Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [D:\Kingston\BSODDmpFiles\sobhambi\Seven Forums\Seven Forums\030512-22651-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17713.x86fre.win7sp1_gdr.111025-1505
Machine Name:
Kernel base = 0x83239000 PsLoadedModuleList = 0x833824d0
Debug session time: Sun Mar 4 22:47:08.648 2012 (UTC - 7:00)
System Uptime: 0 days 0:01:04.678
Loading Kernel Symbols
...............................................................
................................................................
.............................................................
Loading User Symbols
Loading unloaded module list
.......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck A, {8ca03000, 2, 0, 833c98eb}
*** WARNING: Unable to verify timestamp for PHCORE.SYS
*** ERROR: Module load completed but symbols could not be loaded for PHCORE.SYS
Probably caused by : PHCORE.SYS ( PHCORE+2e6e )
Followup: MachineOwner
---------
1: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 8ca03000, memory referenced
Arg2: 00000002, IRQL
Arg3: 00000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: 833c98eb, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from 833a2848
Unable to read MiSystemVaType memory at 83381e20
8ca03000
CURRENT_IRQL: 2
FAULTING_IP:
nt!ExSnapShotHandleTables+7d
833c98eb 833800 cmp dword ptr [eax],0
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: System
TRAP_FRAME: 8dcc3194 -- (.trap 0xffffffff8dcc3194)
ErrCode = 00000000
eax=8ca03000 ebx=88fa9a10 ecx=00000000 edx=833744f0 esi=8d9093f0 edi=8ca01b40
eip=833c98eb esp=8dcc3208 ebp=8dcc3230 iopl=0 nv up ei ng nz na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010286
nt!ExSnapShotHandleTables+0x7d:
833c98eb 833800 cmp dword ptr [eax],0 ds:0023:8ca03000=00000000
Resetting default scope
LAST_CONTROL_TRANSFER: from 833c98eb to 8327a5fb
STACK_TEXT:
8dcc3194 833c98eb badb0d00 833744f0 00000001 nt!KiTrap0E+0x2cf
8dcc3230 833c9851 00000014 8dcc3250 00000014 nt!ExSnapShotHandleTables+0x7d
8dcc3254 8345986f 00000014 af70fcec 8dcc36f0 nt!ExpGetHandleInformation+0x58
8dcc36bc 83469df4 00000010 00000000 00000000 nt!ExpQuerySystemInformation+0x1665
8dcc36d8 8327721a 00000010 8a9e63f0 00000014 nt!NtQuerySystemInformation+0x76
8dcc36d8 83275be9 00000010 8a9e63f0 00000014 nt!KiFastCallEntry+0x12a
8dcc3760 99e1de6e 00000010 8a9e63f0 00000014 nt!ZwQuerySystemInformation+0x11
WARNING: Stack unwind information not available. Following frames may be wrong.
8dcc378c 99e1e092 b9500d20 142e2635 9af9b4bc PHCORE+0x2e6e
8dcc37c8 99e1ec46 9af9b4bc b2e09b98 00000000 PHCORE+0x3092
8dcc3c24 99e1da36 9af97e84 9af97e88 00000000 PHCORE+0x3c46
8dcc3c50 83441fda 00000001 af70f6c0 00000000 PHCORE+0x2a36
8dcc3c90 832ea1f9 99e1d982 9af975e0 00000000 nt!PspSystemThreadStartup+0x9e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19
STACK_COMMAND: kb
FOLLOWUP_IP:
PHCORE+2e6e
99e1de6e ?? ???
SYMBOL_STACK_INDEX: 7
SYMBOL_NAME: PHCORE+2e6e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: PHCORE
IMAGE_NAME: PHCORE.SYS
DEBUG_FLR_IMAGE_TIMESTAMP: 4e169d76
FAILURE_BUCKET_ID: 0xA_PHCORE+2e6e
BUCKET_ID: 0xA_PHCORE+2e6e
Followup: MachineOwner
---------