Arda Selim1907
Femtopat
- Katılım
- 4 Aralık 2020
- Mesajlar
- 3
Kod:
1- Microsoft (r) Windows debugger version 10.0.20153.1000 AMD64
Copyright (C) Microsoft corporation. All rights reserved.
Loading dump file [C:\Users\arda\Desktop\minidump\120420-5984-01.dmp]
Mini kernel dump file: Only registers and stack trace are available
************* Path validation summary **************
Response time (ms) location
Deferred srv*
Symbol Search path is: Srv*
Executable Search path is:
Windows 10 kernel version 19041 MP (12 procs) Free X64
PROduct: Winnt, Suite: Terminalserver singleuserts
Edition Build lab: 19041.1.AMD64fre. VB_RELEASE. 191206-1406
Machine name:
Kernel base = 0xfffff802`16600000 psloadedmodulelist = 0xfffff802`1722a3b0
Debug session time: Fri dec 4 03:57:20.744 2020 (utc + 3:00)
System uptime: 0 days 0:00:07.393
Loading kernel symbols
Loading user symbols
Loading unloaded module list
For analysis of this file, run! Analyze -v
Nt! Kebugcheckex:
Fffff802'169F5210 48894C2408 mov qword PTR [rsp+8],rcx SS:0018:fffff307'0F0455A0=000000000000004C
11: Kd>! Analyze -v
*******************************************************************************
* *
* Bugcheck analysis *
* *
*******************************************************************************
WINLOGON_FATAL_ERROR (C000021A)
The winlogon process terminated unexpectedly.
Arguments:
Arg1: FFFF820D292477E0, string that identifies the problem.
Arg2: FfffFFFFC0000428, error code.
Arg3: 0000000000000000
Arg4: 00000202E3EC0000
Debugging details:
------------------
Etw minidump data unavailable
KEY_VALUES_STRING: 1
Key: Analysis. CPU. Msec
Value: 4342
Key: Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007E on deSKTOP-9DTRD6C
Key: Analysis. Debugdata
Value: Createobject
Key: Analysis. Debugmodel
Value: Createobject
Key: Analysis. Elapsed. Msec
Value: 5635
Key: Analysis. Memory. Commitpeak. MB
Value: 75
Key: Analysis. System
Value: Createobject
Key: Wer. OS. Branch
Value: VB_RELEASE
Key: Wer. OS. Timestamp
Value: 2019-12-06T14:06:00Z
Key: Wer. OS. Version
Value: 10.0.19041.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
ERROR_CODE: (Ntstatus) 0xc000021a - { nemli sistem hatas } %hs sistem i lemi, 0X
EXCEPTION_CODE_STR: C000021A
EXCEPTION_PARAMETER1: FFFF820D292477E0
EXCEPTION_PARAMETER2: FfffFFFFC0000428
EXCEPTION_PARAMETER3: 0000000000000000
EXCEPTION_PARAMETER4: 202E3EC0000
BUGCHECK_CODE: C000021A
BUGCHECK_P1: FFFF820D292477E0
BUGCHECK_P2: FfffFFFFC0000428
BUGCHECK_P3: 0
BUGCHECK_P4: 202E3EC0000
PROCESS_NAME: smss.exe
ADDITIONAL_DEBUG_TEXT: İnitial session process or
IMAGE_NAME: ntkrnlmp.exe
MODULE_NAME: NT
Blackboxbsd: 1 (!Blackboxbsd)
Blackboxntfs: 1 (!Blackboxntfs)
CUSTOMER_CRASH_COUNT: 1
STACK_TEXT:
Fffff307'0F045598 fffff802'16FAD56A: 00000000'0000004C 00000000'C000021A fffff307'0F07D3F0 ffffb387'A79F4C50: Nt! Kebugcheckex
Fffff307'0F0455A0 fffff802'16F9F30D: Fffff307'0F0456C0 fffff307'0F045660 fffff307'0F0456C0 fffff307'0F045660: Nt! Popgracefulshutdown+0x29A
