Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\121510-18408-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02e1f000 PsLoadedModuleList = 0xfffff800`0305ce50
Debug session time: Wed Dec 15 13:37:52.493 2010 (UTC - 5:00)
System Uptime: 0 days 0:12:46.101
Loading Kernel Symbols
...............................................................
................................................................
..............................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {31, fffffa8003fbd5c0, fffff88002c15000, fffff8a00c3782fb}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::NNGAKEGL::`string'+6368 )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000000031, The subtype of the bugcheck.
Arg2: fffffa8003fbd5c0
Arg3: fffff88002c15000
Arg4: fffff8a00c3782fb
Debugging Details:
------------------
BUGCHECK_STR: 0x1a_31
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: WerFault.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff800031bb74d to fffff80002e8f740
STACK_TEXT:
fffff880`0692f078 fffff800`031bb74d : 00000000`0000001a 00000000`00000031 fffffa80`03fbd5c0 fffff880`02c15000 : nt!KeBugCheckEx
fffff880`0692f080 fffff800`031770b1 : fffff880`02c15000 00000000`02550000 00000000`00023000 fffffa80`002c5c80 : nt! ?? ::NNGAKEGL::`string'+0x6368
fffff880`0692f0d0 fffff800`03164344 : 00000000`00000000 00000000`00000000 fffff6fc`40013f88 fffff800`00000000 : nt!MiPerformFixups+0x65
fffff880`0692f120 fffff800`02e7168d : 00000000`0000ec98 00000000`00000023 fffff8a0`088129d0 00000000`00000002 : nt!MiRelocateImagePfn+0x114
fffff880`0692f180 fffff800`0317700d : fffffa80`05210510 fffff6fc`40013f88 fffff8a0`00000002 00000000`00000000 : nt!MiValidateImagePages+0x2bd
fffff880`0692f220 fffff800`03176720 : ffffffff`ffffffff 00000000`00000001 fffff8a0`0c377000 00000000`00000007 : nt!MiSwitchBaseAddress+0x61
fffff880`0692f250 fffff800`0318a7ce : 00000000`00000004 00000000`01000000 00000000`00000000 00000000`00000000 : nt!MiRelocateImageAgain+0x100
fffff880`0692f2a0 fffff800`03180013 : fffff880`0692f500 00000000`00000000 fffff880`0692f5a8 fffff880`0692f4f8 : nt!MmCreateSection+0x302
fffff880`0692f4b0 fffff800`032eb6b5 : fffff8a0`0f749690 00000000`00000000 00000000`00000001 00000002`00000000 : nt!NtCreateSection+0x162
fffff880`0692f530 fffff800`032eba67 : 00000000`00000010 fffff8a0`0f53db20 fffff880`0692f6c0 00000000`0000002c : nt!PfSnGetSectionObject+0x2d5
fffff880`0692f620 fffff800`032ebe97 : fffff880`0692f740 00000000`00000001 00000000`00000000 00000000`00000000 : nt!PfSnPrefetchSections+0x247
fffff880`0692f710 fffff800`032ec2bf : 00000002`839fc9b9 fffffa80`0790b060 fffff8a0`0f8e2000 00000000`c00000ce : nt!PfSnPrefetchScenario+0x187
fffff880`0692f980 fffff800`030e46df : 00000000`00000000 00000000`37549b7e fffffa80`079543d0 00000000`00000000 : nt!PfSnBeginAppLaunch+0x35f
fffff880`0692fa50 fffff800`0315d2fc : fffffa80`07957460 fffffa80`079543d0 00000000`16050800 00000000`7efde000 : nt! ?? ::NNGAKEGL::`string'+0x50100
fffff880`0692fa80 fffff800`02e6dd55 : fffff800`03009e80 00000000`00000000 fffff800`0315d200 fffffa80`07957460 : nt!PspUserThreadStartup+0xfc
fffff880`0692fae0 fffff800`02e6dcd7 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiStartUserThread+0x16
fffff880`0692fc20 00000000`77c63000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiStartUserThreadReturn
00000000`001ef958 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77c63000
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::NNGAKEGL::`string'+6368
fffff800`031bb74d cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::NNGAKEGL::`string'+6368
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x1a_31_nt!_??_::NNGAKEGL::_string_+6368
BUCKET_ID: X64_0x1a_31_nt!_??_::NNGAKEGL::_string_+6368
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\121810-18751-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02e11000 PsLoadedModuleList = 0xfffff800`0304ee50
Debug session time: Sat Dec 18 06:56:01.969 2010 (UTC - 5:00)
System Uptime: 0 days 0:01:19.577
Loading Kernel Symbols
...............................................................
................................................................
.............................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 19, {3, fffff88003bf2670, fffff88003bf0670, fffff88003bf2670}
Probably caused by : Pool_Corruption ( nt!ExDeferredFreePool+a56 )
Followup: Pool_corruption
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000003, the pool freelist is corrupt.
Arg2: fffff88003bf2670, the pool entry being checked.
Arg3: fffff88003bf0670, the read back flink freelist value (should be the same as 2).
Arg4: fffff88003bf2670, the read back blink freelist value (should be the same as 2).
