Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\120310-19266-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02a06000 PsLoadedModuleList = 0xfffff800`02c43e50
Debug session time: Fri Dec 3 05:47:00.254 2010 (UTC - 5:00)
System Uptime: 0 days 1:17:58.534
Loading Kernel Symbols
...............................................................
................................................................
.........................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {41284, fffff9800f0ac001, 64cf, fffff780c0000000}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+4a83 )
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000041284, A PTE or the working set list is corrupt.
Arg2: fffff9800f0ac001
Arg3: 00000000000064cf
Arg4: fffff780c0000000
Debugging Details:
------------------
BUGCHECK_STR: 0x1a_41284
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from fffff80002acb3b3 to fffff80002a76740
STACK_TEXT:
fffff880`082ee4c8 fffff800`02acb3b3 : 00000000`0000001a 00000000`00041284 fffff980`0f0ac001 00000000`000064cf : nt!KeBugCheckEx
fffff880`082ee4d0 fffff800`02a1a157 : 00000000`000064cf fffff880`082ee700 00000000`00000000 fffffa80`01f36b60 : nt! ?? ::FNODOBFM::`string'+0x4a83
fffff880`082ee510 fffff800`02d8d1b5 : fffff980`0f0ac000 fffff8a0`00208550 00000000`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x2be88
fffff880`082ee7f0 fffff800`02a8f567 : 00000000`07440000 fffffa80`018a2170 00000000`00000000 00000000`07500000 : nt!CcUnmapVacb+0x5d
fffff880`082ee830 fffff800`02a9530d : fffff8a0`00000001 00000000`07400000 fffffa80`028cae10 00000000`00000001 : nt!CcUnmapVacbArray+0x1b7
fffff880`082ee8c0 fffff800`02d7c942 : 00000000`07400000 00000000`07508400 fffff880`082eea18 fffff880`082eea10 : nt!CcGetVirtualAddress+0x21d
fffff880`082ee950 fffff880`012d3522 : fffff8a0`08443740 00000000`00a89e85 00000000`00000000 00000000`0000000e : nt!CcMapData+0xd2
fffff880`082eea10 fffff880`012c94dc : fffff880`082eef70 fffffa80`028c9180 fffff8a0`00a4c018 00000000`00000701 : Ntfs!NtfsReadMftRecord+0xb2
fffff880`082eeac0 fffff880`01303648 : fffff8a0`0813bbc0 00000000`00000000 fffff8a0`0813bbc0 fffff8a0`0813ba90 : Ntfs!NtfsLookupInFileRecord+0x6c
fffff880`082eeb50 fffff880`012f1168 : fffff880`082eef70 fffff8a0`0813ba90 fffff880`012f18e4 fffff880`082eeca0 : Ntfs!NtfsWalkUpTree+0x10c
fffff880`082eec80 fffff880`01349650 : 00000000`00000000 fffff880`082eed98 00000000`00000000 fffff880`082eed01 : Ntfs!NtfsBuildNormalizedNameWithTxfIsolation+0x60
fffff880`082eecf0 fffff880`0128c1f9 : 00000000`00000000 00000000`000000fc fffff8a0`0813bbc0 fffff8a0`0813be10 : Ntfs!NtfsBuildNormalizedNameWithSystemSpecialCases+0x240
fffff880`082eed50 fffff880`012a9e11 : fffff880`082eef70 fffff8a0`0813bbc0 fffff880`082eef70 fffff8a0`0813bb00 : Ntfs! ?? ::NNGAKEGL::`string'+0x150e8
fffff880`082eedf0 fffff880`012aa906 : fffff880`082eef70 fffffa80`01c51770 00000000`000000f8 fffffa80`000000fc : Ntfs!NtfsCommonQueryInformation+0x621
fffff880`082eeed0 fffff880`012aaea4 : fffff880`082eef70 fffffa80`01c51770 fffffa80`01c51770 fffffa80`01c51770 : Ntfs!NtfsFsdDispatchSwitch+0x106
fffff880`082eef50 fffff880`0110782c : fffffa80`029b0668 fffffa80`04819b10 00000000`000000fc fffff800`02bf0e80 : Ntfs!NtfsFsdDispatchWait+0x14
fffff880`082ef140 fffff880`011075b0 : fffffa80`04819b10 00000000`00000000 fffffa80`028c9030 fffffa80`02491dd0 : fltmgr!FltpQueryInformationFile+0xfc
fffff880`082ef1b0 fffff880`0110752d : 00000000`0000000c 00000000`00000000 fffffa80`04819b10 fffff880`082ef2f8 : fltmgr!FltpGetFileName+0x70
fffff880`082ef200 fffff880`01107200 : fffff880`082ef2d0 fffff800`02aa3668 fffff880`082ef328 00000000`00000000 : fltmgr!FltpGetOpenedFileName+0x1d
fffff880`082ef230 fffff880`011072c7 : fffffa80`028c9000 fffff800`02a6b975 fffff880`00000036 00000000`00000000 : fltmgr!FltpCallOpenedFileNameHandler+0x20
fffff880`082ef270 fffff880`0110713e : fffffa80`04819b10 fffff880`011057ec 00000000`00000000 00000000`00000000 : fltmgr!FltpGetNormalizedFileNameWorker+0x27
fffff880`082ef2b0 fffff880`010e854b : fffffa80`01881000 00000000`00000000 fffffa80`03015140 fffff880`082f0000 : fltmgr!FltpCreateFileNameInformation+0xee
