Various BSOD's occuring randomly

Anonymous
2021-02-11T15:22:43+00:00

Hi, I've bought brand new PC and started having random BSOD's while using PC or just when idling on desktop.

I've tried to use Windows Memory Diagnostic, also ran commands /scannow and such in CMD because I read it in so many other topics regarding BSOD.

I've had trouble uploading my dump files so i'll just post results here that I've got in WinDbgPreview.

I did memtest on both RAM drives and they were without errors after 4hr test each.

My specs: 

CPU: Ryzen 5 3600

GPU: Gigabyte WF2 RTX 2060 

MOBO: Aorus B450 Pro

RAM: XPG 2X8GB 3200MHz 

SSD: Kingston A2000 Nvme m.2

HDD: WD 1TB

PSU: FSP Hyper Pro+ 650W

I managed to upload dump files here: https://1drv.ms/u/s!Aq6wDqYiClWbhEgyN5aN5KjPpup_?e=S7n8AY

Windows for home | Windows 10 | Performance and system failures

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

52 answers

Sort by: Oldest
  1. Anonymous
    2021-02-11T15:23:02+00:00

    Most recent BSOD

    Microsoft (R) Windows Debugger Version 10.0.20153.1000 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    Loading Dump File [C:\Users\GOOD LUCK\Desktop\minidump\021121-7421-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    ************* Path validation summary **************
    Response                         Time (ms)     Location
    Deferred                                       srv*
    Symbol search path is: srv*
    Executable search path is: 
    Windows 10 Kernel Version 18362 MP (12 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Edition build lab: 18362.1.amd64fre.19h1_release.190318-1202
    Machine Name:
    Kernel base = 0xfffff803`37c00000 PsLoadedModuleList = 0xfffff803`380461b0
    Debug session time: Thu Feb 11 15:55:48.574 2021 (UTC + 1:00)
    System Uptime: 0 days 17:43:12.234
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ....................................................
    Loading User Symbols
    Loading unloaded module list
    ...........
    For analysis of this file, run !analyze -v
    nt!KeBugCheckEx:
    fffff803`37dc3b20 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffb201`309d8b10=0000000000000133
    9: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    DPC_WATCHDOG_VIOLATION (133)
    The DPC watchdog detected a prolonged run time at an IRQL of DISPATCH_LEVEL
    or above.
    Arguments:
    Arg1: 0000000000000001, The system cumulatively spent an extended period of time at
    DISPATCH_LEVEL or above. The offending component can usually be
    identified with a stack trace.
    Arg2: 0000000000001e00, The watchdog period.
    Arg3: fffff80338171358, cast to nt!DPC_WATCHDOG_GLOBAL_TRIAGE_BLOCK, which contains
    additional information regarding the cumulative timeout
    Arg4: 0000000000000000
    
    Debugging Details:
    ------------------
    
    *************************************************************************
    ***                                                                   ***
    ***                                                                   ***
    ***    Either you specified an unqualified symbol, or your debugger   ***
    ***    doesn't have full symbol information.  Unqualified symbol      ***
    ***    resolution is turned off by default. Please either specify a   ***
    ***    fully qualified symbol module!symbolname, or enable resolution ***
    ***    of unqualified symbols by typing ".symopt- 100". Note that     ***
    ***    enabling unqualified symbol resolution with network symbol     ***
    ***    server shares in the symbol path may cause the debugger to     ***
    ***    appear to hang for long periods of time when an incorrect      ***
    ***    symbol name is typed or the network symbol server is down.     ***
    ***                                                                   ***
    ***    For some commands to work properly, your symbol path           ***
    ***    must point to .pdb files that have full type information.      ***
    ***                                                                   ***
    ***    Certain .pdb files (such as the public OS symbols) do not      ***
    ***    contain the required information.  Contact the group that      ***
    ***    provided you with these symbols if you need this command to    ***
    ***    work.                                                          ***
    ***                                                                   ***
    ***    Type referenced: TickPeriods                                   ***
    ***                                                                   ***
    *************************************************************************
    *** WARNING: Unable to verify checksum for win32k.sys
    
    KEY_VALUES_STRING: 1
    
        Key  : Analysis.CPU.mSec
        Value: 4703
    
        Key  : Analysis.DebugAnalysisProvider.CPP
        Value: Create: 8007007e on DESKTOP-KL6MEN5
    
