CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffe38378c2c0c0, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
ETW minidump data unavailable
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 12796
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 22046
Key : Analysis.Init.CPU.mSec
Value: 921
Key : Analysis.Init.Elapsed.mSec
Value: 1963
Key : Analysis.Memory.CommitPeak.Mb
Value: 72
Key : CriticalProcessDied.ExceptionCode
Value: 71791080
Key : CriticalProcessDied.Process
Value: svchost.exe
Key : WER.OS.Branch
Value: 19h1_release
Key : WER.OS.Timestamp
Value: 2019-03-18T12:02:00Z
Key : WER.OS.Version
Value: 10.0.18362.1
BUGCHECK_CODE: ef
BUGCHECK_P1: ffffe38378c2c0c0
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: svchost.exe
CRITICAL_PROCESS: svchost.exe
EXCEPTION_RECORD: ffff88c462311000 -- (.exr 0xffff88c462311000)
ExceptionAddress: 8a000001ac20d867
ExceptionCode: ac205867
ExceptionFlags: 8a000001
NumberParameters: 0
ERROR_CODE: (NTSTATUS) 0xac205867 - <Unable to get error code text>
CUSTOMER_CRASH_COUNT: 1
EXCEPTION_CODE_STR: ac205867
EXCEPTION_STR: 0xac205867
TRAP_FRAME: ffff800000000000 -- (.trap 0xffff800000000000)
Unable to read trap frame at ffff8000`00000000
STACK_TEXT:
ffff9003`674f3e18 fffff804`6c8c9c99 : 00000000`000000ef ffffe383`78c2c0c0 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
ffff9003`674f3e20 fffff804`6c7c978d : ffffe383`78c2c0c0 fffff804`6c0d6b35 ffffe383`78c2c0c0 fffff804`6c0d6bb0 : nt!PspCatchCriticalBreak+0x115
ffff9003`674f3ec0 fffff804`6c65ab70 : ffffe383`00000000 00000000`00000000 ffffe383`78c2c0c0 ffffe383`78c2c0c0 : nt!PspTerminateAllThreads+0x16d271
ffff9003`674f3f30 fffff804`6c65a799 : ffffffff`ffffffff ffff9003`674f4060 ffffe383`78c2c0c0 00000000`00000000 : nt!PspTerminateProcess+0xe0
ffff9003`674f3f70 fffff804`6c1d4255 : 00007ffa`00000bf8 ffffe383`71791080 ffffe383`78c2c0c0 ffff9003`674f41b0 : nt!NtTerminateProcess+0xa9
ffff9003`674f3fe0 fffff804`6c1c67b0 : fffff804`6c219de8 ffff9003`674f4a58 ffff9003`674f4a58 ffff9003`674f41b0 : nt!KiSystemServiceCopyEnd+0x25
ffff9003`674f4178 fffff804`6c219de8 : ffff9003`674f4a58 ffff9003`674f4a58 ffff9003`674f41b0 00007ffa`ed857000 : nt!KiServiceLinkage
ffff9003`674f4180 fffff804`6c1d495d : ffff88c4`62311000 ffff9003`674f4b00 ffff8000`00000000 0000002d`ad880fb0 : nt!KiDispatchException+0x18c8e8
ffff9003`674f4920 fffff804`6c1d0b43 : 0000002d`00000000 ffff9003`00000001 00000000`00000000 ffff9003`674f4b80 : nt!KiExceptionDispatch+0x11d
ffff9003`674f4b00 00007ffa`f6d6a02e : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x443
0000002d`ad880f30 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffa`f6d6a02e
SYMBOL_NAME: nt!PspCatchCriticalBreak+115
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.18362.1082
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 115
FAILURE_BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_71791080_nt!PspCatchCriticalBreak
OS_VERSION: 10.0.18362.1
BUILDLAB_STR: 19h1_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {5f1c67d6-119b-0928-bf01-b9bcdd8f9383}
Followup: MachineOwner
---------
UNEXPECTED_STORE_EXCEPTION (154)
The store component caught an unexpected exception.
