*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000041792, A corrupt PTE has been detected. Parameter 2 contains the address of
the PTE. Parameters 3/4 contain the low/high parts of the PTE.
Arg2: ffffb880dea70040
Arg3: 0000000008000000
Arg4: 0000000000000000
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for win32k.sys
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 18362.1.amd64fre.19h1_release.190318-1202
DUMP_TYPE: 2
BUGCHECK_P1: 41792
BUGCHECK_P2: ffffb880dea70040
BUGCHECK_P3: 8000000
BUGCHECK_P4: 0
MEMORY_CORRUPTOR: ONE_BIT
BUGCHECK_STR: 0x1a_41792
CPU_COUNT: 10
CPU_MHZ: e6d
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
PROCESS_NAME: GameBarFT.exe
CURRENT_IRQL: 2
ANALYSIS_SESSION_HOST: DESKTOP-18V31A3
ANALYSIS_SESSION_TIME: 11-18-2019 18:34:38.0135
ANALYSIS_VERSION: 10.0.18362.1 x86fre
STACK_TEXT:
ffff8906`cd2d81c8 fffff803`1942548a : 00000000`0000001a 00000000`00041792 ffffb880`dea70040 00000000`08000000 : nt!KeBugCheckEx
ffff8906`cd2d81d0 fffff803`192ace07 : ffffce8c`84864580 ffffb880`dea70040 00000000`00000000 00000000`00000000 : nt!MiDeleteVa+0x17688a
ffff8906`cd2d82e0 fffff803`192ad2c1 : ffff8906`cd2d8730 ffffb8dc`406f5380 00000000`00000000 0a000003`65998867 : nt!MiWalkPageTablesRecursively+0x1e7
ffff8906`cd2d83a0 fffff803`192ad2c1 : ffff8906`cd2d8730 ffffb8dc`6e2037a8 00000000`00000000 0a000003`6045d867 : nt!MiWalkPageTablesRecursively+0x6a1
ffff8906`cd2d8460 fffff803`192ad2c1 : ffff8906`cd2d8730 ffffb8dc`6e371018 ffffb8dc`00000000 0a000003`6045c867 : nt!MiWalkPageTablesRecursively+0x6a1
ffff8906`cd2d8520 fffff803`192aca4c : ffff8906`cd2d8730 00000000`00000000 00000000`00000000 ffffce8c`8adc23a0 : nt!MiWalkPageTablesRecursively+0x6a1
ffff8906`cd2d85e0 fffff803`192aaeb8 : ffff8906`cd2d8730 00000000`00000002 ffffce8c`00000001 00000000`00000000 : nt!MiWalkPageTables+0x36c
ffff8906`cd2d86e0 fffff803`192b9010 : ffffffff`ffffffff ffffce8c`848643f8 ffff8906`00000001 00000000`00000000 : nt!MiDeletePagablePteRange+0x268
ffff8906`cd2d8a80 fffff803`192591da : 00000000`1bd4e100 ffffce8c`82d4e080 00000000`00000000 fffff803`192b3fea : nt!MiDeleteVad+0x860
ffff8906`cd2d8c40 fffff803`1985be00 : 00000000`00000000 00000000`00000000 ffff8906`cd2d8da0 ffffffff`ffffffff : nt!MiFreeVadRange+0x9e
ffff8906`cd2d8ca0 fffff803`1985ba3b : 00000000`00000000 00000000`00000000 00000011`77efdd20 000001bd`4e000000 : nt!MmFreeVirtualMemory+0x390
ffff8906`cd2d8de0 fffff803`193d2d18 : ffffce8c`82d4e080 ffffce8c`82d4e080 ffff8906`cd2d8ec0 00000001`80000000 : nt!NtFreeVirtualMemory+0x8b
ffff8906`cd2d8e40 00007ffa`6561c484 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
00000011`77efdd38 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffa`6561c484
THREAD_SHA1_HASH_MOD_FUNC: 3688233b1bc673d7a2c3e9a2aaafa883fd00c046
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 7ad76e3a05b5f7052f297c7b5f67bf0d2f558bc3
THREAD_SHA1_HASH_MOD: fe34192f63d13620a8987d294372ee74d699cfee
SYMBOL_NAME: ONE_BIT
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: hardware
IMAGE_NAME: memory_corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
STACK_COMMAND: .thread ; .cxr ; kb
FAILURE_BUCKET_ID: MEMORY_CORRUPTION_ONE_BIT
BUCKET_ID: MEMORY_CORRUPTION_ONE_BIT
PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_ONE_BIT
TARGET_TIME: 2019-11-14T16:22:58.000Z
OSBUILD: 18362
OSSERVICEPACK: 476
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2011-12-30 02:28:41
BUILDDATESTAMP_STR: 190318-1202
BUILDLAB_STR: 19h1_release
BUILDOSVER_STR: 10.0.18362.1.amd64fre.19h1_release.190318-1202
ANALYSIS_SESSION_ELAPSED_TIME: 41de
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:memory_corruption_one_bit
FAILURE_ID_HASH: {e3faf315-c3d0-81db-819a-6c43d23c63a7}
Followup: MachineOwner
---------
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
INTERNAL_POWER_ERROR (a0)
The power policy manager experienced a fatal error.
