Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\Jonathan\Desktop\030810-46035-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\symbols*[URL="http://msdl.microsoft.com/download/symbols"]Symbol information[/URL]
Executable search path is:
Windows 7 Kernel Version 7600 MP (4 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16385.amd64fre.win7_rtm.090713-1255
Machine Name:
Kernel base = 0xfffff800`02a0d000 PsLoadedModuleList = 0xfffff800`02c4ae50
Debug session time: Sun Mar 7 17:27:58.002 2010 (GMT-5)
System Uptime: 2 days 15:56:53.015
Loading Kernel Symbols
...............................................................
................................................................
..............................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1E, {ffffffffc0000005, fffff80002d63d9c, 0, ffffffffffffffff}
Probably caused by : memory_corruption ( nt!MiApplyCompressedFixups+40 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff80002d63d9c, The address that the exception occurred at
Arg3: 0000000000000000, Parameter 0 of the exception
Arg4: ffffffffffffffff, Parameter 1 of the exception
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!MiApplyCompressedFixups+40
fffff800`02d63d9c 0fb603 movzx eax,byte ptr [rbx]
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002cb50e0
ffffffffffffffff
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x1E
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002abea17 to fffff80002a7ef00
STACK_TEXT:
fffff880`084e4758 fffff800`02abea17 : 00000000`0000001e ffffffff`c0000005 fffff800`02d63d9c 00000000`00000000 : nt!KeBugCheckEx
fffff880`084e4760 fffff800`02a7e542 : fffff880`084e4f38 ffbff8a0`08fc9260 fffff880`084e4fe0 ffffffff`fec90000 : nt! ?? ::FNODOBFM::`string'+0x460da
fffff880`084e4e00 fffff800`02a7ce4a : 00000000`00000000 fffff8a0`08fc9000 fffffa80`00000000 00001f80`010111d0 : nt!KiExceptionDispatch+0xc2
fffff880`084e4fe0 fffff800`02d63d9c : fffffa80`065307b0 fffff8a0`08f87000 fffff8a0`08f87000 ffffffff`fec90000 : nt!KiGeneralProtectionFault+0x10a
fffff880`084e5170 fffff800`02d63c15 : fffff880`021c4000 ffffffff`fec90000 00000000`00161000 fffffa80`00a855e0 : nt!MiApplyCompressedFixups+0x40
fffff880`084e51c0 fffff800`02d5117c : 00000000`00000000 00000000`00000000 fffff6fc`40070e78 fffff800`00000000 : nt!MiPerformFixups+0x65
fffff880`084e5210 fffff800`02a60eed : 00000000`000381ca 00000000`00000161 fffff8a0`08f87b50 00000000`00000002 : nt!MiRelocateImagePfn+0x114
fffff880`084e5270 fffff800`02d63b71 : fffffa80`03df9490 fffff6fc`40070e78 fffff8a0`00000002 00000000`00000000 : nt!MiValidateImagePages+0x2bd
fffff880`084e5310 fffff800`02d63280 : ffffffff`ffffffff 00000000`00000001 fffff8a0`08fc2000 00000000`0000008f : nt!MiSwitchBaseAddress+0x61
fffff880`084e5340 fffff800`02d770ae : 00000000`00000004 00000000`01000000 00000000`00000000 00000000`00000000 : nt!MiRelocateImageAgain+0x100
fffff880`084e5390 fffff800`02d6c893 : fffff880`084e55f0 00000000`00000000 fffff880`084e5698 fffff880`084e55e8 : nt!MmCreateSection+0x302
fffff880`084e55a0 fffff800`02edb573 : 00000000`00000000 fffff8a0`0caba1e8 00000000`00000000 00000000`00000001 : nt!NtCreateSection+0x162
fffff880`084e5620 fffff800`02edbb01 : 00000000`00000000 fffff8a0`0caba1e8 fffffa80`0715b410 fffff880`00000060 : nt!PfpFileBuildReadSupport+0x163
fffff880`084e5710 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!PfpPrefetchFilesTrickle+0x121
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiApplyCompressedFixups+40
fffff800`02d63d9c 0fb603 movzx eax,byte ptr [rbx]
SYMBOL_STACK_INDEX: 4
SYMBOL_NAME: nt!MiApplyCompressedFixups+40
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc600
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0x1E_nt!MiApplyCompressedFixups+40
BUCKET_ID: X64_0x1E_nt!MiApplyCompressedFixups+40
Followup: MachineOwner
---------