Arguments:
Arg1: ffffc90356d71000, Pointer to the store context or data manager
Arg2: ffffbd868975c420, Exception information
Arg3: 0000000000000002, Reserved
Arg4: 0000000000000000, Reserved
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for win32k.sys
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 9093
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 17965
Key : Analysis.Init.CPU.mSec
Value: 843
Key : Analysis.Init.Elapsed.mSec
Value: 2022
Key : Analysis.Memory.CommitPeak.Mb
Value: 73
Key : WER.OS.Branch
Value: 19h1_release
Key : WER.OS.Timestamp
Value: 2019-03-18T12:02:00Z
Key : WER.OS.Version
Value: 10.0.18362.1
BUGCHECK_CODE: 154
BUGCHECK_P1: ffffc90356d71000
BUGCHECK_P2: ffffbd868975c420
BUGCHECK_P3: 2
BUGCHECK_P4: 0
EXCEPTION_RECORD: ffffbd868975d3c8 -- (.exr 0xffffbd868975d3c8)
ExceptionAddress: fffff8075b35e710 (nt!RtlDecompressBufferXpressLz+0x0000000000000050)
ExceptionCode: c0000006 (In-page I/O error)
ExceptionFlags: 00000000
NumberParameters: 3
Parameter[0]: 0000000000000000
Parameter[1]: 0000021202fb0000
Parameter[2]: 00000000c00000c0
Inpage operation failed at 0000021202fb0000, due to I/O error 00000000c00000c0
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: 0000021202fb0000
CONTEXT: ffffbd868975cc10 -- (.cxr 0xffffbd868975cc10)
rax=fffff8075b35e6c0 rbx=0000000000000000 rcx=ffff998132179000
rdx=ffff998132179000 rsi=0000000000000002 rdi=0000021202fb0000
rip=fffff8075b35e710 rsp=ffffbd868975d608 rbp=ffff998132179000
r8=0000021202fb0000 r9=0000000000000ad5 r10=ffff998132179ea0
r11=0000021202fb0ad5 r12=ffffbd868975d898 r13=ffffc9035d2a9000
r14=0000021202fb0a7f r15=ffff99813217a000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00050246
nt!RtlDecompressBufferXpressLz+0x50:
fffff807`5b35e710 418b08 mov ecx,dword ptr [r8] ds:002b:00000212`02fb0000=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: MemCompression
ERROR_CODE: (NTSTATUS) 0xc0000006 - The instruction at 0x%p referenced memory at 0x%p. The required data was not placed into memory because of an I/O error status of 0x%x.
EXCEPTION_CODE_STR: c0000006
EXCEPTION_PARAMETER3: 00000000c00000c0
EXCEPTION_STR: 0xc0000006
STACK_TEXT:
ffffbd86`8975d608 fffff807`5b205470 : ffff9981`32179000 ffff9981`32179000 00000000`00000002 00000212`02fb0000 : nt!RtlDecompressBufferXpressLz+0x50
ffffbd86`8975d620 fffff807`5b360499 : 00000000`00000000 fffff807`00000000 00000000`00000000 ffffc903`56d72788 : nt!RtlDecompressBufferEx+0x60
