PideKuyrukSokumu
Decapat
- Katılım
- 23 Eylül 2020
- Mesajlar
- 49
- Çözümler
- 1
Arkadaşlar mavi ekran hatası alıyorum, minidump dosyası analizi için yardımcı olabilecek var mı?
Son düzenleyen: Moderatör:
Temiz kurulum yaptınız mı? Açılış cihazı kayıp ya da açılış başarısız oldu diyor.
Kaç RAM slotu olduğunu sormadım. Minidump dosyan paylaşıma kapalı.
CPU-Z SPD slotları paylaşır mısın?
Abi fazla anlamıyorum özelliklerden çok pardon.Kaç RAM slotu olduğunu sormadım. Minidump dosyan paylaşıma kapalı.
CPU-Z SPD slotları paylaşır mısın?
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000006, Exception code that caused the bugcheck
Arg2: fffff80222651112, Address of the instruction which caused the bugcheck
Arg3: ffff8680c4a16470, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
*** WARNING: Unable to verify checksum for win32k.sys
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 5578
Key : Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007e on DESKTOP-G25IS1E
Key : Analysis.DebugData
Value: CreateObject
Key : Analysis.DebugModel
Value: CreateObject
Key : Analysis.Elapsed.mSec
Value: 9073
Key : Analysis.Memory.CommitPeak.Mb
Value: 84
Key : Analysis.System
Value: CreateObject
Key : WER.OS.Branch
Value: vb_release
Key : WER.OS.Timestamp
Value: 2019-12-06T14:06:00Z
Key : WER.OS.Version
Value: 10.0.19041.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: 3b
BUGCHECK_P1: c0000006
BUGCHECK_P2: fffff80222651112
BUGCHECK_P3: ffff8680c4a16470
BUGCHECK_P4: 0
CONTEXT: ffff8680c4a16470 -- (.cxr 0xffff8680c4a16470)
rax=0000000000000000 rbx=ffff8680c4a16ed0 rcx=0000000000000007
rdx=0000000002210a30 rsi=000000000000000d rdi=ffffc80f34f89000
rip=fffff80222651112 rsp=ffff8680c4a16e78 rbp=ffffc80f34f89000
r8=000000000000001c r9=ffffde0bc68d3080 r10=000002abf90f1a30
r11=0000000000000a30 r12=0000000029cd6ce3 r13=ffff8680c4a17130
r14=000000000000000d r15=000002abf8e373fc
iopl=0 nv up ei pl nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00050206
nt!HvpGetCellPaged+0xa2:
fffff802`22651112 418b02 mov eax,dword ptr [r10] ds:002b:000002ab`f90f1a30=????????
Resetting default scope
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: Registry
STACK_TEXT:
ffff8680`c4a16e78 fffff802`226e0a7f : 00000000`281f0f70 ffff8680`c4a17200 00000000`00000000 ffffc80f`41040080 : nt!HvpGetCellPaged+0xa2
ffff8680`c4a16e80 fffff802`226e68b5 : 00000001`ffffffff 00000000`29cd6ce3 ffff8680`c4a178e8 00000000`00000000 : nt!CmpDoCompareKeyName+0x2f
ffff8680`c4a16ed0 fffff802`226e99f9 : ffffc80f`41040080 00000000`00000007 ffff8680`c4a170d0 ffff8680`c4a17150 : nt!CmpWalkOneLevel+0x6f5
ffff8680`c4a16fd0 fffff802`226e82e3 : 00000001`0000001c ffff8680`c4a17320 ffff8680`c4a172d8 ffffde0b`c7689790 : nt!CmpDoParseKey+0x849
ffff8680`c4a17270 fffff802`226ec3ae : fffff802`226e8001 00000000`00000000 ffffde0b`c7689790 00000000`00000001 : nt!CmpParseKey+0x2c3
ffff8680`c4a17410 fffff802`226f566a : ffffde0b`c7689700 ffff8680`c4a17678 00000000`00000040 ffffde0b`9d8fe2a0 : nt!ObpLookupObjectName+0x3fe
ffff8680`c4a175e0 fffff802`226f544c : 00000000`00000000 00000000`00000000 00000000`00000000 ffffde0b`9d8fe2a0 : nt!ObOpenObjectByNameEx+0x1fa
ffff8680`c4a17710 fffff802`226f4f71 : 000000a9`3ba7eab8 ffff8680`c4a17a80 00000000`00000001 fffff802`2229ccce : nt!ObOpenObjectByName+0x5c
ffff8680`c4a17760 fffff802`226f4c9f : ffffde0b`c68d3080 00000000`0000000e 000000a9`3ba7ed01 00007ffd`cc3ec6b0 : nt!CmOpenKey+0x2c1
ffff8680`c4a179c0 fffff802`22405fb5 : ffffde0b`c68d3000 ffffde0b`00000000 ffff8680`c4a17a80 ffffde0b`c071b380 : nt!NtOpenKeyEx+0xf
ffff8680`c4a17a00 00007ffd`e808e184 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25
000000a9`3ba7e9d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`e808e184
SYMBOL_NAME: nt!HvpGetCellPaged+a2
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.19041.572
STACK_COMMAND: .cxr 0xffff8680c4a16470 ; kb
BUCKET_ID_FUNC_OFFSET: a2
FAILURE_BUCKET_ID: 0x3B_c0000006_nt!HvpGetCellPaged
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: vb_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {68f3db38-ae8e-4bae-c37a-85819946495f}
Followup: MachineOwner
---------
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffe7874b34a240, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 6405
Key : Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007e on DESKTOP-G25IS1E
Key : Analysis.DebugData
Value: CreateObject
Key : Analysis.DebugModel
Value: CreateObject
Key : Analysis.Elapsed.mSec
Value: 12054
Key : Analysis.Memory.CommitPeak.Mb
Value: 78
Key : Analysis.System
Value: CreateObject
Key : WER.OS.Branch
Value: vb_release
Key : WER.OS.Timestamp
Value: 2019-12-06T14:06:00Z
Key : WER.OS.Version
Value: 10.0.19041.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: ef
BUGCHECK_P1: ffffe7874b34a240
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: csrss.exe
CRITICAL_PROCESS: csrss.exe
EXCEPTION_RECORD: ffffe7874b34a980 -- (.exr 0xffffe7874b34a980)
ExceptionAddress: 0000000000000000
ExceptionCode: 00000000
ExceptionFlags: 00000000
NumberParameters: 0
ERROR_CODE: (NTSTATUS) 0x4b34f080 - <Unable to get error code text>
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
EXCEPTION_STR: 0x0
STACK_TEXT:
ffffc203`da899c08 fffff801`08306fe2 : 00000000`000000ef ffffe787`4b34a240 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
ffffc203`da899c10 fffff801`081d7d83 : 00000000`00000001 fffff801`07c60ea5 00000000`00000002 fffff801`07c60dcf : nt!PspCatchCriticalBreak+0x10e
ffffc203`da899cb0 fffff801`0804a9b0 : ffffe787`00000000 00000000`00000000 ffffe787`4b34a240 ffffe787`4b34a678 : nt!PspTerminateAllThreads+0x1ee377
ffffc203`da899d20 fffff801`0804a7ac : ffffe787`4b34a240 00000000`00000001 ffffffff`ffffffff 00000000`00000000 : nt!PspTerminateProcess+0xe0
ffffc203`da899d60 fffff801`07e05fb5 : ffffe787`4b34a240 ffffe787`4b34f080 ffffc203`da899e50 fffff801`08116372 : nt!NtTerminateProcess+0x9c
ffffc203`da899dd0 fffff801`07df8400 : fffff801`07e3017f ffffc203`da89a958 ffffc203`da89a958 ffffffff`ffffffff : nt!KiSystemServiceCopyEnd+0x25
ffffc203`da899f68 fffff801`07e3017f : ffffc203`da89a958 ffffc203`da89a958 ffffffff`ffffffff 00007ffb`280df000 : nt!KiServiceLinkage
ffffc203`da899f70 fffff801`07e066ac : ffffe787`4b34a980 fffff801`07cec946 00000000`00000800 ffffc203`da89aa00 : nt!KiDispatchException+0x1de95f
ffffc203`da89a820 fffff801`07e02843 : ffffe787`4b34f000 000002a8`ac435090 ffffc203`da89aa80 ffffe787`4b287d01 : nt!KiExceptionDispatch+0x12c
ffffc203`da89aa00 00007ffb`2aa53ed2 : 00000000`00000000 000000b3`00000000 000000b3`1c241200 00007ffb`2aad10ef : nt!KiPageFault+0x443
000000b3`1c2411e0 00000000`00000000 : 000000b3`00000000 000000b3`1c241200 00007ffb`2aad10ef 00007ffb`280df000 : 0x00007ffb`2aa53ed2
SYMBOL_NAME: nt!PspCatchCriticalBreak+10e
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.19041.572
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 10e
FAILURE_BUCKET_ID: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_4b34f080_nt!PspCatchCriticalBreak
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: vb_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {2a2839c4-e621-dcbd-cbc8-35177542c55f}
Followup: MachineOwner
---------
0: kd> lmvm
^ Non-empty string required in 'lmvm'
0: kd> lm
start end module name
ffff89c0`63000000 ffff89c0`632de000 win32kbase (deferred)
ffff89c0`632e0000 ffff89c0`63696000 win32kfull (deferred)
ffff89c0`636a0000 ffff89c0`636e8000 cdd (deferred)
ffff89c0`63f40000 ffff89c0`63fda000 win32k # (pdb symbols) C:\ProgramData\Dbg\sym\win32k.pdb\ED706A38659240A066E6FB19B994BAAA1\win32k.pdb
fffff801`06080000 fffff801`0630f000 mcupdate_GenuineIntel (deferred)
fffff801`06310000 fffff801`06316000 hal (deferred)
fffff801`06320000 fffff801`0632b000 kd (deferred)
fffff801`06330000 fffff801`06357000 tm (deferred)
fffff801`06360000 fffff801`063c9000 CLFS (deferred)
fffff801`063d0000 fffff801`063ea000 PSHED (deferred)
fffff801`063f0000 fffff801`063fb000 BOOTVID (deferred)
fffff801`06400000 fffff801`0646f000 FLTMGR (deferred)
fffff801`06470000 fffff801`0647e000 cmimcext (deferred)
fffff801`07a00000 fffff801`08a46000 nt (pdb symbols) C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\B16053724B46515388FDEA9D0470D02E1\ntkrnlmp.pdb
fffff801`0ba00000 fffff801`0bb13000 clipsp (deferred)
fffff801`0bb20000 fffff801`0bb49000 ksecdd (deferred)
fffff801`0bb50000 fffff801`0bbb2000 msrpc (deferred)
fffff801`0bbc0000 fffff801`0bbd1000 werkernel (deferred)
fffff801`0bbe0000 fffff801`0bbec000 ntosext (deferred)
fffff801`0bbf0000 fffff801`0bcd3000 CI (deferred)
fffff801`0bce0000 fffff801`0bd97000 cng (deferred)
fffff801`0bda0000 fffff801`0be71000 Wdf01000 (deferred)
fffff801`0be80000 fffff801`0be93000 WDFLDR (deferred)
fffff801`0bea0000 fffff801`0beaf000 SleepStudyHelper (deferred)
fffff801`0beb0000 fffff801`0bec1000 WppRecorder (deferred)
fffff801`0bed0000 fffff801`0bef6000 acpiex (deferred)
fffff801`0bf00000 fffff801`0bf1a000 SgrmAgent (deferred)
fffff801`0bf20000 fffff801`0bfec000 ACPI (deferred)
fffff801`0bff0000 fffff801`0bffc000 WMILIB (deferred)
fffff801`0c000000 fffff801`0c00b000 msisadrv (deferred)
fffff801`0c010000 fffff801`0c088000 pci (deferred)
fffff801`0c090000 fffff801`0c0d4000 tpm (deferred)
fffff801`0c0f0000 fffff801`0c15b000 intelpep (deferred)
fffff801`0c160000 fffff801`0c177000 WindowsTrustedRT (deferred)
fffff801`0c180000 fffff801`0c18b000 IntelTA (deferred)
fffff801`0c190000 fffff801`0c19b000 WindowsTrustedRTProxy (deferred)
fffff801`0c1a0000 fffff801`0c1b4000 pcw (deferred)
fffff801`0c1c0000 fffff801`0c1fe000 klupd_klif_arkmon (deferred)
fffff801`0c200000 fffff801`0c215000 vdrvroot (deferred)
fffff801`0c220000 fffff801`0c25b000 cm_km (deferred)
fffff801`0c260000 fffff801`0c2a4000 ucx01000 (deferred)
fffff801`0c2b0000 fffff801`0c2df000 pdc (deferred)
fffff801`0c2e0000 fffff801`0c2f9000 CEA (deferred)
fffff801`0c300000 fffff801`0c331000 partmgr (deferred)
fffff801`0c340000 fffff801`0c3ea000 spaceport (deferred)
fffff801`0c3f0000 fffff801`0c409000 volmgr (deferred)
fffff801`0c410000 fffff801`0c45f000 sdbus (deferred)
fffff801`0c460000 fffff801`0c4c3000 volmgrx (deferred)
fffff801`0c4d0000 fffff801`0c4e8000 urscx01000 (deferred)
fffff801`0c4f0000 fffff801`0c50e000 mountmgr (deferred)
fffff801`0c510000 fffff801`0d0f2000 iaStorAC (deferred)
fffff801`0d100000 fffff801`0d1b0000 storport (deferred)
fffff801`0d1c0000 fffff801`0d1dc000 EhStorClass (deferred)
fffff801`0d1f0000 fffff801`0d20a000 fileinfo (deferred)
fffff801`0d210000 fffff801`0d250000 Wof (deferred)
fffff801`0d260000 fffff801`0d539000 Ntfs (deferred)
fffff801`0d540000 fffff801`0d573000 usbccgp (deferred)
fffff801`0d580000 fffff801`0d58e000 USBD (deferred)
fffff801`0d590000 fffff801`0d59d000 urschipidea (deferred)
fffff801`0d5a0000 fffff801`0d5ba000 usbehci (deferred)
fffff801`0d5c0000 fffff801`0d639000 USBPORT (deferred)
fffff801`0d640000 fffff801`0d6c5000 usbhub (deferred)
fffff801`0d6d0000 fffff801`0d773000 UsbHub3 (deferred)
fffff801`0d780000 fffff801`0d78d000 Fs_Rec (deferred)
fffff801`0d790000 fffff801`0d8ff000 ndis (deferred)
fffff801`0d900000 fffff801`0d998000 NETIO (deferred)
fffff801`0d9a0000 fffff801`0d9d2000 ksecpkg (deferred)
fffff801`0d9e0000 fffff801`0dcca000 tcpip (deferred)
fffff801`0dcd0000 fffff801`0dd4f000 fwpkclnt (deferred)
fffff801`0dd50000 fffff801`0dd80000 wfplwfs (deferred)
fffff801`0dd90000 fffff801`0dda3000 amdkmpfd (deferred)
fffff801`0ddb0000 fffff801`0de78000 fvevol (deferred)
fffff801`0de80000 fffff801`0de8b000 volume (deferred)
fffff801`0de90000 fffff801`0defd000 volsnap (deferred)
fffff801`0df00000 fffff801`0df98000 USBXHCI (deferred)
fffff801`0dfa0000 fffff801`0dfc5000 USBSTOR (deferred)
fffff801`0dfd0000 fffff801`0dfe8000 uaspstor (deferred)
fffff801`0dff0000 fffff801`0e00e000 sdstor (deferred)
fffff801`0e010000 fffff801`0e060000 rdyboost (deferred)
fffff801`0e070000 fffff801`0e096000 mup (deferred)
fffff801`0e0a0000 fffff801`0e0ba000 klupd_klif_klbg (deferred)
fffff801`0e0c0000 fffff801`0e0d2000 iorate (deferred)
fffff801`0e100000 fffff801`0e11c000 disk (deferred)
fffff801`0e120000 fffff801`0e18c000 CLASSPNP (deferred)
fffff801`20c00000 fffff801`20cf2000 klif (deferred)
fffff801`20d00000 fffff801`20d76000 ks (deferred)
fffff801`20d80000 fffff801`20e0a000 klflt (deferred)
fffff801`20e10000 fffff801`20e23000 mouclass (deferred)
fffff801`20e30000 fffff801`20e41000 kbdhid (deferred)
fffff801`20e50000 fffff801`20f03000 SynTP (deferred)
fffff801`20f10000 fffff801`20f27000 klkbdflt (deferred)
fffff801`20f30000 fffff801`20f44000 kbdclass (deferred)
fffff801`20f50000 fffff801`20f66000 BasicDisplay (deferred)
fffff801`20f70000 fffff801`20f88000 watchdog (deferred)
fffff801`20f90000 fffff801`21333000 dxgkrnl (deferred)
fffff801`21340000 fffff801`2134d000 kltap (deferred)
fffff801`21350000 fffff801`213f1000 Vid (deferred)
fffff801`21400000 fffff801`21421000 winhvr (deferred)
fffff801`21430000 fffff801`21442000 CompositeBus (deferred)
fffff801`21450000 fffff801`2145d000 kdnic (deferred)
fffff801`21470000 fffff801`2147d000 sshid (deferred)
fffff801`21480000 fffff801`2148b000 mshidkmdf (deferred)
fffff801`21490000 fffff801`214cf000 HIDCLASS (deferred)
fffff801`214d0000 fffff801`214e3000 HIDPARSE (deferred)
fffff801`214f0000 fffff801`21502000 hidusb (deferred)
fffff801`21510000 fffff801`21520000 mouhid (deferred)
fffff801`21530000 fffff801`21549000 klmouflt (deferred)
fffff801`21550000 fffff801`21565000 umbus (deferred)
fffff801`21570000 fffff801`21585000 CAD (deferred)
fffff801`21e00000 fffff801`21e22000 tdx (deferred)
fffff801`21e30000 fffff801`21e40000 TDI (deferred)
fffff801`21e50000 fffff801`21eac000 netbt (deferred)
fffff801`21eb0000 fffff801`21ec3000 afunix (deferred)
fffff801`21ed0000 fffff801`21f73000 afd (deferred)
fffff801`21f80000 fffff801`21fb9000 klwtp (deferred)
fffff801`21fc0000 fffff801`21fd2000 klim6 (deferred)
fffff801`21fe0000 fffff801`21ffa000 vwififlt (deferred)
fffff801`22000000 fffff801`2202b000 pacer (deferred)
fffff801`22030000 fffff801`22044000 ndiscap (deferred)
fffff801`22050000 fffff801`22064000 netbios (deferred)
fffff801`22070000 fffff801`220eb000 rdbss (deferred)
fffff801`220f0000 fffff801`22102000 nsiproxy (deferred)
fffff801`22110000 fffff801`2211e000 npsvctrig (deferred)
fffff801`22120000 fffff801`22163000 kneps (deferred)
fffff801`22170000 fffff801`221a8000 klids (deferred)
fffff801`221b0000 fffff801`221ba000 HWiNFO64A (deferred)
fffff801`221c0000 fffff801`221ca000 gpuenergydrv (deferred)
fffff801`221d0000 fffff801`221fc000 dfsc (deferred)
fffff801`22200000 fffff801`2221c000 raspppoe (deferred)
fffff801`22220000 fffff801`2228c000 fastfat (deferred)
fffff801`22290000 fffff801`222a7000 bam (deferred)
fffff801`222b0000 fffff801`222fe000 ahcache (deferred)
fffff801`22310000 fffff801`2231e000 dump_diskdump (deferred)
fffff801`22340000 fffff801`2235d000 dump_dumpfve (deferred)
fffff801`22360000 fffff801`22441000 dxgmms2 (deferred)
fffff801`22450000 fffff801`2246b000 monitor (deferred)
fffff801`22470000 fffff801`224c4000 WUDFRd (deferred)
fffff801`224d0000 fffff801`224f9000 luafv (deferred)
fffff801`22500000 fffff801`22514000 mmcss (deferred)
fffff801`22520000 fffff801`22556000 wcifs (deferred)
fffff801`22560000 fffff801`225e0000 cldflt (deferred)
fffff801`225f0000 fffff801`2260a000 storqosflt (deferred)
fffff801`22610000 fffff801`22637000 bindflt (deferred)
fffff801`22660000 fffff801`22678000 lltdio (deferred)
fffff801`22680000 fffff801`22698000 mslldp (deferred)
fffff801`226a0000 fffff801`226bb000 rspndr (deferred)
fffff801`226c0000 fffff801`226dd000 wanarp (deferred)
fffff801`226e0000 fffff801`226f8000 ndisuio (deferred)
fffff801`22700000 fffff801`227ba000 nwifi (deferred)
fffff801`227c0000 fffff801`22816000 msquic (deferred)
fffff801`22820000 fffff801`229a6000 HTTP (deferred)
fffff801`229b0000 fffff801`229d5000 bowser (deferred)
fffff801`229e0000 fffff801`229fa000 mpsdrv (deferred)
fffff801`22a00000 fffff801`22a93000 mrxsmb (deferred)
fffff801`22aa0000 fffff801`22ae5000 mrxsmb20 (deferred)
fffff801`22af0000 fffff801`22b03000 condrv (deferred)
fffff801`22b10000 fffff801`22b62000 srvnet (deferred)
fffff801`22b70000 fffff801`22bc2000 mrxsmb10 (deferred)
fffff801`22bd0000 fffff801`22bf7000 Ndu (deferred)
fffff801`22c00000 fffff801`22c15000 tcpipreg (deferred)
fffff801`22c20000 fffff801`22c33000 vwifimp (deferred)
fffff801`22c40000 fffff801`22c5c000 rassstp (deferred)
fffff801`22c60000 fffff801`22c7d000 NDProxy (deferred)
fffff801`22c80000 fffff801`22ca7000 AgileVpn (deferred)
fffff801`22cb0000 fffff801`23303000 RTKVHD64 (deferred)
fffff801`23310000 fffff801`23365000 IntcDAud (deferred)
fffff801`23370000 fffff801`2338c000 Npfs (deferred)
fffff801`23390000 fffff801`233a1000 Msfs (deferred)
fffff801`233b0000 fffff801`233cb000 CimFS (deferred)
fffff801`233d0000 fffff801`233ef000 klwfp (deferred)
fffff801`233f0000 fffff801`233ff000 ndistapi (deferred)
