*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {0, 2, 0, fffff80002898a55}
Probably caused by : Pool_Corruption ( nt!ExDeferredFreePool+1283 )
Followup: Pool_corruption
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000000000000, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80002898a55, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002abb100
GetUlongFromAddress: unable to read from fffff80002abb1c0
0000000000000000 Nonpaged pool
CURRENT_IRQL: 2
FAULTING_IP:
nt!IopCompleteRequest+ae5
fffff800`02898a55 488b09 mov rcx,qword ptr [rcx]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VERIFIER_ENABLED_VISTA_MINIDUMP
BUGCHECK_STR: 0xA
PROCESS_NAME: System
IRP_ADDRESS: ffffffffffffff89
TRAP_FRAME: fffff880031c2a50 -- (.trap 0xfffff880031c2a50)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff880031c3e10 rbx=0000000000000000 rcx=0000000000000000
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002898a55 rsp=fffff880031c2be0 rbp=fffff880031c2d30
r8=fffff880031c2ce8 r9=fffff880031c2ce0 r10=0000000000000002
r11=fffff80002897f70 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na po cy
nt!IopCompleteRequest+0xae5:
fffff800`02898a55 488b09 mov rcx,qword ptr [rcx] ds:00000000`00000000=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800028831a9 to fffff80002883c00
STACK_TEXT:
fffff880`031c2908 fffff800`028831a9 : 00000000`0000000a 00000000`00000000 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`031c2910 fffff800`02881e20 : 00000000`0000001c fffff800`02c6e747 fffffa80`04604040 fffff980`0174eee0 : nt!KiBugCheckDispatch+0x69
fffff880`031c2a50 fffff800`02898a55 : fffffa80`039e9040 fffff880`00cc4739 fffff880`031c2c80 00000000`00000001 : nt!KiPageFault+0x260
fffff880`031c2be0 fffff800`02876617 : 00000000`00000001 fffff800`02886af2 fffff880`031c2d00 fffff800`00000000 : nt!IopCompleteRequest+0xae5
fffff880`031c2cb0 fffff800`028768c7 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiDeliverApc+0x1c7
fffff880`031c2d30 fffff800`029462a6 : 00000000`0002fd90 00000000`00000000 fffff880`031c2fe0 00000000`002dacb4 : nt!KiApcInterrupt+0xd7
fffff880`031c2ec0 fffff800`02946733 : fffffa80`0414d898 fffff880`00000011 00000000`00000000 fffff800`00000004 : nt!RtlpWalkFrameChain+0x1226
fffff880`031c3560 fffff800`029475bb : 00000000`00000003 fffffa80`0414d898 00000000`00000000 00000000`00000000 : nt!RtlWalkFrameChain+0x63
fffff880`031c3590 fffff800`02d1e13c : fffffa80`0414d880 00000000`00000040 00000000`00000003 fffff800`02973911 : nt!RtlCaptureStackBackTrace+0x4b
fffff880`031c35c0 fffff800`02d201aa : fffff880`031bf000 fffff880`031c5000 00000000`00000040 00000000`00000000 : nt!IovpLogStackCallout+0x1c
fffff880`031c35f0 fffff800`02d22a4a : fffff8a0`00743180 00000000`00000004 00000000`00000001 00000000`00000003 : nt!ViPoolLogStackTrace+0x8a
fffff880`031c3620 fffff800`029b6c57 : fffff8a0`00743170 00000000`00000040 00000000`00000003 00000000`00000001 : nt!VfFreePoolNotification+0x4a
fffff880`031c3650 fffff800`02c2f756 : fffff8a0`002a0a30 fffff8a0`00043800 00000000`69634d43 00000000`00000000 : nt!ExDeferredFreePool+0x1283
fffff880`031c3700 fffff800`02bba96a : fffff880`0000001b fffff880`031c3800 fffff8a0`00747500 40000000`0000001b : nt!CmpCallCallBacks+0x4f6
fffff880`031c37d0 fffff800`02ae8cb4 : fffff880`031c3ba8 fffff880`031c3db0 fffff8a0`00022010 fffff880`031c3cc0 : nt! ?? ::NNGAKEGL::`string'+0x120db
fffff880`031c3850 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt! ?? ::NNGAKEGL::`string'+0x2cab9
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!ExDeferredFreePool+1283
fffff800`029b6c57 90 nop
SYMBOL_STACK_INDEX: c
SYMBOL_NAME: nt!ExDeferredFreePool+1283
FOLLOWUP_NAME: Pool_corruption
IMAGE_NAME: Pool_Corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: Pool_Corruption
FAILURE_BUCKET_ID: X64_0xA_VRF_nt!ExDeferredFreePool+1283
BUCKET_ID: X64_0xA_VRF_nt!ExDeferredFreePool+1283
Followup: Pool_corruption
---------