1. Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
  2. Copyright (c) Microsoft Corporation. All rights reserved.
  3. Loading Dump File [C:\Users\Järjestelmänvalvoja\Desktop\062013-33930-01.dmp]
  4. Mini Kernel Dump File: Only registers and stack trace are available
  5. Symbol search path is: srv*C:\Symbols*http://msdl.microsoft.com/download/symbols
  6. Executable search path is:
  7. Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
  8. Product: WinNt, suite: TerminalServer SingleUserTS Personal
  9. Built by: 7601.18113.amd64fre.win7sp1_gdr.130318-1533
  10. Machine Name:
  11. Kernel base = 0xfffff800`0321c000 PsLoadedModuleList = 0xfffff800`0345f670
  12. Debug session time: Thu Jun 20 07:39:16.924 2013 (UTC + 2:00)
  13. System Uptime: 7 days 5:07:05.063
  14. Loading Kernel Symbols
  15. ...............................................................
  16. ................................................................
  17. ................................
  18. Loading User Symbols
  19. Loading unloaded module list
  20. ..................................................
  21. *******************************************************************************
  22. * *
  23. * Bugcheck Analysis *
  24. * *
  25. *******************************************************************************
  26. Use !analyze -v to get detailed debugging information.
  27. BugCheck A, {8, 2, 1, fffff8000329cc76}
  28. Probably caused by : ntkrnlmp.exe ( nt!KiInsertTimerTable+c6 )
  29. Followup: MachineOwner
  30. ---------
  31. 0: kd> !analyze -v
  32. *******************************************************************************
  33. * *
  34. * Bugcheck Analysis *
  35. * *
  36. *******************************************************************************
  37. IRQL_NOT_LESS_OR_EQUAL (a)
  38. An attempt was made to access a pageable (or completely invalid) address at an
  39. interrupt request level (IRQL) that is too high. This is usually
  40. caused by drivers using improper addresses.
  41. If a kernel debugger is available get the stack backtrace.
  42. Arguments:
  43. Arg1: 0000000000000008, memory referenced
  44. Arg2: 0000000000000002, IRQL
  45. Arg3: 0000000000000001, bitfield :
  46. bit 0 : value 0 = read operation, 1 = write operation
  47. bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
  48. Arg4: fffff8000329cc76, address which referenced memory
  49. Debugging Details:
  50. ------------------
  51. WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800034c9100
  52. 0000000000000008
  53. CURRENT_IRQL: 2
  54. FAULTING_IP:
  55. nt!KiInsertTimerTable+c6
  56. fffff800`0329cc76 4c894008 mov qword ptr [rax+8],r8
  57. CUSTOMER_CRASH_COUNT: 1
  58. DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
  59. BUGCHECK_STR: 0xA
  60. PROCESS_NAME: updateui.exe
  61. TRAP_FRAME: fffff880037b57c0 -- (.trap 0xfffff880037b57c0)
  62. NOTE: The trap frame does not contain all registers.
  63. Some register values may be zeroed or incorrect.
  64. rax=0000000000000000 rbx=0000000000000000 rcx=fffffa80084b2338
  65. rdx=fffffa8003cb2450 rsi=0000000000000000 rdi=0000000000000000
  66. rip=fffff8000329cc76 rsp=fffff880037b5950 rbp=fffffa80084b2338
  67. r8=fffffa8003e71c30 r9=00000000000000f5 r10=fffff8000340ce80
  68. r11=00000000002f7000 r12=0000000000000000 r13=0000000000000000
  69. r14=0000000000000000 r15=0000000000000000
  70. iopl=0 nv up ei pl zr na po nc
  71. nt!KiInsertTimerTable+0xc6:
  72. fffff800`0329cc76 4c894008 mov qword ptr [rax+8],r8 ds:00000000`00000008=????????????????
  73. Resetting default scope
  74. LAST_CONTROL_TRANSFER: from fffff800032911a9 to fffff80003291c00
  75. STACK_TEXT:
  76. fffff880`037b5678 fffff800`032911a9 : 00000000`0000000a 00000000`00000008 00000000`00000002 00000000`00000001 : nt!KeBugCheckEx
  77. fffff880`037b5680 fffff800`0328fe20 : fffffa80`03e71c10 fffff800`0340ce80 fffffa80`00001f80 fffffa80`03e71c10 : nt!KiBugCheckDispatch+0x69
  78. fffff880`037b57c0 fffff800`0329cc76 : fffffa80`0983c030 fffff800`03294e43 00000008`00000000 fffff880`03342180 : nt!KiPageFault+0x260
  79. fffff880`037b5950 fffff800`03287772 : fffffa80`03e71b50 fffffa80`03e71b50 fffffa80`00000000 fffff880`00000000 : nt!KiInsertTimerTable+0xc6
  80. fffff880`037b59b0 fffff800`03297982 : 00000000`00000000 00000000`00000000 00000000`000000f5 00000000`00000000 : nt!KiCommitThreadWait+0x332
  81. fffff880`037b5a40 fffff800`0358986e : fffffa80`03e71b50 00000000`7efd8000 00000000`00defd00 00000000`000000f5 : nt!KeDelayExecutionThread+0x186
  82. fffff880`037b5ab0 fffff800`03290e93 : fffff880`037b5b60 fffff880`037b5b01 ffffffff`fffe7960 00000000`7efd8000 : nt!NtDelayExecution+0x59
  83. fffff880`037b5ae0 00000000`74f22e09 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
  84. 00000000`00deeb18 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x74f22e09
  85. STACK_COMMAND: kb
  86. FOLLOWUP_IP:
  87. nt!KiInsertTimerTable+c6
  88. fffff800`0329cc76 4c894008 mov qword ptr [rax+8],r8
  89. SYMBOL_STACK_INDEX: 3
  90. SYMBOL_NAME: nt!KiInsertTimerTable+c6
  91. FOLLOWUP_NAME: MachineOwner
  92. MODULE_NAME: nt
  93. IMAGE_NAME: ntkrnlmp.exe
  94. DEBUG_FLR_IMAGE_TIMESTAMP: 5147d9c6
  95. FAILURE_BUCKET_ID: X64_0xA_nt!KiInsertTimerTable+c6
  96. BUCKET_ID: X64_0xA_nt!KiInsertTimerTable+c6
  97. Followup: MachineOwner
  98. ---------