Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\051611-21106-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16792.amd64fre.win7_gdr.110408-1633
Machine Name:
Kernel base = 0xfffff800`0381b000 PsLoadedModuleList = 0xfffff800`03a58e50
Debug session time: Mon May 16 02:24:03.485 2011 (UTC - 4:00)
System Uptime: 0 days 1:13:23.625
Loading Kernel Symbols
...............................................................
................................................................
.......................................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff800039bf000, fffff8800b537030, 0}
Probably caused by : Pool_Corruption ( nt!ExDeferredFreePool+174 )
Followup: Pool_corruption
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800039bf000, Address of the instruction which caused the bugcheck
Arg3: fffff8800b537030, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!ExDeferredFreePool+174
fffff800`039bf000 4c395008 cmp qword ptr [rax+8],r10
CONTEXT: fffff8800b537030 -- (.cxr 0xfffff8800b537030)
rax=0065006400690076 rbx=0000000000000001 rcx=fffffa8003adc680
rdx=fffff8a00031cbc0 rsi=0000000000000000 rdi=fffff8a0011bf1c0
rip=fffff800039bf000 rsp=fffff8800b537a00 rbp=0000000000000000
r8=fffff8a00cee75a0 r9=fffff8a00031c990 r10=fffff8a00031c9a0
r11=0000000000000001 r12=fffffa8003adc140 r13=0000000000000000
r14=0000000000000006 r15=0000000000000001
iopl=0 nv up ei pl nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206
nt!ExDeferredFreePool+0x174:
fffff800`039bf000 4c395008 cmp qword ptr [rax+8],r10 ds:002b:00650064`0069007e=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff800039c04c1 to fffff800039bf000
STACK_TEXT:
fffff880`0b537a00 fffff800`039c04c1 : fffff8a0`0c93fa40 fffff8a0`0c93fa40 fffffa80`0bcfeb30 00000000`00000000 : nt!ExDeferredFreePool+0x174
fffff880`0b537a90 fffff800`03b342bc : 00000000`00000400 fffff8a0`0c93fa50 fffff880`50777445 00000000`00000000 : nt!ExFreePoolWithTag+0x411
fffff880`0b537b40 fffff800`0388a953 : fffffa80`0c732b60 00000000`0250fdc8 00000000`00000000 0000007f`ffffffff : nt!NtTraceControl+0x208
fffff880`0b537bb0 00000000`76ff0efa : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0250fda8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76ff0efa
FOLLOWUP_IP:
nt!ExDeferredFreePool+174
fffff800`039bf000 4c395008 cmp qword ptr [rax+8],r10
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!ExDeferredFreePool+174
FOLLOWUP_NAME: Pool_corruption
IMAGE_NAME: Pool_Corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: Pool_Corruption
STACK_COMMAND: .cxr 0xfffff8800b537030 ; kb
FAILURE_BUCKET_ID: X64_0x3B_nt!ExDeferredFreePool+174
BUCKET_ID: X64_0x3B_nt!ExDeferredFreePool+174
Followup: Pool_corruption
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\051611-18548-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16792.amd64fre.win7_gdr.110408-1633
Machine Name:
Kernel base = 0xfffff800`03813000 PsLoadedModuleList = 0xfffff800`03a50e50
Debug session time: Mon May 16 20:08:59.800 2011 (UTC - 4:00)
System Uptime: 0 days 4:23:19.314
Loading Kernel Symbols
...............................................................
................................................................
.........................................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 19, {20, fffff8a000abe870, fffff8a000abec80, 5410109}
Unable to load image \SystemRoot\System32\Drivers\AsDsm.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for AsDsm.sys
*** ERROR: Module load completed but symbols could not be loaded for AsDsm.sys
Probably caused by : AsDsm.sys ( AsDsm+7f8a )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000020, a pool block header size is corrupt.
Arg2: fffff8a000abe870, The pool entry we were looking for within the page.
Arg3: fffff8a000abec80, The next pool entry.
