*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck D1, {28, 2, 0, fffff880019406fd}
Probably caused by : NETIO.SYS ( NETIO!RtlCopyBufferToMdl+1d )
Followup: MachineOwner
---------
4: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If kernel debugger is available get stack backtrace.
Arguments:
Arg1: 0000000000000028, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
Arg4: fffff880019406fd, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80003303100
GetUlongFromAddress: unable to read from fffff800033031c0
0000000000000028 Nonpaged pool
CURRENT_IRQL: 2
FAULTING_IP:
NETIO!RtlCopyBufferToMdl+1d
fffff880`019406fd 448b5228 mov r10d,dword ptr [rdx+28h]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0xD1
PROCESS_NAME: System
TRAP_FRAME: fffff880039766f0 -- (.trap 0xfffff880039766f0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff88003976910 rbx=0000000000000000 rcx=0000000000000000
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff880019406fd rsp=fffff88003976880 rbp=fffff880039769b0
r8=00000000ffffffbc r9=0000000000000044 r10=0000000000000000
r11=fffffa800e59d5b0 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
NETIO!RtlCopyBufferToMdl+0x1d:
fffff880`019406fd 448b5228 mov r10d,dword ptr [rdx+28h] ds:00000000`00000028=????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800030cb1a9 to fffff800030cbc00
STACK_TEXT:
fffff880`039765a8 fffff800`030cb1a9 : 00000000`0000000a 00000000`00000028 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
fffff880`039765b0 fffff800`030c9e20 : 00000000`00004cef fffff880`0397f2e6 00000000`00000000 00000000`00000044 : nt!KiBugCheckDispatch+0x69
fffff880`039766f0 fffff880`019406fd : 00000000`00000000 00000000`000033f1 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x260
fffff880`03976880 fffff880`01aa591c : fffffa80`108c2710 fffff880`01a73f06 00000000`00000000 fffffa80`108c2710 : NETIO!RtlCopyBufferToMdl+0x1d
fffff880`039768e0 fffff880`01a71a23 : fffffa80`0e59d5b0 00000000`00000000 fffffa80`108c2710 00000000`da25985e : tcpip! ?? ::FNODOBFM::`string'+0x1ceef
fffff880`03976950 fffff880`01a62b44 : fffffa80`00000006 00000000`00000017 00000000`00004cef 00000000`0000f2e6 : tcpip!TcpTcbCarefulDatagram+0x1aa3
fffff880`03976b00 fffff880`01a61fda : fffffa80`085ca930 fffff880`01a5aeb4 fffffa80`0858ad30 00000000`00000000 : tcpip!TcpTcbReceive+0x694
fffff880`03976cb0 fffff880`01a6357b : fffff880`083458d2 fffffa80`086fc000 00000000`00000000 fffff880`03977000 : tcpip!TcpMatchReceive+0x1fa
fffff880`03976e00 fffff880`01a5b547 : fffffa80`085ca930 fffffa80`085df2e6 fffffa80`00004cef 00000000`00004cef : tcpip!TcpPreValidatedReceive+0x36b
fffff880`03976ed0 fffff880`01a5b0ba : 00000000`00000000 fffff880`01b69800 fffff880`03977090 00000000`00000000 : tcpip!IppDeliverListToProtocol+0x97
fffff880`03976f90 fffff880`01a5a6b9 : 00000000`00000000 00000000`00000002 fffffa80`0a635140 fffff880`03977080 : tcpip!IppProcessDeliverList+0x5a
fffff880`03977030 fffff880`01a5835f : 00000000`00000000 00000000`09358b00 fffff880`01b69800 fffff880`01b69800 : tcpip!IppReceiveHeaderBatch+0x23a
fffff880`03977110 fffff880`01a57952 : fffffa80`0935b400 00000000`00000000 fffffa80`09358b00 00000000`00000001 : tcpip!IpFlcReceivePackets+0x64f
fffff880`03977310 fffff880`01acad8a : fffffa80`00000000 fffffa80`0a635140 fffffa80`09358ba0 fffff880`03977400 : tcpip!FlpReceiveNonPreValidatedNetBufferListChain+0x2b2
fffff880`039773f0 fffff800`030d7878 : fffffa80`0a635140 fffffa80`00000000 fffffa80`06e0f040 00000000`00000001 : tcpip! ?? ::FNODOBFM::`string'+0x4f472
fffff880`03977440 fffff880`01a574b2 : fffff880`01a56d10 00000000`00000014 00000000`00000000 fffffa80`09acb301 : nt!KeExpandKernelStackAndCalloutEx+0xd8
fffff880`03977520 fffff880`018fc0eb : fffffa80`0935a6c0 00000000`00000000 fffffa80`090aa1a0 fffffa80`085b9858 : tcpip!FlReceiveNetBufferListChain+0xb2
fffff880`03977590 fffff880`018c5ad6 : fffffa80`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : ndis!ndisMIndicateNetBufferListsToOpen+0xdb
fffff880`03977600 fffff880`0183fac1 : fffffa80`090aa1a0 fffff800`032712d8 00000000`00000001 00000000`00000000 : ndis!ndisMDispatchReceiveNetBufferLists+0x1d6
fffff880`03977a80 fffff880`058c366c : 00000000`00000001 fffff800`032712d8 fffffa80`06e0f040 fffffa80`0c5c96b0 : ndis!NdisMIndicateReceiveNetBufferLists+0xc1
fffff880`03977ad0 fffff880`058bdc17 : fffff880`058d40f0 fffffa80`06e0f040 fffff880`20206f49 00000000`00000000 : tunnel!TeredoWfpIndicationWorker+0xb4
fffff880`03977b10 fffff800`033c3d73 : fffffa80`09349cb0 00000000`00000001 fffffa80`0c5c96b0 fffffa80`06e0f040 : tunnel!LwWorker+0x1b
fffff880`03977b40 fffff800`030d5251 : fffff800`03271200 fffff800`033c3d01 fffffa80`06e0f000 00000000`00000000 : nt!IopProcessWorkItem+0x23
fffff880`03977b70 fffff800`03369ede : 00000000`00000000 fffffa80`06e0f040 00000000`00000080 fffffa80`06c7a9e0 : nt!ExpWorkerThread+0x111
fffff880`03977c00 fffff800`030bc906 : fffff880`0376d180 fffffa80`06e0f040 fffff880`037780c0 00000000`00000000 : nt!PspSystemThreadStartup+0x5a
fffff880`03977c40 00000000`00000000 : fffff880`03978000 fffff880`03972000 fffff880`039778a0 00000000`00000000 : nt!KiStartSystemThread+0x16
STACK_COMMAND: kb
FOLLOWUP_IP:
NETIO!RtlCopyBufferToMdl+1d
fffff880`019406fd 448b5228 mov r10d,dword ptr [rdx+28h]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: NETIO!RtlCopyBufferToMdl+1d
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: NETIO
IMAGE_NAME: NETIO.SYS
DEBUG_FLR_IMAGE_TIMESTAMP: 5034f6a0
FAILURE_BUCKET_ID: X64_0xD1_NETIO!RtlCopyBufferToMdl+1d
BUCKET_ID: X64_0xD1_NETIO!RtlCopyBufferToMdl+1d
Followup: MachineOwner
---------