fffff801`23b00000 fffff801`25a73000 nvlddmkm (deferred)
fffff801`25aa0000 fffff801`25abe000 crashdmp (deferred)
fffff801`26800000 fffff801`26b7e000 rtsuvc (deferred)
fffff801`26b80000 fffff801`27762000 dump_iaStorAC (deferred)
fffff801`27770000 fffff801`27846000 peauth (deferred)
fffff801`27e00000 fffff801`27e25000 HDAudBus (deferred)
fffff801`27e30000 fffff801`27e96000 portcls (deferred)
fffff801`27ea0000 fffff801`27ec1000 drmk (deferred)
fffff801`27ed0000 fffff801`27edf000 Smb_driver_Intel (deferred)
fffff801`27ee0000 fffff801`27ef9000 iaLPSS2i_GPIO2 (deferred)
fffff801`27f00000 fffff801`27f32000 msgpioclx (deferred)
fffff801`27f40000 fffff801`27f4c000 wmiacpi (deferred)
fffff801`27f50000 fffff801`27f90000 intelppm (deferred)
fffff801`27fa0000 fffff801`27fab000 acpipagr (deferred)
fffff801`27fb0000 fffff801`27fbe000 UEFI (deferred)
fffff801`27fc0000 fffff801`27fd1000 nvvad64v (deferred)
fffff801`27fe0000 fffff801`27fef000 ksthunk (deferred)
fffff801`27ff0000 fffff801`28003000 klpnpflt (deferred)
fffff801`28010000 fffff801`2801d000 NvModuleTracker (deferred)
fffff801`28020000 fffff801`28030000 nvvhci (deferred)
fffff801`28040000 fffff801`2804d000 NdisVirtualBus (deferred)
fffff801`28050000 fffff801`28060000 mssmbios (deferred)
fffff801`28070000 fffff801`2807c000 swenum (deferred)
fffff801`28080000 fffff801`2808e000 ssdevfactory (deferred)
fffff801`28090000 fffff801`280c3000 klupd_klif_mark (deferred)
fffff801`280f0000 fffff801`280fe000 rdpbus (deferred)
fffff801`28cf0000 fffff801`28db7000 srv2 (deferred)
fffff801`28dc0000 fffff801`28de1000 rasl2tp (deferred)
fffff801`28df0000 fffff801`28e11000 raspptp (deferred)
fffff801`28e20000 fffff801`28e5a000 ndiswan (deferred)
fffff801`28e70000 fffff801`28f68000 rt640x64 (deferred)
fffff801`28f70000 fffff801`28f80000 BATTC (deferred)
fffff801`28f90000 fffff801`28fa4000 AcpiVpc (deferred)
fffff801`28fb0000 fffff801`28fd1000 i8042prt (deferred)
fffff801`28fe0000 fffff801`28ff6000 klupd_klif_kimul (deferred)
fffff801`29000000 fffff801`29030000 klbackupflt (deferred)
fffff801`29040000 fffff801`29055000 filecrypt (deferred)
fffff801`29060000 fffff801`2906e000 tbs (deferred)
fffff801`29070000 fffff801`291e0000 klhk (deferred)
fffff801`291f0000 fffff801`292ba000 RtkBtfilter (deferred)
fffff801`292c0000 fffff801`2943f000 BTHport (deferred)
fffff801`29440000 fffff801`294e0000 klgse (deferred)
fffff801`294f0000 fffff801`29511000 BTHUSB (deferred)
fffff801`29520000 fffff801`29531000 klpd (deferred)
fffff801`29540000 fffff801`2955b000 kldisk (deferred)
fffff801`29560000 fffff801`295ac000 TeeDriverW10x64 (deferred)
fffff801`295b0000 fffff801`295ba000 Null (deferred)
fffff801`295c0000 fffff801`295ca000 Beep (deferred)
fffff801`295d0000 fffff801`29606000 bhtpcrdr (deferred)
fffff801`29610000 fffff801`29621000 BasicRender (deferred)
fffff801`29630000 fffff801`29e11000 rtwlane (deferred)
fffff801`29e20000 fffff801`29f0f000 wdiwifi (deferred)
fffff801`29f10000 fffff801`29f1e000 vwifibus (deferred)
fffff801`29f20000 fffff801`29f2f000 CmBatt (deferred)
fffff801`29f30000 fffff801`29f3c000 ICCWDT (deferred)
fffff801`29f40000 fffff801`2b993000 igdkmd64 (deferred)
fffff801`2b9a0000 fffff801`2b9b8000 klbackupdisk (deferred)
fffff801`2b9c0000 fffff801`2b9f0000 cdrom (deferred)
Unloaded modules:
fffff801`22640000 fffff801`22651000 MSKSSRV.sys
fffff801`22170000 fffff801`221a9000 klids.sys
fffff801`25ad0000 fffff801`25adf000 dump_storpor
fffff801`28240000 fffff801`28e23000 dump_iaStorA
fffff801`28e50000 fffff801`28e6e000 dump_dumpfve
fffff801`22200000 fffff801`2221c000 dam.sys
fffff801`28090000 fffff801`280e5000 WUDFRd.sys
fffff801`0c0e0000 fffff801`0c0ee000 klelam.sys
fffff801`0e0e0000 fffff801`0e0f1000 hwpolicy.sys
0: kd> lmv
start end module name
ffff89c0`63000000 ffff89c0`632de000 win32kbase (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\win32kbase.sys\DB12238D2de000\win32kbase.sys
Image path: \SystemRoot\System32\win32kbase.sys
Image name: win32kbase.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: DB12238D (This is a reproducible build file hash, not a timestamp)
CheckSum: 002D7389
ImageSize: 002DE000
File version: 10.0.19041.572
Product version: 10.0.19041.572
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: win32kbase.sys
OriginalFilename: win32kbase.sys
ProductVersion: 10.0.19041.572
FileVersion: 10.0.19041.572 (WinBuild.160101.0800)
FileDescription: Base Win32k Kernel Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
ffff89c0`632e0000 ffff89c0`63696000 win32kfull (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\win32kfull.sys\33F812BB3b6000\win32kfull.sys
Image path: \SystemRoot\System32\win32kfull.sys
Image name: win32kfull.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 33F812BB (This is a reproducible build file hash, not a timestamp)
CheckSum: 003A6C8A
ImageSize: 003B6000
File version: 10.0.19041.571
Product version: 10.0.19041.571
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: win32kfull.sys
OriginalFilename: win32kfull.sys
ProductVersion: 10.0.19041.571
FileVersion: 10.0.19041.571 (WinBuild.160101.0800)
FileDescription: Full/Desktop Win32k Kernel Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
ffff89c0`636a0000 ffff89c0`636e8000 cdd (deferred)
Mapped memory image file: C:\Windows\system32\cdd.dll
Image path: \SystemRoot\System32\cdd.dll
Image name: cdd.dll
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 00000000 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00000000
ImageSize: 00048000
File version: 10.0.19041.546
Product version: 10.0.19041.546
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.4 Driver
File date: 00000000.00000000
Translations: 0000.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: cdd.dll
OriginalFilename: cdd.dll
ProductVersion: 10.0.19041.546
FileVersion: 10.0.19041.546 (WinBuild.160101.0800)
FileDescription: Canonical Display Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
ffff89c0`63f40000 ffff89c0`63fda000 win32k # (pdb symbols) C:\ProgramData\Dbg\sym\win32k.pdb\ED706A38659240A066E6FB19B994BAAA1\win32k.pdb
Loaded symbol image file: win32k.sys
Mapped memory image file: C:\ProgramData\Dbg\sym\win32k.sys\E87370BB9a000\win32k.sys
Image path: \SystemRoot\System32\win32k.sys
Image name: win32k.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: E87370BB (This is a reproducible build file hash, not a timestamp)
CheckSum: 0009C3CE
ImageSize: 0009A000
File version: 10.0.19041.508
Product version: 10.0.19041.508
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: win32k.sys
OriginalFilename: win32k.sys
ProductVersion: 10.0.19041.508
FileVersion: 10.0.19041.508 (WinBuild.160101.0800)
FileDescription: Multi-User Win32 Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`06080000 fffff801`0630f000 mcupdate_GenuineIntel (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\mcupdate_GenuineIntel.dll\9FB1DE4628f000\mcupdate_GenuineIntel.dll
Image path: \SystemRoot\system32\mcupdate_GenuineIntel.dll
Image name: mcupdate_GenuineIntel.dll
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 9FB1DE46 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0028C60B
ImageSize: 0028F000
File version: 10.0.19041.1030
Product version: 10.0.19041.1030
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.A Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: mcupdate.dll
OriginalFilename: mcupdate_GenuineIntel.dll
ProductVersion: 10.0.19041.1030
FileVersion: 10.0.19041.1030 (WinBuild.160101.0800)
FileDescription: Intel Microcode Update Library
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`06310000 fffff801`06316000 hal (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\halaacpi.dll\1A7BE8E96000\halaacpi.dll
Image path: hal.dll
Image name: hal.dll
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 1A7BE8E9 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0000CE9F
ImageSize: 00006000
File version: 10.0.19551.1001
Product version: 10.0.19551.1001
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: hal.dll
OriginalFilename: hal.dll
ProductVersion: 10.0.19551.1001
FileVersion: 10.0.19551.1001 (WinBuild.160101.0800)
FileDescription: Hardware Abstraction Layer DLL
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`06320000 fffff801`0632b000 kd (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\kd.dll\FE185FA8b000\kd.dll
Image path: \SystemRoot\system32\kd.dll
Image name: kd.dll
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: FE185FA8 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00004EF6
ImageSize: 0000B000
File version: 10.0.19041.1030
Product version: 10.0.19041.1030
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.A Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: kd.dll
OriginalFilename: kd.dll
ProductVersion: 10.0.19041.1030
FileVersion: 10.0.19041.1030 (WinBuild.160101.0800)
FileDescription: Local Kernel Debugger
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`06330000 fffff801`06357000 tm (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\tm.sys\4ECED59327000\tm.sys
Image path: \SystemRoot\System32\drivers\tm.sys
Image name: tm.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 4ECED593 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00029C42
ImageSize: 00027000
File version: 10.0.19041.208
Product version: 10.0.19041.208
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: tm.sys
OriginalFilename: tm.sys
ProductVersion: 10.0.19041.208
FileVersion: 10.0.19041.208 (WinBuild.160101.0800)
FileDescription: Kernel Transaction Manager Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`06360000 fffff801`063c9000 CLFS (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\CLFS.SYS\43B5A26569000\CLFS.SYS
Image path: \SystemRoot\System32\drivers\CLFS.SYS
Image name: CLFS.SYS
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 43B5A265 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0006BD72
ImageSize: 00069000
File version: 10.0.19041.546
Product version: 10.0.19041.546
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0000.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: clfs.sys
OriginalFilename: Clfs.Sys
ProductVersion: 10.0.19041.546
FileVersion: 10.0.19041.546 (WinBuild.160101.0800)
FileDescription: Common Log File System Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`063d0000 fffff801`063ea000 PSHED (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\PSHED.dll\4C55DC991a000\PSHED.dll
Image path: \SystemRoot\system32\PSHED.dll
Image name: PSHED.dll
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 4C55DC99 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000201A9
ImageSize: 0001A000
File version: 10.0.19041.208
Product version: 10.0.19041.208
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: pshed.dll
OriginalFilename: pshed.dll
ProductVersion: 10.0.19041.208
FileVersion: 10.0.19041.208 (WinBuild.160101.0800)
FileDescription: Platform Specific Hardware Error Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`063f0000 fffff801`063fb000 BOOTVID (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\BOOTVID.dll\D13EE5B6b000\BOOTVID.dll
Image path: \SystemRoot\system32\BOOTVID.dll
Image name: BOOTVID.dll
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: D13EE5B6 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00013A3C
ImageSize: 0000B000
File version: 10.0.19041.1030
Product version: 10.0.19041.1030
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.4 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: bootvid.dll
OriginalFilename: bootvid.dll
ProductVersion: 10.0.19041.1030
FileVersion: 10.0.19041.1030 (WinBuild.160101.0800)
FileDescription: VGA Boot Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`06400000 fffff801`0646f000 FLTMGR (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\FLTMGR.SYS\02839B666f000\FLTMGR.SYS
Image path: \SystemRoot\System32\drivers\FLTMGR.SYS
Image name: FLTMGR.SYS
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 02839B66 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00072E12
ImageSize: 0006F000
File version: 10.0.19041.264
Product version: 10.0.19041.264
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: fltMgr.sys
OriginalFilename: fltMgr.sys
ProductVersion: 10.0.19041.264
FileVersion: 10.0.19041.264 (WinBuild.160101.0800)
FileDescription: Microsoft Filesystem Filter Manager
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`06470000 fffff801`0647e000 cmimcext (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\cmimcext.sys\94809681e000\cmimcext.sys
Image path: \SystemRoot\System32\drivers\cmimcext.sys
Image name: cmimcext.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 94809681 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00010F8E
ImageSize: 0000E000
File version: 10.0.19041.1030
Product version: 10.0.19041.1030
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: cmimcext.sys
OriginalFilename: cmimcext.sys
ProductVersion: 10.0.19041.1030
FileVersion: 10.0.19041.1030 (WinBuild.160101.0800)
FileDescription: Kernel Configuration Manager Initial Configuration Extension Host Export Driver
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`07a00000 fffff801`08a46000 nt (pdb symbols) C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\B16053724B46515388FDEA9D0470D02E1\ntkrnlmp.pdb
Loaded symbol image file: ntkrnlmp.exe
Mapped memory image file: C:\ProgramData\Dbg\sym\ntoskrnl.exe\90EE290B1046000\ntoskrnl.exe
Image path: ntkrnlmp.exe
Image name: ntkrnlmp.exe
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 90EE290B (This is a reproducible build file hash, not a timestamp)
CheckSum: 00A5FA87
ImageSize: 01046000
File version: 10.0.19041.572
Product version: 10.0.19041.572
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: ntkrnlmp.exe
OriginalFilename: ntkrnlmp.exe
ProductVersion: 10.0.19041.572
FileVersion: 10.0.19041.572 (WinBuild.160101.0800)
FileDescription: NT Kernel & System
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`0ba00000 fffff801`0bb13000 clipsp (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\clipsp.sys\5F6ED2F1113000\clipsp.sys
Image path: \SystemRoot\System32\drivers\clipsp.sys
Image name: clipsp.sys
Browse all global symbols functions data
Timestamp: Sat Sep 26 08:34:41 2020 (5F6ED2F1)
CheckSum: 0010EEF2
ImageSize: 00113000
File version: 10.0.19041.546
Product version: 10.0.19041.546
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: clipsp.dll
OriginalFilename: clipsp.dll
ProductVersion: 10.0.19041.546
FileVersion: 10.0.19041.546 (WinBuild.160101.0800)
FileDescription: CLIP Service
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`0bb20000 fffff801`0bb49000 ksecdd (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\ksecdd.sys\5F6E711429000\ksecdd.sys
Image path: \SystemRoot\System32\drivers\ksecdd.sys
Image name: ksecdd.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 5F6E7114 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000323E3
ImageSize: 00029000
File version: 10.0.19041.508
Product version: 10.0.19041.508
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: ksecdd.sys
OriginalFilename: ksecdd.sys
ProductVersion: 10.0.19041.508
FileVersion: 10.0.19041.508 (WinBuild.160101.0800)
FileDescription: Kernel Security Support Provider Interface
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`0bb50000 fffff801`0bbb2000 msrpc (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\msrpc.sys\BD46698A62000\msrpc.sys
Image path: \SystemRoot\System32\drivers\msrpc.sys
Image name: msrpc.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: BD46698A (This is a reproducible build file hash, not a timestamp)
CheckSum: 00062C96
ImageSize: 00062000
File version: 10.0.19041.546
Product version: 10.0.19041.546
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft® Windows® Operating System
InternalName: krpcdd.sys
OriginalFilename: krpcdd.sys
ProductVersion: 10.0.19041.546
FileVersion: 10.0.19041.546 (WinBuild.160101.0800)
FileDescription: Kernel Remote Procedure Call Provider
LegalCopyright: © Microsoft Corporation. All rights reserved.
fffff801`0bbc0000 fffff801`0bbd1000 werkernel (deferred)
Mapped memory image file: C:\ProgramData\Dbg\sym\werkernel.sys\1BD4610F11000\werkernel.sys
Image path: \SystemRoot\System32\drivers\werkernel.sys
Image name: werkernel.sys
Browse all global symbols functions data
Image was built with /Brepro flag.
Timestamp: 1BD4610F (This is a reproducible build file hash, not a timestamp)
CheckSum: 0000F1D5
ImageSize: 00011000
File version: 10.0.19041.1030
Product version: 10.0.19041.1030
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 3.7 Driver
File date: 00000000.00000000
Translations: 0409.04b0
Abi Windows 2004 yüklediğimden kaynaklanabilir mi ? Bu sürümü yükledikten sonra hataları almaya başladım.Kesin bir şey bulamadım açıkçası. 20H2 sürümüne geçer misin?