Fffff307'0F0455E0 fffff802'16F947DC: 00000000'00000001 fffff802'00000006 00000000'00000004 00000000'00000000: Nt! Poptransitionsystempowerstateex+0x11839
Fffff307'0F0456A0 fffff802'16A06BB8: 00000000'00000000 00000000'00000001 00000000'00000000 00000000'00000000: Nt! Ntsetsystempowerstate+0x4C
Fffff307'0F045880 fffff802'169F9070: Fffff802'16E431D7 00000000'00000014 ffffffff'ffffff00 00000000'00000000: Nt! Kisystemservicecopyend+0x28
Fffff307'0F045A18 fffff802'16E431D7: 00000000'00000014 ffffffff'ffffff00 00000000'00000000 fffff802'17223CA0: Nt! Kiservicelinkage
Fffff307'0F045A20 fffff802'16D59BD9: 00000000'00000000 ffffb387'A0E81A30 00000000'00000000 00000000'00000000: Nt! Popıssueactionrequest+0xe94df
Fffff307'0F045AC0 fffff802'168A0D34: 00000000'00000001 00000000'00000000 ffffffff'ffffffff fffff802'17223C00: Nt! Poppolicyworkeraction+0x79
Fffff307'0F045B30 fffff802'169034B5: Ffffb387'00000001 ffffb387'A4B7D040 fffff802'168A0CA0 ffffb387'00000000: Nt! Poppolicyworkerthread+0x94
Fffff307'0F045B70 fffff802'168A29A5: Ffffb387'A4B7D040 00000000'00000080 ffffb387'A0E65080 000F8067'b4bbbdff: Nt! Expworkerthread+0x105
Fffff307'0F045C10 fffff802'169FC868: Ffffd600'FD69E180 ffffb387'A4B7D040 fffff802'168A2950 2327B735'7726780D: Nt! Pspsystemthreadstartup+0x55
Fffff307'0F045C60 00000000'00000000: Fffff307'0F046000 fffff307'0F040000 00000000'00000000 00000000'00000000: Nt! Kistartsystemthread+0x28
SYMBOL_NAME: Nt! Poptransitionsystempowerstateex+11839
IMAGE_VERSION: 10.0.19041.630
STACK_COMMAND:. Thread;. Cxr; KB
BUCKET_ID_FUNC_OFFSET: 11839
FAILURE_BUCKET_ID: 0xc000021a_smpdestroycontrolblock_smss.exe_terminaTED_C0000428_NT! Poptransitionsystempowerstateex
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: VB_RELEASE
OSPLATFORM_TYPE: X64
Osname: Windows 10
FAILURE_ID_HASH: {11C026A4-042B-4C24-02DC-2DA456397475}
Followup: Machineowner
---------
2-
Microsoft (r) Windows debugger version 10.0.20153.1000 AMD64
Copyright (C) Microsoft corporation. All rights reserved.
Loading dump file [C:\Users\arda\Desktop\minidump\120420-7046-01.dmp]
Mini kernel dump file: Only registers and stack trace are available
************* Path validation summary **************
Response time (ms) location
Deferred srv*
Symbol Search path is: Srv*
Executable Search path is:
Windows 10 kernel version 19041 MP (12 procs) Free X64
PROduct: Winnt, Suite: Terminalserver singleuserts
Edition Build lab: 19041.1.AMD64fre. VB_RELEASE. 191206-1406
Machine name:
Kernel base = 0xfffff800`45c00000 psloadedmodulelist = 0xfffff800`4682a3b0
Debug session time: Fri dec 4 03:29:43.408 2020 (utc + 3:00)
System uptime: 0 days 0:00:06.056
Loading kernel symbols
Loading user symbols
Loading unloaded module list
For analysis of this file, run! Analyze -v
Nt! Kebugcheckex:
Fffff800'45FF5210 48894C2408 mov qword PTR [rsp+8],rcx SS:0018:fffffd09'F2605220=0000000000000050
0: Kd>! Analyze -v
*******************************************************************************
* *
* Bugcheck analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid System Memory was referenced. This cannot be protected by try-except.
