Heelp meee
Picopat
- Katılım
- 16 Aralık 2020
- Mesajlar
- 5
Daha fazla
- Cinsiyet
- Erkek
Önce dump paylaşsanız?Quick scan.
Eki Görüntüle 783194
Hız testi.
Eki Görüntüle 783195
Derin tarama.
Eki Görüntüle 783197
Derin tarama Speed map.
Eki Görüntüle 783198
Görseli eklememişsiniz. Tekrar deneyin.
Ayrıca:
Minidump Dosyalarını Paylaşın
23.06.2025 tarihinde yapılan güncel rehbere aşağıdaki linkten erişebilirsiniz: https://www.technopat.net/sosyal/konu/minidump-nedir-nasil-paylasilir.3817531/ Minidump dosyaları, bilgisayarınız mavi ekran verdiğinde belleğin ufak bir dökümünü barındıran dosyalardır. Bunları analiz ederek mavi...www.technopat.net
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 00000000000002b8, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000001, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff8051f6ce007, address which referenced memory
Debugging Details:
------------------
SYMSRV: BYINDEX: 0x6
C:\ProgramData\Dbg\sym*https://msdl.microsoft.com/download/symbols
cdd.dll
0000000000000000000000000000000048000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\cdd.dll\0000000000000000000000000000000048000\cdd.dll - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\cdd.dll\0000000000000000000000000000000048000\cdd.dl_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\cdd.dll\0000000000000000000000000000000048000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/index2.txt
SYMSRV: HttpQueryInfo: 80190190 - HTTP_STATUS_BAD_REQUEST
SYMSRV: HTTPGET: /download/symbols/cdd.dll/0000000000000000000000000000000048000/cdd.dll
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/cdd.dll/0000000000000000000000000000000048000/cdd.dl_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/cdd.dll/0000000000000000000000000000000048000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGHELP: C:\Users\ASUS\Downloads\cdd.dll - file not found
SYMSRV: BYINDEX: 0x7
https://msdl.microsoft.com/download/symbols
cdd.dll
0000000000000000000000000000000048000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\cdd.dll\0000000000000000000000000000000048000\cdd.dll - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\cdd.dll\0000000000000000000000000000000048000\cdd.dl_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\cdd.dll\0000000000000000000000000000000048000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/cdd.dll/0000000000000000000000000000000048000/cdd.dll
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/cdd.dll/0000000000000000000000000000000048000/cdd.dl_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/cdd.dll/0000000000000000000000000000000048000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGENG: \SystemRoot\System32\cdd.dll - Image mapping disallowed by non-local path.
SYMSRV: BYINDEX: 0x8
C:\ProgramData\Dbg\sym*https://msdl.microsoft.com/download/symbols
volmgrx.sys
0000000000000000000000000000000063000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\volmgrx.sys\0000000000000000000000000000000063000\volmgrx.sys - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\volmgrx.sys\0000000000000000000000000000000063000\volmgrx.sy_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\volmgrx.sys\0000000000000000000000000000000063000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/volmgrx.sys/0000000000000000000000000000000063000/volmgrx.sys
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/volmgrx.sys/0000000000000000000000000000000063000/volmgrx.sy_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/volmgrx.sys/0000000000000000000000000000000063000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGHELP: C:\Users\ASUS\Downloads\volmgrx.sys - file not found
SYMSRV: BYINDEX: 0x9
https://msdl.microsoft.com/download/symbols
volmgrx.sys
0000000000000000000000000000000063000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\volmgrx.sys\0000000000000000000000000000000063000\volmgrx.sys - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\volmgrx.sys\0000000000000000000000000000000063000\volmgrx.sy_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\volmgrx.sys\0000000000000000000000000000000063000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/volmgrx.sys/0000000000000000000000000000000063000/volmgrx.sys
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/volmgrx.sys/0000000000000000000000000000000063000/volmgrx.sy_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/volmgrx.sys/0000000000000000000000000000000063000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGENG: \SystemRoot\System32\drivers\volmgrx.sys - Image mapping disallowed by non-local path.
