PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except.
Typically the address is just plain bad or it is pointing at freed memory.
Arguments:
Arg1: ffffab81bdd3f0a8, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff8023e9f353f, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000000, (reserved)
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : AV.Type
Value: Read
Key : Analysis.CPU.mSec
Value: 2828
Key : Analysis.DebugAnalysisManager
Value: Create
Key : Analysis.Elapsed.mSec
Value: 27987
Key : Analysis.Init.CPU.mSec
Value: 609
Key : Analysis.Init.Elapsed.mSec
Value: 2164
Key : Analysis.Memory.CommitPeak.Mb
Value: 75
Key : WER.OS.Branch
Value: vb_release
Key : WER.OS.Timestamp
Value: 2019-12-06T14:06:00Z
Key : WER.OS.Version
Value: 10.0.19041.1
FILE_IN_CAB: 120221-10390-01.dmp
BUGCHECK_CODE: 50
BUGCHECK_P1: ffffab81bdd3f0a8
BUGCHECK_P2: 0
BUGCHECK_P3: fffff8023e9f353f
BUGCHECK_P4: 0
READ_ADDRESS: fffff8023f0fb390: Unable to get MiVisibleState
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
unable to get nt!MmSpecialPagesInUse
ffffab81bdd3f0a8
MM_INTERNAL_CODE: 0
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: Blitz.exe
TRAP_FRAME: ffffaa8e41bc7350 -- (.trap 0xffffaa8e41bc7350)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff8023e400000 rbx=0000000000000000 rcx=0000000000000001
rdx=ffff868bdc357970 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8023e9f353f rsp=ffffaa8e41bc74e0 rbp=ffffaa8e41bc75c9
r8=ffffd0890fc4b080 r9=000000000000065c r10=00000000ffffffff
r11=0000000000000353 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!ObCloseHandleTableEntry+0x8f:
fffff802`3e9f353f 4d8b9424a8000000 mov r10,qword ptr [r12+0A8h] ds:00000000`000000a8=????????????????
Resetting default scope
STACK_TEXT:
ffffaa8e`41bc70a8 fffff802`3e84a81f : 00000000`00000050 ffffab81`bdd3f0a8 00000000`00000000 ffffaa8e`41bc7350 : nt!KeBugCheckEx
ffffaa8e`41bc70b0 fffff802`3e69f390 : ffffd089`0f1b3fe0 00000000`00000000 ffffaa8e`41bc73d0 00000000`00000000 : nt!MiSystemFault+0x18d46f
ffffaa8e`41bc71b0 fffff802`3e80545e : 00000000`00000103 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MmAccessFault+0x400
ffffaa8e`41bc7350 fffff802`3e9f353f : ffffd089`1565fb30 ffff868b`dc357960 00000000`00000000 ffff868b`dc3576c0 : nt!KiPageFault+0x35e
ffffaa8e`41bc74e0 fffff802`3ea5c855 : 00000000`00000004 ffff868b`d32889d8 00000000`00000103 00000000`00000000 : nt!ObCloseHandleTableEntry+0x8f
ffffaa8e`41bc7620 fffff802`3ea5e6ad : ffffd089`142ef080 ffffd089`142ef080 ffffffff`ffffff01 ffffd089`117276d8 : nt!ExSweepHandleTable+0xd5
ffffaa8e`41bc76d0 fffff802`3ea5c5a0 : ffffffff`ffffffff ffffd089`11727280 ffffaa8e`41bc7720 fffff802`3ea203ac : nt!ObKillProcess+0x35
ffffaa8e`41bc7700 fffff802`3eab0c26 : ffffd089`11727280 ffff868b`d96b8060 ffffaa8e`41bc7950 00000000`00000000 : nt!PspRundownSingleProcess+0x204
ffffaa8e`41bc7790 fffff802`3eaf5538 : 00000000`00000000 ffffaa8e`00000001 ffffaa8e`41bc79a0 00000000`0c95a000 : nt!PspExitThread+0x5f6
ffffaa8e`41bc7890 fffff802`3e60ef67 : 00000000`00000000 00000000`00000000 00000000`00000000 ffffaa8e`41bc7ac0 : nt!KiSchedulerApcTerminate+0x38
ffffaa8e`41bc78d0 fffff802`3e7fb840 : 00000000`00000000 ffffaa8e`41bc7980 ffffaa8e`41bc7b40 00000000`00000000 : nt!KiDeliverApc+0x487
ffffaa8e`41bc7980 fffff802`3e808d5f : ffffd089`142ef080 ffffd089`1565f8e0 00000000`00000000 00000000`00000000 : nt!KiInitiateUserApc+0x70
ffffaa8e`41bc7ac0 00000000`76e51cfc : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceExit+0x9f
00000000`13e6ef68 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x76e51cfc
SYMBOL_NAME: nt!ObCloseHandleTableEntry+8f
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.19041.1348
STACK_COMMAND: .cxr; .ecxr ; kb
BUCKET_ID_FUNC_OFFSET: 8f
FAILURE_BUCKET_ID: AV_R_(null)_nt!ObCloseHandleTableEntry
OS_VERSION: 10.0.19041.1
BUILDLAB_STR: vb_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {c0cda093-6ea1-5243-e884-71752c58139f}
Followup: MachineOwner