Arg4: 0000000005410109, (reserved)
Debugging Details:
------------------
BUGCHECK_STR: 0x19_20
POOL_ADDRESS: GetPointerFromAddress: unable to read from fffff80003abb0e0
fffff8a000abe870
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: explorer.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff800039b66d3 to fffff80003883700
STACK_TEXT:
fffff880`08395978 fffff800`039b66d3 : 00000000`00000019 00000000`00000020 fffff8a0`00abe870 fffff8a0`00abec80 : nt!KeBugCheckEx
fffff880`08395980 fffff880`01508f8a : fffff8a0`00abe880 00000000`00000000 fffffa80`6e705341 fffffa80`046c79e0 : nt!ExDeferredFreePool+0x12c4
fffff880`08395a30 fffff8a0`00abe880 : 00000000`00000000 fffffa80`6e705341 fffffa80`046c79e0 fffff880`08395ad8 : AsDsm+0x7f8a
fffff880`08395a38 00000000`00000000 : fffffa80`6e705341 fffffa80`046c79e0 fffff880`08395ad8 00000000`00000000 : 0xfffff8a0`00abe880
STACK_COMMAND: kb
FOLLOWUP_IP:
AsDsm+7f8a
fffff880`01508f8a ?? ???
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: AsDsm+7f8a
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: AsDsm
IMAGE_NAME: AsDsm.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 49950fc2
FAILURE_BUCKET_ID: X64_0x19_20_AsDsm+7f8a
BUCKET_ID: X64_0x19_20_AsDsm+7f8a
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\051611-20514-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16792.amd64fre.win7_gdr.110408-1633
Machine Name:
Kernel base = 0xfffff800`0380a000 PsLoadedModuleList = 0xfffff800`03a47e50
Debug session time: Mon May 16 01:10:10.486 2011 (UTC - 4:00)
System Uptime: 0 days 3:53:55.000
Loading Kernel Symbols
...............................................................
................................................................
.......................................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1, {770cf72a, 0, ffff, fffff88008189ca0}
Probably caused by : ntkrnlmp.exe ( nt!KiSystemServiceExit+245 )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
APC_INDEX_MISMATCH (1)
This is a kernel internal error. The most common reason to see this
bugcheck is when a filesystem or a driver has a mismatched number of
calls to disable and re-enable APCs. The key data item is the
Thread->KernelApcDisable field. A negative value indicates that a driver
has disabled APC calls without re-enabling them. A positive value indicates
that the reverse is true. This check is made on exit from a system call.
Arguments:
Arg1: 00000000770cf72a, address of system function (system call)
Arg2: 0000000000000000, Thread->ApcStateIndex << 8 | Previous ApcStateIndex
Arg3: 000000000000ffff, Thread->KernelApcDisable
Arg4: fffff88008189ca0, Previous KernelApcDisable
Debugging Details:
------------------
FAULTING_IP:
+3030353763613965
00000000`770cf72a ?? ???
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x1
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80003879c69 to fffff8000387a700
STACK_TEXT:
fffff880`08189a68 fffff800`03879c69 : 00000000`00000001 00000000`770cf72a 00000000`00000000 00000000`0000ffff : nt!KeBugCheckEx
fffff880`08189a70 fffff800`03879ba0 : 00000000`00000001 00000000`000f2c8e 00000000`0358ace0 00000000`00000001 : nt!KiBugCheckDispatch+0x69
fffff880`08189bb0 00000000`770cf72a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit+0x245
00000000`02efaf38 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x770cf72a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiSystemServiceExit+245
fffff800`03879ba0 4883ec50 sub rsp,50h
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: nt!KiSystemServiceExit+245
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4d9fdd34
FAILURE_BUCKET_ID: X64_0x1_SysCallNum_4_nt!KiSystemServiceExit+245
BUCKET_ID: X64_0x1_SysCallNum_4_nt!KiSystemServiceExit+245
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\DMP\051611-24960-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16792.amd64fre.win7_gdr.110408-1633
Machine Name:
Kernel base = 0xfffff800`0385a000 PsLoadedModuleList = 0xfffff800`03a97e50
Debug session time: Mon May 16 15:45:12.562 2011 (UTC - 4:00)
System Uptime: 0 days 1:59:49.076
Loading Kernel Symbols
...............................................................