ffffbd86`8975d670 fffff807`5b360324 : 00000000`00000004 ffffbd86`8975d880 00000000`00000000 00000000`00000001 : nt!ST_STORE<SM_TRAITS>::StDmSinglePageCopy+0x155
ffffbd86`8975d750 fffff807`5b3601a2 : 00000000`00000001 00000000`00000000 ffffc903`00000000 ffffc903`0001b000 : nt!ST_STORE<SM_TRAITS>::StDmSinglePageTransfer+0xa0
ffffbd86`8975d7a0 fffff807`5b35ffcb : 00000000`ffffffff ffffc903`5d2a9000 ffffbd86`8975d880 ffffc903`543487e0 : nt!ST_STORE<SM_TRAITS>::StDmpSinglePageRetrieve+0x186
ffffbd86`8975d840 fffff807`5b35fe11 : ffffc903`5d2a9000 00000000`00000000 00000000`00000000 ffffc903`56d72788 : nt!ST_STORE<SM_TRAITS>::StDmPageRetrieve+0xcb
ffffbd86`8975d8f0 fffff807`5b35fd21 : ffffc903`56d71000 ffffc903`543487e0 ffffc903`5d2a9000 ffffc903`56d729b0 : nt!SMKM_STORE<SM_TRAITS>::SmStDirectReadIssue+0x85
ffffbd86`8975d970 fffff807`5b24f698 : ffffc903`596d6040 ffffc903`56d71000 fffff807`ffffffff 00000000`00000001 : nt!SMKM_STORE<SM_TRAITS>::SmStDirectReadCallout+0x21
ffffbd86`8975d9a0 fffff807`5b3636b1 : fffff807`5b35fd00 ffffbd86`8975da50 00000000`00000003 00000000`00000000 : nt!KeExpandKernelStackAndCalloutInternal+0x78
ffffbd86`8975da10 fffff807`5b34cb71 : ffffc903`596d6040 00000000`00000000 00000024`295cd29d fffff807`5b15d8f8 : nt!SMKM_STORE<SM_TRAITS>::SmStDirectRead+0xcd
ffffbd86`8975dae0 fffff807`5b3641a9 : ffffc903`596d6000 00000024`295cd29d fffff807`5b78be90 fffff807`5b78bcc8 : nt!SMKM_STORE<SM_TRAITS>::SmStWorkItemQueue+0x1a5
ffffbd86`8975db30 fffff807`5b283aa5 : 00000000`00989680 ffffc903`596d6040 fffff807`5b364100 ffffc903`4ff8cc00 : nt!SMKM_STORE_MGR<SM_TRAITS>::SmAsyncReadQueueWorker+0xa9
ffffbd86`8975db70 fffff807`5b31e235 : ffffc903`596d6040 00000000`00000080 ffffc903`4feb1040 f3dc52d3`99c796b9 : nt!ExpWorkerThread+0x105
ffffbd86`8975dc10 fffff807`5b3c9f98 : ffff9981`30c56180 ffffc903`596d6040 fffff807`5b31e1e0 c37e467e`afbed076 : nt!PspSystemThreadStartup+0x55
ffffbd86`8975dc60 00000000`00000000 : ffffbd86`8975e000 ffffbd86`89758000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28
SYMBOL_NAME: nt!RtlDecompressBufferXpressLz+50
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.18362.1082
STACK_COMMAND: .cxr 0xffffbd868975cc10 ; kb
BUCKET_ID_FUNC_OFFSET: 50
FAILURE_BUCKET_ID: 0x154_c0000006_c00000c0_nt!RtlDecompressBufferXpressLz
OS_VERSION: 10.0.18362.1
BUILDLAB_STR: 19h1_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {4f688397-d249-e636-ec74-114488b98434}
Followup: MachineOwner
---------
UNEXPECTED_STORE_EXCEPTION (154)
The store component caught an unexpected exception.
