Microsoft (R) Windows Debugger Version 6.11.0001.404 X86
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\K\Desktop\Minidump\020510-19749-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*d:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16385.x86fre.win7_rtm.090713-1255
Machine Name:
Kernel base = 0x82838000 PsLoadedModuleList = 0x82980810
Debug session time: Fri Feb 5 00:25:53.335 2010 (GMT-5)
System Uptime: 0 days 0:00:21.740
Loading Kernel Symbols
...............................................................
................................................................
................
Loading User Symbols
Loading unloaded module list
......
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
[I][B]BugCheck A, {83bfe424, 2, 1, 828c41d8}
Unable to load image \SystemRoot\system32\DRIVERS\tdrpm258.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for tdrpm258.sys
*** ERROR: Module load completed but symbols could not be loaded for tdrpm258.sys
Probably caused by : tdrpm258.sys ( tdrpm258+306e2 )[/B][/I]
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 83bfe424, memory referenced
Arg2: 00000002, IRQL
Arg3: 00000001, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: 828c41d8, address which referenced memory
Debugging Details:
------------------
WRITE_ADDRESS: GetPointerFromAddress: unable to read from 829a0718
Unable to read MiSystemVaType memory at 82980160
83bfe424
CURRENT_IRQL: 2
FAULTING_IP:
nt!MiRemoveAnyPage+138
828c41d8 f00fba2800 lock bts dword ptr [eax],0
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: svchost.exe
TRAP_FRAME: 96b4b754 -- (.trap 0xffffffff96b4b754)
ErrCode = 00000002
eax=83bfe424 ebx=83bfe424 ecx=00000002 edx=00000001 esi=83bfe41c edi=849ffd68
eip=828c41d8 esp=96b4b7c8 ebp=96b4b820 iopl=0 nv up ei pl zr na pe nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010246
nt!MiRemoveAnyPage+0x138:
828c41d8 f00fba2800 lock bts dword ptr [eax],0 ds:0023:83bfe424=????????
Resetting default scope
LAST_CONTROL_TRANSFER: from 828c41d8 to 8287e7eb
STACK_TEXT:
96b4b754 828c41d8 badb0d00 00000001 00000000 nt!KiTrap0E+0x2cf
96b4b820 828cc273 00000012 00000000 00000000 nt!MiRemoveAnyPage+0x138
96b4b848 82866881 00000044 00000000 860c9be0 nt!MiGetPage+0x28a
96b4b8e0 82a4a60f 860c9be0 00000001 9aed8000 nt!MiPfPutPagesInTransition+0x3eb
96b4b90c 828ee844 01198000 00000000 00002000 nt!MmPrefetchForCacheManager+0x83
96b4b94c 82a95d20 860a79b8 00000001 96b4b9c4 nt!CcFetchDataForRead+0x94
96b4b98c 82a97987 860a79b8 01198000 00000000 nt!CcMapAndCopyFromCache+0x71
96b4b9c8 88ab35aa 860a79b8 85343f14 00002000 nt!CcCopyRead+0x107
96b4bae8 82f96fec 860a79b8 8c6d7580 00002000 Ntfs!NtfsCopyReadA+0x1d7
96b4bb1c 82f971bb 00000003 00000000 85343f0c fltmgr!FltpPerformFastIoCall+0x22e
96b4bb48 82fa9c37 00b4bb6c 96b4bc54 859c1818 fltmgr!FltpPassThroughFastIo+0x7d
96b4bb8c 890486e2 860a79b8 860b599c 00002000 fltmgr!FltpFastIoRead+0x163
WARNING: Stack unwind information not available. Following frames may be wrong.
96b4bc04 82f971bb 00000003 00000000 860b5994 tdrpm258+0x306e2
96b4bc30 82fa9c37 00b4bc54 82fa9ad4 00000000 fltmgr!FltpPassThroughFastIo+0x7d
96b4bc74 82a87b32 860a79b8 96b4bcb4 00002000 fltmgr!FltpFastIoRead+0x163
96b4bd08 8287b42a 865a19b0 00000000 00000000 nt!NtReadFile+0x2d5
96b4bd08 770064f4 865a19b0 00000000 00000000 nt!KiFastCallEntry+0x12a
0197dae0 00000000 00000000 00000000 00000000 0x770064f4
STACK_COMMAND: kb
FOLLOWUP_IP:
tdrpm258+306e2
890486e2 ?? ???
SYMBOL_STACK_INDEX: c
SYMBOL_NAME: tdrpm258+306e2
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: tdrpm258
IMAGE_NAME: tdrpm258.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4add695a
FAILURE_BUCKET_ID: 0xA_tdrpm258+306e2
BUCKET_ID: 0xA_tdrpm258+306e2
Followup: MachineOwner
---------