*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except.
Typically the address is just plain bad or it is pointing at freed memory.
Arguments:
Arg1: fffff880039acc78, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffff800030b96fc, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000001, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
fffff8000323a0e8: Unable to get Flags value from nt!KdVersionBlock
GetUlongPtrFromAddress: unable to read from fffff800032f5300
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 3734
Key : Analysis.DebugAnalysisProvider.CPP
Value: Create: 8007007e on DESKTOP-J7A11VA
Key : Analysis.DebugData
Value: CreateObject
Key : Analysis.DebugModel
Value: CreateObject
Key : Analysis.Elapsed.mSec
Value: 12070
Key : Analysis.Memory.CommitPeak.Mb
Value: 61
Key : Analysis.System
Value: CreateObject
Key : WER.OS.Branch
Value: win7sp1_ldr_escrow
Key : WER.OS.Timestamp
Value: 2020-01-02T17:07:00Z
Key : WER.OS.Version
Value: 7.1.7601.24545
ADDITIONAL_XML: 1
OS_BUILD_LAYERS: 1
BUGCHECK_CODE: 50
BUGCHECK_P1: fffff880039acc78
BUGCHECK_P2: 1
BUGCHECK_P3: fffff800030b96fc
BUGCHECK_P4: 1
WRITE_ADDRESS: fffff8000323a0e8: Unable to get Flags value from nt!KdVersionBlock
fffff8000323a0e8: Unable to get Flags value from nt!KdVersionBlock
fffff8000323a0e8: Unable to get Flags value from nt!KdVersionBlock
Unable to get MmSystemRangeStart
GetUlongPtrFromAddress: unable to read from fffff800032f52f0
GetUlongPtrFromAddress: unable to read from fffff800032f54a8
fffff880039acc78
MM_INTERNAL_CODE: 1
CUSTOMER_CRASH_COUNT: 1
PROCESS_NAME: System
TRAP_FRAME: fffff8800332b850 -- (.trap 0xfffff8800332b850)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff880039a7000 rbx=0000000000000000 rcx=fffffa800734e650
rdx=fffff80003173900 rsi=0000000000000000 rdi=0000000000000000
rip=fffff800030b96fc rsp=fffff8800332b9e0 rbp=fffff880039acc70
r8=fffff8800332ba90 r9=0000000000000001 r10=0000000000000000
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz na pe nc
nt!KeEnumerateKernelStackSegments+0x28:
fffff800`030b96fc 48894508 mov qword ptr [rbp+8],rax ss:0018:fffff880`039acc78=fffff880039a7000
Resetting default scope
STACK_TEXT:
fffff880`0332b6f8 fffff800`031c5a21 : 00000000`00000050 fffff880`039acc78 00000000`00000001 fffff880`0332b850 : nt!KeBugCheckEx
fffff880`0332b700 fffff800`030f7fdc : 00000000`00000001 fffff880`039acc78 00000000`00000000 00000000`00000000 : nt!MmAccessFault+0x2391
fffff880`0332b850 fffff800`030b96fc : 00000000`00000000 00000000`00000001 00000000`00000000 fffff880`02f7b180 : nt!KiPageFault+0x35c
fffff880`0332b9e0 fffff800`030b9654 : 00000000`00000000 00000000`00000000 fffff880`0332bb70 fffffa80`0734e650 : nt!KeEnumerateKernelStackSegments+0x28
fffff880`0332ba70 fffff800`030b8fa8 : 00000000`00000000 fffff880`00000018 00000000`00000000 00000000`00000001 : nt!MmOutPageKernelStack+0x38
fffff880`0332bb50 fffff800`030b8a60 : 00000000`00000000 00000000`00000080 00000000`00000001 00000000`00000000 : nt!KiOutSwapKernelStacks+0x11c
fffff880`0332bbc0 fffff800`033972e8 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KeSwapProcessOrStack+0x48
fffff880`0332bc00 fffff800`030f1ec6 : fffff880`02f00180 fffffa80`05506660 fffff880`02f0f140 00000000`00000000 : nt!PspSystemThreadStartup+0x194
fffff880`0332bc40 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x16
SYMBOL_NAME: nt!KeEnumerateKernelStackSegments+28
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
IMAGE_VERSION: 6.1.7601.24545
STACK_COMMAND: .thread ; .cxr ; kb
FAILURE_BUCKET_ID: 0x50_nt!KeEnumerateKernelStackSegments+28
OS_VERSION: 7.1.7601.24545
BUILDLAB_STR: win7sp1_ldr_escrow
OSPLATFORM_TYPE: x64
OSNAME: Windows 7
FAILURE_ID_HASH: {ecb7a94b-0ab1-b806-87ca-ea788fc0d25b}
Followup: MachineOwner
---------