Windows 10 Türkçe İndirme ve Kurulum
Windows 10 Sürüm 22H2 resmi Microsoft Türkçe ISO dosyasını buradan indirebilirsiniz. Format atmak yerine dosyalarınızı kaybetmeden sadece son sürüme yükseltmek istiyorsanız Microsoft'un bu aracını indirip çalıştırmanız yeterli. İndirin: Windows 10 Sürüm 22H2 64 Bit Türkçe | Resmi Microsoft ISO...www.technopat.net
Kod:SYSTEM_SERVICE_EXCEPTION (3b) An exception happened while executing a system service routine. Arguments: Arg1: 00000000c0000006, Exception code that caused the bugcheck Arg2: fffff80222651112, Address of the instruction which caused the bugcheck Arg3: ffff8680c4a16470, Address of the context record for the exception that caused the bugcheck Arg4: 0000000000000000, zero. Debugging Details: ------------------ *** WARNING: Unable to verify checksum for win32k.sys KEY_VALUES_STRING: 1 Key : Analysis.CPU.mSec Value: 5578 Key : Analysis.DebugAnalysisProvider.CPP Value: Create: 8007007e on DESKTOP-G25IS1E Key : Analysis.DebugData Value: CreateObject Key : Analysis.DebugModel Value: CreateObject Key : Analysis.Elapsed.mSec Value: 9073 Key : Analysis.Memory.CommitPeak.Mb Value: 84 Key : Analysis.System Value: CreateObject Key : WER.OS.Branch Value: vb_release Key : WER.OS.Timestamp Value: 2019-12-06T14:06:00Z Key : WER.OS.Version Value: 10.0.19041.1 ADDITIONAL_XML: 1 OS_BUILD_LAYERS: 1 BUGCHECK_CODE: 3b BUGCHECK_P1: c0000006 BUGCHECK_P2: fffff80222651112 BUGCHECK_P3: ffff8680c4a16470 BUGCHECK_P4: 0 CONTEXT: ffff8680c4a16470 -- (.cxr 0xffff8680c4a16470) rax=0000000000000000 rbx=ffff8680c4a16ed0 rcx=0000000000000007 rdx=0000000002210a30 rsi=000000000000000d rdi=ffffc80f34f89000 rip=fffff80222651112 rsp=ffff8680c4a16e78 rbp=ffffc80f34f89000 r8=000000000000001c r9=ffffde0bc68d3080 r10=000002abf90f1a30 r11=0000000000000a30 r12=0000000029cd6ce3 r13=ffff8680c4a17130 r14=000000000000000d r15=000002abf8e373fc iopl=0 nv up ei pl nz na po nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00050206 nt!HvpGetCellPaged+0xa2: fffff802`22651112 418b02 mov eax,dword ptr [r10] ds:002b:000002ab`f90f1a30=???????? Resetting default scope BLACKBOXBSD: 1 (!blackboxbsd) BLACKBOXNTFS: 1 (!blackboxntfs) BLACKBOXPNP: 1 (!blackboxpnp) BLACKBOXWINLOGON: 1 CUSTOMER_CRASH_COUNT: 1 PROCESS_NAME: Registry STACK_TEXT: ffff8680`c4a16e78 fffff802`226e0a7f : 00000000`281f0f70 ffff8680`c4a17200 00000000`00000000 ffffc80f`41040080 : nt!HvpGetCellPaged+0xa2 ffff8680`c4a16e80 fffff802`226e68b5 : 00000001`ffffffff 00000000`29cd6ce3 ffff8680`c4a178e8 00000000`00000000 : nt!CmpDoCompareKeyName+0x2f ffff8680`c4a16ed0 fffff802`226e99f9 : ffffc80f`41040080 00000000`00000007 ffff8680`c4a170d0 ffff8680`c4a17150 : nt!CmpWalkOneLevel+0x6f5 ffff8680`c4a16fd0 fffff802`226e82e3 : 00000001`0000001c ffff8680`c4a17320 ffff8680`c4a172d8 ffffde0b`c7689790 : nt!CmpDoParseKey+0x849 ffff8680`c4a17270 fffff802`226ec3ae : fffff802`226e8001 00000000`00000000 ffffde0b`c7689790 00000000`00000001 : nt!CmpParseKey+0x2c3 ffff8680`c4a17410 fffff802`226f566a : ffffde0b`c7689700 ffff8680`c4a17678 00000000`00000040 ffffde0b`9d8fe2a0 : nt!ObpLookupObjectName+0x3fe ffff8680`c4a175e0 fffff802`226f544c : 00000000`00000000 00000000`00000000 00000000`00000000 ffffde0b`9d8fe2a0 : nt!ObOpenObjectByNameEx+0x1fa ffff8680`c4a17710 fffff802`226f4f71 : 000000a9`3ba7eab8 ffff8680`c4a17a80 00000000`00000001 fffff802`2229ccce : nt!ObOpenObjectByName+0x5c ffff8680`c4a17760 fffff802`226f4c9f : ffffde0b`c68d3080 00000000`0000000e 000000a9`3ba7ed01 00007ffd`cc3ec6b0 : nt!CmOpenKey+0x2c1 ffff8680`c4a179c0 fffff802`22405fb5 : ffffde0b`c68d3000 ffffde0b`00000000 ffff8680`c4a17a80 ffffde0b`c071b380 : nt!NtOpenKeyEx+0xf ffff8680`c4a17a00 00007ffd`e808e184 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25 000000a9`3ba7e9d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`e808e184 SYMBOL_NAME: nt!HvpGetCellPaged+a2 MODULE_NAME: nt IMAGE_NAME: ntkrnlmp.exe IMAGE_VERSION: 10.0.19041.572 STACK_COMMAND: .cxr 0xffff8680c4a16470 ; kb BUCKET_ID_FUNC_OFFSET: a2 FAILURE_BUCKET_ID: 0x3B_c0000006_nt!HvpGetCellPaged OS_VERSION: 10.0.19041.1 BUILDLAB_STR: vb_release OSPLATFORM_TYPE: x64 OSNAME: Windows 10 FAILURE_ID_HASH: {68f3db38-ae8e-4bae-c37a-85819946495f} Followup: MachineOwner --------- CRITICAL_PROCESS_DIED (ef) A critical system process died Arguments: Arg1: ffffe7874b34a240, Process object or thread object Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died. Arg3: 0000000000000000 Arg4: 0000000000000000 Debugging Details: ------------------ KEY_VALUES_STRING: 1 Key : Analysis.CPU.mSec Value: 6405 Key : Analysis.DebugAnalysisProvider.CPP Value: Create: 8007007e on DESKTOP-G25IS1E Key : Analysis.DebugData Value: CreateObject Key : Analysis.DebugModel Value: CreateObject Key : Analysis.Elapsed.mSec Value: 12054 Key : Analysis.Memory.CommitPeak.Mb Value: 78 Key : Analysis.System Value: CreateObject Key : WER.OS.Branch Value: vb_release Key : WER.OS.Timestamp Value: 2019-12-06T14:06:00Z Key : WER.OS.Version Value: 10.0.19041.1 ADDITIONAL_XML: 1 OS_BUILD_LAYERS: 1 BUGCHECK_CODE: ef BUGCHECK_P1: ffffe7874b34a240 BUGCHECK_P2: 0 BUGCHECK_P3: 0 BUGCHECK_P4: 0 PROCESS_NAME: csrss.exe CRITICAL_PROCESS: csrss.exe EXCEPTION_RECORD: ffffe7874b34a980 -- (.exr 0xffffe7874b34a980) ExceptionAddress: 0000000000000000 ExceptionCode: 00000000 ExceptionFlags: 00000000 NumberParameters: 0 ERROR_CODE: (NTSTATUS) 0x4b34f080 - <Unable to get error code text> BLACKBOXBSD: 1 (!blackboxbsd) BLACKBOXNTFS: 1 (!blackboxntfs) BLACKBOXPNP: 1 (!blackboxpnp) BLACKBOXWINLOGON: 1 CUSTOMER_CRASH_COUNT: 1 EXCEPTION_STR: 0x0 STACK_TEXT: ffffc203`da899c08 fffff801`08306fe2 : 00000000`000000ef ffffe787`4b34a240 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx ffffc203`da899c10 fffff801`081d7d83 : 00000000`00000001 fffff801`07c60ea5 00000000`00000002 fffff801`07c60dcf : nt!PspCatchCriticalBreak+0x10e ffffc203`da899cb0 fffff801`0804a9b0 : ffffe787`00000000 00000000`00000000 ffffe787`4b34a240 ffffe787`4b34a678 : nt!PspTerminateAllThreads+0x1ee377 ffffc203`da899d20 fffff801`0804a7ac : ffffe787`4b34a240 00000000`00000001 ffffffff`ffffffff 00000000`00000000 : nt!PspTerminateProcess+0xe0 ffffc203`da899d60 fffff801`07e05fb5 : ffffe787`4b34a240 ffffe787`4b34f080 ffffc203`da899e50 fffff801`08116372 : nt!NtTerminateProcess+0x9c ffffc203`da899dd0 fffff801`07df8400 : fffff801`07e3017f ffffc203`da89a958 ffffc203`da89a958 ffffffff`ffffffff : nt!KiSystemServiceCopyEnd+0x25 ffffc203`da899f68 fffff801`07e3017f : ffffc203`da89a958 ffffc203`da89a958 ffffffff`ffffffff 00007ffb`280df000 : nt!KiServiceLinkage ffffc203`da899f70 fffff801`07e066ac : ffffe787`4b34a980 fffff801`07cec946 00000000`00000800 ffffc203`da89aa00 : nt!KiDispatchException+0x1de95f ffffc203`da89a820 fffff801`07e02843 : ffffe787`4b34f000 000002a8`ac435090 ffffc203`da89aa80 ffffe787`4b287d01 : nt!KiExceptionDispatch+0x12c ffffc203`da89aa00 00007ffb`2aa53ed2 : 00000000`00000000 000000b3`00000000 000000b3`1c241200 00007ffb`2aad10ef : nt!KiPageFault+0x443 000000b3`1c2411e0 00000000`00000000 : 000000b3`00000000 000000b3`1c241200 00007ffb`2aad10ef 00007ffb`280df000 : 0x00007ffb`2aa53ed2 SYMBOL_NAME: nt!PspCatchCriticalBreak+10e MODULE_NAME: nt IMAGE_NAME: ntkrnlmp.exe IMAGE_VERSION: 10.0.19041.572 STACK_COMMAND: .thread ; .cxr ; kb BUCKET_ID_FUNC_OFFSET: 10e FAILURE_BUCKET_ID: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_4b34f080_nt!PspCatchCriticalBreak OS_VERSION: 10.0.19041.1 BUILDLAB_STR: vb_release OSPLATFORM_TYPE: x64 OSNAME: Windows 10 FAILURE_ID_HASH: {2a2839c4-e621-dcbd-cbc8-35177542c55f} Followup: MachineOwner --------- 0: kd> lmvm ^ Non-empty string required in 'lmvm' 0: kd> lm start end module name ffff89c0`63000000 ffff89c0`632de000 win32kbase (deferred) ffff89c0`632e0000 ffff89c0`63696000 win32kfull (deferred) ffff89c0`636a0000 ffff89c0`636e8000 cdd (deferred) ffff89c0`63f40000 ffff89c0`63fda000 win32k # (pdb symbols) C:\ProgramData\Dbg\sym\win32k.pdb\ED706A38659240A066E6FB19B994BAAA1\win32k.pdb fffff801`06080000 fffff801`0630f000 mcupdate_GenuineIntel (deferred) fffff801`06310000 fffff801`06316000 hal (deferred) fffff801`06320000 fffff801`0632b000 kd (deferred) fffff801`06330000 fffff801`06357000 tm (deferred) fffff801`06360000 fffff801`063c9000 CLFS (deferred) fffff801`063d0000 fffff801`063ea000 PSHED (deferred) fffff801`063f0000 fffff801`063fb000 BOOTVID (deferred) fffff801`06400000 fffff801`0646f000 FLTMGR (deferred) fffff801`06470000 fffff801`0647e000 cmimcext (deferred) fffff801`07a00000 fffff801`08a46000 nt (pdb symbols) C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\B16053724B46515388FDEA9D0470D02E1\ntkrnlmp.pdb fffff801`0ba00000 fffff801`0bb13000 clipsp (deferred) fffff801`0bb20000 fffff801`0bb49000 ksecdd (deferred) fffff801`0bb50000 fffff801`0bbb2000 msrpc (deferred) fffff801`0bbc0000 fffff801`0bbd1000 werkernel (deferred) fffff801`0bbe0000 fffff801`0bbec000 ntosext (deferred) fffff801`0bbf0000 fffff801`0bcd3000 CI (deferred) fffff801`0bce0000 fffff801`0bd97000 cng (deferred) fffff801`0bda0000 fffff801`0be71000 Wdf01000 (deferred) fffff801`0be80000 fffff801`0be93000 WDFLDR (deferred) fffff801`0bea0000 fffff801`0beaf000 SleepStudyHelper (deferred) fffff801`0beb0000 fffff801`0bec1000 WppRecorder (deferred) fffff801`0bed0000 fffff801`0bef6000 acpiex (deferred) fffff801`0bf00000 fffff801`0bf1a000 SgrmAgent (deferred) fffff801`0bf20000 fffff801`0bfec000 ACPI (deferred) fffff801`0bff0000 fffff801`0bffc000 WMILIB (deferred) fffff801`0c000000 fffff801`0c00b000 msisadrv (deferred) fffff801`0c010000 fffff801`0c088000 pci (deferred) fffff801`0c090000 fffff801`0c0d4000 tpm (deferred) fffff801`0c0f0000 fffff801`0c15b000 intelpep (deferred) fffff801`0c160000 fffff801`0c177000 WindowsTrustedRT (deferred) fffff801`0c180000 fffff801`0c18b000 IntelTA (deferred) fffff801`0c190000 fffff801`0c19b000 WindowsTrustedRTProxy (deferred) fffff801`0c1a0000 fffff801`0c1b4000 pcw (deferred) fffff801`0c1c0000 fffff801`0c1fe000 klupd_klif_arkmon (deferred) fffff801`0c200000 fffff801`0c215000 vdrvroot (deferred) fffff801`0c220000 fffff801`0c25b000 cm_km (deferred) fffff801`0c260000 fffff801`0c2a4000 ucx01000 (deferred) fffff801`0c2b0000 fffff801`0c2df000 pdc (deferred) fffff801`0c2e0000 fffff801`0c2f9000 CEA (deferred) fffff801`0c300000 fffff801`0c331000 partmgr (deferred) fffff801`0c340000 fffff801`0c3ea000 spaceport (deferred) fffff801`0c3f0000 fffff801`0c409000 volmgr (deferred) fffff801`0c410000 fffff801`0c45f000 sdbus (deferred) fffff801`0c460000 fffff801`0c4c3000 volmgrx (deferred) fffff801`0c4d0000 fffff801`0c4e8000 urscx01000 (deferred) fffff801`0c4f0000 fffff801`0c50e000 mountmgr (deferred) fffff801`0c510000 fffff801`0d0f2000 iaStorAC (deferred) fffff801`0d100000 fffff801`0d1b0000 storport (deferred) fffff801`0d1c0000 fffff801`0d1dc000 EhStorClass (deferred) fffff801`0d1f0000 fffff801`0d20a000 fileinfo (deferred) fffff801`0d210000 fffff801`0d250000 Wof (deferred) fffff801`0d260000 fffff801`0d539000 Ntfs (deferred) fffff801`0d540000 fffff801`0d573000 usbccgp (deferred) fffff801`0d580000 fffff801`0d58e000 USBD (deferred) fffff801`0d590000 fffff801`0d59d000 urschipidea (deferred) fffff801`0d5a0000 fffff801`0d5ba000 usbehci (deferred) fffff801`0d5c0000 fffff801`0d639000 USBPORT (deferred) fffff801`0d640000 fffff801`0d6c5000 usbhub (deferred) fffff801`0d6d0000 fffff801`0d773000 UsbHub3 (deferred) fffff801`0d780000 fffff801`0d78d000 Fs_Rec (deferred) fffff801`0d790000 fffff801`0d8ff000 ndis (deferred) fffff801`0d900000 fffff801`0d998000 NETIO (deferred) fffff801`0d9a0000 fffff801`0d9d2000 ksecpkg (deferred) fffff801`0d9e0000 fffff801`0dcca000 tcpip (deferred) fffff801`0dcd0000 fffff801`0dd4f000 fwpkclnt (deferred) fffff801`0dd50000 fffff801`0dd80000 wfplwfs (deferred) fffff801`0dd90000 fffff801`0dda3000 amdkmpfd (deferred) fffff801`0ddb0000 fffff801`0de78000 fvevol (deferred) fffff801`0de80000 fffff801`0de8b000 volume (deferred) fffff801`0de90000 fffff801`0defd000 volsnap (deferred) fffff801`0df00000 fffff801`0df98000 USBXHCI (deferred) fffff801`0dfa0000 fffff801`0dfc5000 USBSTOR (deferred) fffff801`0dfd0000 fffff801`0dfe8000 uaspstor (deferred) fffff801`0dff0000 fffff801`0e00e000 sdstor (deferred) fffff801`0e010000 fffff801`0e060000 rdyboost (deferred) fffff801`0e070000 fffff801`0e096000 mup (deferred) fffff801`0e0a0000 fffff801`0e0ba000 klupd_klif_klbg (deferred) fffff801`0e0c0000 fffff801`0e0d2000 iorate (deferred) fffff801`0e100000 fffff801`0e11c000 disk (deferred) fffff801`0e120000 fffff801`0e18c000 CLASSPNP (deferred) fffff801`20c00000 fffff801`20cf2000 klif (deferred) fffff801`20d00000 fffff801`20d76000 ks (deferred) fffff801`20d80000 fffff801`20e0a000 klflt (deferred) fffff801`20e10000 fffff801`20e23000 mouclass (deferred) fffff801`20e30000 fffff801`20e41000 kbdhid (deferred) fffff801`20e50000 fffff801`20f03000 SynTP (deferred) fffff801`20f10000 fffff801`20f27000 klkbdflt (deferred) fffff801`20f30000 fffff801`20f44000 kbdclass (deferred) fffff801`20f50000 fffff801`20f66000 BasicDisplay (deferred) fffff801`20f70000 fffff801`20f88000 watchdog (deferred) fffff801`20f90000 fffff801`21333000 dxgkrnl (deferred) fffff801`21340000 fffff801`2134d000 kltap (deferred) fffff801`21350000 fffff801`213f1000 Vid (deferred) fffff801`21400000 fffff801`21421000 winhvr (deferred) fffff801`21430000 fffff801`21442000 CompositeBus (deferred) fffff801`21450000 fffff801`2145d000 kdnic (deferred) fffff801`21470000 fffff801`2147d000 sshid (deferred) fffff801`21480000 fffff801`2148b000 mshidkmdf (deferred) fffff801`21490000 fffff801`214cf000 HIDCLASS (deferred) fffff801`214d0000 fffff801`214e3000 HIDPARSE (deferred) fffff801`214f0000 fffff801`21502000 hidusb (deferred) fffff801`21510000 fffff801`21520000 mouhid (deferred) fffff801`21530000 fffff801`21549000 klmouflt (deferred) fffff801`21550000 fffff801`21565000 umbus (deferred) fffff801`21570000 fffff801`21585000 CAD (deferred) fffff801`21e00000 fffff801`21e22000 tdx (deferred) fffff801`21e30000 fffff801`21e40000 TDI (deferred) fffff801`21e50000 fffff801`21eac000 netbt (deferred) fffff801`21eb0000 fffff801`21ec3000 afunix (deferred) fffff801`21ed0000 fffff801`21f73000 afd (deferred) fffff801`21f80000 fffff801`21fb9000 klwtp (deferred) fffff801`21fc0000 fffff801`21fd2000 klim6 (deferred) fffff801`21fe0000 fffff801`21ffa000 vwififlt (deferred) fffff801`22000000 fffff801`2202b000 pacer (deferred) fffff801`22030000 fffff801`22044000 ndiscap (deferred) fffff801`22050000 fffff801`22064000 netbios (deferred) fffff801`22070000 fffff801`220eb000 rdbss (deferred) fffff801`220f0000 fffff801`22102000 nsiproxy (deferred) fffff801`22110000 fffff801`2211e000 npsvctrig (deferred) fffff801`22120000 fffff801`22163000 kneps (deferred) fffff801`22170000 fffff801`221a8000 klids (deferred) fffff801`221b0000 fffff801`221ba000 HWiNFO64A (deferred) fffff801`221c0000 fffff801`221ca000 gpuenergydrv (deferred) fffff801`221d0000 fffff801`221fc000 dfsc (deferred) fffff801`22200000 fffff801`2221c000 raspppoe (deferred) fffff801`22220000 fffff801`2228c000 fastfat (deferred) fffff801`22290000 fffff801`222a7000 bam (deferred) fffff801`222b0000 fffff801`222fe000 ahcache (deferred) fffff801`22310000 fffff801`2231e000 dump_diskdump (deferred) fffff801`22340000 fffff801`2235d000 dump_dumpfve (deferred) fffff801`22360000 fffff801`22441000 dxgmms2 (deferred) fffff801`22450000 fffff801`2246b000 monitor (deferred) fffff801`22470000 fffff801`224c4000 WUDFRd (deferred) fffff801`224d0000 fffff801`224f9000 luafv (deferred) fffff801`22500000 fffff801`22514000 mmcss (deferred) fffff801`22520000 fffff801`22556000 wcifs (deferred) fffff801`22560000 fffff801`225e0000 cldflt (deferred) fffff801`225f0000 fffff801`2260a000 storqosflt (deferred) fffff801`22610000 fffff801`22637000 bindflt (deferred) fffff801`22660000 fffff801`22678000 lltdio (deferred) fffff801`22680000 fffff801`22698000 mslldp (deferred) fffff801`226a0000 fffff801`226bb000 rspndr (deferred) fffff801`226c0000 fffff801`226dd000 wanarp (deferred) fffff801`226e0000 fffff801`226f8000 ndisuio (deferred) fffff801`22700000 fffff801`227ba000 nwifi (deferred) fffff801`227c0000 fffff801`22816000 msquic (deferred) fffff801`22820000 fffff801`229a6000 HTTP (deferred) fffff801`229b0000 fffff801`229d5000 bowser (deferred) fffff801`229e0000 fffff801`229fa000 mpsdrv (deferred) fffff801`22a00000 fffff801`22a93000 mrxsmb (deferred) fffff801`22aa0000 fffff801`22ae5000 mrxsmb20 (deferred) fffff801`22af0000 fffff801`22b03000 condrv (deferred) fffff801`22b10000 fffff801`22b62000 srvnet (deferred) fffff801`22b70000 fffff801`22bc2000 mrxsmb10 (deferred) fffff801`22bd0000 fffff801`22bf7000 Ndu (deferred) fffff801`22c00000 fffff801`22c15000 tcpipreg (deferred) fffff801`22c20000 fffff801`22c33000 vwifimp (deferred) fffff801`22c40000 fffff801`22c5c000 rassstp (deferred) fffff801`22c60000 fffff801`22c7d000 NDProxy (deferred) fffff801`22c80000 fffff801`22ca7000 AgileVpn (deferred) fffff801`22cb0000 fffff801`23303000 RTKVHD64 (deferred) fffff801`23310000 fffff801`23365000 IntcDAud (deferred) fffff801`23370000 fffff801`2338c000 Npfs (deferred) fffff801`23390000 fffff801`233a1000 Msfs (deferred) fffff801`233b0000 fffff801`233cb000 CimFS (deferred) fffff801`233d0000 fffff801`233ef000 klwfp (deferred) fffff801`233f0000 fffff801`233ff000 ndistapi (deferred) fffff801`23b00000 