        Key  : Analysis.DebugData
        Value: CreateObject
    
        Key  : Analysis.DebugModel
        Value: CreateObject
    
        Key  : Analysis.Elapsed.mSec
        Value: 10697
    
        Key  : Analysis.Memory.CommitPeak.Mb
        Value: 83
    
        Key  : Analysis.System
        Value: CreateObject
    
        Key  : WER.OS.Branch
        Value: 19h1_release
    
        Key  : WER.OS.Timestamp
        Value: 2019-03-18T12:02:00Z
    
        Key  : WER.OS.Version
        Value: 10.0.18362.1
    
    ADDITIONAL_XML: 1
    
    OS_BUILD_LAYERS: 1
    
    BUGCHECK_CODE:  133
    
    BUGCHECK_P1: 1
    
    BUGCHECK_P2: 1e00
    
    BUGCHECK_P3: fffff80338171358
    
    BUGCHECK_P4: 0
    
    DPC_TIMEOUT_TYPE:  DPC_QUEUE_EXECUTION_TIMEOUT_EXCEEDED
    
    TRAP_FRAME:  ffffd80bea299780 -- (.trap 0xffffd80bea299780)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=000000006c6b4494 rbx=0000000000000000 rcx=ffffd80bea299970
    rdx=0000000000000005 rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80337c2d3eb rsp=ffffd80bea299910 rbp=0000000000000080
     r8=0000000000000102  r9=0000000000000000 r10=fffff8033536f800
    r11=0000000000000002 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei pl nz na pe nc
    nt!KeYieldProcessorEx+0x1b:
    fffff803`37c2d3eb 4883c420        add     rsp,20h
    Resetting default scope
    
    BLACKBOXBSD: 1 (!blackboxbsd)
    
    BLACKBOXNTFS: 1 (!blackboxntfs)
    
    BLACKBOXWINLOGON: 1
    
    CUSTOMER_CRASH_COUNT:  1
    
    PROCESS_NAME:  System
    
    STACK_TEXT:  
    ffffb201`309d8b08 fffff803`37df4c1b     : 00000000`00000133 00000000`00000001 00000000`00001e00 fffff803`38171358 : nt!KeBugCheckEx
    ffffb201`309d8b10 fffff803`37c34e8c     : 000005f4`5063dfbc ffffb201`30980180 00000000`003e4c0f 00000000`003e4c0f : nt!KeAccumulateTicks+0x1c18bb
    ffffb201`309d8b70 fffff803`37b5d567     : ffffd80b`ea299b10 ffffd80b`ea299780 ffffd80b`ea299800 00000000`00000002 : nt!KeClockInterruptNotify+0x98c
    ffffb201`309d8f30 fffff803`37cfdaa5     : 00000094`879e66e0 ffff800d`5f8c9d00 ffff800d`5f8c9db0 ffff5954`5dc322df : hal!HalpTimerClockInterrupt+0xf7
    ffffb201`309d8f60 fffff803`37dc55aa     : ffffd80b`ea299800 ffff800d`5f8c9d00 00000000`000000ff ffff800d`5f8c9d00 : nt!KiCallInterruptServiceRoutine+0xa5
    ffffb201`309d8fb0 fffff803`37dc5b17     : 00000000`00000200 fffff803`37b5d8f8 ffff800d`6a2ed180 fffff803`37dc5b24 : nt!KiInterruptSubDispatchNoLockNoEtw+0xfa
    ffffd80b`ea299780 fffff803`37c2d3eb     : 00000000`00000010 00000000`00000286 ffffd80b`ea299938 00000000`00000018 : nt!KiInterruptDispatchNoLockNoEtw+0x37
    ffffd80b`ea299910 fffff803`37cc370a     : ffff800d`6bd97180 00000094`3f9dffbb 00000001`00000002 ffff800d`66a0b010 : nt!KeYieldProcessorEx+0x1b
    ffffd80b`ea299940 fffff803`37cc22b9     : 00000000`0000000c 00000000`00989680 00000000`00250fe7 00000000`000000ff : nt!KiProcessExpiredTimerList+0x31a
    ffffd80b`ea299a30 fffff803`37dc764e     : ffffffff`00000000 ffffb201`30980180 ffffb201`30991340 ffff800d`6b61f080 : nt!KiRetireDpcList+0x4e9
    ffffd80b`ea299c60 00000000`00000000     : ffffd80b`ea29a000 ffffd80b`ea294000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x7e
    
    SYMBOL_NAME:  nt!KeAccumulateTicks+1c18bb
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    IMAGE_VERSION:  10.0.18362.1316
    
    STACK_COMMAND:  .thread ; .cxr ; kb
    
    BUCKET_ID_FUNC_OFFSET:  1c18bb
    
    FAILURE_BUCKET_ID:  0x133_ISR_nt!KeAccumulateTicks
    
    OS_VERSION:  10.0.18362.1
    
    BUILDLAB_STR:  19h1_release
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 10
    
    FAILURE_ID_HASH:  {65350307-c3b9-f4b5-8829-4d27e9ff9b06}
    
    Followup:     MachineOwner
    ---------
    

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2021-02-11T15:23:54+00:00

    Microsoft (R) Windows Debugger Version 10.0.20153.1000 AMD64 Copyright (c) Microsoft Corporation. All rights reserved.