Typically the address is just plain bad or it is pointing at freed Memory.
Arguments:
Arg1: FFFFCD8204CF9E80, Memory referenced.
Arg2: 0000000000000000, Value 0 = read operation, 1 = write operation.
Arg3: FFFFF80048449C52, ıf non-Zero, the instruction address which referenced the bad Memory
Address.
Arg4: 0000000000000002, (reserved)
Debugging details:
------------------
Could not read faulting driver name
KEY_VALUES_STRING: 1
Key: Analysis. CPU. Msec
Value: 3765
Key: Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007E on deSKTOP-9DTRD6C
Key: Analysis. Debugdata
Value: Createobject
Key: Analysis. Debugmodel
Value: Createobject
Key: Analysis. Elapsed. Msec
Value: 5197
Key: Analysis. Memory. Commitpeak. MB
Value: 72
Key: Analysis. System
Value: Createobject
Key: Wer. OS. Branch
Value: VB_RELEASE
Key: Wer. OS. Timestamp
Value: 2019-12-06T14:06:00Z
Key: Wer. OS. Version
Value: 10.0.19041.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: 50
BUGCHECK_P1: FFFFCD8204CF9E80
BUGCHECK_P2: 0
BUGCHECK_P3: FFFFF80048449C52
BUGCHECK_P4: 2
READ_ADDRESS: FFFFF800468FB390: Unable to GET mivisiblestate
Unable to GET nonpagedpoolstart
Unable to GET nonpagedpoolend
Unable to GET pagedpoolstart
Unable to GET pagedpoolend
FFFFF8004680F340: Unable to GET flags Value from nt! Kdversionblock
FFFFF8004680F340: Unable to GET flags Value from nt! Kdversionblock
Unable to GET nt! Mmspecialpagesınuse
FFFFCD8204CF9E80
MM_INTERNAL_CODE: 2
Blackboxntfs: 1 (!Blackboxntfs)
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: System
TRAP_FRAME: FFFFFD09F26054C0 -- (.Trap 0xfffffd09f26054c0)
Note: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
Rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000000
Rdx=fffffffFFFDD1070 rsi=0000000000000000 rdi=0000000000000000
Rip=FFFFF80048449C52 rsp=fFFFFD09F2605650 rbp=0000000000008004
R8=0000000000000014 R9=FFFFF8004844C350 R10=0000FFFFF8004844
R11=FFFFD17D78C00000 R12=0000000000000000 R13=0000000000000000
R14=0000000000000000 R15=0000000000000000
İopl=0 NV up ei PL zr na po NC
Cı! I_findfileorheaderhashınloadedcatalogs+0x9A:
Fffff800'48449C52 8B4760 mov eax, dword PTR [rdi+60h] DS: 00000000'00000060=?
Resetting default scope
STACK_TEXT:
Fffffd09'F2605218 fffff800'4607A665: 00000000'00000050 ffffcd82'04CF9E80 00000000'00000000 fffffd09'F26054C0: Nt! Kebugcheckex
Fffffd09'F2605220 fffff800'45EEA4A0: Fffffd09'F2605350 00000000'00000000 fffffd09'F2605540 00000000'00000000: Nt! Misystemfault+0x172315
Fffffd09'F2605320 fffff800'4600335E: Fffffd09'F26054F0 fffff800'49B44000 00000000'00000000 00000000'00000000: Nt! Mmaccessfault+0x400
Fffffd09'F26054C0 fffff800'48449C52: 00000000'00000000 00000000'00008004 00000000'00000004 ffffcd82'0ccfa9F0: Nt! Kipagefault+0x35E
