SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff80003034053, The address that the exception occurred at
Arg3: fffff8800311d2f8, Exception Record Address
Arg4: fffff8800311cb60, Context Record Address
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : AV.Fault
Value: Read
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 7601.24117.amd64fre.win7sp1_ldr_escrow.180422-1430
SYSTEM_MANUFACTURER: Hewlett-Packard
SYSTEM_PRODUCT_NAME: HP G62 Notebook PC
SYSTEM_SKU: XF356EA#AB8
SYSTEM_VERSION: 0595110000252710001010100
BIOS_VENDOR: Hewlett-Packard
BIOS_VERSION: F.23
BIOS_DATE: 08/19/2010
BASEBOARD_MANUFACTURER: Hewlett-Packard
BASEBOARD_PRODUCT: 143C
BASEBOARD_VERSION: 62.3A
DUMP_TYPE: 2
BUGCHECK_P1: ffffffffc0000005
BUGCHECK_P2: fffff80003034053
BUGCHECK_P3: fffff8800311d2f8
BUGCHECK_P4: fffff8800311cb60
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>
FAULTING_IP:
nt!ExFreePoolWithTag+43
fffff800`03034053 418b45f0 mov eax,dword ptr [r13-10h]
EXCEPTION_RECORD: fffff8800311d2f8 -- (.exr 0xfffff8800311d2f8)
ExceptionAddress: fffff80003034053 (nt!ExFreePoolWithTag+0x0000000000000043)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff
CONTEXT: fffff8800311cb60 -- (.cxr 0xfffff8800311cb60)
rax=0000000000000000 rbx=fffffa8015220940 rcx=2c4d414552545356
rdx=000000005958504b rsi=0000000000000000 rdi=0000000000000300
rip=fffff80003034053 rsp=fffff8800311d530 rbp=0000000000000001
r8=0000000000006680 r9=00000000000000c0 r10=fffff80002e54000
r11=0000000000000290 r12=fffffa8014ec7d40 r13=2c4d414552545356
r14=fffffa801582af70 r15=fffffa80143e3a10
iopl=0 nv up ei pl nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206
nt!ExFreePoolWithTag+0x43:
fffff800`03034053 418b45f0 mov eax,dword ptr [r13-10h] ds:002b:2c4d4145`52545346=????????
Resetting default scope
CPU_COUNT: 2
CPU_MHZ: ae9
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 10
CPU_MODEL: 6
CPU_STEPPING: 3
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 0
FOLLOWUP_IP:
atikmpag+10a78
fffff880`040c3a78 ?? ???
BUGCHECK_STR: 0x7E
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff800030f7100
Unable to get MmSystemRangeStart
GetUlongPtrFromAddress: unable to read from fffff800030f72e8
GetUlongPtrFromAddress: unable to read from fffff800030f74a0
GetPointerFromAddress: unable to read from fffff800030f70d8
ffffffffffffffff
ERROR_CODE: (NTSTATUS) 0xc0000005 - <Unable to get error code text>
EXCEPTION_CODE_STR: c0000005
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
ANALYSIS_SESSION_HOST: DESKTOP-18V31A3
ANALYSIS_SESSION_TIME: 01-21-2020 14:42:25.0087
ANALYSIS_VERSION: 10.0.18362.1 x86fre
LAST_CONTROL_TRANSFER: from fffff880040c3a78 to fffff80003034053
STACK_TEXT:
fffff880`0311d530 fffff880`040c3a78 : fffffa80`14ec7d40 00000000`00000001 00000000`00000000 00000000`00000001 : nt!ExFreePoolWithTag+0x43
fffff880`0311d5e0 fffffa80`14ec7d40 : 00000000`00000001 00000000`00000000 00000000`00000001 00000000`00000300 : atikmpag+0x10a78
fffff880`0311d5e8 00000000`00000001 : 00000000`00000000 00000000`00000001 00000000`00000300 fffff880`040c49d7 : 0xfffffa80`14ec7d40
fffff880`0311d5f0 00000000`00000000 : 00000000`00000001 00000000`00000300 fffff880`040c49d7 fffffa80`15220940 : 0x1
THREAD_SHA1_HASH_MOD_FUNC: 3be8f996b7c0d33c9aabd1547e422baee21dc869
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: a84d28a2e40ec3e461a8d78426932fb3bd71f366
THREAD_SHA1_HASH_MOD: 9a18de061bb6eb83e1cf911405e483428c302970
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: atikmpag+10a78
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: atikmpag
IMAGE_NAME: atikmpag.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4d71025e
STACK_COMMAND: .cxr 0xfffff8800311cb60 ; kb
FAILURE_BUCKET_ID: X64_0x7E_atikmpag+10a78
BUCKET_ID: X64_0x7E_atikmpag+10a78
PRIMARY_PROBLEM_CLASS: X64_0x7E_atikmpag+10a78
TARGET_TIME: 2020-01-21T10:49:19.000Z
OSBUILD: 7601
OSSERVICEPACK: 3000
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 784
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 7
OSEDITION: Windows 7 WinNt (Service Pack 3) TerminalServer SingleUserTS Personal
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2018-04-23 02:25:30
BUILDDATESTAMP_STR: 180422-1430
BUILDLAB_STR: win7sp1_ldr_escrow
BUILDOSVER_STR: 6.1.7601.24117.amd64fre.win7sp1_ldr_escrow.180422-1430
ANALYSIS_SESSION_ELAPSED_TIME: 673
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:x64_0x7e_atikmpag+10a78
FAILURE_ID_HASH: {ec96ec1a-b9b3-7c60-58f5-39604506afbd}
Followup: MachineOwner
---------
BAD_POOL_CALLER (c2)
The current thread is making a bad pool request. Typically this is at a bad IRQL level or double freeing the same allocation, etc.