    Loading Dump File [C:\Users\GOOD LUCK\Desktop\minidump\020721-7390-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    ************* Path validation summary **************
    Response                         Time (ms)     Location
    Deferred                                       srv*
    Symbol search path is: srv*
    Executable search path is: 
    Windows 10 Kernel Version 18362 MP (12 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Edition build lab: 18362.1.amd64fre.19h1_release.190318-1202
    Machine Name:
    Kernel base = 0xfffff802`3ba00000 PsLoadedModuleList = 0xfffff802`3be461b0
    Debug session time: Sun Feb  7 09:40:33.739 2021 (UTC + 1:00)
    System Uptime: 0 days 1:12:34.399
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ..................................................
    Loading User Symbols
    Loading unloaded module list
    .......
    For analysis of this file, run !analyze -v
    nt!KeBugCheckEx:
    fffff802`3bbc3b20 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffba8c`81253830=000000000000000a
    4: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 0000000000040066, memory referenced
    Arg2: 00000000000000ff, IRQL
    Arg3: 0000000000000000, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff8023ba313be, address which referenced memory
    
    Debugging Details:
    ------------------
    
    *** WARNING: Unable to verify checksum for win32k.sys
    
    KEY_VALUES_STRING: 1
    
        Key  : Analysis.CPU.mSec
        Value: 3780
    
        Key  : Analysis.DebugAnalysisProvider.CPP
        Value: Create: 8007007e on DESKTOP-KL6MEN5
    
        Key  : Analysis.DebugData
        Value: CreateObject
    
        Key  : Analysis.DebugModel
        Value: CreateObject
    
        Key  : Analysis.Elapsed.mSec
        Value: 16010
    
        Key  : Analysis.Memory.CommitPeak.Mb
        Value: 81
    
        Key  : Analysis.System
        Value: CreateObject
    
        Key  : WER.OS.Branch
        Value: 19h1_release
    
        Key  : WER.OS.Timestamp
        Value: 2019-03-18T12:02:00Z
    
        Key  : WER.OS.Version
        Value: 10.0.18362.1
    
    ADDITIONAL_XML: 1
    
    OS_BUILD_LAYERS: 1
    
    BUGCHECK_CODE:  a
    
    BUGCHECK_P1: 40066
    
    BUGCHECK_P2: ff
    
    BUGCHECK_P3: 0
    
    BUGCHECK_P4: fffff8023ba313be
    
    READ_ADDRESS: fffff8023bf713b8: Unable to get MiVisibleState
    Unable to get NonPagedPoolStart
    Unable to get NonPagedPoolEnd
    Unable to get PagedPoolStart
    Unable to get PagedPoolEnd
    fffff8023be283b8: Unable to get Flags value from nt!KdVersionBlock
    fffff8023be283b8: Unable to get Flags value from nt!KdVersionBlock
    unable to get nt!MmSpecialPagesInUse
     0000000000040066 
    
    BLACKBOXBSD: 1 (!blackboxbsd)
    
    BLACKBOXNTFS: 1 (!blackboxntfs)
    
    BLACKBOXPNP: 1 (!blackboxpnp)
    
    BLACKBOXWINLOGON: 1
    
    CUSTOMER_CRASH_COUNT:  1
    
    PROCESS_NAME:  System
    
    TRAP_FRAME:  ffffba8c81253970 -- (.trap 0xffffba8c81253970)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000000000000003 rbx=0000000000000000 rcx=0000000000040046
    rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
    rip=fffff8023ba313be rsp=ffffba8c81253b00 rbp=0000000000040046
     r8=0000000000000008  r9=0000000000000000 r10=0000fffff8024cb9
    r11=ffffd37a8fc00000 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up di ng nz na po nc
    nt!PoIdle+0x39e:
    fffff802`3ba313be 488b4d20        mov     rcx,qword ptr [rbp+20h] ss:0018:00000000`00040066=????????????????
    Resetting default scope
    
    STACK_TEXT:  
    ffffba8c`81253828 fffff802`3bbd5929     : 00000000`0000000a 00000000`00040066 00000000`000000ff 00000000`00000000 : nt!KeBugCheckEx
    ffffba8c`81253830 fffff802`3bbd1c69     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiBugCheckDispatch+0x69
    ffffba8c`81253970 fffff802`3ba313be     : 00000000`00000003 00000000`00000002 00000000`00000000 00000000`00000008 : nt!KiPageFault+0x469
    ffffba8c`81253b00 fffff802`3bbc7614     : ffffffff`00000000 ffffe381`ba240180 ffff8506`87c26080 00000000`00001248 : nt!PoIdle+0x39e
    ffffba8c`81253c60 00000000`00000000     : ffffba8c`81254000 ffffba8c`8124e000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x44
    
    SYMBOL_NAME:  nt!PoIdle+39e
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    IMAGE_VERSION:  10.0.18362.1316
    
    STACK_COMMAND:  .thread ; .cxr ; kb
    
    BUCKET_ID_FUNC_OFFSET:  39e
    
    FAILURE_BUCKET_ID:  AV_nt!PoIdle
    
    OS_VERSION:  10.0.18362.1
    
    BUILDLAB_STR:  19h1_release
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 10
    
    FAILURE_ID_HASH:  {0f00f4f4-fc66-441c-10bf-8ccc2952f11b}
    
    Followup:     MachineOwner
    ---------
    

    Was this answer helpful?