Arguments:
Arg1: 000000000000010e, The disk subsystem returned corrupt data while reading from the
hibernation file.
Arg2: 000000000000000a
Arg3: 0000000000007914, Incorrect checksum
Arg4: 00000000000007b6, Previous disk read's checksum
Debugging Details:
------------------
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 10.0.18362.476 (WinBuild.160101.0800)
DUMP_FILE_ATTRIBUTES: 0x9
Hiber Crash Dump
Kernel Generated Triage Dump
DUMP_TYPE: 2
BUGCHECK_P1: 10e
BUGCHECK_P2: a
BUGCHECK_P3: 7914
BUGCHECK_P4: 7b6
BUGCHECK_STR: 0xa0_10e
CPU_COUNT: 10
CPU_MHZ: e6d
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
CURRENT_IRQL: f
ANALYSIS_SESSION_HOST: DESKTOP-18V31A3
ANALYSIS_SESSION_TIME: 11-18-2019 18:34:41.0918
ANALYSIS_VERSION: 10.0.18362.1 x86fre
LAST_CONTROL_TRANSFER: from fffff804167a6faa to fffff804163c14e0
STACK_TEXT:
ffff8601`66699648 fffff804`167a6faa : 00000000`000000a0 00000000`0000010e 00000000`0000000a 00000000`00007914 : nt!KeBugCheckEx
ffff8601`66699650 fffff804`167af1a4 : 00000000`00000001 ffffe38f`d1edec70 00000003`0f82e000 ffffe38f`e410b000 : nt!PopHiberChecksumHiberFileData+0xaa2a
ffff8601`666996b0 fffff804`167a64a5 : 00000001`88131000 ffffd303`00131f38 00000000`00000001 00000000`00000001 : nt!PopRequestRead+0x78
ffff8601`66699720 fffff804`1679af9e : 00009a39`3a3d8130 ffffd303`00131f38 00000000`00000000 fffff804`16cb7848 : nt!PopRestoreHiberContext+0xb165
ffff8601`666997b0 fffff804`1679acea : fffff804`16669fd0 ffff8601`66699930 fffff804`16669fd0 ffffe38f`d1edec70 : nt!PopHandleNextState+0x20e
ffff8601`66699800 fffff804`1679aa5f : 00000000`00000100 00000000`00989680 ffffe38f`d1edec70 ffffe38f`d1edec70 : nt!PopIssueNextState+0x1a
ffff8601`66699830 fffff804`1679b2ec : 00000000`0000000c ffffa300`000077c0 00000000`00000000 fffff804`16293474 : nt!PopInvokeSystemStateHandler+0x35b
ffff8601`66699a30 fffff804`1679f6aa : ffffffff`ffffffff ffffffff`ffffffff 00000000`00000014 00000000`00000000 : nt!PopEndMirroring+0x1ec
ffff8601`66699af0 fffff804`1679f3e5 : 00000000`00000000 00000000`00000000 0000002f`00000001 ffff8601`00000001 : nt!MmDuplicateMemory+0x26e
ffff8601`66699b80 fffff804`1632a7a5 : ffffe38f`d8d74000 ffffe38f`d8d74040 fffff804`1679f2c0 00000000`00000001 : nt!PopTransitionToSleep+0x125
ffff8601`66699c10 fffff804`163c8b2a : ffff8e01`8f079180 ffffe38f`d8d74040 fffff804`1632a750 00000000`00000000 : nt!PspSystemThreadStartup+0x55
ffff8601`66699c60 00000000`00000000 : ffff8601`6669a000 ffff8601`66694000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x2a
THREAD_SHA1_HASH_MOD_FUNC: 337d1299c6890b7c6d65ceb358b93db026da4cb1
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 0fca91e4a12cdd0050f5e17d8e04102a11d16bfb
THREAD_SHA1_HASH_MOD: dc844b1b94baa204d070855e43bbbd27eee98b94
FOLLOWUP_IP:
nt!PopHiberChecksumHiberFileData+aa2a
fffff804`167a6faa cc int 3
FAULT_INSTR_CODE: 3840cccc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!PopHiberChecksumHiberFileData+aa2a
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4efcf7a9
IMAGE_VERSION: 10.0.18362.476