Arguments:
Arg1: 0000000000000007, Attempt to free pool which was already freed
Arg2: 000000000000109b, Pool tag value from the pool header
Arg3: 0000000000000001, Contents of the first 4 bytes of the pool header
Arg4: fffff8a000728100, Address of the block of pool being deallocated
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for atikmpag.sys
GetPointerFromAddress: unable to read from fffff800030bc100
Unable to get MmSystemRangeStart
GetUlongPtrFromAddress: unable to read from fffff800030bc2e8
GetUlongPtrFromAddress: unable to read from fffff800030bc4a0
GetPointerFromAddress: unable to read from fffff800030bc0d8
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 7601.24117.amd64fre.win7sp1_ldr_escrow.180422-1430
SYSTEM_MANUFACTURER: Hewlett-Packard
SYSTEM_PRODUCT_NAME: HP G62 Notebook PC
SYSTEM_SKU: XF356EA#AB8
SYSTEM_VERSION: 0595110000252710001010100
BIOS_VENDOR: Hewlett-Packard
BIOS_VERSION: F.23
BIOS_DATE: 08/19/2010
BASEBOARD_MANUFACTURER: Hewlett-Packard
BASEBOARD_PRODUCT: 143C
BASEBOARD_VERSION: 62.3A
DUMP_TYPE: 2
BUGCHECK_P1: 7
BUGCHECK_P2: 109b
BUGCHECK_P3: 1
BUGCHECK_P4: fffff8a000728100
POOL_ADDRESS: GetPointerFromAddress: unable to read from fffff800030bc100
Unable to get MmSystemRangeStart
GetUlongPtrFromAddress: unable to read from fffff800030bc2e8
GetUlongPtrFromAddress: unable to read from fffff800030bc4a0
fffff8a000728100 Paged pool
FREED_POOL_TAG: MINI
BUGCHECK_STR: 0xc2_7_MINI
CPU_COUNT: 2
CPU_MHZ: ae9
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 10
CPU_MODEL: 6
CPU_STEPPING: 3
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-18V31A3
ANALYSIS_SESSION_TIME: 01-21-2020 14:42:29.0318
ANALYSIS_VERSION: 10.0.18362.1 x86fre
LAST_CONTROL_TRANSFER: from fffff80002ffba01 to fffff80002ebd4a0
STACK_TEXT:
fffff880`03140528 fffff800`02ffba01 : 00000000`000000c2 00000000`00000007 00000000`0000109b 00000000`00000001 : nt!KeBugCheckEx
fffff880`03140530 fffff880`03b75a78 : fffffa80`14ed1930 00000000`00000001 00000000`00000000 00000000`00000001 : nt!ExFreePool+0xca9
fffff880`031405e0 fffffa80`14ed1930 : 00000000`00000001 00000000`00000000 00000000`00000001 00000000`00000300 : atikmpag+0x10a78
fffff880`031405e8 00000000`00000001 : 00000000`00000000 00000000`00000001 00000000`00000300 fffff880`03b769d7 : 0xfffffa80`14ed1930
fffff880`031405f0 00000000`00000000 : 00000000`00000001 00000000`00000300 fffff880`03b769d7 fffffa80`17860040 : 0x1
THREAD_SHA1_HASH_MOD_FUNC: ba959370cf86c8abffcbb7e06d08382952540014
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 1fc51ef0430a3f413b518a53a710578096541f30
THREAD_SHA1_HASH_MOD: c98820faca61750b630ab9f9ee6ad56bfd4d928c
FOLLOWUP_IP:
atikmpag+10a78
fffff880`03b75a78 ?? ???
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: atikmpag+10a78
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: atikmpag
IMAGE_NAME: atikmpag.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4d71025e
STACK_COMMAND: .thread ; .cxr ; kb
FAILURE_BUCKET_ID: X64_0xc2_7_MINI_atikmpag+10a78
BUCKET_ID: X64_0xc2_7_MINI_atikmpag+10a78
PRIMARY_PROBLEM_CLASS: X64_0xc2_7_MINI_atikmpag+10a78
TARGET_TIME: 2020-01-21T10:52:17.000Z
OSBUILD: 7601
OSSERVICEPACK: 3000
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 784
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 7
OSEDITION: Windows 7 WinNt (Service Pack 3) TerminalServer SingleUserTS Personal
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2018-04-23 02:25:30
BUILDDATESTAMP_STR: 180422-1430
BUILDLAB_STR: win7sp1_ldr_escrow
BUILDOSVER_STR: 6.1.7601.24117.amd64fre.win7sp1_ldr_escrow.180422-1430
ANALYSIS_SESSION_ELAPSED_TIME: 123e
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:x64_0xc2_7_mini_atikmpag+10a78
FAILURE_ID_HASH: {1071ffa7-aa70-bf0d-019f-f8bd98ac2034}
Followup: MachineOwner
---------