KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: ffffffffc000001d, The exception code that was not handled
Arg2: fffff8002fa6eef4, The address that the exception occurred at
Arg3: ffffe3014211a040, Parameter 0 of the exception
Arg4: ffff8880d0d40000, Parameter 1 of the exception
Debugging Details:
------------------
KEY_VALUES_STRING: 1
Key : Analysis.CPU.Sec
Value: 10
Key : Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007e on DESKTOP-R1MKTM3
Key : Analysis.DebugData
Value: CreateObject
Key : Analysis.DebugModel
Value: CreateObject
Key : Analysis.Elapsed.Sec
Value: 56
Key : Analysis.Memory.CommitPeak.Mb
Value: 70
Key : Analysis.System
Value: CreateObject
BUGCHECK_CODE: 1e
BUGCHECK_P1: ffffffffc000001d
BUGCHECK_P2: fffff8002fa6eef4
BUGCHECK_P3: ffffe3014211a040
BUGCHECK_P4: ffff8880d0d40000
EXCEPTION_PARAMETER1: ffffe3014211a040
EXCEPTION_PARAMETER2: ffff8880d0d40000
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: svchost.exe
TRAP_FRAME: ffff9f0c6ec9c4e0 -- (.trap 0xffff9f0c6ec9c4e0)
Unable to read trap frame at ffff9f0c`6ec9c4e0
FAILED_INSTRUCTION_ADDRESS:
nt!EtwTiLogDeviceObjectLoadUnload+2c
fffff800`2fa6eef4 37 ???
STACK_TEXT:
ffff8306`e7867348 fffff800`2f62fd47 : 00000000`0000001e ffffffff`c000001d fffff800`2fa6eef4 ffffe301`4211a040 : nt!KeBugCheckEx
ffff8306`e7867350 fffff800`2f5d321d : ffff9f0c`696130a0 00000000`00000000 ffff9f0c`6ec9c4e0 00000000`00000000 : nt!KiDispatchException+0x1683c7
ffff8306`e7867a00 fffff800`2f5cd7ab : ffff9f0c`6a737c20 ffff9f0c`5f800000 ffff8306`e7867d00 fffff800`2f433313 : nt!KiExceptionDispatch+0x11d
ffff8306`e7867be0 fffff800`2fa6eef4 : fffff800`2fa6a6d7 00000000`00000000 fffff800`2fa6a3e0 00000000`00000000 : nt!KiInvalidOpcodeFault+0x32b
ffff8306`e7867d78 00000000`00000000 : 00000000`00000000 ffff8306`e7868500 00000000`00000000 00000000`00000000 : nt!EtwTiLogDeviceObjectLoadUnload+0x2c
SYMBOL_NAME: nt!EtwTiLogDeviceObjectLoadUnload+2c
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 10.0.18362.388
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 2c
FAILURE_BUCKET_ID: 0x1E_c000001d_BAD_IP_nt!EtwTiLogDeviceObjectLoadUnload
OS_VERSION: 10.0.18362.1
BUILDLAB_STR: 19h1_release
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {259fd2f2-cfcc-dd46-5471-db0e5fe16cca}