Loading Dump File [C:\Users\Villiers\Desktop\ttt.dmp] Mini Kernel Dump File: Only registers and stack trace are available Symbol search path is: SRV*c:\symboly*http://msdl.microsoft.com/download/symbols Executable search path is: Windows 7 Kernel Version 7600 MP (4 procs) Free x64 Product: WinNt, suite: TerminalServer SingleUserTS Built by: 7600.16385.amd64fre.win7_rtm.090713-1255 Machine Name: Kernel base = 0xfffff800`02a4b000 PsLoadedModuleList = 0xfffff800`02c88e50 Debug session time: Wed Aug 17 17:16:45.688 2011 (GMT+2) System Uptime: 0 days 1:10:21.467 Loading Kernel Symbols ............................................................... ................................................................ ..................... Loading User Symbols Loading unloaded module list ........ ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 3B, {c0000005, fffff80002ae1310, fffff88006551ee0, 0} Probably caused by : memory_corruption ( nt!MiInsertNode+20 ) Followup: MachineOwner --------- 3: kd> !thread;!analyze;!process GetPointerFromAddress: unable to read from fffff80002cf3000 THREAD fffffa8006129060 Cid 0de8.0e74 Teb: 00000000fffd5000 Win32Thread: 0000000000000000 RUNNING on processor 3 Not impersonating GetUlongFromAddress: unable to read from fffff80002c31b74 Owning Process fffffa80064815b0 Image: firefox.exe Attached Process N/A Image: N/A fffff78000000000: Unable to get shared data Wait Start TickCount 270605 Context Switch Count 8 ReadMemory error: Cannot get nt!KeMaximumIncrement value. UserTime 00:00:00.000 KernelTime 00:00:00.000 Win32 Start Address 0x000000006ecdd4f6 Stack Init fffff88006552db0 Current fffff88006551050 Base fffff88006553000 Limit fffff8800654d000 Call 0 Priority 11 BasePriority 8 UnusualBoost 0 ForegroundBoost 2 IoPriority 2 PagePriority 5 Child-SP RetAddr : Args to Child : Call Site fffff880`06551618 fffff800`02abc469 : 00000000`0000003b 00000000`c0000005 fffff800`02ae1310 fffff880`06551ee0 : nt!KeBugCheckEx fffff880`06551620 fffff800`02abbdbc : fffff880`06552688 fffff880`06551ee0 00000000`00000000 fffff800`02aeb450 : nt!KiBugCheckDispatch+0x69 fffff880`06551760 fffff800`02ae2bed : fffff800`02cdeef4 00000000`00000000 fffff800`02a4b000 fffff880`06552688 : nt!KiSystemServiceHandler+0x7c fffff880`065517a0 fffff800`02aea250 : fffff800`02c0b1e8 fffff880`06551818 fffff880`06552688 fffff800`02a4b000 : nt!RtlpExecuteHandlerForException+0xd fffff880`065517d0 fffff800`02af71b5 : fffff880`06552688 fffff880`06551ee0 fffff880`00000000 fffffa80`06129060 : nt!RtlDispatchException+0x410 fffff880`06551eb0 fffff800`02abc542 : fffff880`06552688 fffffa80`064815b0 fffff880`06552730 fffffa80`064815b0 : nt!KiDispatchException+0x135 fffff880`06552550 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiExceptionDispatch+0xc2 ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 3B, {c0000005, fffff80002ae1310, fffff88006551ee0, 0} Probably caused by : memory_corruption ( nt!MiInsertNode+20 ) Followup: MachineOwner --------- GetPointerFromAddress: unable to read from fffff80002cf3000 PROCESS fffffa80064815b0 SessionId: none Cid: 0de8 Peb: fffdf000 ParentCid: 0658 DirBase: 8a70d000 ObjectTable: fffff8a0020fba20 HandleCount: Image: firefox.exe VadRoot dffffa80047e90d0 Vads 1197 Clone 0 Private 78698. Modified 336105. Locked 5136. DeviceMap fffff8a000f169a0 Token fffff8a0020fb060 ReadMemory error: Cannot get nt!KeMaximumIncrement value. fffff78000000000: Unable to get shared data ElapsedTime 00:00:00.000 UserTime 00:00:00.000 KernelTime 00:00:00.000 QuotaPoolUsage[PagedPool] 0 QuotaPoolUsage[NonPagedPool] 0 Working Set Sizes (now,min,max) (58881, 50, 345) (235524KB, 200KB, 1380KB) PeakWorkingSetSize 268023 VirtualSize 956 Mb PeakVirtualSize 1399 Mb PageFaultCount 2303355 MemoryPriority BACKGROUND BasePriority 8 CommitCharge 86955 *** Error in reading nt!