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: aa2a
FAILURE_BUCKET_ID: 0xa0_10e_nt!PopHiberChecksumHiberFileData
BUCKET_ID: 0xa0_10e_nt!PopHiberChecksumHiberFileData
PRIMARY_PROBLEM_CLASS: 0xa0_10e_nt!PopHiberChecksumHiberFileData
TARGET_TIME: 2019-11-16T06:18:26.000Z
OSBUILD: 18362
OSSERVICEPACK: 476
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2011-12-30 02:28:41
BUILDDATESTAMP_STR: 160101.0800
BUILDLAB_STR: WinBuild
BUILDOSVER_STR: 10.0.18362.476
ANALYSIS_SESSION_ELAPSED_TIME: aad
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xa0_10e_nt!pophiberchecksumhiberfiledata
FAILURE_ID_HASH: {28ba2091-a476-6f77-2dec-6241bccd4685}
Followup: MachineOwner
---------
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffcc873350a3c0, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 18362.1.amd64fre.19h1_release.190318-1202
SYSTEM_MANUFACTURER: System manufacturer
SYSTEM_PRODUCT_NAME: System Product Name
SYSTEM_SKU: SKU
SYSTEM_VERSION: System Version
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: 0504
BIOS_DATE: 07/09/2018
BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
BASEBOARD_PRODUCT: ROG STRIX B450-I GAMING
BASEBOARD_VERSION: Rev 1.xx
DUMP_TYPE: 2
BUGCHECK_P1: ffffcc873350a3c0
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: svchost.exe
CRITICAL_PROCESS: svchost.exe
EXCEPTION_RECORD: ffffcc873350a980 -- (.exr 0xffffcc873350a980)
ExceptionAddress: 0000000000000000
ExceptionCode: 00000000
ExceptionFlags: 00000000
NumberParameters: 0
EXCEPTION_CODE: (NTSTATUS) 0x3567a640 - <Unable to get error code text>
ERROR_CODE: (NTSTATUS) 0x3567a640 - <Unable to get error code text>
CPU_COUNT: 10
CPU_MHZ: e6d
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0xEF
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-18V31A3
ANALYSIS_SESSION_TIME: 11-18-2019 18:34:46.0121
ANALYSIS_VERSION: 10.0.18362.1 x86fre
TRAP_FRAME: ffff994ca6532000 -- (.trap 0xffff994ca6532000)
Unable to read trap frame at ffff994c`a6532000
LAST_CONTROL_TRANSFER: from fffff80512ccaef9 to fffff805125c14e0
STACK_TEXT:
fffffa8e`7062ed98 fffff805`12ccaef9 : 00000000`000000ef ffffcc87`3350a3c0 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
fffffa8e`7062eda0 fffff805`12bc78a3 : ffffcc87`3350a3c0 fffff805`1249c769 ffffcc87`3350a3c0 fffff805`1249c8c0 : nt!PspCatchCriticalBreak+0x115
fffffa8e`7062ee40 fffff805`12a39ef0 : ffffcc87`00000000 00000000`00000000 ffffcc87`3350a3c0 ffffcc87`3350a3c0 : nt!PspTerminateAllThreads+0x175b3f
fffffa8e`7062eeb0 fffff805`12a39cd9 : ffffffff`ffffffff fffffa8e`7062efe0 ffffcc87`3350a3c0 00000000`00000000 : nt!PspTerminateProcess+0xe0
fffffa8e`7062eef0 fffff805`125d2d18 : 00000000`00000e6c ffffcc87`3567a640 ffffcc87`3350a3c0 fffffa8e`7062f130 : nt!NtTerminateProcess+0xa9
fffffa8e`7062ef60 fffff805`125c5320 : fffff805`1262ffba fffffa8e`7062fa58 fffffa8e`7062fa58 fffffa8e`7062f130 : nt!KiSystemServiceCopyEnd+0x28
fffffa8e`7062f0f8 fffff805`1262ffba : fffffa8e`7062fa58 fffffa8e`7062fa58 fffffa8e`7062f130 00000000`00000000 : nt!KiServiceLinkage