SYMSRV: BYINDEX: 0xA
C:\ProgramData\Dbg\sym*https://msdl.microsoft.com/download/symbols
Fs_Rec.sys
00000000000000000000000000000000d000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Fs_Rec.sys\00000000000000000000000000000000d000\Fs_Rec.sys - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Fs_Rec.sys\00000000000000000000000000000000d000\Fs_Rec.sy_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Fs_Rec.sys\00000000000000000000000000000000d000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/Fs_Rec.sys/00000000000000000000000000000000d000/Fs_Rec.sys
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Fs_Rec.sys/00000000000000000000000000000000d000/Fs_Rec.sy_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Fs_Rec.sys/00000000000000000000000000000000d000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGHELP: C:\Users\ASUS\Downloads\Fs_Rec.sys - file not found
SYMSRV: BYINDEX: 0xB
https://msdl.microsoft.com/download/symbols
Fs_Rec.sys
00000000000000000000000000000000d000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Fs_Rec.sys\00000000000000000000000000000000d000\Fs_Rec.sys - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Fs_Rec.sys\00000000000000000000000000000000d000\Fs_Rec.sy_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Fs_Rec.sys\00000000000000000000000000000000d000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/Fs_Rec.sys/00000000000000000000000000000000d000/Fs_Rec.sys
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Fs_Rec.sys/00000000000000000000000000000000d000/Fs_Rec.sy_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Fs_Rec.sys/00000000000000000000000000000000d000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGENG: \SystemRoot\System32\Drivers\Fs_Rec.sys - Image mapping disallowed by non-local path.
SYMSRV: BYINDEX: 0xC
C:\ProgramData\Dbg\sym*https://msdl.microsoft.com/download/symbols
Null.SYS
00000000000000000000000000000000a000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Null.SYS\00000000000000000000000000000000a000\Null.SYS - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Null.SYS\00000000000000000000000000000000a000\Null.SY_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Null.SYS\00000000000000000000000000000000a000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/Null.SYS/00000000000000000000000000000000a000/Null.SYS
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Null.SYS/00000000000000000000000000000000a000/Null.SY_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Null.SYS/00000000000000000000000000000000a000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGHELP: C:\Users\ASUS\Downloads\Null.SYS - file not found
SYMSRV: BYINDEX: 0xD
https://msdl.microsoft.com/download/symbols
Null.SYS
00000000000000000000000000000000a000
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Null.SYS\00000000000000000000000000000000a000\Null.SYS - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Null.SYS\00000000000000000000000000000000a000\Null.SY_ - path not found
SYMSRV: UNC: C:\ProgramData\Dbg\sym\Null.SYS\00000000000000000000000000000000a000\file.ptr - path not found
SYMSRV: HTTPGET: /download/symbols/Null.SYS/00000000000000000000000000000000a000/Null.SYS
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Null.SYS/00000000000000000000000000000000a000/Null.SY_
