Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\K\Desktop\091110-49904-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols;srv*e:\symbols
*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.x86fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0x83019000 PsLoadedModuleList = 0x83161810
Debug session time: Sat Sep 11 01:19:01.030 2010 (GMT-5)
System Uptime: 0 days 0:00:30.872
Loading Kernel Symbols
...............................................................
................................................................
.........
Loading User Symbols
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: a0f45000, memory referenced.
Arg2: 00000000, value 0 = read operation, 1 = write operation.
Arg3: 98321493, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 00000000, (reserved)
Debugging Details:
------------------
Unable to load image \SystemRoot\system32\DRIVERS\seehcri.sys, Win32 error 0n2
*** ERROR: Module load completed but symbols could not be loaded for seehcri.sys
Could not read faulting driver name
READ_ADDRESS: GetPointerFromAddress: unable to read from 83181718
Unable to read MiSystemVaType memory at 83161160
a0f45000
FAULTING_IP:
seehcri+493
98321493 663906 cmp word ptr [esi],ax
MM_INTERNAL_CODE: 0
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: System
CURRENT_IRQL: 0
TRAP_FRAME: 8b3238c4 -- (.trap 0xffffffff8b3238c4)
ErrCode = 00000000
eax=00000000 ebx=8667c320 ecx=7fffffff edx=7ffffffe esi=a0f45000 edi=8b323988
eip=98321493 esp=8b323938 ebp=8b323944 iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00210202
seehcri+0x493:
98321493 663906 cmp word ptr [esi],ax ds:0023:a0f45000=????
Resetting default scope
LOCK_ADDRESS: 8317ef60 -- (!locks 8317ef60)
Resource @ nt!PiEngineLock (0x8317ef60) Available
WARNING: SystemResourcesList->Flink chain invalid. Resource may be corrupted, or already deleted.
WARNING: SystemResourcesList->Blink chain invalid. Resource may be corrupted, or already deleted.
1 total locks
PNP_TRIAGE:
Lock address : 0x8317ef60
Thread Count : 0
Thread address: 0x00000000
Thread wait : 0x0
LAST_CONTROL_TRANSFER: from 8305f638 to 8309e903
STACK_TEXT:
8b3238ac 8305f638 00000000 a0f45000 00000000 nt!MmAccessFault+0x106
8b3238ac 98321493 00000000 a0f45000 00000000 nt!KiTrap0E+0xdc
WARNING: Stack unwind information not available. Following frames may be wrong.
8b323944 983247d5 a0f44ffe 7fffffff 8b323988 seehcri+0x493
8b323998 830554bc 8661ac08 00000000 8b323a18 seehcri+0x37d5
8b3239b0 831f5f03 c00000bb 8b323a4c 00000000 nt!IofCallDriver+0x63
8b3239e0 831c4d7e 852dc7f0 8b323a4c 852dc638 nt!IopSynchronousCall+0xc2
8b323a1c 831c4aa4 00000005 852dc638 00000000 nt!PnpIrpQueryID+0x3f
8b323a9c 831c0a17 00000001 00000000 86508d58 nt!PipProcessStartPhase3+0x2f2
8b323c94 831a4a42 852a9548 86508d58 8b323cc8 nt!PipProcessDevNodeTree+0x2e6
8b323cd4 8302cf9c 86508d58 8317ce80 852c0020 nt!PiProcessStartSystemDevices+0x6d
8b323d00 83086f3b 00000000 00000000 852c0020 nt!PnpDeviceActionWorker+0x241
8b323d50 832276d3 00000001 9573c3d0 00000000 nt!ExpWorkerThread+0x10d
8b323d90 830d90f9 83086e2e 00000001 00000000 nt!PspSystemThreadStartup+0x9e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19
STACK_COMMAND: kb
FOLLOWUP_IP:
seehcri+493
98321493 663906 cmp word ptr [esi],ax
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: seehcri+493
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: seehcri
IMAGE_NAME: seehcri.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 478488c1
FAILURE_BUCKET_ID: 0x50_seehcri+493
BUCKET_ID: 0x50_seehcri+493
Followup: MachineOwner
---------