CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffd28f0703b240, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 18362.1.amd64fre.19h1_release.190318-1202
SYSTEM_MANUFACTURER: Micro-Star International Co., Ltd.
SYSTEM_PRODUCT_NAME: MS-7B87
SYSTEM_SKU: To be filled by O.E.M.
SYSTEM_VERSION: 1.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: 1.71
BIOS_DATE: 05/20/2019
BASEBOARD_MANUFACTURER: Micro-Star International Co., Ltd.
BASEBOARD_PRODUCT: B450M GAMING PLUS (MS-7B87)
BASEBOARD_VERSION: 1.0
DUMP_TYPE: 2
BUGCHECK_P1: ffffd28f0703b240
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: services.exe
CRITICAL_PROCESS: services.exe
EXCEPTION_RECORD: ffffd28f0703b800 -- (.exr 0xffffd28f0703b800)
ExceptionAddress: 0000000000000000
ExceptionCode: 00000000
ExceptionFlags: 00000000
NumberParameters: 0
EXCEPTION_CODE: (Win32) 0x78d1080 (126685312) - <Unable to get error code text>
ERROR_CODE: (NTSTATUS) 0x78d1080 - <Unable to get error code text>
CPU_COUNT: c
CPU_MHZ: fd2
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0xEF
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-BKJR0DQ
ANALYSIS_SESSION_TIME: 03-07-2020 14:02:02.0048
ANALYSIS_VERSION: 10.0.18362.1 amd64fre
LAST_CONTROL_TRANSFER: from fffff8045a8cb1e9 to fffff8045a1c1510
STACK_TEXT:
ffffa104`ef09dd98 fffff804`5a8cb1e9 : 00000000`000000ef ffffd28f`0703b240 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
ffffa104`ef09dda0 fffff804`5a7c7893 : ffffd28f`0703b240 fffff804`5a09c769 ffffd28f`0703b240 fffff804`5a09c8c0 : nt!PspCatchCriticalBreak+0x115
ffffa104`ef09de40 fffff804`5a63a190 : ffffd28f`00000000 00000000`00000000 ffffd28f`0703b240 ffffd28f`0703b240 : nt!PspTerminateAllThreads+0x175cbf
ffffa104`ef09deb0 fffff804`5a639f79 : ffffffff`ffffffff ffffa104`ef09dfe0 ffffd28f`0703b240 00000000`00000000 : nt!PspTerminateProcess+0xe0
ffffa104`ef09def0 fffff804`5a1d2e18 : 00007ffe`000002f8 ffffd28f`078d1080 ffffd28f`0703b240 ffffa104`ef09e130 : nt!NtTerminateProcess+0xa9
ffffa104`ef09df60 fffff804`5a1c5350 : fffff804`5a22ff1e ffffa104`ef09ea58 ffffa104`ef09ea58 ffffa104`ef09e130 : nt!KiSystemServiceCopyEnd+0x28
ffffa104`ef09e0f8 fffff804`5a22ff1e : ffffa104`ef09ea58 ffffa104`ef09ea58 ffffa104`ef09e130 00007ffe`0f842770 : nt!KiServiceLinkage
ffffa104`ef09e100 fffff804`5a1d351d : ffffd28f`0703b800 fffff804`5a086cdd 00000000`00008000 ffffa104`ef09eb00 : nt!KiDispatchException+0x168bde
ffffa104`ef09e920 fffff804`5a1cf705 : 000000af`17189370 ffffa104`ef09eb80 00000000`00000000 ffffd28f`00000000 : nt!KiExceptionDispatch+0x11d
ffffa104`ef09eb00 00007ffe`0fb7cd75 : 000000af`17181948 000000af`171819d0 00007ffe`0fcd2788 00000000`00000000 : nt!KiPageFault+0x445
000000af`17181360 000000af`17181948 : 000000af`171819d0 00007ffe`0fcd2788 00000000`00000000 000000af`17181ff0 : 0x00007ffe`0fb7cd75
000000af`17181368 000000af`171819d0 : 00007ffe`0fcd2788 00000000`00000000 000000af`17181ff0 000000af`17181930 : 0x000000af`17181948
000000af`17181370 00007ffe`0fcd2788 : 00000000`00000000 000000af`17181ff0 000000af`17181930 00007ffe`0f842770 : 0x000000af`171819d0
000000af`17181378 00000000`00000000 : 000000af`17181ff0 000000af`17181930 00007ffe`0f842770 00007ffe`0fb7e359 : 0x00007ffe`0fcd2788
THREAD_SHA1_HASH_MOD_FUNC: f6b0f7fafbd5253fc3d42ad0a11af14fddabdcf0
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 210fcd13b3907a9700edbe3f48e67cdc2eedd514
THREAD_SHA1_HASH_MOD: bc100a5647b828107ac4e18055e00abcbe1ec406
FOLLOWUP_IP:
nt!PspCatchCriticalBreak+115
fffff804`5a8cb1e9 cc int 3
FAULT_INSTR_CODE: ed8440cc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!PspCatchCriticalBreak+115
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4269a790
IMAGE_VERSION: 10.0.18362.657
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 115
FAILURE_BUCKET_ID: 0xEF_services.exe_BUGCHECK_CRITICAL_PROCESS_78d1080_nt!PspCatchCriticalBreak
BUCKET_ID: 0xEF_services.exe_BUGCHECK_CRITICAL_PROCESS_78d1080_nt!PspCatchCriticalBreak
PRIMARY_PROBLEM_CLASS: 0xEF_services.exe_BUGCHECK_CRITICAL_PROCESS_78d1080_nt!PspCatchCriticalBreak
TARGET_TIME: 2020-03-06T08:53:28.000Z
OSBUILD: 18362
OSSERVICEPACK: 657
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2005-04-23 04:40:32
BUILDDATESTAMP_STR: 190318-1202
BUILDLAB_STR: 19h1_release
BUILDOSVER_STR: 10.0.18362.1.amd64fre.19h1_release.190318-1202
ANALYSIS_SESSION_ELAPSED_TIME: 18c0
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xef_services.exe_bugcheck_critical_process_78d1080_nt!pspcatchcriticalbreak
FAILURE_ID_HASH: {3de5a69f-86cb-704e-beda-e468a850a681}
Followup: MachineOwner
---------
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffffcc8175b53380, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
***** Debugger could not find nt in module list, module list might be corrupt, error 0x80070057.
------------------------------------------------
| |
| NT symbols are not available |
| Wmitrace cannot operate without them |
| |
------------------------------------------------
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
DUMP_TYPE: 2
BUGCHECK_P1: ffffcc8175b53380
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
CPU_COUNT: c
CPU_MHZ: fd2
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: CORRUPT_MODULELIST_0xEF
BUGCHECK_STR: 0xEF
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-BKJR0DQ
ANALYSIS_SESSION_TIME: 03-07-2020 14:02:05.0635
ANALYSIS_VERSION: 10.0.18362.1 amd64fre
LAST_CONTROL_TRANSFER: from fffff8014c6cb1e9 to fffff8014bfc1510
STACK_TEXT:
ffff8400`501b9938 fffff801`4c6cb1e9 : 00000000`000000ef ffffcc81`75b53380 00000000`00000000 00000000`00000000 : 0xfffff801`4bfc1510
ffff8400`501b9940 00000000`000000ef : ffffcc81`75b53380 00000000`00000000 00000000`00000000 00000000`00000000 : 0xfffff801`4c6cb1e9
ffff8400`501b9948 ffffcc81`75b53380 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000001 : 0xef
ffff8400`501b9950 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000001 00000000`c0000006 : 0xffffcc81`75b53380
SYMBOL_NAME: ANALYSIS_INCONCLUSIVE
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Unknown_Module
IMAGE_NAME: Unknown_Image
DEBUG_FLR_IMAGE_TIMESTAMP: 0
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID: CORRUPT_MODULELIST_0xEF
PRIMARY_PROBLEM_CLASS: CORRUPT_MODULELIST_0xEF
FAILURE_BUCKET_ID: CORRUPT_MODULELIST_0xEF
TARGET_TIME: 2020-03-07T07:23:14.000Z
OSBUILD: 18362
OSSERVICEPACK: 0
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: unknown_date
ANALYSIS_SESSION_ELAPSED_TIME: f
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:corrupt_modulelist_0xef
FAILURE_ID_HASH: {622df55c-925d-d478-30ae-d5699ff4662f}
Followup: MachineOwner
---------
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffff9c0a15b0c140, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 18362.1.amd64fre.19h1_release.190318-1202
SYSTEM_MANUFACTURER: Micro-Star International Co., Ltd.
SYSTEM_PRODUCT_NAME: MS-7B87
SYSTEM_SKU: To be filled by O.E.M.