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: HTTPGET: /download/symbols/Null.SYS/00000000000000000000000000000000a000/file.ptr
SYMSRV: HttpQueryInfo: 80190194 - HTTP_STATUS_NOT_FOUND
SYMSRV: RESULT: 0x80190194
DBGENG: \SystemRoot\System32\Drivers\Null.SYS - Image mapping disallowed by non-local path.
SYMSRV: BYINDEX: 0xE
https://msdl.microsoft.com/download/symbols
win32kbase.sys
5FD394202a5000
SYMSRV: PATH: C:\ProgramData\Dbg\sym\win32kbase.sys\5FD394202a5000\win32kbase.sys
SYMSRV: RESULT: 0x00000000
DBGHELP: C:\ProgramData\Dbg\sym\win32kbase.sys\5FD394202a5000\win32kbase.sys - OK
SYMSRV: BYINDEX: 0xF
C:\ProgramData\Dbg\sym
win32k.sys
0B2A09EA8c000
SYMSRV: PATH: C:\ProgramData\Dbg\sym\win32k.sys\0B2A09EA8c000\win32k.sys
SYMSRV: RESULT: 0x00000000
DBGHELP: C:\ProgramData\Dbg\sym\win32k.sys\0B2A09EA8c000\win32k.sys - OK
DBGENG: C:\ProgramData\Dbg\sym\win32k.sys\0B2A09EA8c000\win32k.sys - Mapped image memory
SYMSRV: BYINDEX: 0x10
C:\ProgramData\Dbg\sym
win32k.pdb
4EC5C25DB58005267A34AF537C36D2C51
SYMSRV: PATH: C:\ProgramData\Dbg\sym\win32k.pdb\4EC5C25DB58005267A34AF537C36D2C51\win32k.pdb
SYMSRV: RESULT: 0x00000000
DBGHELP: win32k - public symbols
C:\ProgramData\Dbg\sym\win32k.pdb\4EC5C25DB58005267A34AF537C36D2C51\win32k.pdb
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 6046
Key : Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007e on DESKTOP-772SIBS
Key : Analysis.DebugData
Value: CreateObject
Key : Analysis.DebugModel
Value: CreateObject
Key : Analysis.Elapsed.mSec
Value: 11760
Key : Analysis.Memory.CommitPeak.Mb
Value: 73
Key : Analysis.System
Value: CreateObject
Key : WER.OS.Branch
Value: 19h1_release
Key : WER.OS.Timestamp
Value: 2019-03-18T12:02:00Z
Key : WER.OS.Version
Value: 10.0.18362.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: a
BUGCHECK_P1: 2b8
BUGCHECK_P2: 2
BUGCHECK_P3: 1
BUGCHECK_P4: fffff8051f6ce007
WRITE_ADDRESS: fffff8051fb713b8: Unable to get MiVisibleState
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
unable to get nt!MmSpecialPagesInUse
00000000000002b8
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXSCM: 1 (!blackboxscm)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: SecurityHealthService.exe
TRAP_FRAME: ffff870e3dc609e0 -- (.trap 0xffff870e3dc609e0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=ffffbe026dbc1140
rdx=0000000000001e00 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8051fc0e5b3 rsp=ffff870e3dc60b70 rbp=ffff870e3dc60eb0
r8=ffff870e3dc60a90 r9=00000000ffffffff r10=7ffffffffffffffc
r11=00000000ffffffff r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
nt!MmCreateTeb+0xa7:
fffff805`1fc0e5b3 895320 mov dword ptr [rbx+20h],edx ds:00000000`00000020=????????
Resetting default scope
STACK_TEXT:
ffff870e`3dc600b8 fffff805`1f7d5929 : 00000000`0000000a 00000000`000002b8 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
ffff870e`3dc600c0 fffff805`1f7d1c69 : 00000000`00000000 fffff805`1f6cff31 1a000001`39b59867 0000005e`1890a000 : nt!KiBugCheckDispatch+0x69
ffff870e`3dc60200 fffff805`1f6ce007 : ffffbe02`733df740 ffff9c80`2f0c4850 ffff9080`03c632d0 00000000`00000000 : nt!KiPageFault+0x469
ffff870e`3dc60390 fffff805`1f6cd5c9 : ffff870e`3dc60660 00000000`00000000 00000000`00000001 ffffbe02`6dbc1111 : nt!MiCompletePrivateZeroFault+0x6a7