Debugging Details:
------------------
BUGCHECK_STR: 0x19_3
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: explorer.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002fb4d6f to fffff80002e81740
STACK_TEXT:
fffff880`083988d8 fffff800`02fb4d6f : 00000000`00000019 00000000`00000003 fffff880`03bf2670 fffff880`03bf0670 : nt!KeBugCheckEx
fffff880`083988e0 fffff960`001660d0 : fffff900`00000000 00000000`00000000 fffff880`08398d00 fffff880`00000000 : nt!ExDeferredFreePool+0xa56
fffff880`083989d0 fffff960`0011440a : fffff880`00000000 fffff900`00000000 fffff880`08398b80 00000000`fffffffe : win32k!AllocThreadBufferWithTag+0x24
fffff880`08398a00 fffff960`0011397d : fffff900`c1e716d8 fffff880`00000028 fffff900`c1ce4010 fffff880`08398f50 : win32k!EngTextOut+0x4aa
fffff880`08398d90 fffff960`00111be7 : fffff900`c1d3cd58 00000000`00000013 00000000`00000005 00000000`01011513 : win32k!GreExtTextOutWLocked+0x1d29
fffff880`083991b0 fffff960`002d945d : 00000000`00000000 fffff880`08399520 fffff900`c00810f8 fffff960`00192b29 : win32k!GreExtTextOutWInternal+0x10f
fffff880`08399260 fffff800`02e80993 : 00000000`00000000 fffff880`08399520 00000000`00000001 fffff880`08399480 : win32k!NtGdiExtTextOutW+0x341
fffff880`08399430 000007fe`fde2373a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0017cff8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7fe`fde2373a
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!ExDeferredFreePool+a56
fffff800`02fb4d6f cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!ExDeferredFreePool+a56
FOLLOWUP_NAME: Pool_corruption
IMAGE_NAME: Pool_Corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: Pool_Corruption
FAILURE_BUCKET_ID: X64_0x19_3_nt!ExDeferredFreePool+a56
BUCKET_ID: X64_0x19_3_nt!ExDeferredFreePool+a56
Followup: Pool_corruption
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\121810-19297-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02e19000 PsLoadedModuleList = 0xfffff800`03056e50
Debug session time: Sat Dec 18 08:36:13.186 2010 (UTC - 5:00)
System Uptime: 0 days 1:37:10.794
Loading Kernel Symbols
...............................................................
................................................................
..............................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 4E, {99, 65e7e, 2, 65dfd}
Probably caused by : memory_corruption ( nt!MiBadShareCount+4c )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PFN_LIST_CORRUPT (4e)
Typically caused by drivers passing bad memory descriptor lists (ie: calling
MmUnlockPages twice with the same list, etc). If a kernel debugger is
available get the stack trace.
Arguments:
Arg1: 0000000000000099, A PTE or PFN is corrupt
Arg2: 0000000000065e7e, page frame number
Arg3: 0000000000000002, current page state
Arg4: 0000000000065dfd, 0
Debugging Details:
------------------
BUGCHECK_STR: 0x4E_99
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: iexplore.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff80002f1938c to fffff80002e89740
STACK_TEXT:
fffff880`08cc3718 fffff800`02f1938c : 00000000`0000004e 00000000`00000099 00000000`00065e7e 00000000`00000002 : nt!KeBugCheckEx
fffff880`08cc3720 fffff800`02efb9e5 : 00000000`00000000 fffff680`00022a90 00000000`00000002 00000000`00000001 : nt!MiBadShareCount+0x4c
fffff880`08cc3760 fffff800`02e5dc23 : fffffa80`04672060 fffff700`000031d7 0000007f`fffffff8 fffff8a0`07784120 : nt! ?? ::FNODOBFM::`string'+0x3222c
fffff880`08cc37f0 fffff800`02e5c68a : fffffa80`04672060 fffffa80`00000000 fffff880`0000127b fffff800`00000000 : nt!MiDeleteAddressesInWorkingSet+0x307
fffff880`08cc40a0 fffff800`0316edcf : fffff8a0`0c7eb060 fffff880`08cc43a0 00000000`00000000 fffffa80`07a54980 : nt!MmCleanProcessAddressSpace+0x96
fffff880`08cc40f0 fffff800`03147635 : 00000000`00000000 fffffa80`04631001 00000000`7ef62000 fffffa80`07b70390 : nt!PspExitThread+0x92f
fffff880`08cc41b0 fffff800`02e661db : fffffa80`04672060 fffffa80`07a54980 00000000`00000000 fffff880`08cc4240 : nt!PsExitSpecialApc+0x1d
fffff880`08cc41e0 fffff800`02e66620 : 00000000`069ce7e0 fffff880`08cc4260 fffff800`0314774c 00000000`00000001 : nt!KiDeliverApc+0x2eb
fffff880`08cc4260 fffff800`02e88a37 : fffffa80`07a54980 00000000`7ef62000 00000000`00000020 fffffa80`04631060 : nt!KiInitiateUserApc+0x70
fffff880`08cc43a0 00000000`772ffc46 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit+0x9c
00000000`069ce760 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x772ffc46
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiBadShareCount+4c
fffff800`02f1938c cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!MiBadShareCount+4c
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0x4E_99_nt!MiBadShareCount+4c
BUCKET_ID: X64_0x4E_99_nt!MiBadShareCount+4c
Followup: MachineOwner
---------