Fffffd09'F2605650 fffff800'4844948E: Ffffcd82'0C6ADC20 ffffcd82'0C6ADC20 FFFF8442'00000001 fffff800'00000000: Cı! I_findfileorheaderhashınloadedcatalogs+0x9A
Fffffd09'F26056D0 fffff800'484490F4: 00720075'3A629000 00000000'00000014 0074006E'A6290003 0053006C'C77C4E14: Cı! I_findfileorheaderhashıncatalogs+0x2BE
Fffffd09'F2605830 fffff800'48454EFE: Fffffd09'F2605A1C fffffd09'F2605A28 00000000'00000000 00000000'00000000: Cı! MINCryPK_VERIFYHASHINCATALOG+0x110
Fffffd09'F26058E0 fffff800'4845076F: 00000000'00000000 00000000'00000000 fffff800'49B30000 fffff800'0000002A: Cı! Civerifyfilehashıncatalogs+0x18E
Fffffd09'F26059C0 fffff800'48451C79: 00000000'00000000 fffffd09'F2605CF1 00000000'00000000 00000000'00000000: Cı! Cipfindfilehash+0x2DB
Fffffd09'F2605B20 fffff800'484515AB: Ffffcd82'0C6AD450 FFFF9403'0793E0C0 FFFF9403'03868040 fffff800'49B30000: Cı! Cipvalidatefilehash+0x2D9
Fffffd09'F2605C00 fffff800'4844F9E2: 00000000'00000088 00000000'00000000 FFFF9403'0793E0C0 fffff800'49B30000: Cı! Cipvalidateımagehash+0x10F
Fffffd09'F2605D40 fffff800'462735E5: Fffffd09'F2605F80 fffff800'49B30000 00000000'0000000F fffff800'49B30000: Cı! Civalidateımageheader+0x812
Fffffd09'F2605EC0 fffff800'46273140: 00000000'00000000 FFFF9403'077B9920 00000000'00000000 00000000'00015000: Nt! Sevalidateımageheader+0xd9
Fffffd09'F2605F70 fffff800'4620C09B: Fffffd09'F2606400 00000000'00000000 00000000'00000000 ffffffff'80000358: Nt! Mivalidatesectioncreate+0x438
Fffffd09'F2606150 fffff800'4620B4E6: Fffffd09'F2606490 fffffd09'F2606490 fffffd09'F26062B0 00000000'00000000: Nt! Mivalidatesectionsigningpolicy+0xab
Fffffd09'F26061B0 fffff800'462FF71B: FFFF9403'0793E0C0 fffffd09'F2606490 fffffd09'F2606490 00000000'00000000: Nt! Micreatenewsection+0x66E
Fffffd09'F2606320 fffff800'462FED64: Fffffd09'F2606350 ffffcd82'0F8F4690 FFFF9403'0793E0C0 00000000'00000000: Nt! Micreateımageordatasection+0x2DB
Fffffd09'F2606410 fffff800'45F6CE18: 00000000'00000000 00000000'ffffffff ffffffff'800001D0 fffff800'45ECB429: Nt! Micreatesection+0xf4
Fffffd09'F2606590 fffff800'46333FA2: 00000000'00000000 fffffd09'F26066A9 ffffffff'800001D0 00000000'00000000: Nt! Micreatesystemsection+0xa4
Fffffd09'F2606630 fffff800'4633187E: Fffff800'4682A3B0 ffffffff'800001D0 fffffd09'F26067C8 00000000'00000000: Nt! Micreatesectionfordriver+0x126
Fffffd09'F2606710 fffff800'463310D2: 00000000'00000000 fffffd09'F2606860 00000000'00000000 00000000'000009C8: Nt! Miobtainsectionfordriver+0xa6
Fffffd09'F2606760 fffff800'46330F66: Fffffd09'F2606998 00000000'00000000 00000000'00000000 00000000'00000000: Nt! Mmloadsystemımageex+0x156
Fffffd09'F2606900 fffff800'4631E124: Fffffd09'F2606A40 00000000'00000000 fffff800'46845900 00000000'00000000: Nt! Mmloadsystemımage+0x26