ffff870e`3dc604e0 fffff805`1f6cd088 : 00000000`00000000 ffffe204`00000000 ffff9c80`00000000 00000000`00000001 : nt!MiResolvePrivateZeroFault+0x169
ffff870e`3dc60600 fffff805`1f6cc952 : ffff9cce`40178620 00000000`00000000 00000000`00000000 00000000`00000002 : nt!MiResolveDemandZeroFault+0x218
ffff870e`3dc606f0 fffff805`1f6ca919 : ffffbe02`735dc640 ffffbe02`00000004 00000000`c0000016 ffff9cce`40178620 : nt!MiDispatchFault+0x982
ffff870e`3dc60840 fffff805`1f7d1b5e : 00000000`00000001 ffffbe02`6dbc1140 ffff870e`3dc60c80 1a000001`39b59867 : nt!MmAccessFault+0x169
ffff870e`3dc609e0 fffff805`1fc0e5b3 : ffff870e`3dc60eb0 ffff870e`3dc61610 ffff870e`3dc60ba8 ffffe203`00000000 : nt!KiPageFault+0x35e
ffff870e`3dc60b70 fffff805`1fc0e174 : ffffbe02`734ca710 ffff870e`3dc610d0 ffffbe02`734ca040 ffffbe02`734ca040 : nt!MmCreateTeb+0xa7
ffff870e`3dc60c10 fffff805`1fc0cf05 : ffffbe02`733df240 00000000`00000000 ffffbe02`6da9c100 ffff870e`3dc60e00 : nt!PspAllocateThread+0x530
ffff870e`3dc60db0 fffff805`1fc0cc21 : 00000000`00000000 00000000`004e0b50 ffff870e`3dc61590 fffff805`00000001 : nt!PspCreateThread+0x209
ffff870e`3dc61060 fffff805`1f7d5355 : ffff870e`3dc61bff ffffbe02`6dbc1140 00000000`00000000 00000000`ffffffff : nt!NtCreateThreadEx+0x221
ffff870e`3dc618a0 fffff805`1f7c7940 : fffff805`1fc109bb ffff9d80`48fa0180 ffffbe02`6dbc1140 ffffbe02`6dbc1240 : nt!KiSystemServiceCopyEnd+0x25
ffff870e`3dc61aa8 fffff805`1fc109bb : ffff9d80`48fa0180 ffffbe02`6dbc1140 ffffbe02`6dbc1240 fffff805`1f6419fd : nt!KiServiceLinkage
ffff870e`3dc61ab0 fffff805`1f68329e : ffffbe02`7acd0c90 00000000`00000002 ffffbe02`7acd0c90 fffff805`1f644dde : nt!RtlpCreateUserThreadEx+0x157
ffff870e`3dc61bf0 fffff805`1f65bbd7 : ffff870e`3dc61d20 ffff870e`3dc61d20 ffffbe02`7acd0dc8 00000000`00000374 : nt!ExpWorkerFactoryCreateThread+0xfa
ffff870e`3dc61ca0 fffff805`1f78c2dd : ffffbe02`7acd0c90 00000000`00000080 ffffbe02`732f0000 ffffbe02`7acd0e98 : nt!ExpWorkerFactoryCheckCreate+0x1f7
ffff870e`3dc61d00 fffff805`1f733585 : ffffbe02`6dbc1140 fffff805`1f78c1d0 00000000`00000000 ec998844`d08b4d00 : nt!ExpWorkerFactoryManagerThread+0x10d
ffff870e`3dc61d50 fffff805`1f7cb128 : ffff9d80`49322180 ffffbe02`6dbc1140 fffff805`1f733530 48018949`028b4844 : nt!PspSystemThreadStartup+0x55
ffff870e`3dc61da0 00000000`00000000 : ffff870e`3dc62000 ffff870e`3dc5c000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28
CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
fffff8051f6ce000-fffff8051f6ce00a 11 bytes - nt!MiCompletePrivateZeroFault+6a0
[ aa aa aa 2a 48 89 4c 24:00 50 f2 04 10 4a 00 01 ]
fffff8051f6ce013-fffff8051f6ce023 17 bytes - nt!MiCompletePrivateZeroFault+6b3 (+0x13)
[ 48 3b 8c 24 60 01 00 00:44 53 4c 20 4d 6f 64 65 ]
28 errors : !nt (fffff8051f6ce000-fffff8051f6ce023)
MODULE_NAME: memory_corruption
IMAGE_NAME: memory_corruption
MEMORY_CORRUPTOR: LARGE
STACK_COMMAND: .thread ; .cxr ; kb
FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
OS_VERSION: 10.0.18362.1
BUILDLAB_STR: 19h1_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
Followup: memory_corruption
---------
3: kd> lm
start end module name
ffff83e3`157a0000 ffff83e3`1582c000 win32k # (pdb symbols) C:\ProgramData\Dbg\sym\win32k.pdb\4EC5C25DB58005267A34AF537C36D2C51\win32k.pdb
