Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02c03000 PsLoadedModuleList = 0xfffff800`02e40e50
Debug session time: Thu Jan 27 10:50:13.887 2011 (GMT-5)
System Uptime: 0 days 0:00:32.948
Loading Kernel Symbols
...............................................................
................................................................
...................................
Loading User Symbols
Loading unloaded module list
....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff80002c77cd8, fffff8800a3fa770, 0}
Probably caused by : ntkrnlmp.exe ( nt!KiTryUnwaitThread+28 )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80002c77cd8, Address of the exception record for the exception that caused the bugcheck
Arg3: fffff8800a3fa770, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!KiTryUnwaitThread+28
fffff800`02c77cd8 f0480fba6b4000 lock bts qword ptr [rbx+40h],0
CONTEXT: fffff8800a3fa770 -- (.cxr 0xfffff8800a3fa770)
rax=fffff8800a3fb428 rbx=24c7b60f4010eb83 rcx=fffff880009e9180
rdx=fffff80002da74d3 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002c77cd8 rsp=fffff8800a3fb140 rbp=fffff8800a3fb2f0
r8=0000000000000100 r9=0000000000000000 r10=0000000000000002
r11=fffffa8009ace840 r12=0000000000000000 r13=0000000000000000
r14=fffffa8009d9db60 r15=fffff880009e9180
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246
nt!KiTryUnwaitThread+0x28:
fffff800`02c77cd8 f0480fba6b4000 lock bts qword ptr [rbx+40h],0 ds:002b:24c7b60f`4010ebc3=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: WerFault.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff80002c77cd8
STACK_TEXT:
fffff880`0a3fb140 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiTryUnwaitThread+0x28
FOLLOWUP_IP:
nt!KiTryUnwaitThread+28
fffff800`02c77cd8 f0480fba6b4000 lock bts qword ptr [rbx+40h],0
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!KiTryUnwaitThread+28
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
STACK_COMMAND: .cxr 0xfffff8800a3fa770 ; kb
FAILURE_BUCKET_ID: X64_0x3B_nt!KiTryUnwaitThread+28
BUCKET_ID: X64_0x3B_nt!KiTryUnwaitThread+28
Followup: MachineOwner
---------
Debug session time: Thu Jan 27 10:45:51.588 2011 (GMT-5)
System Uptime: 0 days 0:00:13.478
Loading Kernel Symbols
...............................................................
................
Loading User Symbols
Loading unloaded module list
.
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 50, {fffff8a006862000, 0, fffff800020c510a, 0}
Could not read faulting driver name
Probably caused by : ntkrnlmp.exe ( nt!wcsstr+56 )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff8a006862000, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff800020c510a, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000000, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800022b00e0
fffff8a006862000
FAULTING_IP:
nt!wcsstr+56
fffff800`020c510a 66418b00 mov ax,word ptr [r8]
MM_INTERNAL_CODE: 0
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: smss.exe
CURRENT_IRQL: 0
TRAP_FRAME: fffff8800278ddd0 -- (.trap 0xfffff8800278ddd0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=000000000000004d rbx=0000000000000000 rcx=0000000000000036
rdx=fffff80002386c00 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800020c510a rsp=fffff8800278df68 rbp=0000000000000000
r8=fffff8a006862000 r9=000000a0044db400 r10=fffff80002386c00
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz ac po nc
nt!wcsstr+0x56:
fffff800`020c510a 66418b00 mov ax,word ptr [r8] ds:fffff8a0`06862000=????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800020f8f14 to fffff80002078740
STACK_TEXT:
fffff880`0278dc68 fffff800`020f8f14 : 00000000`00000050 fffff8a0`06862000 00000000`00000000 fffff880`0278ddd0 : nt!KeBugCheckEx
fffff880`0278dc70 fffff800`0207682e : 00000000`00000000 00000000`00000000 00000000`00000000 fffffa80`07af7010 : nt! ?? ::FNODOBFM::`string'+0x42837