fffff880`082ef310 fffff880`010f3ad4 : 00000000`00008000 fffffa80`03015140 00000000`00000000 00000000`00000401 : fltmgr!FltpGetFileNameInformation+0x26b
fffff880`082ef390 fffff880`0113736b : fffffa80`04819b10 fffff8a0`09c67630 00000000`00000001 fffff880`082ef4c0 : fltmgr!FltGetFileNameInformation+0x184
fffff880`082ef420 fffff880`01135bdb : fffff100`022665c6 00000000`00000001 00000000`00000000 00000000`000234a9 : fileinfo!FIStreamGetInfo+0x11f
fffff880`082ef4a0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : fileinfo!FIPostCreateCallback+0x1c7
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+4a83
fffff800`02acb3b3 cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+4a83
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x1a_41284_nt!_??_::FNODOBFM::_string_+4a83
BUCKET_ID: X64_0x1a_41284_nt!_??_::FNODOBFM::_string_+4a83
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\120510-18704-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02a5a000 PsLoadedModuleList = 0xfffff800`02c97e50
Debug session time: Sun Dec 5 14:16:35.520 2010 (UTC - 5:00)
System Uptime: 0 days 5:13:31.800
Loading Kernel Symbols
...............................................................
................................................................
......................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 4E, {99, 1e0ca, 2, 1e09d}
Probably caused by : memory_corruption ( nt!MiBadShareCount+4c )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PFN_LIST_CORRUPT (4e)
Typically caused by drivers passing bad memory descriptor lists (ie: calling
MmUnlockPages twice with the same list, etc). If a kernel debugger is
available get the stack trace.
Arguments:
Arg1: 0000000000000099, A PTE or PFN is corrupt
Arg2: 000000000001e0ca, page frame number
Arg3: 0000000000000002, current page state
Arg4: 000000000001e09d, 0
Debugging Details:
------------------
BUGCHECK_STR: 0x4E_99
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: Wow.exe
CURRENT_IRQL: 2
LAST_CONTROL_TRANSFER: from fffff80002b5a38c to fffff80002aca740
STACK_TEXT:
fffff880`02fc46f8 fffff800`02b5a38c : 00000000`0000004e 00000000`00000099 00000000`0001e0ca 00000000`00000002 : nt!KeBugCheckEx
fffff880`02fc4700 fffff800`02a7a51d : 00000000`000007ff 00000000`00000000 43e00000`00000000 00000000`00000000 : nt!MiBadShareCount+0x4c
fffff880`02fc4740 fffff800`02ade4c6 : fffffa80`01db83f8 fffff880`02fc4990 00000000`00000000 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x20403
fffff880`02fc4930 fffff800`02b4ca5e : fffffa80`01db83f8 fffff880`00000001 00000000`00000001 fffff880`02fc4bb0 : nt!MiAgeWorkingSet+0x3a6
fffff880`02fc4ae0 fffff800`02adeee2 : 00000000`0000497c 00000000`00000000 fffffa80`00000000 00000000`00000007 : nt! ?? ::FNODOBFM::`string'+0x496d6
fffff880`02fc4b80 fffff800`02adf173 : 00000000`00000008 fffff880`02fc4c10 00000000`00000001 fffffa80`00000000 : nt!MmWorkingSetManager+0x6e
fffff880`02fc4bd0 fffff800`02d6ec06 : fffffa80`01950040 00000000`00000080 fffffa80`0184f9e0 00000000`00000001 : nt!KeBalanceSetManager+0x1c3
fffff880`02fc4d40 fffff800`02aa8c26 : fffff880`02d63180 fffffa80`01950040 fffff880`02d6e040 00000000`ffffffff : nt!PspSystemThreadStartup+0x5a
fffff880`02fc4d80 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KxStartSystemThread+0x16
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!MiBadShareCount+4c
fffff800`02b5a38c cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!MiBadShareCount+4c
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
IMAGE_NAME: memory_corruption
FAILURE_BUCKET_ID: X64_0x4E_99_nt!MiBadShareCount+4c
BUCKET_ID: X64_0x4E_99_nt!MiBadShareCount+4c
Followup: MachineOwner
---------
Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [F:\a\Minidump\D M P\121610-20061-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*c:\websymbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16617.amd64fre.win7_gdr.100618-1621
Machine Name:
Kernel base = 0xfffff800`02a50000 PsLoadedModuleList = 0xfffff800`02c8de50
Debug session time: Thu Dec 16 15:55:14.520 2010 (UTC - 5:00)
System Uptime: 0 days 11:59:44.800
Loading Kernel Symbols
...............................................................