ffff83e3`15a20000 ffff83e3`15dc2000 win32kfull (deferred)
ffff83e3`16980000 ffff83e3`16c25000 win32kbase (deferred)
ffff83e3`16c30000 ffff83e3`16c78000 cdd (deferred)
fffff805`1f55c000 fffff805`1f600000 hal (deferred)
fffff805`1f600000 fffff805`200b5000 nt (pdb symbols) C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\808491FFD53A33DDE6F2613F332E887D1\ntkrnlmp.pdb
fffff805`23e00000 fffff805`23e0b000 kd (deferred)
fffff805`23e10000 fffff805`24011000 mcupdate_GenuineIntel (deferred)
fffff805`24020000 fffff805`24031000 werkernel (deferred)
fffff805`24040000 fffff805`24069000 ksecdd (deferred)
fffff805`24070000 fffff805`240d0000 msrpc (deferred)
fffff805`240e0000 fffff805`24107000 tm (deferred)
fffff805`24110000 fffff805`24178000 CLFS (deferred)
fffff805`24180000 fffff805`2419a000 PSHED (deferred)
fffff805`241a0000 fffff805`241ab000 BOOTVID (deferred)
fffff805`241b0000 fffff805`242b5000 clipsp (deferred)
fffff805`242c0000 fffff805`24331000 FLTMGR (deferred)
fffff805`24340000 fffff805`2434e000 cmimcext (deferred)
fffff805`24350000 fffff805`2435c000 ntosext (deferred)
fffff805`24360000 fffff805`2443e000 CI (deferred)
fffff805`24440000 fffff805`244fb000 cng (deferred)
fffff805`24500000 fffff805`245d5000 Wdf01000 (deferred)
fffff805`245e0000 fffff805`245f3000 WDFLDR (deferred)
fffff805`24600000 fffff805`2460f000 SleepStudyHelper (deferred)
fffff805`24610000 fffff805`24620000 WppRecorder (deferred)
fffff805`24630000 fffff805`24655000 acpiex (deferred)
fffff805`24660000 fffff805`2467a000 SgrmAgent (deferred)
fffff805`24680000 fffff805`2474c000 ACPI (deferred)
fffff805`24750000 fffff805`2475c000 WMILIB (deferred)
fffff805`24760000 fffff805`247bb000 intelpep (deferred)
fffff805`247c0000 fffff805`247d7000 WindowsTrustedRT (deferred)
fffff805`247e0000 fffff805`247eb000 WindowsTrustedRTProxy (deferred)
fffff805`247f0000 fffff805`24805000 pcw (deferred)
fffff805`24810000 fffff805`2481b000 msisadrv (deferred)
fffff805`24820000 fffff805`2488e000 pci (deferred)
fffff805`24890000 fffff805`248a3000 vdrvroot (deferred)
fffff805`248b0000 fffff805`248e3000 pdc (deferred)
fffff805`248f0000 fffff805`24909000 CEA (deferred)
fffff805`24910000 fffff805`24940000 partmgr (deferred)
fffff805`24950000 fffff805`249f5000 spaceport (deferred)
fffff805`24a00000 fffff805`24a1a000 volmgr (deferred)
fffff805`24a20000 fffff805`24a83000 volmgrx (deferred)
fffff805`24a90000 fffff805`24aaf000 mountmgr (deferred)
fffff805`24ab0000 fffff805`24ade000 storahci (deferred)
fffff805`24ae0000 fffff805`24b82000 storport (deferred)
fffff805`24b90000 fffff805`24bab000 EhStorClass (deferred)
fffff805`24bb0000 fffff805`24bca000 fileinfo (deferred)
fffff805`24bd0000 fffff805`24c0d000 Wof (deferred)
fffff805`24c10000 fffff805`24c1b000 MBI (deferred)
fffff805`24c20000 fffff805`24c2d000 Fs_Rec (deferred)
fffff805`24c30000 fffff805`24da1000 ndis (deferred)
fffff805`24db0000 fffff805`24de2000 ksecpkg (deferred)
fffff805`24df0000 fffff805`24dfb000 volume (deferred)
fffff805`24e00000 fffff805`2509d000 Ntfs (deferred)
fffff805`250a0000 fffff805`25134000 NETIO (deferred)
fffff805`25140000 fffff805`2542b000 tcpip (deferred)
fffff805`25430000 fffff805`254aa000 fwpkclnt (deferred)
fffff805`254b0000 fffff805`254c5000 epfwwfp (deferred)
fffff805`254d0000 fffff805`25500000 wfplwfs (deferred)
fffff805`25510000 fffff805`255d9000 fvevol (deferred)