................................................................
.....................................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 24, {1904fb, fffff88004e6a718, fffff88004e69f80, fffff880016ded07}
Probably caused by : Ntfs.sys ( Ntfs!NtfsFindPrefixHashEntry+1fe )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
NTFS_FILE_SYSTEM (24)
If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
parameters are the exception record and context record. Do a .cxr
on the 3rd parameter and then kb to obtain a more informative stack
trace.
Arguments:
Arg1: 00000000001904fb
Arg2: fffff88004e6a718
Arg3: fffff88004e69f80
Arg4: fffff880016ded07
Debugging Details:
------------------
EXCEPTION_RECORD: fffff88004e6a718 -- (.exr 0xfffff88004e6a718)
ExceptionAddress: fffff880016ded07 (Ntfs!NtfsFindPrefixHashEntry+0x00000000000001fe)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff
CONTEXT: fffff88004e69f80 -- (.cxr 0xfffff88004e69f80)
rax=fffff8a00d624000 rbx=0037003800310033 rcx=000000000000007a
rdx=0000000000000002 rsi=fffff8a00037a4f0 rdi=fffffa8004e24358
rip=fffff880016ded07 rsp=fffff88004e6a950 rbp=00000000000062c0
r8=00000000094f9c3d r9=0000000000000000 r10=0000000000000007
r11=fffff88004e6a998 r12=fffff88004e6ac60 r13=fffff8800b5e8a60
r14=000000000000003d r15=0000000000001c3d
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010202
Ntfs!NtfsFindPrefixHashEntry+0x1fe:
fffff880`016ded07 44394310 cmp dword ptr [rbx+10h],r8d ds:002b:00370038`00310043=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: chrome.exe
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80003b020e0
ffffffffffffffff
FOLLOWUP_IP:
Ntfs!NtfsFindPrefixHashEntry+1fe
fffff880`016ded07 44394310 cmp dword ptr [rbx+10h],r8d
FAULTING_IP:
Ntfs!NtfsFindPrefixHashEntry+1fe
fffff880`016ded07 44394310 cmp dword ptr [rbx+10h],r8d
BUGCHECK_STR: 0x24
LAST_CONTROL_TRANSFER: from fffff880016dfdc2 to fffff880016ded07
STACK_TEXT:
fffff880`04e6a950 fffff880`016dfdc2 : fffffa80`047ef2f0 fffffa80`04e24358 fffff8a0`0037a4f0 00000000`00000701 : Ntfs!NtfsFindPrefixHashEntry+0x1fe
fffff880`04e6aa80 fffff880`016da36d : fffffa80`047ef2f0 fffffa80`04ebb010 fffff880`04e6ac60 fffff880`04e6aca8 : Ntfs!NtfsFindStartingNode+0x452
fffff880`04e6ab50 fffff880`0164698d : fffffa80`047ef2f0 fffffa80`04ebb010 fffff880`0b5e8a60 fffffa80`04404b00 : Ntfs!NtfsCommonCreate+0x3dd
fffff880`04e6ad30 fffff800`038c2587 : fffff880`0b5e89d0 00000000`00454030 00000000`76f95270 00000000`00000000 : Ntfs!NtfsCommonCreateCallout+0x1d
fffff880`04e6ad60 fffff800`038c2541 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KySwitchKernelStackCallout+0x27
fffff880`0b5e88a0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSwitchKernelStackContinue
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: Ntfs!NtfsFindPrefixHashEntry+1fe
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Ntfs
IMAGE_NAME: Ntfs.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4d79996d
STACK_COMMAND: .cxr 0xfffff88004e69f80 ; kb
FAILURE_BUCKET_ID: X64_0x24_Ntfs!NtfsFindPrefixHashEntry+1fe
BUCKET_ID: X64_0x24_Ntfs!NtfsFindPrefixHashEntry+1fe
Followup: MachineOwner
---------