This dump file has an exception of interest stored in it.
The stored exception information can be accessed via .ecxr.
(11d0.180c): Unknown exception - code c0000374 (first/second chance not available)
Unable to load image C:\Windows\System32\ntdll.dll, Win32 error 0n2
*** WARNING: Unable to verify timestamp for ntdll.dll
ntdll!NtWaitForSingleObject+0xa:
00000000`779bfd9a c3 ret
0:023> !analyze -v
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************
Unable to load image C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6\comctl32.dll, Win32 error 0n2
*** WARNING: Unable to verify timestamp for comctl32.dll
*** WARNING: Unable to verify timestamp for explorer.exe
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: kernel32!pNlsUserInfo ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: kernel32!pNlsUserInfo ***
*** ***
*************************************************************************
FAULTING_IP:
ntdll!RtlReportCriticalFailure+62
00000000`77a36df2 eb00 jmp ntdll!RtlReportCriticalFailure+0x64 (00000000`77a36df4)
EXCEPTION_RECORD: ffffffffffffffff -- (.exr 0xffffffffffffffff)
ExceptionAddress: 0000000077a36df2 (ntdll!RtlReportCriticalFailure+0x0000000000000062)
ExceptionCode: c0000374
ExceptionFlags: 00000001
NumberParameters: 1
Parameter[0]: 0000000077aac3f0
DEFAULT_BUCKET_ID: STATUS_HEAP_CORRUPTION
PROCESS_NAME: explorer.exe
ERROR_CODE: (NTSTATUS) 0xc0000374 - <Unable to get error code text>
EXCEPTION_CODE: (NTSTATUS) 0xc0000374 - <Unable to get error code text>
EXCEPTION_PARAMETER1: 0000000077aac3f0
NTGLOBALFLAG: 0
APPLICATION_VERIFIER_FLAGS: 0
LAST_CONTROL_TRANSFER: from 0000000000000000 to 00000000779dc53d
FAULTING_THREAD: ffffffffffffffff
PRIMARY_PROBLEM_CLASS: STATUS_HEAP_CORRUPTION
BUGCHECK_STR: APPLICATION_FAULT_STATUS_HEAP_CORRUPTION
IP_ON_HEAP: 00000000c0000374
The fault address in not in any loaded module, please check your build's rebase
log at <releasedir>\bin\build_logs\timebuild\ntrebase.log for module which may
contain the address if it were loaded.
FRAME_ONE_INVALID: 1
STACK_TEXT:
00000000`779dc53d ntdll! ?? ::FNODOBFM::`string'+0x122e4
00000000`77872c7a kernel32!HeapFree+0xa
000007fe`fc0e0ad0 comctl32!DSA_Destroy+0x34
000007fe`feba6be1 shell32!DSA_DestroyCallback+0x4d
000007fe`fec80062 shell32!CDefEventSinkContainer::`scalar deleting destructor'+0xd6
000007fe`fec7ffd4 shell32!CDefEventSinkContainer::Release+0x20
000007fe`fec7ff4e shell32!CItemStore::s_ClearEntry+0x34
000007fe`fc0e0b84 comctl32!DSA_EnumCallback+0x48
000007fe`feba18dd shell32!DSA_EnumCallback+0x4d
000007fe`fec7e216 shell32!CItemStore::DeleteItem+0x87
000007fe`fec7e3c9 shell32!CDefCollection::_RemoveAllItems+0x1d5
000007fe`fec7e91e shell32!CDefCollection::_DestroyCollection+0x92
000007fe`fec7e5d5 shell32!CDefCollection::~CDefCollection+0xc5
000007fe`fec7e4e8 shell32!CDefCollection::`vector deleting destructor'+0x14
000007fe`feb4a53d shell32!CCDBurn::Release+0x25
000007fe`fec792a4 shell32!CDefView::_ReleaseCurrentCollection+0xd9
000007fe`fec7acf2 shell32!CDefView::_DestroyView+0x22d
000007fe`f30a0d72 EXPLORERFRAME!CShellViewProvider::Release+0x33
000007fe`f30a0d02 EXPLORERFRAME!CShellBrowser::_ClearNavigationState+0x49
000007fe`f30a0bb5 EXPLORERFRAME!CShellBrowser::_ReleaseNavigationState+0x17c
000007fe`f30a69e3 EXPLORERFRAME!CShellBrowser::_SwitchNavigationState+0xed
000007fe`f30a55ca EXPLORERFRAME!CShellBrowser::_ActivateNavigation+0xfd
000007fe`f30a5473 EXPLORERFRAME!CShellBrowser::_OnConnectionCreated+0x2b5
000007fe`f30a50ac EXPLORERFRAME!CShellBrowser::OnNavigationResult+0x98
000007fe`f30a4fb1 EXPLORERFRAME!CPendingNavigation::OnConnectionCreated+0x4d
000007fe`f30a27ed EXPLORERFRAME!CShellViewFactory::BeginCreateConnection+0x116
000007fe`f30a2dde EXPLORERFRAME!CShellBrowser::_CreateConnectionForItem+0x36d
000007fe`f30a2a3a EXPLORERFRAME!CShellBrowser::_CreateNewConnection+0xd9
000007fe`f30a2946 EXPLORERFRAME!CShellBrowser::_NavigateToPidl+0x167
000007fe`f30bee59 EXPLORERFRAME!CShellBrowser::_OnGoto+0xeb
000007fe`f30bed83 EXPLORERFRAME!CShellBrowser::WndProcBS+0xc5f
000007fe`f306bb39 EXPLORERFRAME!IEFrameWndProc+0xef
FOLLOWUP_IP:
shell32!CDefEventSinkContainer::`scalar deleting destructor'+d6
000007fe`fec80062 4883661000 and qword ptr [rsi+10h],0
SYMBOL_STACK_INDEX: 4
SYMBOL_NAME: shell32!CDefEventSinkContainer::`scalar deleting destructor'+d6
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: shell32
IMAGE_NAME: shell32.dll
DEBUG_FLR_IMAGE_TIMESTAMP: 4c4ef25d
STACK_COMMAND: !heap ; dds 77aac458 ; kb
FAILURE_BUCKET_ID: STATUS_HEAP_CORRUPTION_c0000374_shell32.dll!CDefEventSinkContainer::_scalar_deleting_destructor_
BUCKET_ID: X64_APPLICATION_FAULT_STATUS_HEAP_CORRUPTION_shell32!CDefEventSinkContainer::_scalar_deleting_destructor_+d6
WATSON_STAGEONE_URL: http://watson.microsoft.com/StageOne/explorer_exe/6_1_7600_16450/4aebab8d/ntdll_dll/6_1_7600_16559/4ba9b802/c0000374/000c6df2.htm?Retriage=1
Followup: MachineOwner