Arguments:
Arg1: ffff9b8120b3f000, Pointer to the store context or data manager
Arg2: ffffed8558fe8420, Exception information
Arg3: 0000000000000002, Reserved
Arg4: 0000000000000000, Reserved
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for win32k.sys
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 9624
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 21792
Key : Analysis.Init.CPU.mSec
Value: 843
Key : Analysis.Init.Elapsed.mSec
Value: 2129
Key : Analysis.Memory.CommitPeak.Mb
Value: 73
Key : WER.OS.Branch
Value: 19h1_release
Key : WER.OS.Timestamp
Value: 2019-03-18T12:02:00Z
Key : WER.OS.Version
Value: 10.0.18362.1
BUGCHECK_CODE: 154
BUGCHECK_P1: ffff9b8120b3f000
BUGCHECK_P2: ffffed8558fe8420
BUGCHECK_P3: 2
BUGCHECK_P4: 0
EXCEPTION_RECORD: ffffed8558fe93c8 -- (.exr 0xffffed8558fe93c8)
ExceptionAddress: fffff80717d5e710 (nt!RtlDecompressBufferXpressLz+0x0000000000000050)
ExceptionCode: c0000006 (In-page I/O error)
ExceptionFlags: 00000000
NumberParameters: 3
Parameter[0]: 0000000000000000
Parameter[1]: 000002cf6c610000
Parameter[2]: 00000000c00000c0
Inpage operation failed at 000002cf6c610000, due to I/O error 00000000c00000c0
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: 000002cf6c610000
CONTEXT: ffffed8558fe8c10 -- (.cxr 0xffffed8558fe8c10)
rax=fffff80717d5e6c0 rbx=0000000000000000 rcx=ffffc2019e6c2000
rdx=ffffc2019e6c2000 rsi=0000000000000002 rdi=000002cf6c610000
rip=fffff80717d5e710 rsp=ffffed8558fe9608 rbp=ffffc2019e6c2000
r8=000002cf6c610000 r9=0000000000000ad2 r10=ffffc2019e6c2ea0
r11=000002cf6c610ad2 r12=ffffed8558fe9898 r13=ffff9b8126a60000
r14=000002cf6c610a7c r15=ffffc2019e6c3000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0000 ds=002b es=002b fs=0053 gs=002b efl=00050246
nt!RtlDecompressBufferXpressLz+0x50:
fffff807`17d5e710 418b08 mov ecx,dword ptr [r8] ds:002b:000002cf`6c610000=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: MemCompression
ERROR_CODE: (NTSTATUS) 0xc0000006 - The instruction at 0x%p referenced memory at 0x%p. The required data was not placed into memory because of an I/O error status of 0x%x.
EXCEPTION_CODE_STR: c0000006
EXCEPTION_PARAMETER3: 00000000c00000c0
EXCEPTION_STR: 0xc0000006
STACK_TEXT:
ffffed85`58fe9608 fffff807`17c05470 : ffffc201`9e6c2000 ffffc201`9e6c2000 00000000`00000002 000002cf`6c610000 : nt!RtlDecompressBufferXpressLz+0x50
ffffed85`58fe9620 fffff807`17d60499 : 00000000`00000000 fffff807`00000000 00000000`00000000 ffff9b81`20b40788 : nt!RtlDecompressBufferEx+0x60
ffffed85`58fe9670 fffff807`17d60324 : 00000000`00000004 ffffed85`58fe9880 00000000`00000000 00000000`00000002 : nt!ST_STORE<SM_TRAITS>::StDmSinglePageCopy+0x155
ffffed85`58fe9750 fffff807`17d601a2 : 00000000`00000001 00000000`00000000 ffff9b81`00000000 ffff9b81`0001b000 : nt!ST_STORE<SM_TRAITS>::StDmSinglePageTransfer+0xa0
ffffed85`58fe97a0 fffff807`17d5ffcb : 00000000`ffffffff ffff9b81`26a60000 ffffed85`58fe9880 ffff9b81`1e89c800 : nt!ST_STORE<SM_TRAITS>::StDmpSinglePageRetrieve+0x186
ffffed85`58fe9840 fffff807`17d5fe11 : ffff9b81`26a60000 00000000`00000000 00000000`00000000 ffff9b81`20b40788 : nt!ST_STORE<SM_TRAITS>::StDmPageRetrieve+0xcb