fffff805`255e0000 fffff805`2564d000 volsnap (deferred)
fffff805`25650000 fffff805`2569e000 rdyboost (deferred)
fffff805`256a0000 fffff805`256c6000 mup (deferred)
fffff805`256d0000 fffff805`256e2000 iorate (deferred)
fffff805`25710000 fffff805`2572c000 disk (deferred)
fffff805`25730000 fffff805`2579b000 CLASSPNP (deferred)
fffff805`25c00000 fffff805`25c30000 cdrom (deferred)
fffff805`25c40000 fffff805`25c55000 filecrypt (deferred)
fffff805`25c60000 fffff805`25c6e000 tbs (deferred)
fffff805`25cf0000 fffff805`25d0d000 crashdmp (deferred)
fffff805`25e00000 fffff805`26171000 dxgkrnl (deferred)
fffff805`26180000 fffff805`26196000 watchdog (deferred)
fffff805`261a0000 fffff805`261b6000 BasicDisplay (deferred)
fffff805`261c0000 fffff805`261d1000 BasicRender (deferred)
fffff805`261e0000 fffff805`261fc000 Npfs (deferred)
fffff805`26200000 fffff805`26211000 Msfs (deferred)
fffff805`26220000 fffff805`26246000 tdx (deferred)
fffff805`26250000 fffff805`26260000 TDI (deferred)
fffff805`26270000 fffff805`262c9000 netbt (deferred)
fffff805`262d0000 fffff805`262e3000 afunix (deferred)
fffff805`262f0000 fffff805`26304000 netbios (deferred)
fffff805`26360000 fffff805`26488000 eamonm (deferred)
fffff805`26490000 fffff805`2649a000 Null (deferred)
fffff805`264a0000 fffff805`264aa000 Beep (deferred)
fffff805`264b0000 fffff805`264de000 ehdrv (deferred)
fffff805`264e0000 fffff805`26587000 afd (deferred)
fffff805`26590000 fffff805`2659d000 EpfwLWF (deferred)
fffff805`265a0000 fffff805`265ba000 vwififlt (deferred)
fffff805`265c0000 fffff805`265eb000 pacer (deferred)
fffff805`26600000 fffff805`2664f000 ahcache (deferred)
fffff805`26650000 fffff805`266dd000 Vid (deferred)
fffff805`266e0000 fffff805`266ff000 winhvr (deferred)
fffff805`26700000 fffff805`26711000 CompositeBus (deferred)
fffff805`26720000 fffff805`2672d000 kdnic (deferred)
fffff805`26730000 fffff805`26745000 umbus (deferred)
fffff805`26750000 fffff805`26765000 CAD (deferred)
fffff805`26770000 fffff805`26b26000 igdkmd64 (deferred)
fffff805`26b30000 fffff805`26b54000 TXEIx64 (deferred)
fffff805`26b60000 fffff805`26b82000 HDAudBus (deferred)
fffff805`26b90000 fffff805`26bf7000 portcls (deferred)
fffff805`26c00000 fffff805`26c21000 drmk (deferred)
fffff805`26c30000 fffff805`26ca8000 ks (deferred)
fffff805`26cb0000 fffff805`270d7000 athw8x (deferred)
fffff805`270e0000 fffff805`270ee000 vwifibus (deferred)
fffff805`270f0000 fffff805`271c9000 rt640x64 (deferred)
fffff805`271d0000 fffff805`271ed000 usbehci (deferred)
fffff805`271f0000 fffff805`2726a000 USBPORT (deferred)
fffff805`27270000 fffff805`2727f000 CmBatt (deferred)
fffff805`27280000 fffff805`27290000 BATTC (deferred)
fffff805`272a0000 fffff805`272b5000 AcpiVpc (deferred)
fffff805`272c0000 fffff805`272e3000 i8042prt (deferred)
fffff805`272f0000 fffff805`2738b000 SynTP (deferred)
fffff805`27390000 fffff805`2739e000 USBD (deferred)
fffff805`273a0000 fffff805`273b4000 kbdclass (deferred)
fffff805`273c0000 fffff805`273d3000 mouclass (deferred)
fffff805`273e0000 fffff805`273ee000 Smb_driver_Intel (deferred)
fffff805`273f0000 fffff805`2742e000 intelppm (deferred)
fffff805`27430000 fffff805`2743d000 NdisVirtualBus (deferred)
fffff805`27440000 fffff805`2744c000 swenum (deferred)
fffff805`27450000 fffff805`2745c000 iwdbus (deferred)