fffff801`25a73000 nvlddmkm (deferred) fffff801`25aa0000 fffff801`25abe000 crashdmp (deferred) fffff801`26800000 fffff801`26b7e000 rtsuvc (deferred) fffff801`26b80000 fffff801`27762000 dump_iaStorAC (deferred) fffff801`27770000 fffff801`27846000 peauth (deferred) fffff801`27e00000 fffff801`27e25000 HDAudBus (deferred) fffff801`27e30000 fffff801`27e96000 portcls (deferred) fffff801`27ea0000 fffff801`27ec1000 drmk (deferred) fffff801`27ed0000 fffff801`27edf000 Smb_driver_Intel (deferred) fffff801`27ee0000 fffff801`27ef9000 iaLPSS2i_GPIO2 (deferred) fffff801`27f00000 fffff801`27f32000 msgpioclx (deferred) fffff801`27f40000 fffff801`27f4c000 wmiacpi (deferred) fffff801`27f50000 fffff801`27f90000 intelppm (deferred) fffff801`27fa0000 fffff801`27fab000 acpipagr (deferred) fffff801`27fb0000 fffff801`27fbe000 UEFI (deferred) fffff801`27fc0000 fffff801`27fd1000 nvvad64v (deferred) fffff801`27fe0000 fffff801`27fef000 ksthunk (deferred) fffff801`27ff0000 fffff801`28003000 klpnpflt (deferred) fffff801`28010000 fffff801`2801d000 NvModuleTracker (deferred) fffff801`28020000 fffff801`28030000 nvvhci (deferred) fffff801`28040000 fffff801`2804d000 NdisVirtualBus (deferred) fffff801`28050000 fffff801`28060000 mssmbios (deferred) fffff801`28070000 fffff801`2807c000 swenum (deferred) fffff801`28080000 fffff801`2808e000 ssdevfactory (deferred) fffff801`28090000 fffff801`280c3000 klupd_klif_mark (deferred) fffff801`280f0000 fffff801`280fe000 rdpbus (deferred) fffff801`28cf0000 fffff801`28db7000 srv2 (deferred) fffff801`28dc0000 fffff801`28de1000 rasl2tp (deferred) fffff801`28df0000 fffff801`28e11000 raspptp (deferred) fffff801`28e20000 fffff801`28e5a000 ndiswan (deferred) fffff801`28e70000 fffff801`28f68000 rt640x64 (deferred) fffff801`28f70000 fffff801`28f80000 BATTC (deferred) fffff801`28f90000 fffff801`28fa4000 AcpiVpc (deferred) fffff801`28fb0000 fffff801`28fd1000 i8042prt (deferred) fffff801`28fe0000 fffff801`28ff6000 klupd_klif_kimul (deferred) fffff801`29000000 fffff801`29030000 klbackupflt (deferred) fffff801`29040000 fffff801`29055000 filecrypt (deferred) fffff801`29060000 fffff801`2906e000 tbs (deferred) fffff801`29070000 fffff801`291e0000 klhk (deferred) fffff801`291f0000 fffff801`292ba000 RtkBtfilter (deferred) fffff801`292c0000 fffff801`2943f000 BTHport (deferred) fffff801`29440000 fffff801`294e0000 klgse (deferred) fffff801`294f0000 fffff801`29511000 BTHUSB (deferred) fffff801`29520000 fffff801`29531000 klpd (deferred) fffff801`29540000 fffff801`2955b000 kldisk (deferred) fffff801`29560000 fffff801`295ac000 TeeDriverW10x64 (deferred) fffff801`295b0000 fffff801`295ba000 Null (deferred) fffff801`295c0000 fffff801`295ca000 Beep (deferred) fffff801`295d0000 fffff801`29606000 bhtpcrdr (deferred) fffff801`29610000 fffff801`29621000 BasicRender (deferred) fffff801`29630000 fffff801`29e11000 rtwlane (deferred) fffff801`29e20000 fffff801`29f0f000 wdiwifi (deferred) fffff801`29f10000 fffff801`29f1e000 vwifibus (deferred) fffff801`29f20000 fffff801`29f2f000 CmBatt (deferred) fffff801`29f30000 fffff801`29f3c000 ICCWDT (deferred) fffff801`29f40000 fffff801`2b993000 igdkmd64 (deferred) fffff801`2b9a0000 fffff801`2b9b8000 klbackupdisk (deferred) fffff801`2b9c0000 fffff801`2b9f0000 cdrom (deferred) Unloaded modules: fffff801`22640000 fffff801`22651000 MSKSSRV.sys fffff801`22170000 fffff801`221a9000 klids.sys fffff801`25ad0000 fffff801`25adf000 dump_storpor fffff801`28240000 fffff801`28e23000 dump_iaStorA fffff801`28e50000 fffff801`28e6e000 dump_dumpfve fffff801`22200000 fffff801`2221c000 dam.sys fffff801`28090000 fffff801`280e5000 WUDFRd.sys fffff801`0c0e0000 fffff801`0c0ee000 klelam.sys fffff801`0e0e0000 fffff801`0e0f1000 hwpolicy.sys 0: kd> lmv start end module name ffff89c0`63000000 ffff89c0`632de000 win32kbase (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\win32kbase.sys\DB12238D2de000\win32kbase.sys Image path: \SystemRoot\System32\win32kbase.sys Image name: win32kbase.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: DB12238D (This is a reproducible build file hash, not a timestamp) CheckSum: 002D7389 ImageSize: 002DE000 File version: 10.0.19041.572 Product version: 10.0.19041.572 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: win32kbase.sys OriginalFilename: win32kbase.sys ProductVersion: 10.0.19041.572 FileVersion: 10.0.19041.572 (WinBuild.160101.0800) FileDescription: Base Win32k Kernel Driver LegalCopyright: © Microsoft Corporation. All rights reserved. ffff89c0`632e0000 ffff89c0`63696000 win32kfull (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\win32kfull.sys\33F812BB3b6000\win32kfull.sys Image path: \SystemRoot\System32\win32kfull.sys Image name: win32kfull.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 33F812BB (This is a reproducible build file hash, not a timestamp) CheckSum: 003A6C8A ImageSize: 003B6000 File version: 10.0.19041.571 Product version: 10.0.19041.571 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: win32kfull.sys OriginalFilename: win32kfull.sys ProductVersion: 10.0.19041.571 FileVersion: 10.0.19041.571 (WinBuild.160101.0800) FileDescription: Full/Desktop Win32k Kernel Driver LegalCopyright: © Microsoft Corporation. All rights reserved. ffff89c0`636a0000 ffff89c0`636e8000 cdd (deferred) Mapped memory image file: C:\Windows\system32\cdd.dll Image path: \SystemRoot\System32\cdd.dll Image name: cdd.dll Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 00000000 (This is a reproducible build file hash, not a timestamp) CheckSum: 00000000 ImageSize: 00048000 File version: 10.0.19041.546 Product version: 10.0.19041.546 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.4 Driver File date: 00000000.00000000 Translations: 0000.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: cdd.dll OriginalFilename: cdd.dll ProductVersion: 10.0.19041.546 FileVersion: 10.0.19041.546 (WinBuild.160101.0800) FileDescription: Canonical Display Driver LegalCopyright: © Microsoft Corporation. All rights reserved. ffff89c0`63f40000 ffff89c0`63fda000 win32k # (pdb symbols) C:\ProgramData\Dbg\sym\win32k.pdb\ED706A38659240A066E6FB19B994BAAA1\win32k.pdb Loaded symbol image file: win32k.sys Mapped memory image file: C:\ProgramData\Dbg\sym\win32k.sys\E87370BB9a000\win32k.sys Image path: \SystemRoot\System32\win32k.sys Image name: win32k.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: E87370BB (This is a reproducible build file hash, not a timestamp) CheckSum: 0009C3CE ImageSize: 0009A000 File version: 10.0.19041.508 Product version: 10.0.19041.508 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: win32k.sys OriginalFilename: win32k.sys ProductVersion: 10.0.19041.508 FileVersion: 10.0.19041.508 (WinBuild.160101.0800) FileDescription: Multi-User Win32 Driver LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`06080000 fffff801`0630f000 mcupdate_GenuineIntel (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\mcupdate_GenuineIntel.dll\9FB1DE4628f000\mcupdate_GenuineIntel.dll Image path: \SystemRoot\system32\mcupdate_GenuineIntel.dll Image name: mcupdate_GenuineIntel.dll Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 9FB1DE46 (This is a reproducible build file hash, not a timestamp) CheckSum: 0028C60B ImageSize: 0028F000 File version: 10.0.19041.1030 Product version: 10.0.19041.1030 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.A Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: mcupdate.dll OriginalFilename: mcupdate_GenuineIntel.dll ProductVersion: 10.0.19041.1030 FileVersion: 10.0.19041.1030 (WinBuild.160101.0800) FileDescription: Intel Microcode Update Library LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`06310000 fffff801`06316000 hal (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\halaacpi.dll\1A7BE8E96000\halaacpi.dll Image path: hal.dll Image name: hal.dll Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 1A7BE8E9 (This is a reproducible build file hash, not a timestamp) CheckSum: 0000CE9F ImageSize: 00006000 File version: 10.0.19551.1001 Product version: 10.0.19551.1001 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 2.0 Dll File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: hal.dll OriginalFilename: hal.dll ProductVersion: 10.0.19551.1001 FileVersion: 10.0.19551.1001 (WinBuild.160101.0800) FileDescription: Hardware Abstraction Layer DLL LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`06320000 fffff801`0632b000 kd (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\kd.dll\FE185FA8b000\kd.dll Image path: \SystemRoot\system32\kd.dll Image name: kd.dll Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: FE185FA8 (This is a reproducible build file hash, not a timestamp) CheckSum: 00004EF6 ImageSize: 0000B000 File version: 10.0.19041.1030 Product version: 10.0.19041.1030 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.A Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: kd.dll OriginalFilename: kd.dll ProductVersion: 10.0.19041.1030 FileVersion: 10.0.19041.1030 (WinBuild.160101.0800) FileDescription: Local Kernel Debugger LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`06330000 fffff801`06357000 tm (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\tm.sys\4ECED59327000\tm.sys Image path: \SystemRoot\System32\drivers\tm.sys Image name: tm.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 4ECED593 (This is a reproducible build file hash, not a timestamp) CheckSum: 00029C42 ImageSize: 00027000 File version: 10.0.19041.208 Product version: 10.0.19041.208 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: tm.sys OriginalFilename: tm.sys ProductVersion: 10.0.19041.208 FileVersion: 10.0.19041.208 (WinBuild.160101.0800) FileDescription: Kernel Transaction Manager Driver LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`06360000 fffff801`063c9000 CLFS (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\CLFS.SYS\43B5A26569000\CLFS.SYS Image path: \SystemRoot\System32\drivers\CLFS.SYS Image name: CLFS.SYS Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 43B5A265 (This is a reproducible build file hash, not a timestamp) CheckSum: 0006BD72 ImageSize: 00069000 File version: 10.0.19041.546 Product version: 10.0.19041.546 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0000.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: clfs.sys OriginalFilename: Clfs.Sys ProductVersion: 10.0.19041.546 FileVersion: 10.0.19041.546 (WinBuild.160101.0800) FileDescription: Common Log File System Driver LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`063d0000 fffff801`063ea000 PSHED (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\PSHED.dll\4C55DC991a000\PSHED.dll Image path: \SystemRoot\system32\PSHED.dll Image name: PSHED.dll Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 4C55DC99 (This is a reproducible build file hash, not a timestamp) CheckSum: 000201A9 ImageSize: 0001A000 File version: 10.0.19041.208 Product version: 10.0.19041.208 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: pshed.dll OriginalFilename: pshed.dll ProductVersion: 10.0.19041.208 FileVersion: 10.0.19041.208 (WinBuild.160101.0800) FileDescription: Platform Specific Hardware Error Driver LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`063f0000 fffff801`063fb000 BOOTVID (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\BOOTVID.dll\D13EE5B6b000\BOOTVID.dll Image path: \SystemRoot\system32\BOOTVID.dll Image name: BOOTVID.dll Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: D13EE5B6 (This is a reproducible build file hash, not a timestamp) CheckSum: 00013A3C ImageSize: 0000B000 File version: 10.0.19041.1030 Product version: 10.0.19041.1030 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.4 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: bootvid.dll OriginalFilename: bootvid.dll ProductVersion: 10.0.19041.1030 FileVersion: 10.0.19041.1030 (WinBuild.160101.0800) FileDescription: VGA Boot Driver LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`06400000 fffff801`0646f000 FLTMGR (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\FLTMGR.SYS\02839B666f000\FLTMGR.SYS Image path: \SystemRoot\System32\drivers\FLTMGR.SYS Image name: FLTMGR.SYS Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 02839B66 (This is a reproducible build file hash, not a timestamp) CheckSum: 00072E12 ImageSize: 0006F000 File version: 10.0.19041.264 Product version: 10.0.19041.264 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: fltMgr.sys OriginalFilename: fltMgr.sys ProductVersion: 10.0.19041.264 FileVersion: 10.0.19041.264 (WinBuild.160101.0800) FileDescription: Microsoft Filesystem Filter Manager LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`06470000 fffff801`0647e000 cmimcext (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\cmimcext.sys\94809681e000\cmimcext.sys Image path: \SystemRoot\System32\drivers\cmimcext.sys Image name: cmimcext.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 94809681 (This is a reproducible build file hash, not a timestamp) CheckSum: 00010F8E ImageSize: 0000E000 File version: 10.0.19041.1030 Product version: 10.0.19041.1030 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: cmimcext.sys OriginalFilename: cmimcext.sys ProductVersion: 10.0.19041.1030 FileVersion: 10.0.19041.1030 (WinBuild.160101.0800) FileDescription: Kernel Configuration Manager Initial Configuration Extension Host Export Driver LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`07a00000 fffff801`08a46000 nt (pdb symbols) C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\B16053724B46515388FDEA9D0470D02E1\ntkrnlmp.pdb Loaded symbol image file: ntkrnlmp.exe Mapped memory image file: C:\ProgramData\Dbg\sym\ntoskrnl.exe\90EE290B1046000\ntoskrnl.exe Image path: ntkrnlmp.exe Image name: ntkrnlmp.exe Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 90EE290B (This is a reproducible build file hash, not a timestamp) CheckSum: 00A5FA87 ImageSize: 01046000 File version: 10.0.19041.572 Product version: 10.0.19041.572 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 1.0 App File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: ntkrnlmp.exe OriginalFilename: ntkrnlmp.exe ProductVersion: 10.0.19041.572 FileVersion: 10.0.19041.572 (WinBuild.160101.0800) FileDescription: NT Kernel & System LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`0ba00000 fffff801`0bb13000 clipsp (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\clipsp.sys\5F6ED2F1113000\clipsp.sys Image path: \SystemRoot\System32\drivers\clipsp.sys Image name: clipsp.sys Browse all global symbols functions data Timestamp: Sat Sep 26 08:34:41 2020 (5F6ED2F1) CheckSum: 0010EEF2 ImageSize: 00113000 File version: 10.0.19041.546 Product version: 10.0.19041.546 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: clipsp.dll OriginalFilename: clipsp.dll ProductVersion: 10.0.19041.546 FileVersion: 10.0.19041.546 (WinBuild.160101.0800) FileDescription: CLIP Service LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`0bb20000 fffff801`0bb49000 ksecdd (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\ksecdd.sys\5F6E711429000\ksecdd.sys Image path: \SystemRoot\System32\drivers\ksecdd.sys Image name: ksecdd.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 5F6E7114 (This is a reproducible build file hash, not a timestamp) CheckSum: 000323E3 ImageSize: 00029000 File version: 10.0.19041.508 Product version: 10.0.19041.508 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: ksecdd.sys OriginalFilename: ksecdd.sys ProductVersion: 10.0.19041.508 FileVersion: 10.0.19041.508 (WinBuild.160101.0800) FileDescription: Kernel Security Support Provider Interface LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`0bb50000 fffff801`0bbb2000 msrpc (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\msrpc.sys\BD46698A62000\msrpc.sys Image path: \SystemRoot\System32\drivers\msrpc.sys Image name: msrpc.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: BD46698A (This is a reproducible build file hash, not a timestamp) CheckSum: 00062C96 ImageSize: 00062000 File version: 10.0.19041.546 Product version: 10.0.19041.546 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0 Information from resource tables: CompanyName: Microsoft Corporation ProductName: Microsoft® Windows® Operating System InternalName: krpcdd.sys OriginalFilename: krpcdd.sys ProductVersion: 10.0.19041.546 FileVersion: 10.0.19041.546 (WinBuild.160101.0800) FileDescription: Kernel Remote Procedure Call Provider LegalCopyright: © Microsoft Corporation. All rights reserved. fffff801`0bbc0000 fffff801`0bbd1000 werkernel (deferred) Mapped memory image file: C:\ProgramData\Dbg\sym\werkernel.sys\1BD4610F11000\werkernel.sys Image path: \SystemRoot\System32\drivers\werkernel.sys Image name: werkernel.sys Browse all global symbols functions data Image was built with /Brepro flag. Timestamp: 1BD4610F (This is a reproducible build file hash, not a timestamp) CheckSum: 0000F1D5 ImageSize: 00011000 File version: 10.0.19041.1030 Product version: 10.0.19041.1030 File flags: 0 (Mask 3F) File OS: 40004 NT Win32 File type: 3.7 Driver File date: 00000000.00000000 Translations: 0409.04b0
Teşekkür ederim abi. Hatanın devam etmesi durumunda ne yapmamı önerirsin?Olabilir. O yüzden 20H2'ye geç dedim.