fffff880`0278ddd0 fffff800`020c510a : fffff800`0247e19e 00000000`0000008a 00000000`00000000 ffffffff`80000278 : nt!KiPageFault+0x16e
fffff880`0278df68 fffff800`0247e19e : 00000000`0000008a 00000000`00000000 ffffffff`80000278 00000000`00000000 : nt!wcsstr+0x56
fffff880`0278df70 fffff800`0247e200 : fffff8a0`0000008a fffff8a0`06861f70 ffffffff`80000204 fffff800`02077993 : nt!SiIsWinPEBoot+0x4e
fffff880`0278dfb0 fffff800`024812d2 : ffffffff`80000204 00000000`00000082 fffff880`0278e0b8 00000000`00000000 : nt!SiCheckForUfdWinpeBoot+0x30
fffff880`0278e090 fffff800`0248139d : 00000000`00000000 00000000`00000001 fffff8a0`040c9408 fffff800`02085c3e : nt!SiCheckForAlternateSystemDisk+0x12
fffff880`0278e0c0 fffff800`0248311e : fffff880`0278e300 00000000`00000082 ffffffff`80000204 fffff8a0`0001c090 : nt!SiGetBiosSystemDisk+0x9d
fffff880`0278e140 fffff800`02498df7 : fffff880`0278e720 00000000`00000000 00000000`00000000 00000000`00000000 : nt!SiGetBiosSystemPartition+0x2e
fffff880`0278e190 fffff800`0247e4fa : 00000000`00000000 00000000`00000001 fffff8a0`040c9400 fffff800`02356149 : nt!SiGetSystemPartition+0x27
fffff880`0278e1c0 fffff800`024040ed : fffff880`0278e230 fffff880`0278e300 fffff8a0`040c9400 fffff880`0278e240 : nt!SiGetSystemDeviceName+0x3a
fffff880`0278e220 fffff800`02483b87 : fffff800`02483240 00000000`00000000 fffff880`00000000 fffff880`0278e300 : nt!IopRetrieveSystemDeviceName+0xac
fffff880`0278e280 fffff800`023dc695 : 00000000`00000000 fffff880`00000240 fffff880`0278e7a0 fffff880`00000006 : nt!IoQuerySystemDeviceName+0x37
fffff880`0278e2c0 fffff800`023771e5 : 00000000`00000000 fffff8a0`00023130 fffff880`0278e8e8 00000000`00000000 : nt! ?? ::NNGAKEGL::`string'+0x5741a
fffff880`0278e660 fffff800`02077993 : fffff880`0278e8b0 00000000`00000000 00000000`00000000 00000000`00000000 : nt!NtQuerySystemInformation+0x4d
fffff880`0278e6a0 fffff800`02073f30 : fffff800`0247e41c 00000000`00000000 fffff800`023771e5 fffff880`0278e8b0 : nt!KiSystemServiceCopyEnd+0x13
fffff880`0278e838 fffff800`0247e41c : 00000000`00000000 fffff800`023771e5 fffff880`0278e8b0 fffff800`024cd95d : nt!KiServiceLinkage
fffff880`0278e840 fffff800`0248329c : fffff880`0278e8e8 fffff800`02386c10 0000002a`00000000 fffff800`00000000 : nt!SiQuerySystemPartitionInformation+0x2c
fffff880`0278e880 fffff800`024832f0 : 00000000`00000000 fffff880`0278e928 fffff880`00000001 ffffd9b5`cd9bf380 : nt!SyspartGetSystemPartition+0x1c
fffff880`0278e8b0 fffff800`024e8492 : 00000000`00000000 01cbbe39`467de545 00000000`00000000 00000005`00000000 : nt!BiGetSystemPartition+0x20
fffff880`0278e8e0 fffff800`024f98f1 : 00000000`00000000 00000000`00000000 00000000`00000002 00000000`4813c170 : nt!BiGetSystemStorePath+0x52
fffff880`0278e920 fffff800`024f9ae1 : 00000000`00000000 00000000`00000000 ffffffff`000f003f fffff880`0278e9c0 : nt!BiLoadSystemStore+0x21
fffff880`0278e960 fffff800`024fa2a0 : 00000000`00000000 00000000`00000005 ffffffff`8000027c fffff8a0`0684cad0 : nt!BiOpenSystemStore+0x101
fffff880`0278e9b0 fffff800`022d936b : 00000000`00000001 00000000`00000002 00000000`00000000 00000000`00000000 : nt!PoInitHiberServices+0x20
fffff880`0278e9e0 fffff800`02077993 : fffffa80`07aaab60 00000000`00000801 fffff880`0278eab0 00000000`00000001 : nt!NtInitializeRegistry+0x1ab
fffff880`0278ea30 fffff800`02073f30 : fffff800`022d922f fffffa80`07ae59d0 0000007f`fffffff8 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
fffff880`0278ebc8 fffff800`022d922f : fffffa80`07ae59d0 0000007f`fffffff8 00000000`00000000 fffffa80`07aa6150 : nt!KiServiceLinkage
fffff880`0278ebd0 fffff800`02077993 : fffffa80`07aaab60 fffffa80`07aaa7d0 fffff880`0278eca0 00000000`00000044 : nt!NtInitializeRegistry+0x6f
fffff880`0278ec20 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!wcsstr+56
fffff800`020c510a 66418b00 mov ax,word ptr [r8]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!wcsstr+56
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x50_nt!wcsstr+56
BUCKET_ID: X64_0x50_nt!wcsstr+56
Followup: MachineOwner
---------