*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff80002f6a916, fffff88009d1ea70, 0}
Probably caused by : ntkrnlmp.exe ( nt!CmpAllocateKeyControlBlock+72 )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80002f6a916, Address of the exception record for the exception that caused the bugcheck
Arg3: fffff88009d1ea70, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!CmpAllocateKeyControlBlock+72
fffff800`02f6a916 48895808 mov qword ptr [rax+8],rbx
CONTEXT: fffff88009d1ea70 -- (.cxr 0xfffff88009d1ea70)
rax=fa800749464004c0 rbx=fffff80002e91040 rcx=fffff8a004084648
rdx=fffff88009d1f4a8 rsi=fffff8a000833010 rdi=0000000000000001
rip=fffff80002f6a916 rsp=fffff88009d1f440 rbp=0000000002870588
r8=fffff8a008abb58c r9=fffff8a00b4c75d0 r10=fffff8a0033e63a2
r11=0000000000000000 r12=0000000000000000 r13=ffffffffffffffff
r14=fffff8a008abb58c r15=fffff8a00b4c75d0
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010202
nt!CmpAllocateKeyControlBlock+0x72:
fffff800`02f6a916 48895808 mov qword ptr [rax+8],rbx ds:002b:fa800749`464004c8=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: explorer.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002f6a477 to fffff80002f6a916
STACK_TEXT:
fffff880`09d1f440 fffff800`02f6a477 : 00000000`00000000 00000000`1f93dd2a fffff8a0`0a1fa024 fffff800`02f6f844 : nt!CmpAllocateKeyControlBlock+0x72
fffff880`09d1f470 fffff800`02f691b7 : fffff8a0`00833010 00000000`02870588 fffff8a0`08abb58c fffff8a0`0b4c75d0 : nt!CmpCreateKeyControlBlock+0xe8
fffff880`09d1f510 fffff800`02f65195 : fffff8a0`00000000 fffff8a0`02870588 fffff8a0`00833010 fffffa80`080d87b0 : nt!CmpDoOpen+0x387
fffff880`09d1f5d0 fffff800`02f84e84 : fffff800`02f64cc0 00000000`00000001 fffffa80`080d87b0 00000000`00000001 : nt!CmpParseKey+0x4d5
fffff880`09d1f8a0 fffff800`02f89e4d : fffffa80`080d87b0 fffff880`09d1fa00 00000000`00000040 fffffa80`06ff7420 : nt!ObpLookupObjectName+0x585
fffff880`09d1f9a0 fffff800`02f68dcc : 00000000`10a45d00 00000000`00000000 fffff8a0`04e3a701 fffff880`09d1fa68 : nt!ObOpenObjectByName+0x1cd
fffff880`09d1fa50 fffff800`02f6af0f : 00000000`054fd2e0 00000000`00020019 00000000`054fd368 00000000`00000000 : nt!CmOpenKey+0x28a
fffff880`09d1fba0 fffff800`02c8a993 : fffffa80`098f66a0 fffff880`09d1fc60 00000000`00000000 00000000`059af2ce : nt!NtOpenKeyEx+0xf
fffff880`09d1fbe0 00000000`77560caa : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`054fd278 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77560caa
FOLLOWUP_IP:
nt!CmpAllocateKeyControlBlock+72
fffff800`02f6a916 48895808 mov qword ptr [rax+8],rbx
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!CmpAllocateKeyControlBlock+72
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
STACK_COMMAND: .cxr 0xfffff88009d1ea70 ; kb
FAILURE_BUCKET_ID: X64_0x3B_nt!CmpAllocateKeyControlBlock+72
BUCKET_ID: X64_0x3B_nt!CmpAllocateKeyControlBlock+72
Followup: MachineOwner
---------
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {80000003, fffff80002cc7780, fffff8800403ede0, 0}
Unable to load image ncfsd.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for ncfsd.sys
*** ERROR: Module load completed but symbols could not be loaded for ncfsd.sys
Probably caused by : ncfsd.sys ( ncfsd+c88e )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 0000000080000003, Exception code that caused the bugcheck
Arg2: fffff80002cc7780, Address of the exception record for the exception that caused the bugcheck
Arg3: fffff8800403ede0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (HRESULT) 0x80000003 (2147483651) - One or more arguments are invalid
FAULTING_IP:
nt!DbgBreakPoint+0
fffff800`02cc7780 cc int 3
CONTEXT: fffff8800403ede0 -- (.cxr 0xfffff8800403ede0)
rax=fffff80002d80730 rbx=fffffa80099608e0 rcx=fffff88003e2c860
rdx=fffffa80099608e0 rsi=0000000000000000 rdi=fffffa80099608e0
rip=fffff80002cc7780 rsp=fffff8800403f7b8 rbp=0000000000000000
r8=0000000000000000 r9=0000000000000000 r10=fffff88002f64ac0
r11=fffff80002f8d600 r12=0000000000000000 r13=fffffa8000000000
r14=fffffa80099608e0 r15=0000000000000001
iopl=0 nv up ei ng nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00000286
nt!DbgBreakPoint:
fffff800`02cc7780 cc int 3
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: Revit.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff88003e2488e to fffff80002cc7780
STACK_TEXT:
fffff880`0403f7b8 fffff880`03e2488e : 00000000`00000000 fffffa80`00000000 fffffa80`099608e0 fffff880`0403f830 : nt!DbgBreakPoint
fffff880`0403f7c0 00000000`00000000 : fffffa80`00000000 fffffa80`099608e0 fffff880`0403f830 fffff880`03e2c860 : ncfsd+0xc88e
FOLLOWUP_IP:
ncfsd+c88e
fffff880`03e2488e ?? ???