ffffed85`58fe98f0 fffff807`17d5fd21 : ffff9b81`20b3f000 ffff9b81`1e89c800 ffff9b81`26a60000 ffff9b81`20b409b0 : nt!SMKM_STORE<SM_TRAITS>::SmStDirectReadIssue+0x85
ffffed85`58fe9970 fffff807`17c4f698 : ffff9b81`20b2a4c0 ffff9b81`20b3f000 ffffc201`ffffffff 00000000`00000001 : nt!SMKM_STORE<SM_TRAITS>::SmStDirectReadCallout+0x21
ffffed85`58fe99a0 fffff807`17d636b1 : fffff807`17d5fd00 ffffed85`58fe9a50 00000000`00000003 00000000`00000000 : nt!KeExpandKernelStackAndCalloutInternal+0x78
ffffed85`58fe9a10 fffff807`17d4cb71 : ffff9b81`20b2a4c0 00000000`00000000 00000003`0eff7616 fffff807`17b5d8f8 : nt!SMKM_STORE<SM_TRAITS>::SmStDirectRead+0xcd
ffffed85`58fe9ae0 fffff807`17d641a9 : ffff9b81`20b2a400 00000003`0eff7616 fffff807`1818be90 fffff807`1818bcc8 : nt!SMKM_STORE<SM_TRAITS>::SmStWorkItemQueue+0x1a5
ffffed85`58fe9b30 fffff807`17c83aa5 : 00000000`00989680 ffff9b81`20b2a4c0 fffff807`17d64100 ffff9b81`20b68b60 : nt!SMKM_STORE_MGR<SM_TRAITS>::SmAsyncReadQueueWorker+0xa9
ffffed85`58fe9b70 fffff807`17d1e235 : ffff9b81`20b2a4c0 00000000`00000080 ffff9b81`19a81040 000025ef`bd9bbfff : nt!ExpWorkerThread+0x105
ffffed85`58fe9c10 fffff807`17dc9f98 : fffff807`13c17180 ffff9b81`20b2a4c0 fffff807`17d1e1e0 00000000`00000000 : nt!PspSystemThreadStartup+0x55
ffffed85`58fe9c60 00000000`00000000 : ffffed85`58fea000 ffffed85`58fe4000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28
SYMBOL_NAME: nt!RtlDecompressBufferXpressLz+50
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.18362.1082
STACK_COMMAND: .cxr 0xffffed8558fe8c10 ; kb
BUCKET_ID_FUNC_OFFSET: 50
FAILURE_BUCKET_ID: 0x154_c0000006_c00000c0_nt!RtlDecompressBufferXpressLz
OS_VERSION: 10.0.18362.1
BUILDLAB_STR: 19h1_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {4f688397-d249-e636-ec74-114488b98434}
Followup: MachineOwner
---------
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffc702d432d080, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 11124
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 19452
Key : Analysis.Init.CPU.mSec
Value: 968
Key : Analysis.Init.Elapsed.mSec
Value: 2339
Key : Analysis.Memory.CommitPeak.Mb
Value: 72
Key : CriticalProcessDied.ExceptionCode
Value: d5f70080
Key : CriticalProcessDied.Process
Value: csrss.exe
Key : WER.OS.Branch
Value: 19h1_release
Key : WER.OS.Timestamp
Value: 2019-03-18T12:02:00Z
Key : WER.OS.Version
Value: 10.0.18362.1
BUGCHECK_CODE: ef
BUGCHECK_P1: ffffc702d432d080
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: csrss.exe
CRITICAL_PROCESS: csrss.exe
EXCEPTION_RECORD: ffff81c0e0703000 -- (.exr 0xffff81c0e0703000)
ExceptionAddress: 0000000000000000
ExceptionCode: 6806e867
ExceptionFlags: 0a000002
NumberParameters: 1745234023
Parameter[0]: 0000000000000000
Parameter[1]: 0000000000000000
Parameter[2]: 0000000000000000
Parameter[3]: 0000000000000000
Parameter[4]: 0000000000000000
Parameter[5]: 0000000000000000
Parameter[6]: 0000000000000000
Parameter[7]: 0000000000000000
Parameter[8]: 0000000000000000
Parameter[9]: 0000000000000000