SYSTEM_VERSION: 1.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: 1.71
BIOS_DATE: 05/20/2019
BASEBOARD_MANUFACTURER: Micro-Star International Co., Ltd.
BASEBOARD_PRODUCT: B450M GAMING PLUS (MS-7B87)
BASEBOARD_VERSION: 1.0
DUMP_TYPE: 2
BUGCHECK_P1: ffff9c0a15b0c140
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: csrss.exe
CRITICAL_PROCESS: csrss.exe
EXCEPTION_RECORD: ffff9c0a15b0c700 -- (.exr 0xffff9c0a15b0c700)
ExceptionAddress: 0000000000000000
ExceptionCode: 00000000
ExceptionFlags: 00000000
NumberParameters: 0
EXCEPTION_CODE: (NTSTATUS) 0x18896080 - <Unable to get error code text>
ERROR_CODE: (NTSTATUS) 0x18896080 - <Unable to get error code text>
CPU_COUNT: c
CPU_MHZ: fd2
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0xEF
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-BKJR0DQ
ANALYSIS_SESSION_TIME: 03-07-2020 14:01:58.0475
ANALYSIS_VERSION: 10.0.18362.1 amd64fre
LAST_CONTROL_TRANSFER: from fffff8004f8cb1e9 to fffff8004f1c1510
STACK_TEXT:
fffffa01`ab475d98 fffff800`4f8cb1e9 : 00000000`000000ef ffff9c0a`15b0c140 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
fffffa01`ab475da0 fffff800`4f7c7893 : ffff9c0a`15b0c140 fffff800`4f09c769 ffff9c0a`15b0c140 fffff800`4f09c8c0 : nt!PspCatchCriticalBreak+0x115
fffffa01`ab475e40 fffff800`4f63a190 : ffff9c0a`00000000 00000000`00000000 ffff9c0a`15b0c140 ffff9c0a`15b0c140 : nt!PspTerminateAllThreads+0x175cbf
fffffa01`ab475eb0 fffff800`4f639f79 : ffffffff`ffffffff fffffa01`ab475fe0 ffff9c0a`15b0c140 00000000`00000000 : nt!PspTerminateProcess+0xe0
fffffa01`ab475ef0 fffff800`4f1d2e18 : 00007ffc`00000254 ffff9c0a`18896080 ffff9c0a`15b0c140 fffffa01`ab476130 : nt!NtTerminateProcess+0xa9
fffffa01`ab475f60 fffff800`4f1c5350 : fffff800`4f22ff1e fffffa01`ab476a58 fffffa01`ab476a58 fffffa01`ab476130 : nt!KiSystemServiceCopyEnd+0x28
fffffa01`ab4760f8 fffff800`4f22ff1e : fffffa01`ab476a58 fffffa01`ab476a58 fffffa01`ab476130 00007ffc`4e973000 : nt!KiServiceLinkage
fffffa01`ab476100 fffff800`4f1d351d : ffff9c0a`15b0c700 fffff800`4f086cdd 00000000`00003e00 fffffa01`ab476b00 : nt!KiDispatchException+0x168bde
fffffa01`ab476920 fffff800`4f1cf705 : ffff9c0a`18896080 00000055`00000000 00000000`00000000 00000187`ed7200a0 : nt!KiExceptionDispatch+0x11d
fffffa01`ab476b00 00007ffc`51bde392 : 00000000`00000000 00000055`00000000 00007ffc`51c5fe8e 00000055`83a014b0 : nt!KiPageFault+0x445
00000055`83a01420 00000000`00000000 : 00000055`00000000 00007ffc`51c5fe8e 00000055`83a014b0 00007ffc`4e973000 : 0x00007ffc`51bde392
THREAD_SHA1_HASH_MOD_FUNC: f6b0f7fafbd5253fc3d42ad0a11af14fddabdcf0
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 210fcd13b3907a9700edbe3f48e67cdc2eedd514
THREAD_SHA1_HASH_MOD: bc100a5647b828107ac4e18055e00abcbe1ec406
FOLLOWUP_IP:
nt!PspCatchCriticalBreak+115
fffff800`4f8cb1e9 cc int 3
FAULT_INSTR_CODE: ed8440cc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!PspCatchCriticalBreak+115
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4269a790
IMAGE_VERSION: 10.0.18362.657
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID_FUNC_OFFSET: 115
FAILURE_BUCKET_ID: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_18896080_nt!PspCatchCriticalBreak
BUCKET_ID: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_18896080_nt!PspCatchCriticalBreak
PRIMARY_PROBLEM_CLASS: 0xEF_csrss.exe_BUGCHECK_CRITICAL_PROCESS_18896080_nt!PspCatchCriticalBreak
TARGET_TIME: 2020-03-06T09:13:59.000Z
OSBUILD: 18362
OSSERVICEPACK: 657
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2005-04-23 04:40:32
BUILDDATESTAMP_STR: 190318-1202
BUILDLAB_STR: 19h1_release
BUILDOSVER_STR: 10.0.18362.1.amd64fre.19h1_release.190318-1202
ANALYSIS_SESSION_ELAPSED_TIME: 223d
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xef_csrss.exe_bugcheck_critical_process_18896080_nt!pspcatchcriticalbreak
FAILURE_ID_HASH: {e3edb176-06d8-a2fa-40f9-b51329240dd3}
Followup: MachineOwner
---------
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000006, Exception code that caused the bugcheck
Arg2: fffff8046cc90112, Address of the instruction which caused the bugcheck
Arg3: fffff38826c25cc0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
*** WARNING: Unable to verify timestamp for win32k.sys
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 18362.1.amd64fre.19h1_release.190318-1202
SYSTEM_MANUFACTURER: Micro-Star International Co., Ltd.