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: ncfsd+c88e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: ncfsd
IMAGE_NAME: ncfsd.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 49cd1b5d
STACK_COMMAND: .cxr 0xfffff8800403ede0 ; kb
FAILURE_BUCKET_ID: X64_0x3B_ncfsd+c88e
BUCKET_ID: X64_0x3B_ncfsd+c88e
Followup: MachineOwner
---------
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {403, fffff6800020c720, 82700000a746d867, fffff68000bfc720}
Probably caused by : win32k.sys ( win32k!SURFACE::bDeleteSurface+3c8 )
Followup: MachineOwner
---------
3: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000000403, The subtype of the bugcheck.
Arg2: fffff6800020c720
Arg3: 82700000a746d867
Arg4: fffff68000bfc720
Debugging Details:
------------------
BUGCHECK_STR: 0x1a_403
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: Revit.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002d2d6c8 to fffff80002cbb740
STACK_TEXT:
fffff880`093a0c68 fffff800`02d2d6c8 : 00000000`0000001a 00000000`00000403 fffff680`0020c720 82700000`a746d867 : nt!KeBugCheckEx
fffff880`093a0c70 fffff800`02cec381 : 00000000`00000000 fffff680`0020cf20 fffffa80`098c4b30 fffff880`093a12d0 : nt! ?? ::FNODOBFM::`string'+0x31ef2
fffff880`093a0e20 fffff800`02cfd0da : 00000000`00000000 00000000`419e4fff fffffa80`00000000 fffffa80`098c4b30 : nt!MiDeleteVirtualAddresses+0x408
fffff880`093a0fe0 fffff800`02cba993 : ffffffff`ffffffff fffff880`093a12a0 fffff880`093a1308 00000000`00008000 : nt!NtFreeVirtualMemory+0x5ca
fffff880`093a10d0 fffff800`02cb6f30 : fffff960`000d51d8 00000000`00000001 fffff900`c00c5010 fffff900`c0953cd0 : nt!KiSystemServiceCopyEnd+0x13
fffff880`093a1268 fffff960`000d51d8 : 00000000`00000001 fffff900`c00c5010 fffff900`c0953cd0 00000000`00000000 : nt!KiServiceLinkage
fffff880`093a1270 fffff960`000d5534 : ffffffff`00000000 fffff880`00000000 fffff900`c0953cd0 00000000`00000000 : win32k!SURFACE::bDeleteSurface+0x3c8
fffff880`093a13c0 fffff960`00096645 : ffffffff`87051861 fffff900`c0953cd0 ffffffff`87051861 00000000`00000000 : win32k!bDeleteSurface+0x34
fffff880`093a13f0 fffff800`02cba993 : fffffa80`0ea756d0 fffff880`093a14a0 00000000`00000000 00000000`0012dee0 : win32k!NtGdiDeleteObjectApp+0xd5
fffff880`093a1420 000007fe`feb6118a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0012e758 fffff800`02cb3080 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7fe`feb6118a
fffff880`093a1840 00000000`00000000 : 00000000`000025ff fffff880`093a1b98 00000000`00000001 fffff900`c01d38f0 : nt!KiCallUserMode
STACK_COMMAND: kb
FOLLOWUP_IP:
win32k!SURFACE::bDeleteSurface+3c8
fffff960`000d51d8 e9b0010000 jmp win32k!SURFACE::bDeleteSurface+0x57d (fffff960`000d538d)
SYMBOL_STACK_INDEX: 6
SYMBOL_NAME: win32k!SURFACE::bDeleteSurface+3c8
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: win32k
IMAGE_NAME: win32k.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c483f
FAILURE_BUCKET_ID: X64_0x1a_403_win32k!SURFACE::bDeleteSurface+3c8
BUCKET_ID: X64_0x1a_403_win32k!SURFACE::bDeleteSurface+3c8
Followup: MachineOwner
---------