................................................................
.........................
Loading User Symbols
Loading unloaded module list
.....
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1A, {41287, 0, 0, 0}
Probably caused by : ntkrnlmp.exe ( nt! ?? ::FNODOBFM::`string'+42ba5 )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000041287, The subtype of the bugcheck.
Arg2: 0000000000000000
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
OVERLAPPED_MODULE: Address regions for 'mrxdav' and 'spsys.sys' overlap
BUGCHECK_STR: 0x1a_41287
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: MATLAB.exe
CURRENT_IRQL: 0
TRAP_FRAME: fffff88002fc45a0 -- (.trap 0xfffff88002fc45a0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=fffffa8000000000
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002b084e4 rsp=fffff88002fc4738 rbp=fffffa8000000000
r8=0000000000000000 r9=00000000000004c0 r10=0000000000000000
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
nt!MiPageMightBeZero+0x8:
fffff800`02b084e4 f60220 test byte ptr [rdx],20h ds:7000:00000000`00000000=??
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002a6cb7a to fffff80002ac0740
STACK_TEXT:
fffff880`02fc4438 fffff800`02a6cb7a : 00000000`0000001a 00000000`00041287 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
fffff880`02fc4440 fffff800`02abe82e : 00000000`00000000 00000000`000000c0 fffffa80`04775000 fffff880`048f9420 : nt! ?? ::FNODOBFM::`string'+0x42ba5
fffff880`02fc45a0 fffff800`02b084e4 : fffff800`02b083ba 00000000`000007ff 00000000`00000039 00000000`00000000 : nt!KiPageFault+0x16e
fffff880`02fc4738 fffff800`02b083ba : 00000000`000007ff 00000000`00000039 00000000`00000000 00000000`0000003f : nt!MiPageMightBeZero+0x8
fffff880`02fc4740 fffff800`02ad44c6 : fffffa80`01e133f8 fffff880`02fc4990 00000000`00000000 00000000`00000000 : nt!MiFreeWsleList+0x43e
fffff880`02fc4930 fffff800`02b42a5e : fffffa80`01e133f8 fffff880`00000001 00000000`00000001 fffff880`02fc4bb0 : nt!MiAgeWorkingSet+0x3a6
fffff880`02fc4ae0 fffff800`02ad4ee2 : 00000000`0000a8b1 00000000`00000000 fffffa80`00000000 00000000`00000002 : nt! ?? ::FNODOBFM::`string'+0x496d6
fffff880`02fc4b80 fffff800`02ad5173 : 00000000`00000008 fffff880`02fc4c10 00000000`00000001 fffffa80`00000000 : nt!MmWorkingSetManager+0x6e
fffff880`02fc4bd0 fffff800`02d64c06 : fffffa80`01950040 00000000`00000080 fffffa80`0184f9e0 00000000`00000001 : nt!KeBalanceSetManager+0x1c3
fffff880`02fc4d40 fffff800`02a9ec26 : fffff880`02d63180 fffffa80`01950040 fffff880`02d6e040 11018814`00801111 : nt!PspSystemThreadStartup+0x5a
fffff880`02fc4d80 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KxStartSystemThread+0x16
STACK_COMMAND: kb
FOLLOWUP_IP:
nt! ?? ::FNODOBFM::`string'+42ba5
fffff800`02a6cb7a cc int 3
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt! ?? ::FNODOBFM::`string'+42ba5
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x1a_41287_nt!_??_::FNODOBFM::_string_+42ba5
BUCKET_ID: X64_0x1a_41287_nt!_??_::FNODOBFM::_string_+42ba5
Followup: MachineOwner
---------