SYSTEM_PRODUCT_NAME: MS-7B87
SYSTEM_SKU: To be filled by O.E.M.
SYSTEM_VERSION: 1.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: 1.71
BIOS_DATE: 05/20/2019
BASEBOARD_MANUFACTURER: Micro-Star International Co., Ltd.
BASEBOARD_PRODUCT: B450M GAMING PLUS (MS-7B87)
BASEBOARD_VERSION: 1.0
DUMP_TYPE: 2
BUGCHECK_P1: c0000006
BUGCHECK_P2: fffff8046cc90112
BUGCHECK_P3: fffff38826c25cc0
BUGCHECK_P4: 0
EXCEPTION_CODE: (NTSTATUS) 0xc0000006 - <Unable to get error code text>
FAULTING_IP:
nt!HvpGetCellPaged+a2
fffff804`6cc90112 418b02 mov eax,dword ptr [r10]
CONTEXT: fffff38826c25cc0 -- (.cxr 0xfffff38826c25cc0)
rax=0000000000000000 rbx=fffff38826c266f8 rcx=0000000000000007
rdx=0000000000ee6fe0 rsi=0000000000000000 rdi=ffffcc87b49e1000
rip=fffff8046cc90112 rsp=fffff38826c266b8 rbp=fffff38826c267f9
r8=000000000000001c r9=ffff81077b719080 r10=000001ce01ac7fe0
r11=0000000000000fe0 r12=fffff38826c26920 r13=0000000000000007
r14=0000000000000000 r15=ffffcc87b49e1000
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00050202
nt!HvpGetCellPaged+0xa2:
fffff804`6cc90112 418b02 mov eax,dword ptr [r10] ds:002b:000001ce`01ac7fe0=????????
Resetting default scope
BUGCHECK_STR: 0x3B_c0000006
CPU_COUNT: c
CPU_MHZ: fd2
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
BLACKBOXBSD: 1 (!blackboxbsd)
BLACKBOXNTFS: 1 (!blackboxntfs)
BLACKBOXPNP: 1 (!blackboxpnp)
BLACKBOXWINLOGON: 1
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
PROCESS_NAME: Registry
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-BKJR0DQ
ANALYSIS_SESSION_TIME: 03-07-2020 14:01:55.0701
ANALYSIS_VERSION: 10.0.18362.1 amd64fre
LAST_CONTROL_TRANSFER: from fffff8046cbf5754 to fffff8046cc90112
STACK_TEXT:
fffff388`26c266b8 fffff804`6cbf5754 : ffffcc87`c179b9d0 00000000`00000000 ffff8107`7b7193a0 fffff804`6c639ddd : nt!HvpGetCellPaged+0xa2
fffff388`26c266c0 fffff804`6cbf3fc4 : 00000000`00000000 00000000`00000000 ffffcc87`c179b970 ffffcc87`c392ad70 : nt!CmpFindNameInListWithStatus+0x64
fffff388`26c26750 fffff804`6cbf477e : 00000000`000003cc 00000000`00000000 00000000`00000000 00000000`00000001 : nt!CmQueryValueKey+0x144
fffff388`26c26850 fffff804`6c7d2e18 : 00000000`00000001 00000000`00000000 00000000`00000000 fffff388`26c26a00 : nt!NtQueryValueKey+0x4ee
fffff388`26c26a90 00007ffa`1209c3a4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
00000004`e37fd848 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffa`1209c3a4
THREAD_SHA1_HASH_MOD_FUNC: 3bb86d2080561fd5244ef534d6e04cb007d61f41
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: c4c675440e75fc6c7b23ec4267462a3ea1d1c2ba
THREAD_SHA1_HASH_MOD: f08ac56120cad14894587db086f77ce277bfae84
FOLLOWUP_IP:
nt!HvpGetCellPaged+a2
fffff804`6cc90112 418b02 mov eax,dword ptr [r10]
FAULT_INSTR_CODE: 41028b41
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!HvpGetCellPaged+a2
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4269a790
IMAGE_VERSION: 10.0.18362.657