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KERNEL_DATA_INPAGE_ERROR (7a)
The requested page of kernel data could not be read in. Typically caused by
a bad block in the paging file or disk controller error. Also see
KERNEL_STACK_INPAGE_ERROR.
If the error status is 0xC000000E, 0xC000009C, 0xC000009D or 0xC0000185,
it means the disk subsystem has experienced a failure.
If the error status is 0xC000009A, then it means the request failed because
a filesystem failed to make forward progress.
Arguments:
Arg1: ffffbd817031cde8, lock type that was held (value 1,2,3, or PTE address)
Arg2: ffffffffc000000e, error status (normally i/o status code)
Arg3: 00002001546a5860, current process (virtual address for lock type 3, or PTE)
Arg4: fffff80351bc1000, virtual address that could not be in-paged (or PTE contents if arg1 is a PTE address)
Debugging Details:
------------------
*** WARNING: Unable to verify checksum for win32k.sys
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 9530
Key : Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007e on DESKTOP-J7A11VA
Key : Analysis.DebugData
Value: CreateObject
Key : Analysis.DebugModel
Value: CreateObject
Key : Analysis.Elapsed.mSec
Value: 38039
Key : Analysis.Memory.CommitPeak.Mb
Value: 86
Key : Analysis.System
Value: CreateObject
Key : WER.OS.Branch
Value: vb_release
Key : WER.OS.Timestamp
Value: 2019-12-06T14:06:00Z
Key : WER.OS.Version
Value: 10.0.19041.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: 7a
BUGCHECK_P1: ffffbd817031cde8
BUGCHECK_P2: ffffffffc000000e
BUGCHECK_P3: 2001546a5860
BUGCHECK_P4: fffff80351bc1000
ERROR_CODE: (NTSTATUS) 0xc000000e - Varolmayan bir ayg t belirtildi.
DISK_HARDWARE_ERROR: There was error with disk hardware
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: System
STACK_TEXT:
ffffa187`11e91998 fffff803`31719fa9 : 00000000`0000007a ffffbd81`7031cde8 ffffffff`c000000e 00002001`546a5860 : nt!KeBugCheckEx
ffffa187`11e919a0 fffff803`31717835 : ffffa187`00000a00 ffffa187`11e91b00 ffffa187`11e91b30 00000000`00000000 : nt!MiWaitForInPageComplete+0x7d9
ffffa187`11e91a90 fffff803`316ea648 : 00000000`c0033333 00000000`00000000 fffff803`51bc1000 00000000`00000000 : nt!MiIssueHardFault+0x3c5
ffffa187`11e91ba0 fffff803`31739d02 : bd817031`cde80410 ffffe30d`1ff46701 fffff803`3204efc0 00000000`00000000 : nt!MmAccessFault+0x468
ffffa187`11e91d40 fffff803`31a3ced5 : fffff803`51bc00d8 fffff803`51bc00d8 00000000`0000000c ffffe30d`00000000 : nt!MiLockCode+0x322
ffffa187`11e91ef0 fffff803`51bc6144 : ffffe30d`2ade5010 ffffa187`11e920a9 ffffe30d`1f5773d0 ffffe30d`1f5773d0 : nt!MmResetDriverPaging+0xa5
ffffa187`11e91f20 fffff803`51bc6037 : 00000000`00000158 fffff803`31db1094 ffffa187`11e920a9 00000000`00000050 : Msfs!MsCommonCreate+0xd4
ffffa187`11e91ff0 fffff803`316cd805 : ffffe30d`1e2db010 ffffe30d`2d3c1d60 00000000`00000000 00000000`00000000 : Msfs!MsFsdCreate+0x27
ffffa187`11e92020 fffff803`2d74bd87 : 00000000`00000010 00000240`00000000 00000000`00000000 00000000`00000000 : nt!IofCallDriver+0x55
ffffa187`11e92060 fffff803`316cd805 : ffffe30d`2b02ac00 ffffe30d`1f577280 00000000`00000000 00000000`00000030 : FLTMGR!FltpCreate+0x4d7
ffffa187`11e92110 fffff803`316cedf4 : 00000000`00000000 ffffe30d`297e8a20 00000000`00000000 fffff803`316cea23 : nt!IofCallDriver+0x55
ffffa187`11e92150 fffff803`31ac3c3d : ffffa187`11e92410 ffffe30d`1f577280 ffffe30d`2b02ad68 ffffe30d`2b020001 : nt!IoCallDriverWithTracing+0x34
ffffa187`11e921a0 fffff803`31aec3ae : ffffe30d`1f577280 00000000`00000000 ffffe30d`297e8a20 00000000`00000000 : nt!IopParseDevice+0x117d
ffffa187`11e92310 fffff803`31af566a : ffffe30d`297e8a00 ffffa187`11e92578 ffffe30d`00000240 ffffe30d`052fe6c0 : nt!ObpLookupObjectName+0x3fe
ffffa187`11e924e0 fffff803`319ff52f : 00000000`00000000 ffffa187`11e92998 00000000`00000000 00000000`00000000 : nt!ObOpenObjectByNameEx+0x1fa
ffffa187`11e92610 fffff803`319ff078 : ffffa187`11e929e0 00000000`00000000 ffffa187`11e92998 ffffa187`11e92988 : nt!IopCreateFile+0x40f
ffffa187`11e926b0 fffff803`31805fb5 : ffffe30d`00000000 fffff803`2d714b02 ffffa187`11e92810 00000000`656c6946 : nt!NtOpenFile+0x58
ffffa187`11e92740 fffff803`317f8400 : fffff803`31aa9b24 00000000`00000000 00000000`00000000 fffff803`2d73b800 : nt!KiSystemServiceCopyEnd+0x25
ffffa187`11e92948 fffff803`31aa9b24 : 00000000`00000000 00000000`00000000 fffff803`2d73b800 fffff803`316dbaa7 : nt!KiServiceLinkage
ffffa187`11e92950 fffff803`2d754e0a : 00000000`00000000 00000000`00000000 00000000`00000030 fffff803`2d73b800 : nt!IoGetDeviceObjectPointer+0x94
ffffa187`11e929e0 fffff803`317035f5 : ffffe30d`29a7d040 ffffe30d`29a7d040 fffff803`2d754d40 ffffe30d`052cbce0 : FLTMGR!FltpManualDeviceAttachWorker+0xca
ffffa187`11e92a70 fffff803`316a2ae5 : ffffe30d`29a7d040 00000000`00000080 ffffe30d`05302080 000fa4ef`b59bbfff : nt!ExpWorkerThread+0x105
ffffa187`11e92b10 fffff803`317fbbf8 : ffffd281`e0300180 ffffe30d`29a7d040 fffff803`316a2a90 ffffffff`ffffffff : nt!PspSystemThreadStartup+0x55
ffffa187`11e92b60 00000000`00000000 : ffffa187`11e93000 ffffa187`11e8c000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28
CHKIMG_EXTENSION: !chkimg -lo 50 -d !Msfs
fffff80351bc1000-fffff80351bc102b 44 bytes - Msfs!MsFlushNotifyForFile+fffffffffffffff0
[ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ]
fffff80351bc102f-fffff80351bc1035 7 bytes - Msfs!MsFlushNotifyForFile+1f (+0x2f)
[ 48 8b f9 48 81 c1 c8:00 00 00 00 00 00 00 ]
fffff80351bc1039-fffff80351bc1041 9 bytes - Msfs!MsFlushNotifyForFile+29 (+0x0a)
[ 48 8b dd 4d 8b f0 4c 8b:00 00 00 00 00 00 00 00 ]
fffff80351bc104e-fffff80351bc1050 3 bytes - Msfs!MsFlushNotifyForFile+3e (+0x15)
[ 4c 8b 4d:00 00 00 ]
fffff80351bc1052-fffff80351bc105b 10 bytes - Msfs!MsFlushNotifyForFile+42 (+0x04)
[ 0f b6 d0 4c 3b cb 0f 85:00 00 00 00 00 00 00 00 ]
fffff80351bc105e-fffff80351bc1066 9 bytes - Msfs!MsFlushNotifyForFile+4e (+0x0c)
[ 48 3b dd 75 13 48 8d 9f:00 00 00 00 00 00 00 00 ]
fffff80351bc106a-fffff80351bc1073 10 bytes - Msfs!MsFlushNotifyForFile+5a (+0x0c)
[ 4c 8b 0b 4c 3b cb 0f 85:00 00 00 00 00 00 00 00 ]
fffff80351bc1076-fffff80351bc1079 4 bytes - Msfs!MsFlushNotifyForFile+66 (+0x0c)
[ 48 8d 8f c8:00 00 00 00 ]
fffff80351bc1089-fffff80351bc10ba 50 bytes - Msfs!MsFlushNotifyForFile+79 (+0x13)
[ 48 8b 5c 24 40 48 8b 6c:00 00 00 00 00 00 00 00 ]
fffff80351bc10c0-fffff80351bc10c4 5 bytes - Msfs!_security_check_cookie (+0x37)
[ 48 3b 0d 39 1f:00 00 00 00 00 ]
fffff80351bc10c7-fffff80351bc10da 20 bytes - Msfs!_security_check_cookie+7 (+0x07)
[ 75 10 48 c1 c1 10 66 f7:00 00 00 00 00 00 00 00 ]
fffff80351bc10de-fffff80351bc10f1 20 bytes - Msfs!_security_check_cookie+1e (+0x17)
[ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ]
fffff80351bc10f5-fffff80351bc10fc 8 bytes - Msfs!_report_gsfailure+5 (+0x17)
[ cd 29 cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ]
fffff80351bc1109-fffff80351bc111f 23 bytes - Msfs!_C_specific_handler+c (+0x14)
[ cc cc cc cc cc cc cc 48:00 00 00 00 00 00 00 00 ]
fffff80351bc1123-fffff80351bc1124 2 bytes - Msfs!_GSHandlerCheck+13 (+0x1a)
[ b8 01:00 00 ]
fffff80351bc1128-fffff80351bc1139 18 bytes - Msfs!_GSHandlerCheck+18 (+0x05)
[ 48 83 c4 28 c3 cc cc cc:00 00 00 00 00 00 00 00 ]
fffff80351bc113b-fffff80351bc11b0 118 bytes - Msfs!_GSHandlerCheckCommon+7 (+0x13)
[ 4c 8b c9 44 8b d8 4c 8b:00 00 00 00 00 00 00 00 ]
fffff80351bc11b3-fffff80351bc11ca 24 bytes - Msfs!guard_check_icall_nop+3 (+0x78)
[ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ]
fffff80351bc11d5-fffff80351bc123b 103 bytes - Msfs!guard_dispatch_icall_nop+5 (+0x22)
[ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ]
fffff80351bc1240-fffff80351bc125d 30 bytes - Msfs!memcpy+40 (+0x6b)
[ 4d 85 c0 74 15 48 2b d1:00 00 00 00 00 00 00 00 ]
fffff80351bc1260-fffff80351bc127a 27 bytes - Msfs!memcpy+60 (+0x20)
[ 49 03 c8 44 8a 5c 11 ff:00 00 00 00 00 00 00 00 ]
fffff80351bc1280-fffff80351bc128f 16 bytes - Msfs!memcpy+80 (+0x20)
[ 4e 8d 1c 02 48 2b d1 73:00 00 00 00 00 00 00 00 ]
fffff80351bc1292-fffff80351bc12a8 23 bytes - Msfs!memcpy+92 (+0x12)
[ 0f 10 04 11 48 83 c1 10:00 00 00 00 00 00 00 00 ]
fffff80351bc12aa-fffff80351bc12c2 25 bytes - Msfs!memcpy+aa (+0x18)
[ 0f 28 c1 48 83 c1 10 4c:00 00 00 00 00 00 00 00 ]
fffff80351bc12c4 - Msfs!memcpy+c4 (+0x1a)
[ 10:00 ]
fffff80351bc12c7-fffff80351bc12c9 3 bytes - Msfs!memcpy+c7 (+0x03)
[ 0f 87 b3:00 00 00 ]
fffff80351bc12cd-fffff80351bc12dc 16 bytes - Msfs!memcpy+cd (+0x06)
[ 49 83 e0 3f eb 2d 66 66:00 00 00 00 00 00 00 00 ]
fffff80351bc12e2-fffff80351bc12eb 10 bytes - Msfs!memcpy+e2 (+0x15)
[ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ]
fffff80351bc12f1-fffff80351bc12fa 10 bytes - Msfs!memcpy+f1 (+0x0f)
[ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ]
fffff80351bc1300-fffff80351bc133a 59 bytes - Msfs!memcpy+100 (+0x0f)
[ 0f 10 0c 11 0f 10 54 11:00 00 00 00 00 00 00 00 ]
fffff80351bc1340-fffff80351bc1373 52 bytes - Msfs!memcpy+140 (+0x40)
[ 0f 29 41 f0 0f 10 04 11:00 00 00 00 00 00 00 00 ]
fffff80351bc1379-fffff80351bc137b 3 bytes - Msfs!memcpy+179 (+0x39)
[ 0f 1f 80:00 00 00 ]
fffff80351bc1380-fffff80351bc139b 28 bytes - Msfs!memcpy+180 (+0x07)
[ 4d 8b c8 49 c1 e9 06 49:00 00 00 00 00 00 00 00 ]
fffff80351bc13a1-fffff80351bc13aa 10 bytes - Msfs!memcpy+1a1 (+0x21)
[ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ]
fffff80351bc13b0-fffff80351bc13b9 10 bytes - Msfs!memcpy+1b0 (+0x0f)
[ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ]
fffff80351bc13bf-fffff80351bc13fe 64 bytes - Msfs!memcpy+1bf (+0x0f)
[ 90 0f 10 0c 11 0f 10 54:00 00 00 00 00 00 00 00 ]
fffff80351bc1400-fffff80351bc143e 63 bytes - Msfs!memcpy+200 (+0x41)
[ 49 03 c8 0f 10 44 11 f0:00 00 00 00 00 00 00 00 ]
fffff80351bc1440-fffff80351bc147a 59 bytes - Msfs!memcpy+240 (+0x40)
[ 0f 10 4c 11 f0 0f 10 54:00 00 00 00 00 00 00 00 ]
fffff80351bc1480-fffff80351bc14ed 110 bytes - Msfs!memcpy+280 (+0x40)
[ 0f 29 01 0f 10 44 11 f0:00 00 00 00 00 00 00 00 ]
fffff80351bc14f0-fffff80351bc150a 27 bytes - Msfs!memset+30 (+0x70)
[ 4a 89 54 08 f8 49 83 e9:00 00 00 00 00 00 00 00 ]
fffff80351bc1510-fffff80351bc1518 9 bytes - Msfs!memset+50 (+0x20)
[ 49 83 e0 07 74 0a 42 88:00 00 00 00 00 00 00 00 ]
fffff80351bc151a-fffff80351bc152a 17 bytes - Msfs!memset+5a (+0x0a)
[ ff 49 ff c8 75 f6 c3 66:00 00 00 00 00 00 00 00 ]
fffff80351bc1530-fffff80351bc155c 45 bytes - Msfs!memset+70 (+0x16)
[ 66 48 0f 6e c2 0f 16 c0:00 00 00 00 00 00 00 00 ]
fffff80351bc1560-fffff80351bc158d 46 bytes - Msfs!memset+a0 (+0x30)
[ 0f 29 41 a0 0f 29 41 b0:00 00 00 00 00 00 00 00 ]
fffff80351bc1590-fffff80351bc15dd 78 bytes - Msfs!memset+d0 (+0x30)
[ 0f 11 01 48 83 c1 10 49:00 00 00 00 00 00 00 00 ]
fffff80351bc15df-fffff80351bc1609 43 bytes - Msfs!MsFlushNotifyForFile+5cf (+0x4f)
[ c0 49 8b 46 08 4c 39 30:00 00 00 00 00 00 00 00 ]
fffff80351bc160d-fffff80351bc1635 41 bytes - Msfs!MsFlushNotifyForFile+5fd (+0x2e)
[ cd 29 cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ]
fffff80351bc1642-fffff80351bc1645 4 bytes - Msfs!MsCancelDataQueueIrp+22 (+0x35)
[ 48 8b 5e 30:00 00 00 00 ]
fffff80351bc1652-fffff80351bc165a 9 bytes - Msfs!MsCancelDataQueueIrp+32 (+0x10)
[ 33 d2 48 8d 8b 60 ff ff:00 00 00 00 00 00 00 00 ]
fffff80351bc1667-fffff80351bc166f 9 bytes - Msfs!MsCancelDataQueueIrp+47 (+0x15)
[ 48 8b d3 48 8b ce e8 8e:00 00 00 00 00 00 00 00 ]
WARNING: !chkimg output was truncated to 50 lines. Invoke !chkimg without '-lo [num_lines]' to view entire output.
