Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\K\Desktop\120609-9032-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*d:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
[B]Windows 7 Kernel Version 7600 MP (4 procs) Free x64[/B]
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16385.amd64fre.win7_rtm.090713-1255
Machine Name:
Kernel base = 0xfffff800`02a07000 PsLoadedModuleList = 0xfffff800`02c44e50
Debug session time: Sun Dec 6 23:14:50.244 2009 (GMT-5)
System Uptime: 0 days 5:26:48.676
Loading Kernel Symbols
...............................................................
................................................................
...............................................
Loading User Symbols
Loading unloaded module list
.........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 50, {fffff8a019a00000, 1, fffff880010b5b04, 2}
[B]Unable to load image \SystemRoot\system32\drivers\N360x64\0305020.00B\SYMEFA64.SYS, Win32 error 0n2
*** WARNING: Unable to verify timestamp for SYMEFA64.SYS
*** ERROR: Module load completed but symbols could not be loaded for SYMEFA64.SYS
[/B]
Could not read faulting driver name
Probably caused by : SYMEFA64.SYS ( SYMEFA64+33b04 )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
[B]PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff8a019a00000, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffff880010b5b04, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000002, (reserved)[/B]
Debugging Details:
------------------
Could not read faulting driver name
[B]
OVERLAPPED_MODULE: Address regions for 'ENG64' and 'ENG64.SYS' overlap[/B]
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff80002caf0e0
fffff8a019a00000
FAULTING_IP:
SYMEFA64+33b04
fffff880`010b5b04 480fc35108 movnti qword ptr [rcx+8],rdx
MM_INTERNAL_CODE: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: System
CURRENT_IRQL: 0
TRAP_FRAME: fffff880031a1170 -- (.trap 0xfffff880031a1170)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff8a0199d8078 rbx=0000000000000000 rcx=fffff8a0199ffff8
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff880010b5b04 rsp=fffff880031a1308 rbp=0000000000000000
r8=0000000000000008 r9=03fffffffffff52c r10=000a480128070200
r11=00000000ffffffca r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
SYMEFA64+0x33b04:
fffff880`010b5b04 480fc35108 movnti qword ptr [rcx+8],rdx ds:1fc0:fffff8a0`19a00000=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002af6bc2 to fffff80002a78f00
STACK_TEXT:
fffff880`031a1008 fffff800`02af6bc2 : 00000000`00000050 fffff8a0`19a00000 00000000`00000001 fffff880`031a1170 : nt!KeBugCheckEx
fffff880`031a1010 fffff800`02a76fee : 00000000`00000001 fffff8a0`012fd007 fffff8a0`0a78e000 fffff8a0`03712458 : nt! ?? ::FNODOBFM::`string'+0x40f90
fffff880`031a1170 fffff880`010b5b04 : fffff880`010898d2 fffff8a0`00002a08 fffff8a0`012fd007 00000000`00000001 : nt!KiPageFault+0x16e
fffff880`031a1308 fffff880`010898d2 : fffff8a0`00002a08 fffff8a0`012fd007 00000000`00000001 00000000`ffffcb60 : SYMEFA64+0x33b04
fffff880`031a1310 fffff8a0`00002a08 : fffff8a0`012fd007 00000000`00000001 00000000`ffffcb60 fffff8a0`012fd007 : SYMEFA64+0x78d2
fffff880`031a1318 fffff8a0`012fd007 : 00000000`00000001 00000000`ffffcb60 fffff8a0`012fd007 00000000`00000065 : 0xfffff8a0`00002a08
fffff880`031a1320 00000000`00000001 : 00000000`ffffcb60 fffff8a0`012fd007 00000000`00000065 00000066`00000066 : 0xfffff8a0`012fd007
fffff880`031a1328 00000000`ffffcb60 : fffff8a0`012fd007 00000000`00000065 00000066`00000066 00680000`00660002 : 0x1
fffff880`031a1330 fffff8a0`012fd007 : 00000000`00000065 00000066`00000066 00680000`00660002 00000000`00000072 : 0xffffcb60
fffff880`031a1338 00000000`00000065 : 00000066`00000066 00680000`00660002 00000000`00000072 fffff8a0`0fc75018 : 0xfffff8a0`012fd007
fffff880`031a1340 00000066`00000066 : 00680000`00660002 00000000`00000072 fffff8a0`0fc75018 00000000`00000066 : 0x65
fffff880`031a1348 00680000`00660002 : 00000000`00000072 fffff8a0`0fc75018 00000000`00000066 00000000`00000000 : 0x66`00000066
fffff880`031a1350 00000000`00000072 : fffff8a0`0fc75018 00000000`00000066 00000000`00000000 00000000`0000004d : 0x680000`00660002
fffff880`031a1358 fffff8a0`0fc75018 : 00000000`00000066 00000000`00000000 00000000`0000004d fffff8a0`199d8008 : 0x72
fffff880`031a1360 00000000`00000066 : 00000000`00000000 00000000`0000004d fffff8a0`199d8008 fffff8a0`0f7a1008 : 0xfffff8a0`0fc75018
fffff880`031a1368 00000000`00000000 : 00000000`0000004d fffff8a0`199d8008 fffff8a0`0f7a1008 fffff880`0108ce56 : 0x66
STACK_COMMAND: kb
FOLLOWUP_IP:
SYMEFA64+33b04
fffff880`010b5b04 480fc35108 movnti qword ptr [rcx+8],rdx
SYMBOL_STACK_INDEX: 3
[B]
SYMBOL_NAME: SYMEFA64+33b04
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: SYMEFA64
IMAGE_NAME: SYMEFA64.SYS
DEBUG_FLR_IMAGE_TIMESTAMP: 4a414ea7
FAILURE_BUCKET_ID: X64_0x50_SYMEFA64+33b04
BUCKET_ID: X64_0x50_SYMEFA64+33b04[/B]
Followup: MachineOwner