fffffa8e`7062f100 fffff805`125d3724 : ffffcc87`3350a980 fffff805`12474ef6 ffff994c`a6532000 00007ffa`6c6ca790 : nt!KiDispatchException+0x1687ca
fffffa8e`7062f920 fffff805`125d1aa5 : 00007ffa`6c700604 fffffa8e`7062fb80 00000000`00000000 ffffcc87`338e3fc0 : nt!KiFastFailDispatch+0xe4
fffffa8e`7062fb00 00007ffa`6c664238 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00001000 : nt!KiRaiseSecurityCheckFailure+0x325
000000b4`3acfe050 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00001000 0000021e`3d3897e0 : 0x00007ffa`6c664238
THREAD_SHA1_HASH_MOD_FUNC: 4eea4701cef87a9898dd276682cc304560e002d4
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 50989d20e6e28b3dbebc5600caf858e95924ca41
THREAD_SHA1_HASH_MOD: bc100a5647b828107ac4e18055e00abcbe1ec406
FOLLOWUP_IP:
nt!PspCatchCriticalBreak+115
fffff805`12ccaef9 cc int 3
FAULT_INSTR_CODE: ed8440cc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!PspCatchCriticalBreak+115
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4efcf7a9
IMAGE_VERSION: 10.0.18362.476
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 115
FAILURE_BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_3567a640_nt!PspCatchCriticalBreak
BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_3567a640_nt!PspCatchCriticalBreak
PRIMARY_PROBLEM_CLASS: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_3567a640_nt!PspCatchCriticalBreak
TARGET_TIME: 2019-11-18T14:54:10.000Z
OSBUILD: 18362
OSSERVICEPACK: 476
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2011-12-30 02:28:41
BUILDDATESTAMP_STR: 190318-1202
BUILDLAB_STR: 19h1_release
BUILDOSVER_STR: 10.0.18362.1.amd64fre.19h1_release.190318-1202
ANALYSIS_SESSION_ELAPSED_TIME: 2a15
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xef_svchost.exe_bugcheck_critical_process_3567a640_nt!pspcatchcriticalbreak
FAILURE_ID_HASH: {958bb046-5687-8e42-dfe6-ce7a31630b6f}
Followup: MachineOwner
---------
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
REFERENCE_BY_POINTER (18)
Arguments:
Arg1: ffffce85aaefd0c0, Object type of the object whose reference count is being lowered
Arg2: ffffce85c0d90170, Object whose reference count is being lowered
Arg3: 0000000000000001, Reserved
Arg4: 0000000008000000, Reserved
The reference count of an object is illegal for the current state of the object.
Each time a driver uses a pointer to an object the driver calls a kernel routine
to increment the reference count of the object. When the driver is done with the
pointer the driver calls another kernel routine to decrement the reference count.
Drivers must match calls to the increment and decrement routines. This bugcheck
can occur because an object's reference count goes to zero while there are still
open handles to the object, in which case the fourth parameter indicates the number
of opened handles. It may also occur when the object's reference count drops below zero
whether or not there are open handles to the object, and in that case the fourth parameter
contains the actual value of the pointer references count.