Fffffd09'F2606940 fffff800'46653EAF: FFFF9403'0752BC10 FFFF9403'0752BC10 fffffd09'F2606B80 00000000'00000000: Nt! Ioploaddriver+0x23C
Fffffd09'F2606B10 fffff800'46660AD6: Ffffffff'00000000 ffffcd82'101F7AA0 00000000'00000000 fffff800'41665B10: Nt! Iopınitializesystemdrivers+0x157
Fffffd09'F2606BB0 fffff800'463946DB: Fffff800'41665B10 fffff800'46847068 fffff800'463946A0 fffff800'41665B10: Nt! Ioınitsystem+0x2E
Fffffd09'F2606BE0 fffff800'45EA29A5: FFFF9403'03869040 fffff800'463946A0 fffff800'41665B10 00000000'00000000: Nt! Phase1ınitialization+0x3B
Fffffd09'F2606C10 fffff800'45FFC868: Fffff800'41A0C180 FFFF9403'03869040 fffff800'45EA2950 00000000'00000000: Nt! Pspsystemthreadstartup+0x55
Fffffd09'F2606C60 00000000'00000000: Fffffd09'F2607000 fffffd09'F2601000 00000000'00000000 00000000'00000000: Nt! Kistartsystemthread+0x28
SYMBOL_NAME: Cı! I_findfileorheaderhashınloadedcatalogs+9a
MODULE_NAME: Cı
IMAGE_NAME: CI.dll
IMAGE_VERSION: 10.0.19041.606
STACK_COMMAND:. Thread;. Cxr; KB
BUCKET_ID_FUNC_OFFSET: 9A
FAILURE_BUCKET_ID: AV_R_INVALID_CI! I_findfileorheaderhashınloadedcatalogs
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: VB_RELEASE
OSPLATFORM_TYPE: X64
Osname: Windows 10
FAILURE_ID_HASH: {FAD8963D-5D30-5D2F-AE25-A594DC86284F}
Followup: Machineowner
---------
3-
Microsoft (r) Windows debugger version 10.0.20153.1000 AMD64
Copyright (C) Microsoft corporation. All rights reserved.
Loading dump file [C:\Users\arda\Desktop\minidump\120420-7125-01.dmp]
Mini kernel dump file: Only registers and stack trace are available
************* Path validation summary **************
Response time (ms) location
Deferred srv*
Symbol Search path is: Srv*
Executable Search path is:
Windows 10 kernel version 19041 MP (12 procs) Free X64
PROduct: Winnt, Suite: Terminalserver singleuserts
Edition Build lab: 19041.1.AMD64fre. VB_RELEASE. 191206-1406
Machine name:
Kernel base = 0xfffff806`04800000 psloadedmodulelist = 0xfffff806`0542a3b0
Debug session time: Fri dec 4 13:59:20.876 2020 (utc + 3:00)
System uptime: 0 days 0:00:05.525
Loading kernel symbols
Loading user symbols
Loading unloaded module list
For analysis of this file, run! Analyze -v
Nt! Kebugcheckex:
Fffff806'04BF5210 48894C2408 mov qword PTR [rsp+8],rcx SS:0018:ffffd381'C252EBC0=0000000000000050
8: Kd>! Analyze -v
*******************************************************************************
* *
* Bugcheck analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid System Memory was referenced. This cannot be protected by try-except.
Typically the address is just plain bad or it is pointing at freed Memory.
Arguments:
Arg1: FFFF81040C81FD90, Memory referenced.
Arg2: 0000000000000000, Value 0 = read operation, 1 = write operation.
Arg3: FFFFF80604F432AC, ıf non-Zero, the instruction address which referenced the bad Memory
Address.