Parameter[10]: 0000000000000000
Parameter[11]: 0000000000000000
Parameter[12]: 0000000000000000
Parameter[13]: 0000000000000000
Parameter[14]: 0000000000000000
ERROR_CODE: (NTSTATUS) 0x6806e867 - <Unable to get error code text>
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
EXCEPTION_CODE_STR: 6806e867
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: 0000000000000000
EXCEPTION_PARAMETER3: 0000000000000000
EXCEPTION_PARAMETER4: 0
EXCEPTION_STR: 0x6806e867
TRAP_FRAME: ffff800000000000 -- (.trap 0xffff800000000000)
Unable to read trap frame at ffff8000`00000000
STACK_TEXT:
fffffb87`fb821e18 fffff802`144c9c99 : 00000000`000000ef ffffc702`d432d080 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
fffffb87`fb821e20 fffff802`143c978d : ffffc702`d432d080 fffff802`13cd6b35 ffffc702`d432d080 fffff802`13cd6bb0 : nt!PspCatchCriticalBreak+0x115
fffffb87`fb821ec0 fffff802`1425ab70 : ffffc702`00000000 00000000`00000000 ffffc702`d432d080 ffffc702`d432d080 : nt!PspTerminateAllThreads+0x16d271
fffffb87`fb821f30 fffff802`1425a799 : ffffffff`ffffffff fffffb87`fb822060 ffffc702`d432d080 00000000`00000000 : nt!PspTerminateProcess+0xe0
fffffb87`fb821f70 fffff802`13dd4255 : 00007ffd`00000248 ffffc702`d5f70080 ffffc702`d432d080 fffffb87`fb8221b0 : nt!NtTerminateProcess+0xa9
fffffb87`fb821fe0 fffff802`13dc67b0 : fffff802`13e19de8 fffffb87`fb822a58 fffffb87`fb822a58 fffffb87`fb8221b0 : nt!KiSystemServiceCopyEnd+0x25
fffffb87`fb822178 fffff802`13e19de8 : fffffb87`fb822a58 fffffb87`fb822a58 fffffb87`fb8221b0 00007ffd`0dcad000 : nt!KiServiceLinkage
fffffb87`fb822180 fffff802`13dd495d : ffff81c0`e0703000 fffffb87`fb822b00 ffff8000`00000000 000000d2`8bb80ff8 : nt!KiDispatchException+0x18c8e8
fffffb87`fb822920 fffff802`13dd0b43 : 00000000`0001e312 fffffb87`fb822b80 00000000`00000000 fffffb87`fb822b80 : nt!KiExceptionDispatch+0x11d
fffffb87`fb822b00 00007ffd`10ed8430 : 00000000`00000000 00007ffd`0dcad000 000000d2`8bb81730 000000d2`8bb81070 : nt!KiPageFault+0x443
000000d2`8bb81000 00000000`00000000 : 00007ffd`0dcad000 000000d2`8bb81730 000000d2`8bb81070 00000000`00000000 : 0x00007ffd`10ed8430
SYMBOL_NAME: nt!PspCatchCriticalBreak+115
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.18362.1082
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 115
FAILURE_BUCKET_ID: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_d5f70080_nt!PspCatchCriticalBreak
OS_VERSION: 10.0.18362.1
BUILDLAB_STR: 19h1_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {2ff41b9d-cc73-f767-c875-976cf9221e20}
Followup: MachineOwner
---------
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffa20e221212c0, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
ETW minidump data unavailable
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 9750
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 14382
Key : Analysis.Init.CPU.mSec
Value: 827
Key : Analysis.Init.Elapsed.mSec
Value: 1934
Key : Analysis.Memory.CommitPeak.Mb
Value: 73
Key : CriticalProcessDied.ExceptionCode
Value: 22bf0080
Key : CriticalProcessDied.Process
Value: svchost.exe
