Microsoft (R) Windows Debugger Version 6.11.0001.404 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\Mike\Downloads\fredoz\Windows_NT6_BSOD_jcgriff2\020612-35234-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17713.x86fre.win7sp1_gdr.111025-1505
Machine Name:
Kernel base = 0x8281c000 PsLoadedModuleList = 0x829654d0
Debug session time: Mon Feb 6 03:53:54.856 2012 (GMT-7)
System Uptime: 0 days 10:08:21.903
Loading Kernel Symbols
...............................................................
................................................................
............................
Loading User Symbols
Loading unloaded module list
..........
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
ATTEMPTED_WRITE_TO_READONLY_MEMORY (be)
An attempt was made to write to readonly memory. The guilty driver is on the
stack trace (and is typically the current instruction pointer).
When possible, the guilty driver's name (Unicode string) is printed on
the bugcheck screen and saved in KiBugCheckDriver.
Arguments:
Arg1: 822ec4e7, Virtual address for the attempted write.
Arg2: 21a6c021, PTE contents.
Arg3: 9ca87c20, (reserved)
Arg4: 0000000a, (reserved)
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for win32k.sys
*** ERROR: Module load completed but symbols could not be loaded for win32k.sys
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xBE
PROCESS_NAME: firefox.exe
CURRENT_IRQL: 2
TRAP_FRAME: 9ca87c20 -- (.trap 0xffffffff9ca87c20)
ErrCode = 00000003
eax=9ca87cc0 ebx=00000000 ecx=822ec4e7 edx=9ca87cc0 esi=822ec4b3 edi=82946d20
eip=82c31829 esp=9ca87c94 ebp=9ca87cdc iopl=0 nv up ei pl zr na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
hal!KeAcquireInStackQueuedSpinLockRaiseToSynch+0x19:
82c31829 8711 xchg edx,dword ptr [ecx] ds:0023:822ec4e7=e9ff3307
Resetting default scope
LAST_CONTROL_TRANSFER: from 8285d408 to 828aa40f
STACK_TEXT:
9ca87c08 8285d408 00000001 822ec4e7 00000000 nt!MmAccessFault+0x106
9ca87c08 82c31829 00000001 822ec4e7 00000000 nt!KiTrap0E+0xdc
9ca87cdc 828a0cfe 822ec4b3 00000001 0012c8f0 hal!KeAcquireInStackQueuedSpinLockRaiseToSynch+0x19
9ca87cf0 822f28e9 822ec4b3 0002037e 0012c8f0 nt!ExEnterPriorityRegionAndAcquireResourceExclusive+0x24
WARNING: Stack unwind information not available. Following frames may be wrong.
9ca87d10 8285a21a 0002037e 00000020 0002037e win32k+0xc28e9
9ca87d10 77077094 0002037e 00000020 0002037e nt!KiFastCallEntry+0x12a
0012c950 00000000 00000000 00000000 00000000 0x77077094
STACK_COMMAND: kb
FOLLOWUP_IP:
win32k+c28e9
822f28e9 ?? ???
SYMBOL_STACK_INDEX: 4
SYMBOL_NAME: win32k+c28e9
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: win32k
IMAGE_NAME: win32k.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 0
FAILURE_BUCKET_ID: 0xBE_win32k+c28e9
BUCKET_ID: 0xBE_win32k+c28e9
Followup: MachineOwner
---------