Arg4: 0000000000000002, (reserved)
Debugging details:
------------------
Could not read faulting driver name
KEY_VALUES_STRING: 1
Key: Analysis. CPU. Msec
Value: 6343
Key: Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007E on deSKTOP-9DTRD6C
Key: Analysis. Debugdata
Value: Createobject
Key: Analysis. Debugmodel
Value: Createobject
Key: Analysis. Elapsed. Msec
Value: 7807
Key: Analysis. Memory. Commitpeak. MB
Value: 73
Key: Analysis. System
Value: Createobject
Key: Wer. OS. Branch
Value: VB_RELEASE
Key: Wer. OS. Timestamp
Value: 2019-12-06T14:06:00Z
Key: Wer. OS. Version
Value: 10.0.19041.1
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: 50
BUGCHECK_P1: FFFF81040C81FD90
BUGCHECK_P2: 0
BUGCHECK_P3: FFFFF80604F432AC
BUGCHECK_P4: 2
READ_ADDRESS: FFFFF806054FB390: Unable to GET mivisiblestate
Unable to GET nonpagedpoolstart
Unable to GET nonpagedpoolend
Unable to GET pagedpoolstart
Unable to GET pagedpoolend
FFFFF8060540F340: Unable to GET flags Value from nt! Kdversionblock
FFFFF8060540F340: Unable to GET flags Value from nt! Kdversionblock
Unable to GET nt! Mmspecialpagesınuse
FFFF81040C81FD90
MM_INTERNAL_CODE: 2
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: System
TRAP_FRAME: FFFFD381C252EE60 -- (.Trap 0xffffd381c252ee60)
Note: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
Rax=FFFF8104075F4530 rbx=0000000000000000 rcx=0000000000000028
Rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
Rip=FFFFF80604F432AC rsp=FFFFD381C252EFF0 rbp=FFFFD381C252F130
R8=0000000000000FFF R9=00000000000006D0 R10=00000000656C5252
R11=0000000000001001 R12=0000000000000000 R13=0000000000000000
R14=0000000000000000 R15=0000000000000000
İopl=0 NV up ei NG nz na po NC
Nt! Rtlpcopyrangelistentry+0x2C:
Fffff806'04F432AC 0F1006 movups xmm0, xmmword PTR [rsi] DS: 00000000'00000000=?
Resetting default scope
LOCK_ADDRESS: FFFFF80605444C80 -- (!Locks FFFFF80605444C80)
Resource @ nt! Pienginelock (0xFFFFF80605444C80) exclusively owned
Threads: FFFFB18EA91E1100-01<*>
1 Total locks
PNP_TRIAGE_DATA:
Lock address : 0xfffff80605444c80
Thread count: 1
Thread address: 0xffffb18ea91e1100
Thread wait : 0x161
STACK_TEXT:
Ffffd381'C252EBB8 fffff806'04C7A665: 00000000'00000050 FFFF8104'0C81FD90 00000000'00000000 ffffd381'C252EE60: Nt! Kebugcheckex
Ffffd381'C252EBC0 fffff806'04AEA4A0: 00000000'00000000 00000000'00000000 ffffd381'C252EEE0 00000000'00000000: Nt! Misystemfault+0x172315
Ffffd381'C252ECC0 fffff806'04C0335E: 00000000'00000001 ffffb18e'00000000 00000000'000006D0 00000000'00000000: Nt! Mmaccessfault+0x400
Ffffd381'C252EE60 fffff806'04F432AC: 00000000'00000000 00000000'00000000 ffffc301'A5546180 fffff806'04AC4A8A: Nt! Kipagefault+0x35E
Ffffd381'C252EFF0 fffff806'04F43231: FFFF8104'023830F0 FFFF8104'0C81FD90 FFFF8104'02383270 fffff806'09991620: Nt! Rtlpcopyrangelistentry+0x2C
Ffffd381'C252F020 fffff806'04F42F48: Fffff806'05444360 00000000'00000000 FFFF8104'02712334 00000000'00000005: Nt! Rtlcopyrangelist+0x41