1987 errors : !Msfs (fffff80351bc1000-fffff80351bc1975)
MODULE_NAME: memory_corruption
IMAGE_NAME: memory_corruption
MEMORY_CORRUPTOR: LARGE
STACK_COMMAND: .thread ; .cxr ; kb
FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: vb_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
Followup: memory_corruption
---------
1: kd> !blackboxntfs
NTFS Blackbox Data
Record 0:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d2a6c3010
Scb: ffffbd8180716170
Thread: ffffe30d2851c040
Record 1:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d2a825010
Scb: ffffbd817e0ea170
Thread: ffffe30d286bb040
Record 2:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d2a7d4010
Scb: ffffbd817314a170
Thread: ffffe30d1f884080
Record 3:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d27d04010
Scb: ffffe30d0af31a20
Thread: ffffe30d2a8b3040
Record 4:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d1e019010
Scb: ffffbd817805f700
Thread: ffffe30d2aec0080
Record 5:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d28684010
Scb: ffffe30d0af1bc70
Thread: ffffe30d054d8080
Record 6:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d293f2010
Scb: ffffbd81785ba7c0
Thread: ffffe30d1e302080
Record 7:
Record type: 1 (Slow I/O Timeout)
Record length: 32
Irp: ffffe30d29643380
Scb: ffffbd817fdcd680
Thread: ffffe30d2a8b0040
8 Slow I/O Timeout Records Found
0 Oplock Break Timeout Records Found
1: kd> !kdexts.irp ffffe30d29643380
ffffe30d29643380: Could not read Irp
1: kd> !blackboxbsd
Stream size mismatch (expected = 192, read = 176)
1: kd> !blackboxpnp
PnpActivityId : {00000000-0000-0000-0000-000000000000}
PnpActivityTime : 132480167805558396
PnpEventInformation: 3
PnpEventInProgress : 0
PnpProblemCode : 24
PnpVetoType : 0
DeviceId : SW\{96E080C7-143C-11D1-B40F-00A0C9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}
VetoString :
1: kd> lm
start end module name
ffffa7bd`56a00000 ffffa7bd`56cde000 win32kbase (deferred)
ffffa7bd`56ce0000 ffffa7bd`57096000 win32kfull (deferred)
ffffa7bd`570a0000 ffffa7bd`570e8000 cdd (deferred)
ffffa7bd`574e0000 ffffa7bd`5757a000 win32k C (pdb symbols) C:\ProgramData\Dbg\sym\win32k.pdb\ED706A38659240A066E6FB19B994BAAA1\win32k.pdb
fffff803`2d390000 fffff803`2d61f000 mcupdate_GenuineIntel (deferred)
fffff803`2d620000 fffff803`2d626000 hal (deferred)
fffff803`2d630000 fffff803`2d63b000 kd (deferred)
fffff803`2d640000 fffff803`2d667000 tm (deferred)
fffff803`2d670000 fffff803`2d6d9000 CLFS (deferred)
fffff803`2d6e0000 fffff803`2d6fa000 PSHED (deferred)
fffff803`2d700000 fffff803`2d70b000 BOOTVID (deferred)
fffff803`2d710000 fffff803`2d77f000 FLTMGR (pdb symbols) C:\ProgramData\Dbg\sym\fltMgr.pdb\C3CA0BC721B145FE4F45FF7F65B7C5AD1\fltMgr.pdb
fffff803`2d780000 fffff803`2d78e000 cmimcext (deferred)
fffff803`31400000 fffff803`32446000 nt (pdb symbols) C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\B16053724B46515388FDEA9D0470D02E1\ntkrnlmp.pdb
fffff803`32c00000 fffff803`32d13000 clipsp (deferred)
fffff803`32d20000 fffff803`32d49000 ksecdd (deferred)
fffff803`32d50000 fffff803`32db2000 msrpc (deferred)
fffff803`32dc0000 fffff803`32dd1000 werkernel (deferred)
fffff803`32de0000 fffff803`32dec000 ntosext (deferred)
fffff803`32df0000 fffff803`32ed3000 CI (deferred)
fffff803`32ee0000 fffff803`32f97000 cng (deferred)
fffff803`32fa0000 fffff803`33071000 Wdf01000 (deferred)
fffff803`33080000 fffff803`33093000 WDFLDR (deferred)
fffff803`330a0000 fffff803`330af000 SleepStudyHelper (deferred)
fffff803`330b0000 fffff803`330c1000 WppRecorder (deferred)
fffff803`330d0000 fffff803`330f6000 acpiex (deferred)
fffff803`33100000 fffff803`3311a000 SgrmAgent (deferred)
fffff803`33120000 fffff803`331ec000 ACPI (deferred)
fffff803`331f0000 fffff803`331fc000 WMILIB (deferred)
fffff803`33200000 fffff803`3320b000 msisadrv (deferred)
fffff803`33210000 fffff803`33288000 pci (deferred)
fffff803`33290000 fffff803`332d4000 tpm (deferred)
fffff803`33300000 fffff803`3336b000 intelpep (deferred)
fffff803`33370000 fffff803`33387000 WindowsTrustedRT (deferred)
fffff803`33390000 fffff803`3339b000 IntelTA (deferred)
fffff803`333a0000 fffff803`333ab000 WindowsTrustedRTProxy (deferred)
fffff803`333b0000 fffff803`333c4000 pcw (deferred)
fffff803`333d0000 fffff803`333e5000 vdrvroot (deferred)
fffff803`333f0000 fffff803`333fe000 USBD (deferred)
fffff803`33400000 fffff803`33444000 ucx01000 (deferred)
fffff803`33450000 fffff803`3347f000 pdc (deferred)
fffff803`33480000 fffff803`33499000 CEA (deferred)
fffff803`334a0000 fffff803`334d1000 partmgr (deferred)
fffff803`334e0000 fffff803`3358a000 spaceport (deferred)
fffff803`33590000 fffff803`335a9000 volmgr (deferred)
fffff803`335b0000 fffff803`335ff000 sdbus (deferred)
fffff803`33600000 fffff803`33663000 volmgrx (deferred)
fffff803`33670000 fffff803`33688000 urscx01000 (deferred)
fffff803`33690000 fffff803`336ae000 mountmgr (deferred)
fffff803`336b0000 fffff803`34292000 iaStorAC (deferred)
fffff803`342a0000 fffff803`34350000 storport (deferred)
fffff803`34360000 fffff803`3437c000 EhStorClass (deferred)
fffff803`34380000 fffff803`3439a000 fileinfo (deferred)
fffff803`343a0000 fffff803`343e0000 Wof (deferred)
fffff803`343f0000 fffff803`3445c000 WdFilter (deferred)
fffff803`34460000 fffff803`34739000 Ntfs (deferred)
fffff803`34740000 fffff803`34773000 usbccgp (deferred)
fffff803`34780000 fffff803`3478d000 urschipidea (deferred)
fffff803`34790000 fffff803`347aa000 usbehci (deferred)
fffff803`347b0000 fffff803`34829000 USBPORT (deferred)
fffff803`34830000 fffff803`348b5000 usbhub (deferred)
fffff803`348c0000 fffff803`34963000 UsbHub3 (deferred)
fffff803`34970000 fffff803`3497d000 Fs_Rec (deferred)
fffff803`34980000 fffff803`34aef000 ndis (deferred)
fffff803`34af0000 fffff803`34b88000 NETIO (deferred)
fffff803`34b90000 fffff803`34bc2000 ksecpkg (deferred)
fffff803`34bd0000 fffff803`34eba000 tcpip (deferred)
fffff803`34ec0000 fffff803`34f3f000 fwpkclnt (deferred)
fffff803`34f40000 fffff803`34f70000 wfplwfs (deferred)
fffff803`34f80000 fffff803`34f93000 amdkmpfd (deferred)
fffff803`34fa0000 fffff803`34fab000 volume (deferred)
fffff803`34fb0000 fffff803`34fd5000 USBSTOR (deferred)
fffff803`353f0000 fffff803`354b8000 fvevol (deferred)
fffff803`354c0000 fffff803`3552d000 volsnap (deferred)
fffff803`35530000 fffff803`355c8000 USBXHCI (deferred)
fffff803`355d0000 fffff803`355e8000 uaspstor (deferred)
fffff803`355f0000 fffff803`3560e000 sdstor (deferred)
fffff803`35610000 fffff803`35660000 rdyboost (deferred)
fffff803`35670000 fffff803`35696000 mup (deferred)
fffff803`356a0000 fffff803`356b2000 iorate (deferred)
fffff803`356e0000 fffff803`356fc000 disk (deferred)
fffff803`35700000 fffff803`3576c000 CLASSPNP (deferred)
fffff803`47e00000 fffff803`47e10000 mouhid (deferred)
fffff803`47e20000 fffff803`47e33000 mouclass (deferred)
fffff803`47e40000 fffff803`47e51000 kbdhid (deferred)
fffff803`47e60000 fffff803`47f1e000 SynTP (deferred)
fffff803`47f20000 fffff803`47f34000 kbdclass (deferred)
fffff803`47f40000 fffff803`47f56000 BasicDisplay (deferred)
fffff803`47f60000 fffff803`47f78000 watchdog (deferred)
fffff803`47f80000 fffff803`48323000 dxgkrnl (deferred)
fffff803`48330000 fffff803`483d1000 Vid (deferred)
fffff803`483e0000 fffff803`48401000 winhvr (deferred)
fffff803`48410000 fffff803`48422000 CompositeBus (deferred)
fffff803`48430000 fffff803`4843d000 kdnic (deferred)
fffff803`48440000 fffff803`48455000 umbus (deferred)
fffff803`48460000 fffff803`48475000 CAD (deferred)
fffff803`48b60000 fffff803`48b6d000 sshid (deferred)
fffff803`48b70000 fffff803`48b7b000 mshidkmdf (deferred)
fffff803`48b80000 fffff803`48bbf000 HIDCLASS (deferred)
fffff803`48bc0000 fffff803`48bd3000 HIDPARSE (deferred)
fffff803`48be0000 fffff803`48bf2000 hidusb (deferred)
fffff803`48c00000 fffff803`48c54000 WUDFRd (deferred)
fffff803`48c60000 fffff803`48c74000 mmcss (deferred)
fffff803`48c80000 fffff803`48ca9000 luafv (deferred)
fffff803`48cb0000 fffff803`48ce6000 wcifs (deferred)
fffff803`48cf0000 fffff803`48d70000 cldflt (deferred)
fffff803`48d80000 fffff803`48d9a000 storqosflt (deferred)
fffff803`48da0000 fffff803`48dc7000 bindflt (deferred)
fffff803`48df0000 fffff803`48e08000 lltdio (deferred)
fffff803`48e10000 fffff803`48e28000 mslldp (deferred)
fffff803`48e30000 fffff803`48e4b000 rspndr (deferred)
fffff803`48e50000 fffff803`48e6d000 wanarp (deferred)
fffff803`48e70000 fffff803`48e88000 ndisuio (deferred)
fffff803`48e90000 fffff803`48f4a000 nwifi (deferred)
fffff803`48f50000 fffff803`48fa6000 msquic (deferred)
fffff803`48fb0000 fffff803`49136000 HTTP (deferred)
fffff803`49140000 fffff803`49165000 bowser (deferred)
fffff803`49170000 fffff803`4918a000 mpsdrv (deferred)
fffff803`49190000 fffff803`49223000 mrxsmb (deferred)
fffff803`49230000 fffff803`49275000 mrxsmb20 (deferred)
fffff803`49280000 fffff803`49293000 condrv (deferred)
fffff803`492a0000 fffff803`492f2000 srvnet (deferred)
fffff803`49300000 fffff803`49352000 mrxsmb10 (deferred)
fffff803`49360000 fffff803`49427000 srv2 (deferred)
fffff803`49430000 fffff803`49457000 Ndu (deferred)
fffff803`49460000 fffff803`49536000 peauth (deferred)
fffff803`49540000 fffff803`49555000 tcpipreg (deferred)
fffff803`49560000 fffff803`49573000 vwifimp (deferred)
fffff803`49580000 fffff803`4959c000 rassstp (deferred)
fffff803`495a0000 fffff803`495bd000 NDProxy (deferred)
fffff803`495c0000 fffff803`495e7000 AgileVpn (deferred)
fffff803`495f0000 fffff803`49611000 rasl2tp (deferred)
fffff803`49620000 fffff803`49641000 raspptp (deferred)
fffff803`49650000 fffff803`4966c000 raspppoe (deferred)
fffff803`49670000 fffff803`4967f000 ndistapi (deferred)
fffff803`49680000 fffff803`496ba000 ndiswan (deferred)
fffff803`496c0000 fffff803`496d6000 WdNisDrv (deferred)
fffff803`49a80000 fffff803`4a662000 dump_iaStorAC (deferred)
fffff803`4a690000 fffff803`4a6ad000 dump_dumpfve (deferred)
fffff803`4a6b0000 fffff803`4a791000 dxgmms2 (deferred)
fffff803`4a7a0000 fffff803`4a7bb000 monitor (deferred)
fffff803`4ac00000 fffff803`4ac1e000 crashdmp (deferred)
fffff803`4ba50000 fffff803`4d9c3000 nvlddmkm (deferred)
fffff803`4ec00000 fffff803`4ed7f000 BTHport (deferred)
fffff803`4ed80000 fffff803`4eda1000 BTHUSB (deferred)
fffff803`4edb0000 fffff803`4edfc000 TeeDriverW10x64 (deferred)
fffff803`4ee00000 fffff803`4ee35000 bhtpcrdr (deferred)
fffff803`4ee40000 fffff803`4eee3000 afd (deferred)
fffff803`4eef0000 fffff803`4ef1b000 pacer (deferred)
fffff803`4ef20000 fffff803`4ef34000 ndiscap (deferred)
fffff803`4ef40000 fffff803`4ef54000 netbios (deferred)
fffff803`4ef60000 fffff803`4efdb000 rdbss (deferred)
fffff803`4efe0000 fffff803`4eff2000 nsiproxy (deferred)
fffff803`4f000000 fffff803`4f02c000 dfsc (deferred)
fffff803`4f050000 fffff803`4f0bc000 fastfat (deferred)
fffff803`4f0c0000 fffff803`4f0d7000 bam (deferred)
fffff803`4f0e0000 fffff803`4f12e000 ahcache (deferred)
fffff803`4f140000 fffff803`4f14e000 dump_diskdump (deferred)
fffff803`4f1e0000 fffff803`50c33000 igdkmd64 (deferred)
fffff803`50c40000 fffff803`50c70000 cdrom (deferred)
fffff803`50c80000 fffff803`50c95000 filecrypt (deferred)
fffff803`50ca0000 fffff803`50cae000 tbs (deferred)
fffff803`50cb0000 fffff803`50cba000 Null (deferred)
fffff803`50cc0000 fffff803`50cca000 Beep (deferred)
fffff803`50cd0000 fffff803`50ce1000 BasicRender (deferred)
fffff803`50cf0000 fffff803`50dba000 RtkBtfilter (deferred)
fffff803`50e00000 fffff803`50eef000 wdiwifi (deferred)
fffff803`50ef0000 fffff803`50efe000 vwifibus (deferred)
fffff803`50f00000 fffff803`51016000 rt640x64 (deferred)
fffff803`51020000 fffff803`5102f000 CmBatt (deferred)
fffff803`51030000 fffff803`51040000 BATTC (deferred)
fffff803`51050000 fffff803`51064000 AcpiVpc (deferred)
fffff803`51070000 fffff803`5107c000 ICCWDT (deferred)
fffff803`51080000 fffff803`510a1000 i8042prt (deferred)
fffff803`510b0000 fffff803`510d5000 HDAudBus (deferred)
fffff803`510e0000 fffff803`51146000 portcls (deferred)
fffff803`51150000 fffff803`51171000 drmk (deferred)
fffff803`51180000 fffff803`511f6000 ks (deferred)
fffff803`51200000 fffff803`5120f000 Smb_driver_Intel (deferred)
fffff803`51210000 fffff803`51228000 iaLPSS2_GPIO2 (deferred)
fffff803`51230000 fffff803`51262000 msgpioclx (deferred)
fffff803`51270000 fffff803`5127c000 wmiacpi (deferred)
fffff803`51280000 fffff803`512c0000 intelppm (deferred)
fffff803`512d0000 fffff803`512db000 acpipagr (deferred)
fffff803`512e0000 fffff803`512ee000 UEFI (deferred)
fffff803`512f0000 fffff803`51301000 nvvad64v (deferred)
fffff803`51310000 fffff803`5131f000 ksthunk (deferred)
fffff803`51320000 fffff803`5132d000 NvModuleTracker (deferred)
fffff803`51330000 fffff803`51340000 nvvhci (deferred)
fffff803`51350000 fffff803`5135d000 NdisVirtualBus (deferred)
fffff803`51360000 fffff803`51370000 mssmbios (deferred)
fffff803`51380000 fffff803`5138c000 swenum (deferred)
fffff803`51390000 fffff803`513ec000 netbt (deferred)
fffff803`513f0000 fffff803`513fe000 rdpbus (deferred)
fffff803`51400000 fffff803`5140a000 HWiNFO64A (deferred)
fffff803`51410000 fffff803`51461000 usbvideo (deferred)
fffff803`51470000 fffff803`51b36000 RTKVHD64 (deferred)
fffff803`51b40000 fffff803`51b95000 IntcDAud (deferred)
fffff803`51ba0000 fffff803`51bbc000 Npfs (deferred)
fffff803`51bc0000 fffff803`51bd1000 Msfs # (pdb symbols) C:\ProgramData\Dbg\sym\msfs.pdb\6CB957B6B5ACE7601CF3BB9E403940801\msfs.pdb
fffff803`51be0000 fffff803`51bfb000 CimFS (deferred)
fffff803`51c00000 fffff803`51c22000 tdx (deferred)
fffff803`51c30000 fffff803`51c40000 TDI (deferred)
fffff803`51c50000 fffff803`51c63000 afunix (deferred)
fffff803`51c70000 fffff803`51c7a000 gpuenergydrv (deferred)
fffff803`51c80000 fffff803`525c8000 rtwlane (deferred)
fffff803`525d0000 fffff803`525ea000 vwififlt (deferred)
fffff803`525f0000 fffff803`525fe000 npsvctrig (deferred)
Unloaded modules:
fffff803`496e0000 fffff803`496f1000 MSKSSRV.sys
fffff803`48dd0000 fffff803`48de1000 MSKSSRV.sys
fffff803`4ac30000 fffff803`4ac3f000 dump_storpor
fffff803`4df10000 fffff803`4eaf3000 dump_iaStorA
fffff803`4eb20000 fffff803`4eb3e000 dump_dumpfve
fffff803`4f030000 fffff803`4f04c000 dam.sys
fffff803`51400000 fffff803`5140c000 WdmCompanion
fffff803`51390000 fffff803`513e5000 WUDFRd.sys
fffff803`332e0000 fffff803`332f1000 WdBoot.sys
fffff803`356c0000 fffff803`356d1000 hwpolicy.sys
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffdc0f3c111080, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 13562
Key : Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007e on DESKTOP-J7A11VA
Key : Analysis.DebugData
Value: CreateObject
Key : Analysis.DebugModel
Value: CreateObject
Key : Analysis.Elapsed.mSec
Value: 34395
Key : Analysis.Memory.CommitPeak.Mb
Value: 82
Key : Analysis.System
Value: CreateObject
Key : WER.OS.Branch
Value: vb_release
Key : WER.OS.Timestamp
Value: 2019-12-06T14:06:00Z
Key : WER.OS.Version
Value: 10.0.19041.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: ef
BUGCHECK_P1: ffffdc0f3c111080
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: csrss.exe
CRITICAL_PROCESS: csrss.exe
EXCEPTION_RECORD: ffffdc0f3c1117c0 -- (.exr 0xffffdc0f3c1117c0)
ExceptionAddress: 0000000000000000
ExceptionCode: 00000000
ExceptionFlags: 00000000
NumberParameters: 0
ERROR_CODE: (NTSTATUS) 0x410860c0 - <Unable to get error code text>
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
EXCEPTION_STR: 0x0
STACK_TEXT:
ffff8204`c7946c08 fffff806`2df06fe2 : 00000000`000000ef ffffdc0f`3c111080 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
ffff8204`c7946c10 fffff806`2ddd7d83 : 00000000`00000001 fffff806`2d860ea5 00000000`00000002 fffff806`2d860dcf : nt!PspCatchCriticalBreak+0x10e
ffff8204`c7946cb0 fffff806`2dc4a9b0 : ffffdc0f`00000000 00000000`00000000 ffffdc0f`3c111080 ffffdc0f`3c1114b8 : nt!PspTerminateAllThreads+0x1ee377
ffff8204`c7946d20 fffff806`2dc4a7ac : ffffdc0f`3c111080 00000000`00000001 ffffffff`ffffffff 00000000`00000000 : nt!PspTerminateProcess+0xe0
ffff8204`c7946d60 fffff806`2da05fb5 : ffffdc0f`3c111080 ffffdc0f`410860c0 ffff8204`c7946e50 fffff806`2dd16372 : nt!NtTerminateProcess+0x9c
ffff8204`c7946dd0 fffff806`2d9f8400 : fffff806`2da3017f ffff8204`c7947958 ffff8204`c7947958 ffffffff`ffffffff : nt!KiSystemServiceCopyEnd+0x25
ffff8204`c7946f68 fffff806`2da3017f : ffff8204`c7947958 ffff8204`c7947958 ffffffff`ffffffff 00007ff8`4e253000 : nt!KiServiceLinkage
ffff8204`c7946f70 fffff806`2da066ac : ffffdc0f`3c1117c0 fffff806`2d8ec946 00000000`00000c00 ffff8204`c7947a00 : nt!KiDispatchException+0x1de95f
ffff8204`c7947820 fffff806`2da02843 : 00000000`00023ed2 00000000`00000000 ffff8204`c7947a80 00000000`00000000 : nt!KiExceptionDispatch+0x12c
ffff8204`c7947a00 00007ff8`50b33ed2 : 00000000`00000000 000000ac`00000000 000000ac`59781640 000000ac`59781648 : nt!KiPageFault+0x443
000000ac`59781620 00000000`00000000 : 000000ac`00000000 000000ac`59781640 000000ac`59781648 00007ff8`4e253000 : 0x00007ff8`50b33ed2
SYMBOL_NAME: nt!PspCatchCriticalBreak+10e
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.19041.572
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 10e
FAILURE_BUCKET_ID: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_410860c0_nt!PspCatchCriticalBreak
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: vb_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {22cc055d-f21d-9907-4317-13792fb49d47}
Followup: MachineOwner
---------
Hocam ramleri bir kaç gün önce memtest86 ile test etmiştim yukarıda fotoğraflar mevcut idi.HDD Sentinel ile diskinizin sağlık durumunu paylaşınız.
Sorun büyük ihtimalle RAM ve HDD kaynaklı.
RAM'lerin seri numaraları farklı gözüküyor bir tanesini çıkarıp test ediniz sistemi.