STACK_COMMAND: .cxr 0xfffff38826c25cc0 ; kb
BUCKET_ID_FUNC_OFFSET: a2
FAILURE_BUCKET_ID: 0x3B_c0000006_nt!HvpGetCellPaged
BUCKET_ID: 0x3B_c0000006_nt!HvpGetCellPaged
PRIMARY_PROBLEM_CLASS: 0x3B_c0000006_nt!HvpGetCellPaged
TARGET_TIME: 2020-03-06T09:56:05.000Z
OSBUILD: 18362
OSSERVICEPACK: 657
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2005-04-23 04:40:32
BUILDDATESTAMP_STR: 190318-1202
BUILDLAB_STR: 19h1_release
BUILDOSVER_STR: 10.0.18362.1.amd64fre.19h1_release.190318-1202
ANALYSIS_SESSION_ELAPSED_TIME: 323e
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0x3b_c0000006_nt!hvpgetcellpaged
FAILURE_ID_HASH: {68f3db38-ae8e-4bae-c37a-85819946495f}
Followup: MachineOwner
---------
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffff8e8c2ed29300, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
***** Debugger could not find nt in module list, module list might be corrupt, error 0x80070057.
------------------------------------------------
| |
| NT symbols are not available |
| Wmitrace cannot operate without them |
| |
------------------------------------------------
KEY_VALUES_STRING: 1
PROCESSES_ANALYSIS: 1
SERVICE_ANALYSIS: 1
STACKHASH_ANALYSIS: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
DUMP_TYPE: 2
BUGCHECK_P1: ffff8e8c2ed29300
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
CPU_COUNT: c
CPU_MHZ: fd2
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 17
CPU_MODEL: 8
CPU_STEPPING: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: CORRUPT_MODULELIST_0xEF
BUGCHECK_STR: 0xEF
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-BKJR0DQ
ANALYSIS_SESSION_TIME: 03-07-2020 14:01:51.0180
ANALYSIS_VERSION: 10.0.18362.1 amd64fre
LAST_CONTROL_TRANSFER: from fffff802078cb1e9 to fffff802071c1510
STACK_TEXT:
fffff08c`c2d09938 fffff802`078cb1e9 : 00000000`000000ef ffff8e8c`2ed29300 00000000`00000000 00000000`00000000 : 0xfffff802`071c1510
fffff08c`c2d09940 00000000`000000ef : ffff8e8c`2ed29300 00000000`00000000 00000000`00000000 00000000`00000000 : 0xfffff802`078cb1e9
fffff08c`c2d09948 ffff8e8c`2ed29300 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000001 : 0xef
fffff08c`c2d09950 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000001 00000000`c0000006 : 0xffff8e8c`2ed29300
SYMBOL_NAME: ANALYSIS_INCONCLUSIVE
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Unknown_Module
IMAGE_NAME: Unknown_Image
DEBUG_FLR_IMAGE_TIMESTAMP: 0
STACK_COMMAND: .thread ; .cxr ; kb
BUCKET_ID: CORRUPT_MODULELIST_0xEF
PRIMARY_PROBLEM_CLASS: CORRUPT_MODULELIST_0xEF
FAILURE_BUCKET_ID: CORRUPT_MODULELIST_0xEF
TARGET_TIME: 2020-03-06T08:32:01.000Z
OSBUILD: 18362
OSSERVICEPACK: 0
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: unknown_date
ANALYSIS_SESSION_ELAPSED_TIME: 3e
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:corrupt_modulelist_0xef
FAILURE_ID_HASH: {622df55c-925d-d478-30ae-d5699ff4662f}
Followup: MachineOwner
---------