*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1E, {ffffffffc0000005, fffff80002cdfbb4, 0, 8}
[SIZE=4][B]Unable to load image avgrkx64.sys, Win32 error 0n2
*** WARNING: Unable to verify timestamp for avgrkx64.sys
*** ERROR: Module load completed but symbols could not be loaded for avgrkx64.sys
Probably caused by : avgrkx64.sys ( avgrkx64+1e24 )[/B][/SIZE]
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
KMODE_EXCEPTION_NOT_HANDLED (1e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff80002cdfbb4, The address that the exception occurred at
Arg3: 0000000000000000, Parameter 0 of the exception
Arg4: 0000000000000008, Parameter 1 of the exception
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
FAULTING_IP:
nt!IofCallDriver+44
fffff800`02cdfbb4 4c8b4108 mov r8,qword ptr [rcx+8]
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: 0000000000000008
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002f05100
0000000000000008
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
BUGCHECK_STR: 0x1E_c0000005
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 0
TRAP_FRAME: fffff88007589160 -- (.trap 0xfffff88007589160)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffffa80051c00e0 rbx=0000000000000000 rcx=0000000000000000
rdx=fffffa80051c0010 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80002cdfbb4 rsp=fffff880075892f0 rbp=fffffa800233a840
r8=fffffa80034af9d0 r9=0000000000000012 r10=fffffa800238a420
r11=fffffa800284e6b0 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei ng nz ac po cy
nt!IofCallDriver+0x44:
fffff800`02cdfbb4 4c8b4108 mov r8,qword ptr [rcx+8] ds:1010:00000000`00000008=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff80002d215d8 to fffff80002cd5d00
STACK_TEXT:
fffff880`075888d8 fffff800`02d215d8 : 00000000`0000001e ffffffff`c0000005 fffff800`02cdfbb4 00000000`00000000 : nt!KeBugCheckEx
fffff880`075888e0 fffff800`02cd5382 : fffff880`075890b8 fffffa80`051c0010 fffff880`07589160 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x4987d
fffff880`07588f80 fffff800`02cd3efa : 00000000`00000000 00000000`00000008 00000000`00000200 fffffa80`051c0010 : nt!KiExceptionDispatch+0xc2
fffff880`07589160 fffff800`02cdfbb4 : fffff8a0`00001690 00000000`00000000 fffffa80`034af540 00000000`00000000 : nt!KiPageFault+0x23a
fffff880`075892f0 fffff800`02fdd09f : 00000000`00f8001e fffffa80`0233a840 00000000`00000000 fffffa80`02bb7490 : nt!IofCallDriver+0x44
fffff880`07589320 fffff800`02fcc844 : 00000000`00000001 fffffa80`058462e0 ffffffff`00000340 ffffea4e`00000000 : nt!IopCloseFile+0x11f
fffff880`075893b0 fffff800`02fcc601 : fffffa80`058462e0 fffffa80`00000001 fffff8a0`00001690 00000000`00000000 : nt!ObpDecrementHandleCount+0xb4
fffff880`07589430 fffff800`02fccbc4 : 00000000`0000236c fffffa80`058462e0 fffff8a0`00001690 00000000`0000236c : nt!ObpCloseHandleTableEntry+0xb1
fffff880`075894c0 fffff800`02cd4f93 : fffffa80`0284e6b0 fffff880`07589590 fffff880`075897b8 00000000`000007ff : nt!ObpCloseHandle+0x94
fffff880`07589510 fffff800`02cd1530 : fffff800`02fb9b3a 00000000`00000001 fffffa80`02bb7460 fffff8a0`03aa6480 : nt!KiSystemServiceCopyEnd+0x13
fffff880`075896a8 fffff800`02fb9b3a : 00000000`00000001 fffffa80`02bb7460 fffff8a0`03aa6480 00000000`00000040 : nt!KiServiceLinkage
fffff880`075896b0 fffff880`01ba8e24 : ffffffff`8000236c 00000000`00000105 fffffa80`04351480 fffff8a0`03b89160 : nt!IoGetDeviceObjectPointer+0xba
fffff880`07589740 ffffffff`8000236c : 00000000`00000105 fffffa80`04351480 fffff8a0`03b89160 00000000`00000001 : avgrkx64+0x1e24