Kod:******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* KERNEL_DATA_INPAGE_ERROR (7a) The requested page of kernel data could not be read in. Typically caused by a bad block in the paging file or disk controller error. Also see KERNEL_STACK_INPAGE_ERROR. If the error status is 0xC000000E, 0xC000009C, 0xC000009D or 0xC0000185, it means the disk subsystem has experienced a failure. If the error status is 0xC000009A, then it means the request failed because a filesystem failed to make forward progress. Arguments: Arg1: ffffbd817031cde8, lock type that was held (value 1,2,3, or PTE address) Arg2: ffffffffc000000e, error status (normally i/o status code) Arg3: 00002001546a5860, current process (virtual address for lock type 3, or PTE) Arg4: fffff80351bc1000, virtual address that could not be in-paged (or PTE contents if arg1 is a PTE address) Debugging Details: ------------------ *** WARNING: Unable to verify checksum for win32k.sys KEY_VALUES_STRING: 1 Key : Analysis.CPU.mSec Value: 9530 Key : Analysis.DebugAnalysisProvider.CPP Value: Create: 8007007e on DESKTOP-J7A11VA Key : Analysis.DebugData Value: CreateObject Key : Analysis.DebugModel Value: CreateObject Key : Analysis.Elapsed.mSec Value: 38039 Key : Analysis.Memory.CommitPeak.Mb Value: 86 Key : Analysis.System Value: CreateObject Key : WER.OS.Branch Value: vb_release Key : WER.OS.Timestamp Value: 2019-12-06T14:06:00Z Key : WER.OS.Version Value: 10.0.19041.1 ADDITIONAL_XML: 1 OS_BUILD_LAYERS: 1 BUGCHECK_CODE: 7a BUGCHECK_P1: ffffbd817031cde8 BUGCHECK_P2: ffffffffc000000e BUGCHECK_P3: 2001546a5860 BUGCHECK_P4: fffff80351bc1000 ERROR_CODE: (NTSTATUS) 0xc000000e - Varolmayan bir ayg t belirtildi. DISK_HARDWARE_ERROR: There was error with disk hardware BLACKBOXBSD: 1 (!blackboxbsd) BLACKBOXNTFS: 1 (!blackboxntfs) BLACKBOXPNP: 1 (!blackboxpnp) BLACKBOXWINLOGON: 1 CUSTOMER_CRASH_COUNT: 1 PROCESS_NAME: System STACK_TEXT: ffffa187`11e91998 fffff803`31719fa9 : 00000000`0000007a ffffbd81`7031cde8 ffffffff`c000000e 00002001`546a5860 : nt!KeBugCheckEx ffffa187`11e919a0 fffff803`31717835 : ffffa187`00000a00 ffffa187`11e91b00 ffffa187`11e91b30 00000000`00000000 : nt!MiWaitForInPageComplete+0x7d9 ffffa187`11e91a90 fffff803`316ea648 : 00000000`c0033333 00000000`00000000 fffff803`51bc1000 00000000`00000000 : nt!MiIssueHardFault+0x3c5 ffffa187`11e91ba0 fffff803`31739d02 : bd817031`cde80410 ffffe30d`1ff46701 fffff803`3204efc0 00000000`00000000 : nt!MmAccessFault+0x468 ffffa187`11e91d40 fffff803`31a3ced5 : fffff803`51bc00d8 fffff803`51bc00d8 00000000`0000000c ffffe30d`00000000 : nt!MiLockCode+0x322 ffffa187`11e91ef0 fffff803`51bc6144 : ffffe30d`2ade5010 ffffa187`11e920a9 ffffe30d`1f5773d0 ffffe30d`1f5773d0 : nt!MmResetDriverPaging+0xa5 ffffa187`11e91f20 fffff803`51bc6037 : 00000000`00000158 fffff803`31db1094 ffffa187`11e920a9 00000000`00000050 : Msfs!MsCommonCreate+0xd4 ffffa187`11e91ff0 fffff803`316cd805 : ffffe30d`1e2db010 ffffe30d`2d3c1d60 00000000`00000000 00000000`00000000 : Msfs!MsFsdCreate+0x27 ffffa187`11e92020 fffff803`2d74bd87 : 00000000`00000010 00000240`00000000 00000000`00000000 00000000`00000000 : nt!IofCallDriver+0x55 ffffa187`11e92060 fffff803`316cd805 : ffffe30d`2b02ac00 ffffe30d`1f577280 00000000`00000000 00000000`00000030 : FLTMGR!FltpCreate+0x4d7 ffffa187`11e92110 fffff803`316cedf4 : 00000000`00000000 ffffe30d`297e8a20 00000000`00000000 fffff803`316cea23 : nt!IofCallDriver+0x55 ffffa187`11e92150 fffff803`31ac3c3d : ffffa187`11e92410 ffffe30d`1f577280 ffffe30d`2b02ad68 ffffe30d`2b020001 : nt!IoCallDriverWithTracing+0x34 ffffa187`11e921a0 fffff803`31aec3ae : ffffe30d`1f577280 00000000`00000000 ffffe30d`297e8a20 00000000`00000000 : nt!IopParseDevice+0x117d ffffa187`11e92310 fffff803`31af566a : ffffe30d`297e8a00 ffffa187`11e92578 ffffe30d`00000240 ffffe30d`052fe6c0 : nt!ObpLookupObjectName+0x3fe ffffa187`11e924e0 fffff803`319ff52f : 00000000`00000000 ffffa187`11e92998 00000000`00000000 00000000`00000000 : nt!ObOpenObjectByNameEx+0x1fa ffffa187`11e92610 fffff803`319ff078 : ffffa187`11e929e0 00000000`00000000 ffffa187`11e92998 ffffa187`11e92988 : nt!IopCreateFile+0x40f ffffa187`11e926b0 fffff803`31805fb5 : ffffe30d`00000000 fffff803`2d714b02 ffffa187`11e92810 00000000`656c6946 : nt!NtOpenFile+0x58 ffffa187`11e92740 fffff803`317f8400 : fffff803`31aa9b24 00000000`00000000 00000000`00000000 fffff803`2d73b800 : nt!KiSystemServiceCopyEnd+0x25 ffffa187`11e92948 fffff803`31aa9b24 : 00000000`00000000 00000000`00000000 fffff803`2d73b800 fffff803`316dbaa7 : nt!KiServiceLinkage ffffa187`11e92950 fffff803`2d754e0a : 00000000`00000000 00000000`00000000 00000000`00000030 fffff803`2d73b800 : nt!IoGetDeviceObjectPointer+0x94 ffffa187`11e929e0 fffff803`317035f5 : ffffe30d`29a7d040 ffffe30d`29a7d040 fffff803`2d754d40 ffffe30d`052cbce0 : FLTMGR!FltpManualDeviceAttachWorker+0xca ffffa187`11e92a70 fffff803`316a2ae5 : ffffe30d`29a7d040 00000000`00000080 ffffe30d`05302080 000fa4ef`b59bbfff : nt!ExpWorkerThread+0x105 ffffa187`11e92b10 fffff803`317fbbf8 : ffffd281`e0300180 ffffe30d`29a7d040 fffff803`316a2a90 ffffffff`ffffffff : nt!PspSystemThreadStartup+0x55 ffffa187`11e92b60 00000000`00000000 : ffffa187`11e93000 ffffa187`11e8c000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28 CHKIMG_EXTENSION: !chkimg -lo 50 -d !Msfs fffff80351bc1000-fffff80351bc102b 44 bytes - Msfs!MsFlushNotifyForFile+fffffffffffffff0 [ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ] fffff80351bc102f-fffff80351bc1035 7 bytes - Msfs!MsFlushNotifyForFile+1f (+0x2f) [ 48 8b f9 48 81 c1 c8:00 00 00 00 00 00 00 ] fffff80351bc1039-fffff80351bc1041 9 bytes - Msfs!MsFlushNotifyForFile+29 (+0x0a) [ 48 8b dd 4d 8b f0 4c 8b:00 00 00 00 00 00 00 00 ] fffff80351bc104e-fffff80351bc1050 3 bytes - Msfs!MsFlushNotifyForFile+3e (+0x15) [ 4c 8b 4d:00 00 00 ] fffff80351bc1052-fffff80351bc105b 10 bytes - Msfs!MsFlushNotifyForFile+42 (+0x04) [ 0f b6 d0 4c 3b cb 0f 85:00 00 00 00 00 00 00 00 ] fffff80351bc105e-fffff80351bc1066 9 bytes - Msfs!MsFlushNotifyForFile+4e (+0x0c) [ 48 3b dd 75 13 48 8d 9f:00 00 00 00 00 00 00 00 ] fffff80351bc106a-fffff80351bc1073 10 bytes - Msfs!MsFlushNotifyForFile+5a (+0x0c) [ 4c 8b 0b 4c 3b cb 0f 85:00 00 00 00 00 00 00 00 ] fffff80351bc1076-fffff80351bc1079 4 bytes - Msfs!MsFlushNotifyForFile+66 (+0x0c) [ 48 8d 8f c8:00 00 00 00 ] fffff80351bc1089-fffff80351bc10ba 50 bytes - Msfs!MsFlushNotifyForFile+79 (+0x13) [ 48 8b 5c 24 40 48 8b 6c:00 00 00 00 00 00 00 00 ] fffff80351bc10c0-fffff80351bc10c4 5 bytes - Msfs!_security_check_cookie (+0x37) [ 48 3b 0d 39 1f:00 00 00 00 00 ] fffff80351bc10c7-fffff80351bc10da 20 bytes - Msfs!_security_check_cookie+7 (+0x07) [ 75 10 48 c1 c1 10 66 f7:00 00 00 00 00 00 00 00 ] fffff80351bc10de-fffff80351bc10f1 20 bytes - Msfs!_security_check_cookie+1e (+0x17) [ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ] fffff80351bc10f5-fffff80351bc10fc 8 bytes - Msfs!_report_gsfailure+5 (+0x17) [ cd 29 cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ] fffff80351bc1109-fffff80351bc111f 23 bytes - Msfs!_C_specific_handler+c (+0x14) [ cc cc cc cc cc cc cc 48:00 00 00 00 00 00 00 00 ] fffff80351bc1123-fffff80351bc1124 2 bytes - Msfs!_GSHandlerCheck+13 (+0x1a) [ b8 01:00 00 ] fffff80351bc1128-fffff80351bc1139 18 bytes - Msfs!_GSHandlerCheck+18 (+0x05) [ 48 83 c4 28 c3 cc cc cc:00 00 00 00 00 00 00 00 ] fffff80351bc113b-fffff80351bc11b0 118 bytes - Msfs!_GSHandlerCheckCommon+7 (+0x13) [ 4c 8b c9 44 8b d8 4c 8b:00 00 00 00 00 00 00 00 ] fffff80351bc11b3-fffff80351bc11ca 24 bytes - Msfs!guard_check_icall_nop+3 (+0x78) [ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ] fffff80351bc11d5-fffff80351bc123b 103 bytes - Msfs!guard_dispatch_icall_nop+5 (+0x22) [ cc cc cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ] fffff80351bc1240-fffff80351bc125d 30 bytes - Msfs!memcpy+40 (+0x6b) [ 4d 85 c0 74 15 48 2b d1:00 00 00 00 00 00 00 00 ] fffff80351bc1260-fffff80351bc127a 27 bytes - Msfs!memcpy+60 (+0x20) [ 49 03 c8 44 8a 5c 11 ff:00 00 00 00 00 00 00 00 ] fffff80351bc1280-fffff80351bc128f 16 bytes - Msfs!memcpy+80 (+0x20) [ 4e 8d 1c 02 48 2b d1 73:00 00 00 00 00 00 00 00 ] fffff80351bc1292-fffff80351bc12a8 23 bytes - Msfs!memcpy+92 (+0x12) [ 0f 10 04 11 48 83 c1 10:00 00 00 00 00 00 00 00 ] fffff80351bc12aa-fffff80351bc12c2 25 bytes - Msfs!memcpy+aa (+0x18) [ 0f 28 c1 48 83 c1 10 4c:00 00 00 00 00 00 00 00 ] fffff80351bc12c4 - Msfs!memcpy+c4 (+0x1a) [ 10:00 ] fffff80351bc12c7-fffff80351bc12c9 3 bytes - Msfs!memcpy+c7 (+0x03) [ 0f 87 b3:00 00 00 ] fffff80351bc12cd-fffff80351bc12dc 16 bytes - Msfs!memcpy+cd (+0x06) [ 49 83 e0 3f eb 2d 66 66:00 00 00 00 00 00 00 00 ] fffff80351bc12e2-fffff80351bc12eb 10 bytes - Msfs!memcpy+e2 (+0x15) [ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ] fffff80351bc12f1-fffff80351bc12fa 10 bytes - Msfs!memcpy+f1 (+0x0f) [ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ] fffff80351bc1300-fffff80351bc133a 59 bytes - Msfs!memcpy+100 (+0x0f) [ 0f 10 0c 11 0f 10 54 11:00 00 00 00 00 00 00 00 ] fffff80351bc1340-fffff80351bc1373 52 bytes - Msfs!memcpy+140 (+0x40) [ 0f 29 41 f0 0f 10 04 11:00 00 00 00 00 00 00 00 ] fffff80351bc1379-fffff80351bc137b 3 bytes - Msfs!memcpy+179 (+0x39) [ 0f 1f 80:00 00 00 ] fffff80351bc1380-fffff80351bc139b 28 bytes - Msfs!memcpy+180 (+0x07) [ 4d 8b c8 49 c1 e9 06 49:00 00 00 00 00 00 00 00 ] fffff80351bc13a1-fffff80351bc13aa 10 bytes - Msfs!memcpy+1a1 (+0x21) [ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ] fffff80351bc13b0-fffff80351bc13b9 10 bytes - Msfs!memcpy+1b0 (+0x0f) [ 66 66 66 66 66 66 66 0f:00 00 00 00 00 00 00 00 ] fffff80351bc13bf-fffff80351bc13fe 64 bytes - Msfs!memcpy+1bf (+0x0f) [ 90 0f 10 0c 11 0f 10 54:00 00 00 00 00 00 00 00 ] fffff80351bc1400-fffff80351bc143e 63 bytes - Msfs!memcpy+200 (+0x41) [ 49 03 c8 0f 10 44 11 f0:00 00 00 00 00 00 00 00 ] fffff80351bc1440-fffff80351bc147a 59 bytes - Msfs!memcpy+240 (+0x40) [ 0f 10 4c 11 f0 0f 10 54:00 00 00 00 00 00 00 00 ] fffff80351bc1480-fffff80351bc14ed 110 bytes - Msfs!memcpy+280 (+0x40) [ 0f 29 01 0f 10 44 11 f0:00 00 00 00 00 00 00 00 ] fffff80351bc14f0-fffff80351bc150a 27 bytes - Msfs!memset+30 (+0x70) [ 4a 89 54 08 f8 49 83 e9:00 00 00 00 00 00 00 00 ] fffff80351bc1510-fffff80351bc1518 9 bytes - Msfs!memset+50 (+0x20) [ 49 83 e0 07 74 0a 42 88:00 00 00 00 00 00 00 00 ] fffff80351bc151a-fffff80351bc152a 17 bytes - Msfs!memset+5a (+0x0a) [ ff 49 ff c8 75 f6 c3 66:00 00 00 00 00 00 00 00 ] fffff80351bc1530-fffff80351bc155c 45 bytes - Msfs!memset+70 (+0x16) [ 66 48 0f 6e c2 0f 16 c0:00 00 00 00 00 00 00 00 ] fffff80351bc1560-fffff80351bc158d 46 bytes - Msfs!memset+a0 (+0x30) [ 0f 29 41 a0 0f 29 41 b0:00 00 00 00 00 00 00 00 ] fffff80351bc1590-fffff80351bc15dd 78 bytes - Msfs!memset+d0 (+0x30) [ 0f 11 01 48 83 c1 10 49:00 00 00 00 00 00 00 00 ] fffff80351bc15df-fffff80351bc1609 43 bytes - Msfs!MsFlushNotifyForFile+5cf (+0x4f) [ c0 49 8b 46 08 4c 39 30:00 00 00 00 00 00 00 00 ] fffff80351bc160d-fffff80351bc1635 41 bytes - Msfs!MsFlushNotifyForFile+5fd (+0x2e) [ cd 29 cc cc cc cc cc cc:00 00 00 00 00 00 00 00 ] fffff80351bc1642-fffff80351bc1645 4 bytes - Msfs!MsCancelDataQueueIrp+22 (+0x35) [ 48 8b 5e 30:00 00 00 00 ] fffff80351bc1652-fffff80351bc165a 9 bytes - Msfs!MsCancelDataQueueIrp+32 (+0x10) [ 33 d2 48 8d 8b 60 ff ff:00 00 00 00 00 00 00 00 ] fffff80351bc1667-fffff80351bc166f 9 bytes - Msfs!MsCancelDataQueueIrp+47 (+0x15) [ 48 8b d3 48 8b ce e8 8e:00 00 00 00 00 00 00 00 ] WARNING: !chkimg output was truncated to 50 lines. Invoke !chkimg without '-lo [num_lines]' to view entire output. 1987 errors : !Msfs (fffff80351bc1000-fffff80351bc1975) MODULE_NAME: memory_corruption IMAGE_NAME: memory_corruption MEMORY_CORRUPTOR: LARGE STACK_COMMAND: .thread ; .cxr ; kb FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE OS_VERSION: 10.0.19041.1 BUILDLAB_STR: vb_release OSPLATFORM_TYPE: x64 OSNAME: Windows 10 FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c} Followup: memory_corruption --------- 1: kd> !blackboxntfs NTFS Blackbox Data Record 0: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d2a6c3010 Scb: ffffbd8180716170 Thread: ffffe30d2851c040 Record 1: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d2a825010 Scb: ffffbd817e0ea170 Thread: ffffe30d286bb040 Record 2: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d2a7d4010 Scb: ffffbd817314a170 Thread: ffffe30d1f884080 Record 3: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d27d04010 Scb: ffffe30d0af31a20 Thread: ffffe30d2a8b3040 Record 4: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d1e019010 Scb: ffffbd817805f700 Thread: ffffe30d2aec0080 Record 5: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d28684010 Scb: ffffe30d0af1bc70 Thread: ffffe30d054d8080 Record 6: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d293f2010 Scb: ffffbd81785ba7c0 Thread: ffffe30d1e302080 Record 7: Record type: 1 (Slow I/O Timeout) Record length: 32 Irp: ffffe30d29643380 Scb: ffffbd817fdcd680 Thread: ffffe30d2a8b0040 8 Slow I/O Timeout Records Found 0 Oplock Break Timeout Records Found 1: kd> !kdexts.irp ffffe30d29643380 ffffe30d29643380: Could not read Irp 1: kd> !blackboxbsd Stream size mismatch (expected = 192, read = 176) 1: kd> !blackboxpnp PnpActivityId : {00000000-0000-0000-0000-000000000000} PnpActivityTime : 132480167805558396 PnpEventInformation: 3 PnpEventInProgress : 0 PnpProblemCode : 24 PnpVetoType : 0 DeviceId : SW\{96E080C7-143C-11D1-B40F-00A0C9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196} VetoString : 1: kd> lm start end module name ffffa7bd`56a00000 ffffa7bd`56cde000 win32kbase (deferred) ffffa7bd`56ce0000 ffffa7bd`57096000 win32kfull (deferred) ffffa7bd`570a0000 ffffa7bd`570e8000 cdd (deferred) ffffa7bd`574e0000 ffffa7bd`5757a000 win32k C (pdb symbols) C:\ProgramData\Dbg\sym\win32k.pdb\ED706A38659240A066E6FB19B994BAAA1\win32k.pdb fffff803`2d390000 fffff803`2d61f000 mcupdate_GenuineIntel (deferred) fffff803`2d620000 fffff803`2d626000 hal (deferred) fffff803`2d630000 fffff803`2d63b000 kd (deferred) fffff803`2d640000 fffff803`2d667000 tm (deferred) fffff803`2d670000 fffff803`2d6d9000 CLFS (deferred) fffff803`2d6e0000 fffff803`2d6fa000 PSHED (deferred) fffff803`2d700000 fffff803`2d70b000 BOOTVID (deferred) fffff803`2d710000 fffff803`2d77f000 FLTMGR (pdb symbols) C:\ProgramData\Dbg\sym\fltMgr.pdb\C3CA0BC721B145FE4F45FF7F65B7C5AD1\fltMgr.pdb fffff803`2d780000 fffff803`2d78e000 cmimcext (deferred) fffff803`31400000 fffff803`32446000 nt (pdb symbols) C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\B16053724B46515388FDEA9D0470D02E1\ntkrnlmp.pdb fffff803`32c00000 fffff803`32d13000 clipsp (deferred) fffff803`32d20000 fffff803`32d49000 ksecdd (deferred) fffff803`32d50000 