbp=0000000000000001
r8=0000000000020000 r9=0000000000100000 r10=0000000000000000
r11=00000000010d0000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!SepMandatoryIntegrityCheck+0x337:
fffff800`02a7ecd7 8f84e3feffff45 pop qword ptr [rbx+45FFFFFEh] ds:00000000`45fffffe=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002af25a1 to fffff80002a745c0
STACK_TEXT:
fffff880`07c5e0e8 fffff800`02af25a1 : 00000000`00000050 fffff880`4dc5e4fe 00000000`00000001 fffff880`07c5e250 : nt!KeBugCheckEx
fffff880`07c5e0f0 fffff800`02a726ae : 00000000`00000001 fffff880`07c5e500 fffff880`00000000 00000000`00000001 : nt! ?? ::FNODOBFM::`string'+0x4038b
fffff880`07c5e250 fffff800`02a7ecd7 : fffff800`02f3d7c0 fffff8a0`055b1e38 fffff880`07c5e400 00000000`00000000 : nt!KiPageFault+0x16e
fffff880`07c5e3e0 fffff800`02a79c47 : fffff880`07c5ea10 fffff8a0`055b1a50 00000000`00000400 fffff880`07c5e9c0 : nt!SepMandatoryIntegrityCheck+0x337
fffff880`07c5e460 fffff800`02a81b1e : fffff8a0`00004710 00000000`00000000 fffff8a0`055ac250 fffff880`07c5e9f0 : nt!SeAccessCheckWithHint+0x317
fffff880`07c5e540 fffff800`02d6ada5 : fffffa80`066e7080 fffff880`07c5e9f0 00000000`00000001 00000000`00000000 : nt!SeAccessCheck+0x5e
fffff880`07c5e5b0 fffff800`02d683d1 : 00000000`00000000 00000000`00000000 fffff8a0`055ac250 00000000`00000000 : nt!ObCheckObjectAccess+0xe5
fffff880`07c5e650 fffff800`02d371d1 : 00000000`00000001 fffffa80`08b637c0 fffff8a0`00000000 00000000`c0020000 : nt!ObpCreateHandle+0x521
fffff880`07c5e760 fffff800`02d44b33 : fffffa80`06dc8060 fffff880`07c5ec60 00000000`02f9e528 00000000`00000000 : nt!ObOpenObjectByPointerWithTag+0x109
fffff880`07c5e980 fffff800`02d44c3b : 00000000`007c12e8 00000000`00000000 ffffffff`fffffffe 00000000`02f9e200 : nt!PsOpenProcess+0x1b1
fffff880`07c5eba0 fffff800`02a73813 : fffffa80`06dc8060 00000000`000005f4 00000000`00000000 fffffa80`08c50d10 : nt!NtOpenProcess+0x23
fffff880`07c5ebe0 00000000`774ef91a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`02f9e4f8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x774ef91a
STACK_COMMAND: kb
CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
fffff80002a7ecd7 - nt!SepMandatoryIntegrityCheck+337
[ 0f:8f ]
1 error : !nt (fffff80002a7ecd7)
MODULE_NAME: memory_corruption
IMAGE_NAME: memory_corruption
FOLLOWUP_NAME: memory_corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MEMORY_CORRUPTOR: ONE_BIT
FAILURE_BUCKET_ID: X64_MEMORY_CORRUPTION_ONE_BIT
BUCKET_ID: X64_MEMORY_CORRUPTION_ONE_BIT
Followup: memory_corruption
---------