_ETHREAD @ fffffa8006a0db60 3: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* SYSTEM_SERVICE_EXCEPTION (3b) An exception happened while executing a system service routine. Arguments: Arg1: 00000000c0000005, Exception code that caused the bugcheck Arg2: fffff80002ae1310, Address of the exception record for the exception that caused the bugcheck Arg3: fffff88006551ee0, Address of the context record for the exception that caused the bugcheck Arg4: 0000000000000000, zero. Debugging Details: ------------------ EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Instrukce na adrese 0x%08lx odkazovala na adresu pam FAULTING_IP: nt!MiInsertNode+20 fffff800`02ae1310 493b4018 cmp rax,qword ptr [r8+18h] CONTEXT: fffff88006551ee0 -- (.cxr 0xfffff88006551ee0) rax=0000000000024a00 rbx=fffffa80064815b0 rcx=fffffa8004389a80 rdx=0000000000000000 rsi=fffffa80064815b0 rdi=fffffa8006129060 rip=fffff80002ae1310 rsp=fffff880065528c8 rbp=fffffa8006481948 r8=dffffa80047e90d0 r9=0000000000000000 r10=fffffa8004389a80 r11=fffffa80064819f8 r12=fffffa8004389a80 r13=0000000024e0ffff r14=0000000000000000 r15=fffffa8006129060 iopl=0 nv up ei pl nz na po nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206 nt!MiInsertNode+0x20: fffff800`02ae1310 493b4018 cmp rax,qword ptr [r8+18h] ds:002b:dffffa80`047e90e8=???????????????? Resetting default scope DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0x3B PROCESS_NAME: firefox.exe CURRENT_IRQL: 0 LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff80002ae1310 STACK_TEXT: fffff880`065528c8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MiInsertNode+0x20 FOLLOWUP_IP: nt!MiInsertNode+20 fffff800`02ae1310 493b4018 cmp rax,qword ptr [r8+18h] SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: nt!MiInsertNode+20 FOLLOWUP_NAME: MachineOwner MODULE_NAME: nt DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc600 STACK_COMMAND: .cxr 0xfffff88006551ee0 ; kb IMAGE_NAME: memory_corruption FAILURE_BUCKET_ID: X64_0x3B_nt!MiInsertNode+20 BUCKET_ID: X64_0x3B_nt!MiInsertNode+20 Followup: MachineOwner --------- 3: kd> !analyze -v;.ecxr ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* SYSTEM_SERVICE_EXCEPTION (3b) An exception happened while executing a system service routine. Arguments: Arg1: 00000000c0000005, Exception code that caused the bugcheck Arg2: fffff80002ae1310, Address of the exception record for the exception that caused the bugcheck Arg3: fffff88006551ee0, Address of the context record for the exception that caused the bugcheck Arg4: 0000000000000000, zero. Debugging Details: ------------------ EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Instrukce na adrese 0x%08lx odkazovala na adresu pam FAULTING_IP: nt!MiInsertNode+20 fffff800`02ae1310 493b4018 cmp rax,qword ptr [r8+18h] CONTEXT: fffff88006551ee0 -- (.cxr 0xfffff88006551ee0) rax=0000000000024a00 rbx=fffffa80064815b0 rcx=fffffa8004389a80 rdx=0000000000000000 rsi=fffffa80064815b0 rdi=fffffa8006129060 rip=fffff80002ae1310 rsp=fffff880065528c8 rbp=fffffa8006481948 r8=dffffa80047e90d0 r9=0000000000000000 r10=fffffa8004389a80 r11=fffffa80064819f8 r12=fffffa8004389a80 r13=0000000024e0ffff r14=0000000000000000 r15=fffffa8006129060 iopl=0 nv up ei pl nz na po nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206 nt!MiInsertNode+0x20: fffff800`02ae1310 493b4018 cmp rax,qword ptr [r8+18h] ds:002b:dffffa80`047e90e8=???????????????? Resetting default scope DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0x3B PROCESS_NAME: firefox.exe CURRENT_IRQL: 0 LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff80002ae1310 STACK_TEXT: fffff880`065528c8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MiInsertNode+0x20 FOLLOWUP_IP: nt!MiInsertNode+20 fffff800`02ae1310 493b4018 cmp rax,qword ptr [r8+18h] SYMBOL_STACK_INDEX: 0 SYMBOL_NAME: nt!MiInsertNode+20 FOLLOWUP_NAME: MachineOwner MODULE_NAME: nt DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bc600 STACK_COMMAND: .cxr 0xfffff88006551ee0 ; kb IMAGE_NAME: memory_corruption FAILURE_BUCKET_ID: X64_0x3B_nt!MiInsertNode+20 BUCKET_ID: X64_0x3B_nt!MiInsertNode+20 Followup: MachineOwner --------- Unable to get exception context, HRESULT 0x8000FFFF 3: kd> .cxr 0xfffff88006551ee0 rax=0000000000024a00 rbx=fffffa80064815b0 rcx=fffffa8004389a80 rdx=0000000000000000 rsi=fffffa80064815b0 rdi=fffffa8006129060 rip=fffff80002ae1310 rsp=fffff880065528c8 rbp=fffffa8006481948 r8=dffffa80047e90d0 r9=0000000000000000 r10=fffffa8004389a80 r11=fffffa80064819f8 r12=fffffa8004389a80 r13=0000000024e0ffff r14=0000000000000000 r15=fffffa8006129060 iopl=0 nv up ei pl nz na po nc cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206 nt!MiInsertNode+0x20: fffff800`02ae1310 493b4018 cmp rax,qword ptr [r8+18h] ds:002b:dffffa80`047e90e8=????????????????