fffff805`27460000 fffff805`2746e000 rdpbus (deferred)
fffff805`27490000 fffff805`2750b000 rdbss (deferred)
fffff805`27510000 fffff805`27522000 nsiproxy (deferred)
fffff805`27530000 fffff805`2753d000 npsvctrig (deferred)
fffff805`27540000 fffff805`27550000 mssmbios (deferred)
fffff805`27560000 fffff805`2756a000 gpuenergydrv (deferred)
fffff805`27570000 fffff805`2759c000 dfsc (deferred)
fffff805`275c0000 fffff805`275d6000 bam (deferred)
fffff805`27600000 fffff805`27832000 CHDRT64 (deferred)
fffff805`27840000 fffff805`2784f000 ksthunk (deferred)
fffff805`27850000 fffff805`278be000 HdAudio (deferred)
fffff805`278c0000 fffff805`278f3000 usbccgp (deferred)
fffff805`27900000 fffff805`27a44000 HTTP (deferred)
fffff805`27a50000 fffff805`27adf000 mrxsmb (deferred)
fffff805`27ae0000 fffff805`27b25000 mrxsmb20 (deferred)
fffff805`27b30000 fffff805`27b83000 srvnet (deferred)
fffff805`27b90000 fffff805`27be2000 mrxsmb10 (deferred)
fffff805`27bf0000 fffff805`27cb5000 srv2 (deferred)
fffff805`27cc0000 fffff805`27d96000 peauth (deferred)
fffff805`27da0000 fffff805`27dbd000 rassstp (deferred)
fffff805`27dc0000 fffff805`27e01000 NDProxy (deferred)
fffff805`27e10000 fffff805`27e37000 AgileVpn (deferred)
fffff805`27e40000 fffff805`27e62000 rasl2tp (deferred)
fffff805`27e70000 fffff805`27e90000 raspptp (deferred)
fffff805`27ea0000 fffff805`27ebc000 raspppoe (deferred)
fffff805`27ec0000 fffff805`27efa000 ndiswan (deferred)
fffff805`27f00000 fffff805`27f13000 condrv (deferred)
fffff805`27f20000 fffff805`27f41000 bindflt (deferred)
fffff805`28240000 fffff805`282ca000 usbhub (deferred)
fffff805`2a400000 fffff805`2a564000 bthport (deferred)
fffff805`2a570000 fffff805`2a58e000 Microsoft_Bluetooth_Legacy_LEEnumerator (deferred)
fffff805`2a590000 fffff805`2a5ca000 rfcomm (deferred)
fffff805`2a5d0000 fffff805`2a5f2000 BthEnum (deferred)
fffff805`2a600000 fffff805`2a626000 bthpan (deferred)
fffff805`2a630000 fffff805`2a64a000 storqosflt (deferred)
fffff805`2a650000 fffff805`2a688000 epfw (deferred)
fffff805`2a6a0000 fffff805`2a6ac000 MSPQM (deferred)
fffff805`2a6b0000 fffff805`2a6c8000 lltdio (deferred)
fffff805`2a6d0000 fffff805`2a6e9000 mslldp (deferred)
fffff805`2a6f0000 fffff805`2a70b000 rspndr (deferred)
fffff805`2a710000 fffff805`2a72d000 wanarp (deferred)
fffff805`2a730000 fffff805`2a748000 ndisuio (deferred)
fffff805`2a750000 fffff805`2a802000 nwifi (deferred)
fffff805`2a810000 fffff805`2a848000 winquic (deferred)
fffff805`2a850000 fffff805`2a875000 bowser (deferred)
fffff805`2a880000 fffff805`2a89a000 mpsdrv (deferred)
fffff805`2a8a0000 fffff805`2a8b3000 vwifimp (deferred)
fffff805`2a8c0000 fffff805`2a8d4000 tcpipreg (deferred)
fffff805`2a8f0000 fffff805`2a8fe000 dump_diskdump (deferred)
fffff805`2a930000 fffff805`2a95e000 dump_storahci (deferred)
fffff805`2a980000 fffff805`2a99d000 dump_dumpfve (deferred)
fffff805`2a9a0000 fffff805`2a9c7000 Ndu (deferred)
fffff805`2a9d0000 fffff805`2a9df000 ndistapi (deferred)
fffff805`2a9e0000 fffff805`2a9f3000 HIDPARSE (deferred)
fffff805`2aa00000 fffff805`2aa71000 dxgmms1 (deferred)
fffff805`2aa80000 fffff805`2aa98000 monitor (deferred)
fffff805`2aaa0000 fffff805`2ab7a000 dxgmms2 (deferred)
fffff805`2ab80000 fffff805`2ca29000 rtsuvc (deferred)
fffff805`2ca30000 fffff805`2ca95000 RtsUer (deferred)