Ffffd381'C252F050 fffff806'04F54AD8: Fffff806'05444360 ffffd381'C252F130 00000000'00000000 fffff806'09991600: Nt! Arbtestallocation+0x38
Ffffd381'C252F0A0 fffff806'04F3F59E: FFFF8104'02678B90 00000000'00000000 FFFF8104'08A616D0 00000000'00000000: Nt! Arbarbiterhandler+0x68
Ffffd381'C252F0E0 fffff806'04F3E2A6: Ffffb18e'A5932CB0 ffffb18e'A91ACA90 FFFF8104'02712330 ffffb18e'A9106120: Nt! Iopcallarbiter+0xca
Ffffd381'C252F140 fffff806'04F56926: 00000000'00000000 ffffb18e'00000009 ffffb18e'00000000 ffffb18e'A91ACA90: Nt! Pnpreleaseresourcesınternal+0x122
Ffffd381'C252F210 fffff806'04F56856: Fffff806'05444B00 00000000'00000004 00000000'00000000 00000000'00000000: Nt! Iopreleaseresources+0xe
Ffffd381'C252F240 fffff806'04F39924: 00000000'ffffffff ffffb18e'A5928D80 ffffb18e'A91ACA90 FFFF8104'08A616D0: Nt! Ioplegacyresourceallocation+0xb6
Ffffd381'C252F300 fffff806'0505E873: Ffffffff'00000078 ffffd381'C252F459 FFFF8104'08A616D0 00000000'00000001: Nt! Iopreleasedeviceresources+0xa4
Ffffd381'C252F390 fffff806'04F1E563: 00000000'00000000 00000000'00000000 00000000'00000000 00000000'00000000: Nt! Pnpdriverloadingfailed+0xa9ee3
Ffffd381'C252F4C0 fffff806'04F1FD56: 00000000'00000000 00000000'00000000 00000000'00000004 ffffd381'00000004: Nt! Ioploaddriver+0x67B
Ffffd381'C252F690 fffff806'04F1FA66: Ffffffff'80000301 00000000'00000000 ffffb18e'A90C9600 ffffffff'80000384: Nt! Pipcalldriveradddevicequeryroutine+0x1BE
Ffffd381'C252F720 fffff806'04F1F424: 00000000'00000000 ffffd381'C252F830 00000000'6E657050 00000000'00000012: Nt! Pnpcalldriverqueryservicehelper+0X'da
Ffffd381'C252F7D0 fffff806'04F1EBB7: Ffffb18e'A91ACA90 ffffd381'C252FA11 ffffb18e'A91ACA90 00000000'00000000: Nt! Pipcalldriveradddevice+0x41C
Ffffd381'C252F990 fffff806'04FB5B9C: Ffffb18e'A9669E00 ffffd381'C252FB01 ffffd381'C252FAB0 fffff806'00000000: Nt! Pipprocessdevnodetree+0x333
Ffffd381'C252FA60 fffff806'04B70ABC: 00000001'00000003 ffffb18e'A9669E30 00000000'00000000 ffffb18e'A9669E30: Nt! Piprocessstartsystemdevices+0x60
Ffffd381'C252FAB0 fffff806'04B034B5: Ffffb18e'A91E1100 ffffb18e'A5887C70 fffff806'054434E0 ffffb18e'00000000: Nt! Pnpdeviceactionworker+0x4CC
Ffffd381'C252FB70 fffff806'04AA29A5: Ffffb18e'A91E1100 00000000'00000080 ffffb18e'A5868040 000F8067'b4bbbdff: Nt! Expworkerthread+0x105
Ffffd381'C252FC10 fffff806'04BFC868: Fffff806'02C55180 ffffb18e'A91E1100 fffff806'04AA2950 00000000'00000000: Nt! Pspsystemthreadstartup+0x55
Ffffd381'C252FC60 00000000'00000000: Ffffd381'C2530000 ffffd381'C252A000 00000000'00000000 00000000'00000000: Nt! Kistartsystemthread+0x28
SYMBOL_NAME: Nt! Rtlpcopyrangelistentry+2C
MODULE_NAME: NT
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.19041.630
STACK_COMMAND:. Thread;. Cxr; KB
BUCKET_ID_FUNC_OFFSET: 2C
FAILURE_BUCKET_ID: AV_R_INVALID_NT! Rtlpcopyrangelistentry
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: VB_RELEASE
OSPLATFORM_TYPE: X64
Osname: Windows 10
FAILURE_ID_HASH: {D5B064C0-4155-C35D-1B5E-259F544A3839}
Followup: Machineowner
---------