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for win32k.sys
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 18362.1.amd64fre.19h1_release.190318-1202
SYSTEM_MANUFACTURER: System manufacturer
SYSTEM_PRODUCT_NAME: System Product Name
SYSTEM_SKU: SKU
SYSTEM_VERSION: System Version
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: 0504
BIOS_DATE: 07/09/2018
BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
BASEBOARD_PRODUCT: ROG STRIX B450-I GAMING
BASEBOARD_VERSION: Rev 1.xx
DUMP_TYPE: 2
BUGCHECK_P1: ffffce85aaefd0c0
BUGCHECK_P2: ffffce85c0d90170
BUGCHECK_P3: 1
BUGCHECK_P4: 8000000
CPU_COUNT: 10
CPU_MHZ: e6d
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0x18
PROCESS_NAME: System
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-18V31A3
ANALYSIS_SESSION_TIME: 11-18-2019 18:34:49.0867
ANALYSIS_VERSION: 10.0.18362.1 x86fre
LAST_CONTROL_TRANSFER: from fffff804157f6fc3 to fffff804157c1220
STACK_TEXT:
ffffb30d`de909888 fffff804`157f6fc3 : 00000000`00000018 ffffce85`aaefd0c0 ffffce85`c0d90170 00000000`00000001 : nt!KeBugCheckEx
ffffb30d`de909890 fffff804`15bfb758 : 00000000`00000000 ffffce85`bfda2d50 ffffbd81`10fdc610 ffffce85`bd6bac40 : nt!ObfDereferenceObject+0x1bdfe3
ffffb30d`de9098d0 fffff804`157624e7 : fffff804`00000001 fffff804`15a6a480 ffffb30d`de9099a0 ffffce85`bfda2d58 : nt!MiSegmentDelete+0x154
ffffb30d`de909920 fffff804`1578f169 : 00000000`00000000 fffff804`00000001 00000000`00000000 fffff804`15a6a480 : nt!MiProcessDereferenceList+0xc3
ffffb30d`de9099e0 fffff804`1572a725 : ffffce85`b147f080 ffffce85`b147f080 00000000`00000080 fffff804`1578f040 : nt!MiDereferenceSegmentThread+0x129
ffffb30d`de909c10 fffff804`157c886a : ffff9a80`ea705180 ffffce85`b147f080 fffff804`1572a6d0 00000000`00000000 : nt!PspSystemThreadStartup+0x55
ffffb30d`de909c60 00000000`00000000 : ffffb30d`de90a000 ffffb30d`de904000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x2a
THREAD_SHA1_HASH_MOD_FUNC: a943049b79b9edbfd8922f859bd11caf9457af8e
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 8e46ff2e03369b00234c0a12ab26790de7c04532
THREAD_SHA1_HASH_MOD: 30a3e915496deaace47137d5b90c3ecc03746bf6
FOLLOWUP_IP:
nt!MiSegmentDelete+154
fffff804`15bfb758 eba3 jmp nt!MiSegmentDelete+0xf9 (fffff804`15bfb6fd)
FAULT_INSTR_CODE: 8b48a3eb
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: nt!MiSegmentDelete+154
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
DEBUG_FLR_IMAGE_TIMESTAMP: 0
IMAGE_VERSION: 10.0.18362.418
STACK_COMMAND: .thread ; .cxr ; kb
IMAGE_NAME: memory_corruption
BUCKET_ID_FUNC_OFFSET: 154
FAILURE_BUCKET_ID: 0x18_CORRUPT_REF_COUNT_nt!MiSegmentDelete
BUCKET_ID: 0x18_CORRUPT_REF_COUNT_nt!MiSegmentDelete
PRIMARY_PROBLEM_CLASS: 0x18_CORRUPT_REF_COUNT_nt!MiSegmentDelete
TARGET_TIME: 2019-11-13T14:57:35.000Z
OSBUILD: 18362
OSSERVICEPACK: 418
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: unknown_date
BUILDDATESTAMP_STR: 190318-1202
BUILDLAB_STR: 19h1_release
BUILDOSVER_STR: 10.0.18362.1.amd64fre.19h1_release.190318-1202
ANALYSIS_SESSION_ELAPSED_TIME: 277f
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0x18_corrupt_ref_count_nt!misegmentdelete
FAILURE_ID_HASH: {b244685b-4de8-de71-8e1e-21dbafb44ea2}
Followup: MachineOwner
---------