fffff805`2caa0000 fffff805`2cab4000 btfilter (deferred)
fffff805`2cac0000 fffff805`2cadf000 BTHUSB (deferred)
fffff805`2cae0000 fffff805`2caf4000 mmcss (deferred)
fffff805`2cb00000 fffff805`2cb2a000 luafv (deferred)
fffff805`2cb30000 fffff805`2cb67000 wcifs (deferred)
fffff805`2cb70000 fffff805`2cbe7000 cldflt (deferred)
Unloaded modules:
fffff805`2a690000 fffff805`2a69d000 MSPQM.sys
fffff805`2cbf0000 fffff805`2cbfd000 MSPQM.sys
fffff805`2a690000 fffff805`2a6a1000 MSKSSRV.sys
fffff805`25d20000 fffff805`25d2f000 dump_storpor
fffff805`25d60000 fffff805`25d8f000 dump_storahc
fffff805`25db0000 fffff805`25dce000 dump_dumpfve
fffff805`275a0000 fffff805`275be000 dam.sys
fffff805`256f0000 fffff805`25701000 hwpolicy.sys
3: kd> !vm
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
GetUlongPtrFromAddress: unable to read from 0000000000000000
GetUlongPtrFromAddress: unable to read from 0000000000000000
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
unable to get nt!MmSpecialPagesInUse
GetUlongPtrFromAddress: unable to read from 0000000000000000
GetUlongPtrFromAddress: unable to read from 0000000000000000
GetUlongFromAddress: unable to read from 0000000000000000
0000000000000000: Unable to get paged pool info
GetUlongFromAddress: unable to read from 0000000000000000
GetUlongFromAddress: unable to read from 0000000000000000
GetUlongPtrFromAddress: unable to read from 0000000000000000
GetUlongPtrFromAddress: unable to read from 0000000000000000
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
unable to get nt!MmTotalPagesForPagingFile
GetUlongPtrFromAddress: unable to read from 0000000000000000
GetUlongPtrFromAddress: unable to read from 0000000000000000
************ NO PAGING FILE *********************
Physical Memory: 0 ( 0 Kb)
Available Pages: 0 ( 0 Kb)
ResAvail Pages: 0 ( 0 Kb)
********** Running out of physical memory **********
Locked IO Pages: 0 ( 0 Kb)
Free System PTEs: 0 ( 0 Kb)
********** Running out of system PTEs **************
Modified Pages: 0 ( 0 Kb)
Modified PF Pages: 0 ( 0 Kb)
Modified No Write Pages: 0 ( 0 Kb)
Failed to read pool stats
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
GetUlongFromAddress: unable to read from fffff8051fa31e94
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
GetUlongFromAddress: unable to read from fffff8051fb72384
Processor Commit: 0 ( 0 Kb)
Unable to read nt!_LIST_ENTRY.Flink at 0000000000000000
Session Commit: 0 ( 0 Kb)
Syspart SharedCommit 0
Shared Commit: 0 ( 0 Kb)
Special Pool: 0 ( 0 Kb)
Kernel Stacks: 0 ( 0 Kb)
Pages For MDLs: 0 ( 0 Kb)
Pages For AWE: 0 ( 0 Kb)
NonPagedPool Commit: 0 ( 0 Kb)
PagedPool Commit: 0 ( 0 Kb)
Driver Commit: 0 ( 0 Kb)
ProcessLockedFilePages: 0 ( 0 Kb)
Pagefile Hash Pages: 0 ( 0 Kb)
Sum System Commit: 0 ( 0 Kb)
********** Number of committed pages is near limit ********
Unable to read/NULL value _LIST_ENTRY @ fffff8051fa36ba0
ProcessCommitUsage could not be calculated
Committed pages: 0 ( 0 Kb)
Commit limit: 0 ( 0 Kb)
3: kd> !Memusage
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
fffff8051fa283b8: Unable to get Flags value from nt!KdVersionBlock
Search: READ_PVOID error
InitTypeRead(nt!MmPhysicalMemoryBlock, nt!_PHYSICAL_MEMORY_DESCRIPTOR) error 1
3: kd> !teb
TEB NULL...
3: kd> !peb
PEB at 0000005e18899000
error 1 InitTypeRead( nt!_PEB at 0000005e18899000)...