Key : WER.OS.Branch
Value: 19h1_release
Key : WER.OS.Timestamp
Value: 2019-03-18T12:02:00Z
Key : WER.OS.Version
Value: 10.0.18362.1
BUGCHECK_CODE: ef
BUGCHECK_P1: ffffa20e221212c0
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: svchost.exe
CRITICAL_PROCESS: svchost.exe
ERROR_CODE: (NTSTATUS) 0x22bf0080 - <Unable to get error code text>
CUSTOMER_CRASH_COUNT: 1
STACK_TEXT:
ffff820d`a5a0d938 fffff801`75ac9c99 : 00000000`000000ef ffffa20e`221212c0 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
ffff820d`a5a0d940 fffff801`759c978d : ffffa20e`221212c0 fffff801`752d6b35 ffffa20e`221212c0 fffff801`752d6bb0 : nt!PspCatchCriticalBreak+0x115
ffff820d`a5a0d9e0 fffff801`7585ab70 : ffffa20e`00000000 00000000`00000000 ffffa20e`221212c0 ffffa20e`221212c0 : nt!PspTerminateAllThreads+0x16d271
ffff820d`a5a0da50 fffff801`7585a799 : ffffffff`ffffffff ffff820d`a5a0db80 ffffa20e`221212c0 fffff801`757cc801 : nt!PspTerminateProcess+0xe0
ffff820d`a5a0da90 fffff801`753d4255 : ffffa20e`000004a4 ffffa20e`22bf0080 ffffa20e`221212c0 00000060`0b0ff80c : nt!NtTerminateProcess+0xa9
ffff820d`a5a0db00 00007ffd`1b77c5f4 : 00007ffd`1b7efc1f 00007ffd`1b81f980 00000060`0b0ff7d0 00000060`0b0f8000 : nt!KiSystemServiceCopyEnd+0x25
00000060`0b0fbfa8 00007ffd`1b7efc1f : 00007ffd`1b81f980 00000060`0b0ff7d0 00000060`0b0f8000 00000060`0b100000 : 0x00007ffd`1b77c5f4
00000060`0b0fbfb0 00007ffd`1b81f980 : 00000060`0b0ff7d0 00000060`0b0f8000 00000060`0b100000 00000000`00000004 : 0x00007ffd`1b7efc1f
00000060`0b0fbfb8 00000060`0b0ff7d0 : 00000060`0b0f8000 00000060`0b100000 00000000`00000004 00007ffd`1b783c9d : 0x00007ffd`1b81f980
00000060`0b0fbfc0 00000060`0b0f8000 : 00000060`0b100000 00000000`00000004 00007ffd`1b783c9d 00007ffd`1b81f980 : 0x00000060`0b0ff7d0
00000060`0b0fbfc8 00000060`0b100000 : 00000000`00000004 00007ffd`1b783c9d 00007ffd`1b81f980 00000000`00000008 : 0x00000060`0b0f8000
00000060`0b0fbfd0 00000000`00000004 : 00007ffd`1b783c9d 00007ffd`1b81f980 00000000`00000008 000001f9`9aa563b0 : 0x00000060`0b100000
00000060`0b0fbfd8 00007ffd`1b783c9d : 00007ffd`1b81f980 00000000`00000008 000001f9`9aa563b0 00000000`00000000 : 0x4
00000060`0b0fbfe0 00007ffd`1b81f980 : 00000000`00000008 000001f9`9aa563b0 00000000`00000000 000001f9`9aa53698 : 0x00007ffd`1b783c9d
00000060`0b0fbfe8 00000000`00000008 : 000001f9`9aa563b0 00000000`00000000 000001f9`9aa53698 00007ffd`1b719cd6 : 0x00007ffd`1b81f980
00000060`0b0fbff0 000001f9`9aa563b0 : 00000000`00000000 000001f9`9aa53698 00007ffd`1b719cd6 00000000`00034142 : 0x8
00000060`0b0fbff8 00000000`00000000 : 000001f9`9aa53698 00007ffd`1b719cd6 00000000`00034142 00007ffd`1b76c656 : 0x000001f9`9aa563b0
SYMBOL_NAME: nt!PspCatchCriticalBreak+115
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.18362.1082
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 115
FAILURE_BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_22bf0080_nt!PspCatchCriticalBreak
OS_VERSION: 10.0.18362.1
BUILDLAB_STR: 19h1_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {250e6765-7995-0dbc-ff46-11534a56ea94}
Followup: MachineOwner
---------