fffff803`32db2000 msrpc (deferred) fffff803`32dc0000 fffff803`32dd1000 werkernel (deferred) fffff803`32de0000 fffff803`32dec000 ntosext (deferred) fffff803`32df0000 fffff803`32ed3000 CI (deferred) fffff803`32ee0000 fffff803`32f97000 cng (deferred) fffff803`32fa0000 fffff803`33071000 Wdf01000 (deferred) fffff803`33080000 fffff803`33093000 WDFLDR (deferred) fffff803`330a0000 fffff803`330af000 SleepStudyHelper (deferred) fffff803`330b0000 fffff803`330c1000 WppRecorder (deferred) fffff803`330d0000 fffff803`330f6000 acpiex (deferred) fffff803`33100000 fffff803`3311a000 SgrmAgent (deferred) fffff803`33120000 fffff803`331ec000 ACPI (deferred) fffff803`331f0000 fffff803`331fc000 WMILIB (deferred) fffff803`33200000 fffff803`3320b000 msisadrv (deferred) fffff803`33210000 fffff803`33288000 pci (deferred) fffff803`33290000 fffff803`332d4000 tpm (deferred) fffff803`33300000 fffff803`3336b000 intelpep (deferred) fffff803`33370000 fffff803`33387000 WindowsTrustedRT (deferred) fffff803`33390000 fffff803`3339b000 IntelTA (deferred) fffff803`333a0000 fffff803`333ab000 WindowsTrustedRTProxy (deferred) fffff803`333b0000 fffff803`333c4000 pcw (deferred) fffff803`333d0000 fffff803`333e5000 vdrvroot (deferred) fffff803`333f0000 fffff803`333fe000 USBD (deferred) fffff803`33400000 fffff803`33444000 ucx01000 (deferred) fffff803`33450000 fffff803`3347f000 pdc (deferred) fffff803`33480000 fffff803`33499000 CEA (deferred) fffff803`334a0000 fffff803`334d1000 partmgr (deferred) fffff803`334e0000 fffff803`3358a000 spaceport (deferred) fffff803`33590000 fffff803`335a9000 volmgr (deferred) fffff803`335b0000 fffff803`335ff000 sdbus (deferred) fffff803`33600000 fffff803`33663000 volmgrx (deferred) fffff803`33670000 fffff803`33688000 urscx01000 (deferred) fffff803`33690000 fffff803`336ae000 mountmgr (deferred) fffff803`336b0000 fffff803`34292000 iaStorAC (deferred) fffff803`342a0000 fffff803`34350000 storport (deferred) fffff803`34360000 fffff803`3437c000 EhStorClass (deferred) fffff803`34380000 fffff803`3439a000 fileinfo (deferred) fffff803`343a0000 fffff803`343e0000 Wof (deferred) fffff803`343f0000 fffff803`3445c000 WdFilter (deferred) fffff803`34460000 fffff803`34739000 Ntfs (deferred) fffff803`34740000 fffff803`34773000 usbccgp (deferred) fffff803`34780000 fffff803`3478d000 urschipidea (deferred) fffff803`34790000 fffff803`347aa000 usbehci (deferred) fffff803`347b0000 fffff803`34829000 USBPORT (deferred) fffff803`34830000 fffff803`348b5000 usbhub (deferred) fffff803`348c0000 fffff803`34963000 UsbHub3 (deferred) fffff803`34970000 fffff803`3497d000 Fs_Rec (deferred) fffff803`34980000 fffff803`34aef000 ndis (deferred) fffff803`34af0000 fffff803`34b88000 NETIO (deferred) fffff803`34b90000 fffff803`34bc2000 ksecpkg (deferred) fffff803`34bd0000 fffff803`34eba000 tcpip (deferred) fffff803`34ec0000 fffff803`34f3f000 fwpkclnt (deferred) fffff803`34f40000 fffff803`34f70000 wfplwfs (deferred) fffff803`34f80000 fffff803`34f93000 amdkmpfd (deferred) fffff803`34fa0000 fffff803`34fab000 volume (deferred) fffff803`34fb0000 fffff803`34fd5000 USBSTOR (deferred) fffff803`353f0000 fffff803`354b8000 fvevol (deferred) fffff803`354c0000 fffff803`3552d000 volsnap (deferred) fffff803`35530000 fffff803`355c8000 USBXHCI (deferred) fffff803`355d0000 fffff803`355e8000 uaspstor (deferred) fffff803`355f0000 fffff803`3560e000 sdstor (deferred) fffff803`35610000 fffff803`35660000 rdyboost (deferred) fffff803`35670000 fffff803`35696000 mup (deferred) fffff803`356a0000 fffff803`356b2000 iorate (deferred) fffff803`356e0000 fffff803`356fc000 disk (deferred) fffff803`35700000 fffff803`3576c000 CLASSPNP (deferred) fffff803`47e00000 fffff803`47e10000 mouhid (deferred) fffff803`47e20000 fffff803`47e33000 mouclass (deferred) fffff803`47e40000 fffff803`47e51000 kbdhid (deferred) fffff803`47e60000 fffff803`47f1e000 SynTP (deferred) fffff803`47f20000 fffff803`47f34000 kbdclass (deferred) fffff803`47f40000 fffff803`47f56000 BasicDisplay (deferred) fffff803`47f60000 fffff803`47f78000 watchdog (deferred) fffff803`47f80000 fffff803`48323000 dxgkrnl (deferred) fffff803`48330000 fffff803`483d1000 Vid (deferred) fffff803`483e0000 fffff803`48401000 winhvr (deferred) fffff803`48410000 fffff803`48422000 CompositeBus (deferred) fffff803`48430000 fffff803`4843d000 kdnic (deferred) fffff803`48440000 fffff803`48455000 umbus (deferred) fffff803`48460000 fffff803`48475000 CAD (deferred) fffff803`48b60000 fffff803`48b6d000 sshid (deferred) fffff803`48b70000 fffff803`48b7b000 mshidkmdf (deferred) fffff803`48b80000 fffff803`48bbf000 HIDCLASS (deferred) fffff803`48bc0000 fffff803`48bd3000 HIDPARSE (deferred) fffff803`48be0000 fffff803`48bf2000 hidusb (deferred) fffff803`48c00000 fffff803`48c54000 WUDFRd (deferred) fffff803`48c60000 fffff803`48c74000 mmcss (deferred) fffff803`48c80000 fffff803`48ca9000 luafv (deferred) fffff803`48cb0000 fffff803`48ce6000 wcifs (deferred) fffff803`48cf0000 fffff803`48d70000 cldflt (deferred) fffff803`48d80000 fffff803`48d9a000 storqosflt (deferred) fffff803`48da0000 fffff803`48dc7000 bindflt (deferred) fffff803`48df0000 fffff803`48e08000 lltdio (deferred) fffff803`48e10000 fffff803`48e28000 mslldp (deferred) fffff803`48e30000 fffff803`48e4b000 rspndr (deferred) fffff803`48e50000 fffff803`48e6d000 wanarp (deferred) fffff803`48e70000 fffff803`48e88000 ndisuio (deferred) fffff803`48e90000 fffff803`48f4a000 nwifi (deferred) fffff803`48f50000 fffff803`48fa6000 msquic (deferred) fffff803`48fb0000 fffff803`49136000 HTTP (deferred) fffff803`49140000 fffff803`49165000 bowser (deferred) fffff803`49170000 fffff803`4918a000 mpsdrv (deferred) fffff803`49190000 fffff803`49223000 mrxsmb (deferred) fffff803`49230000 fffff803`49275000 mrxsmb20 (deferred) fffff803`49280000 fffff803`49293000 condrv (deferred) fffff803`492a0000 fffff803`492f2000 srvnet (deferred) fffff803`49300000 fffff803`49352000 mrxsmb10 (deferred) fffff803`49360000 fffff803`49427000 srv2 (deferred) fffff803`49430000 fffff803`49457000 Ndu (deferred) fffff803`49460000 fffff803`49536000 peauth (deferred) fffff803`49540000 fffff803`49555000 tcpipreg (deferred) fffff803`49560000 fffff803`49573000 vwifimp (deferred) fffff803`49580000 fffff803`4959c000 rassstp (deferred) fffff803`495a0000 fffff803`495bd000 NDProxy (deferred) fffff803`495c0000 fffff803`495e7000 AgileVpn (deferred) fffff803`495f0000 fffff803`49611000 rasl2tp (deferred) fffff803`49620000 fffff803`49641000 raspptp (deferred) fffff803`49650000 fffff803`4966c000 raspppoe (deferred) fffff803`49670000 fffff803`4967f000 ndistapi (deferred) fffff803`49680000 fffff803`496ba000 ndiswan (deferred) fffff803`496c0000 fffff803`496d6000 WdNisDrv (deferred) fffff803`49a80000 fffff803`4a662000 dump_iaStorAC (deferred) fffff803`4a690000 fffff803`4a6ad000 dump_dumpfve (deferred) fffff803`4a6b0000 fffff803`4a791000 dxgmms2 (deferred) fffff803`4a7a0000 fffff803`4a7bb000 monitor (deferred) fffff803`4ac00000 fffff803`4ac1e000 crashdmp (deferred) fffff803`4ba50000 fffff803`4d9c3000 nvlddmkm (deferred) fffff803`4ec00000 fffff803`4ed7f000 BTHport (deferred) fffff803`4ed80000 fffff803`4eda1000 BTHUSB (deferred) fffff803`4edb0000 fffff803`4edfc000 TeeDriverW10x64 (deferred) fffff803`4ee00000 fffff803`4ee35000 bhtpcrdr (deferred) fffff803`4ee40000 fffff803`4eee3000 afd (deferred) fffff803`4eef0000 fffff803`4ef1b000 pacer (deferred) fffff803`4ef20000 fffff803`4ef34000 ndiscap (deferred) fffff803`4ef40000 fffff803`4ef54000 netbios (deferred) fffff803`4ef60000 fffff803`4efdb000 rdbss (deferred) fffff803`4efe0000 fffff803`4eff2000 nsiproxy (deferred) fffff803`4f000000 fffff803`4f02c000 dfsc (deferred) fffff803`4f050000 fffff803`4f0bc000 fastfat (deferred) fffff803`4f0c0000 fffff803`4f0d7000 bam (deferred) fffff803`4f0e0000 fffff803`4f12e000 ahcache (deferred) fffff803`4f140000 fffff803`4f14e000 dump_diskdump (deferred) fffff803`4f1e0000 fffff803`50c33000 igdkmd64 (deferred) fffff803`50c40000 fffff803`50c70000 cdrom (deferred) fffff803`50c80000 fffff803`50c95000 filecrypt (deferred) fffff803`50ca0000 fffff803`50cae000 tbs (deferred) fffff803`50cb0000 fffff803`50cba000 Null (deferred) fffff803`50cc0000 fffff803`50cca000 Beep (deferred) fffff803`50cd0000 fffff803`50ce1000 BasicRender (deferred) fffff803`50cf0000 fffff803`50dba000 RtkBtfilter (deferred) fffff803`50e00000 fffff803`50eef000 wdiwifi (deferred) fffff803`50ef0000 fffff803`50efe000 vwifibus (deferred) fffff803`50f00000 fffff803`51016000 rt640x64 (deferred) fffff803`51020000 fffff803`5102f000 CmBatt (deferred) fffff803`51030000 fffff803`51040000 BATTC (deferred) fffff803`51050000 fffff803`51064000 AcpiVpc (deferred) fffff803`51070000 fffff803`5107c000 ICCWDT (deferred) fffff803`51080000 fffff803`510a1000 i8042prt (deferred) fffff803`510b0000 fffff803`510d5000 HDAudBus (deferred) fffff803`510e0000 fffff803`51146000 portcls (deferred) fffff803`51150000 fffff803`51171000 drmk (deferred) fffff803`51180000 fffff803`511f6000 ks (deferred) fffff803`51200000 fffff803`5120f000 Smb_driver_Intel (deferred) fffff803`51210000 fffff803`51228000 iaLPSS2_GPIO2 (deferred) fffff803`51230000 fffff803`51262000 msgpioclx (deferred) fffff803`51270000 fffff803`5127c000 wmiacpi (deferred) fffff803`51280000 fffff803`512c0000 intelppm (deferred) fffff803`512d0000 fffff803`512db000 acpipagr (deferred) fffff803`512e0000 fffff803`512ee000 UEFI (deferred) fffff803`512f0000 fffff803`51301000 nvvad64v (deferred) fffff803`51310000 fffff803`5131f000 ksthunk (deferred) fffff803`51320000 fffff803`5132d000 NvModuleTracker (deferred) fffff803`51330000 fffff803`51340000 nvvhci (deferred) fffff803`51350000 fffff803`5135d000 NdisVirtualBus (deferred) fffff803`51360000 fffff803`51370000 mssmbios (deferred) fffff803`51380000 fffff803`5138c000 swenum (deferred) fffff803`51390000 fffff803`513ec000 netbt (deferred) fffff803`513f0000 fffff803`513fe000 rdpbus (deferred) fffff803`51400000 fffff803`5140a000 HWiNFO64A (deferred) fffff803`51410000 fffff803`51461000 usbvideo (deferred) fffff803`51470000 fffff803`51b36000 RTKVHD64 (deferred) fffff803`51b40000 fffff803`51b95000 IntcDAud (deferred) fffff803`51ba0000 fffff803`51bbc000 Npfs (deferred) fffff803`51bc0000 fffff803`51bd1000 Msfs # (pdb symbols) C:\ProgramData\Dbg\sym\msfs.pdb\6CB957B6B5ACE7601CF3BB9E403940801\msfs.pdb fffff803`51be0000 fffff803`51bfb000 CimFS (deferred) fffff803`51c00000 fffff803`51c22000 tdx (deferred) fffff803`51c30000 fffff803`51c40000 TDI (deferred) fffff803`51c50000 fffff803`51c63000 afunix (deferred) fffff803`51c70000 fffff803`51c7a000 gpuenergydrv (deferred) fffff803`51c80000 fffff803`525c8000 rtwlane (deferred) fffff803`525d0000 fffff803`525ea000 vwififlt (deferred) fffff803`525f0000 fffff803`525fe000 npsvctrig (deferred) Unloaded modules: fffff803`496e0000 fffff803`496f1000 MSKSSRV.sys fffff803`48dd0000 fffff803`48de1000 MSKSSRV.sys fffff803`4ac30000 fffff803`4ac3f000 dump_storpor fffff803`4df10000 fffff803`4eaf3000 dump_iaStorA fffff803`4eb20000 fffff803`4eb3e000 dump_dumpfve fffff803`4f030000 fffff803`4f04c000 dam.sys fffff803`51400000 fffff803`5140c000 WdmCompanion fffff803`51390000 fffff803`513e5000 WUDFRd.sys fffff803`332e0000 fffff803`332f1000 WdBoot.sys fffff803`356c0000 fffff803`356d1000 hwpolicy.sys ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* CRITICAL_PROCESS_DIED (ef) A critical system process died Arguments: Arg1: ffffdc0f3c111080, Process object or thread object Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died. Arg3: 0000000000000000 Arg4: 0000000000000000 Debugging Details: ------------------ KEY_VALUES_STRING: 1 Key : Analysis.CPU.mSec Value: 13562 Key : Analysis.DebugAnalysisProvider.CPP Value: Create: 8007007e on DESKTOP-J7A11VA Key : Analysis.DebugData Value: CreateObject Key : Analysis.DebugModel Value: CreateObject Key : Analysis.Elapsed.mSec Value: 34395 Key : Analysis.Memory.CommitPeak.Mb Value: 82 Key : Analysis.System Value: CreateObject Key : WER.OS.Branch Value: vb_release Key : WER.OS.Timestamp Value: 2019-12-06T14:06:00Z Key : WER.OS.Version Value: 10.0.19041.1 ADDITIONAL_XML: 1 OS_BUILD_LAYERS: 1 BUGCHECK_CODE: ef BUGCHECK_P1: ffffdc0f3c111080 BUGCHECK_P2: 0 BUGCHECK_P3: 0 BUGCHECK_P4: 0 PROCESS_NAME: csrss.exe CRITICAL_PROCESS: csrss.exe EXCEPTION_RECORD: ffffdc0f3c1117c0 -- (.exr 0xffffdc0f3c1117c0) ExceptionAddress: 0000000000000000 ExceptionCode: 00000000 ExceptionFlags: 00000000 NumberParameters: 0 ERROR_CODE: (NTSTATUS) 0x410860c0 - <Unable to get error code text> BLACKBOXBSD: 1 (!blackboxbsd) BLACKBOXNTFS: 1 (!blackboxntfs) BLACKBOXPNP: 1 (!blackboxpnp) BLACKBOXWINLOGON: 1 CUSTOMER_CRASH_COUNT: 1 EXCEPTION_STR: 0x0 STACK_TEXT: ffff8204`c7946c08 fffff806`2df06fe2 : 00000000`000000ef ffffdc0f`3c111080 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx ffff8204`c7946c10 fffff806`2ddd7d83 : 00000000`00000001 fffff806`2d860ea5 00000000`00000002 fffff806`2d860dcf : nt!PspCatchCriticalBreak+0x10e ffff8204`c7946cb0 fffff806`2dc4a9b0 : ffffdc0f`00000000 00000000`00000000 ffffdc0f`3c111080 ffffdc0f`3c1114b8 : nt!PspTerminateAllThreads+0x1ee377 ffff8204`c7946d20 fffff806`2dc4a7ac : ffffdc0f`3c111080 00000000`00000001 ffffffff`ffffffff 00000000`00000000 : nt!PspTerminateProcess+0xe0 ffff8204`c7946d60 fffff806`2da05fb5 : ffffdc0f`3c111080 ffffdc0f`410860c0 ffff8204`c7946e50 fffff806`2dd16372 : nt!NtTerminateProcess+0x9c ffff8204`c7946dd0 fffff806`2d9f8400 : fffff806`2da3017f ffff8204`c7947958 ffff8204`c7947958 ffffffff`ffffffff : nt!KiSystemServiceCopyEnd+0x25 ffff8204`c7946f68 fffff806`2da3017f : ffff8204`c7947958 ffff8204`c7947958 ffffffff`ffffffff 00007ff8`4e253000 : nt!KiServiceLinkage ffff8204`c7946f70 fffff806`2da066ac : ffffdc0f`3c1117c0 fffff806`2d8ec946 00000000`00000c00 ffff8204`c7947a00 : nt!KiDispatchException+0x1de95f ffff8204`c7947820 fffff806`2da02843 : 00000000`00023ed2 00000000`00000000 ffff8204`c7947a80 00000000`00000000 : nt!KiExceptionDispatch+0x12c ffff8204`c7947a00 00007ff8`50b33ed2 : 00000000`00000000 000000ac`00000000 000000ac`59781640 000000ac`59781648 : nt!KiPageFault+0x443 000000ac`59781620 00000000`00000000 : 000000ac`00000000 000000ac`59781640 000000ac`59781648 00007ff8`4e253000 : 0x00007ff8`50b33ed2 SYMBOL_NAME: nt!PspCatchCriticalBreak+10e MODULE_NAME: nt IMAGE_NAME: ntkrnlmp.exe IMAGE_VERSION: 10.0.19041.572 STACK_COMMAND: .thread ; .cxr ; kb BUCKET_ID_FUNC_OFFSET: 10e FAILURE_BUCKET_ID: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_410860c0_nt!PspCatchCriticalBreak OS_VERSION: 10.0.19041.1 BUILDLAB_STR: vb_release OSPLATFORM_TYPE: x64 OSNAME: Windows 10 FAILURE_ID_HASH: {22cc055d-f21d-9907-4317-13792fb49d47} Followup: MachineOwner ---------
Bu sitenin çalışmasını sağlamak için gerekli çerezleri ve deneyiminizi iyileştirmek için isteğe bağlı çerezleri kullanıyoruz.