fffff880`07589748 00000000`00000105 : fffffa80`04351480 fffff8a0`03b89160 00000000`00000001 fffff880`075897a8 : 0xffffffff`8000236c
fffff880`07589750 fffffa80`04351480 : fffff8a0`03b89160 00000000`00000001 fffff880`075897a8 fffff880`07589868 : 0x105
fffff880`07589758 fffff8a0`03b89160 : 00000000`00000001 fffff880`075897a8 fffff880`07589868 00000000`00000150 : 0xfffffa80`04351480
fffff880`07589760 00000000`00000001 : fffff880`075897a8 fffff880`07589868 00000000`00000150 fffffa80`0020001e : 0xfffff8a0`03b89160
fffff880`07589768 fffff880`075897a8 : fffff880`07589868 00000000`00000150 fffffa80`0020001e fffff8a0`03aac440 : 0x1
fffff880`07589770 fffff880`07589868 : 00000000`00000150 fffffa80`0020001e fffff8a0`03aac440 ffffffff`80002370 : 0xfffff880`075897a8
fffff880`07589778 00000000`00000150 : fffffa80`0020001e fffff8a0`03aac440 ffffffff`80002370 fffff800`02e01fbd : 0xfffff880`07589868
fffff880`07589780 fffffa80`0020001e : fffff8a0`03aac440 ffffffff`80002370 fffff800`02e01fbd fffff8a0`03aac440 : 0x150
fffff880`07589788 fffff8a0`03aac440 : ffffffff`80002370 fffff800`02e01fbd fffff8a0`03aac440 00000000`0000000d : 0xfffffa80`0020001e
fffff880`07589790 ffffffff`80002370 : fffff800`02e01fbd fffff8a0`03aac440 00000000`0000000d fffffa80`034af540 : 0xfffff8a0`03aac440
fffff880`07589798 fffff800`02e01fbd : fffff8a0`03aac440 00000000`0000000d fffffa80`034af540 fffffa80`02bb7490 : 0xffffffff`80002370
fffff880`075897a0 fffff880`01ba8e6a : fffff880`07589890 fffff8a0`03b74300 fffffa80`00000020 fffff8a0`000003cc : nt!ExFreePoolWithTag+0x22d
fffff880`07589850 fffff880`07589890 : fffff8a0`03b74300 fffffa80`00000020 fffff8a0`000003cc fffff8a0`03ba4000 : avgrkx64+0x1e6a
fffff880`07589858 fffff8a0`03b74300 : fffffa80`00000020 fffff8a0`000003cc fffff8a0`03ba4000 fffff880`075898b8 : 0xfffff880`07589890
fffff880`07589860 fffffa80`00000020 : fffff8a0`000003cc fffff8a0`03ba4000 fffff880`075898b8 fffff880`07589978 : 0xfffff8a0`03b74300
fffff880`07589868 fffff8a0`000003cc : fffff8a0`03ba4000 fffff880`075898b8 fffff880`07589978 fffff800`02e01fbd : 0xfffffa80`00000020
fffff880`07589870 fffff8a0`03ba4000 : fffff880`075898b8 fffff880`07589978 fffff800`02e01fbd fffff680`0012000e : 0xfffff8a0`000003cc
fffff880`07589878 fffff880`075898b8 : fffff880`07589978 fffff800`02e01fbd fffff680`0012000e fffff8a0`03aca0a0 : 0xfffff8a0`03ba4000
fffff880`07589880 fffff880`07589978 : fffff800`02e01fbd fffff680`0012000e fffff8a0`03aca0a0 ffffffff`80002380 : 0xfffff880`075898b8
fffff880`07589888 fffff800`02e01fbd : fffff680`0012000e fffff8a0`03aca0a0 ffffffff`80002380 69634d43`00003ba4 : 0xfffff880`07589978
fffff880`07589890 fffffa80`026de960 : fffffa80`04351480 fffff880`07589ca0 00000000`00000000 fffff880`01ba9256 : nt!ExFreePoolWithTag+0x22d
fffff880`07589940 fffffa80`04351480 : fffff880`07589ca0 00000000`00000000 fffff880`01ba9256 fffff880`075899a0 : 0xfffffa80`026de960
fffff880`07589948 fffff880`07589ca0 : 00000000`00000000 fffff880`01ba9256 fffff880`075899a0 fffff8a0`0245d100 : 0xfffffa80`04351480
fffff880`07589950 00000000`00000000 : fffff880`01ba9256 fffff880`075899a0 fffff8a0`0245d100 00000000`00000012 : 0xfffff880`07589ca0
STACK_COMMAND: kb
FOLLOWUP_IP:
avgrkx64+1e24
fffff880`01ba8e24 ?? ???
SYMBOL_STACK_INDEX: c
SYMBOL_NAME: avgrkx64+1e24
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: avgrkx64
IMAGE_NAME: avgrkx64.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4c858c21
FAILURE_BUCKET_ID: X64_0x1E_c0000005_avgrkx64+1e24
BUCKET_ID: X64_0x1E_c0000005_avgrkx64+1e24
Followup: MachineOwner