    0 comments No comments
  3. Anonymous
    2021-02-11T15:24:32+00:00

    Microsoft (R) Windows Debugger Version 10.0.20153.1000 AMD64 Copyright (c) Microsoft Corporation. All rights reserved.

    Loading Dump File [C:\Users\GOOD LUCK\Desktop\minidump\020421-7734-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    ************* Path validation summary **************
    Response                         Time (ms)     Location
    Deferred                                       srv*
    Symbol search path is: srv*
    Executable search path is: 
    Windows 10 Kernel Version 18362 MP (12 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Edition build lab: 18362.1.amd64fre.19h1_release.190318-1202
    Machine Name:
    Kernel base = 0xfffff803`19a00000 PsLoadedModuleList = 0xfffff803`19e461b0
    Debug session time: Thu Feb  4 18:01:37.080 2021 (UTC + 1:00)
    System Uptime: 0 days 0:00:51.741
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ................................................
    Loading User Symbols
    Loading unloaded module list
    .......
    For analysis of this file, run !analyze -v
    nt!KeBugCheckEx:
    fffff803`19bc3b20 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffff8282`de053380=000000000000000a
    4: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 0000000000000000, memory referenced
    Arg2: 00000000000000ff, IRQL
    Arg3: 0000000000000058, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff80319abd0cf, address which referenced memory
    
    Debugging Details:
    ------------------
    
    *** WARNING: Unable to verify checksum for win32k.sys
    
    KEY_VALUES_STRING: 1
    
        Key  : Analysis.CPU.mSec
        Value: 5577
    
        Key  : Analysis.DebugAnalysisProvider.CPP
        Value: Create: 8007007e on DESKTOP-KL6MEN5
    
        Key  : Analysis.DebugData
        Value: CreateObject
    
        Key  : Analysis.DebugModel
        Value: CreateObject
    
        Key  : Analysis.Elapsed.mSec
        Value: 9198
    
        Key  : Analysis.Memory.CommitPeak.Mb
        Value: 80
    
        Key  : Analysis.System
        Value: CreateObject
    
        Key  : WER.OS.Branch
        Value: 19h1_release
    
        Key  : WER.OS.Timestamp
        Value: 2019-03-18T12:02:00Z
    
        Key  : WER.OS.Version
        Value: 10.0.18362.1
    
    ADDITIONAL_XML: 1
    
    OS_BUILD_LAYERS: 1
    
    BUGCHECK_CODE:  a
    
    BUGCHECK_P1: 0
    
    BUGCHECK_P2: ff
    
    BUGCHECK_P3: 58
    
    BUGCHECK_P4: fffff80319abd0cf
    
    READ_ADDRESS: fffff80319f713b8: Unable to get MiVisibleState
    Unable to get NonPagedPoolStart
    Unable to get NonPagedPoolEnd
    Unable to get PagedPoolStart
    Unable to get PagedPoolEnd
    fffff80319e283b8: Unable to get Flags value from nt!KdVersionBlock
    fffff80319e283b8: Unable to get Flags value from nt!KdVersionBlock
    unable to get nt!MmSpecialPagesInUse
     0000000000000000 
    
    BLACKBOXBSD: 1 (!blackboxbsd)
    
    BLACKBOXNTFS: 1 (!blackboxntfs)
    
    BLACKBOXWINLOGON: 1
    
    CUSTOMER_CRASH_COUNT:  1
    
    PROCESS_NAME:  System
    
    TRAP_FRAME:  ffff8282de0534c0 -- (.trap 0xffff8282de0534c0)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000004
    rdx=fffff80319e2a1a0 rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80319abd0cf rsp=ffff8282de053650 rbp=ffff8282de0537f0
     r8=0000000000000000  r9=ffff9b011e240180 r10=0000000000000000
    r11=ffff8282de0536e8 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up di pl zr na po nc
    nt!KiGetNextTimerExpirationDueTime+0x11f:
    fffff803`19abd0cf 488938          mov     qword ptr [rax],rdi ds:00000000`00000000=????????????????
    Resetting default scope
    
    STACK_TEXT:  
    ffff8282`de053378 fffff803`19bd5929     : 00000000`0000000a 00000000`00000000 00000000`000000ff 00000000`00000058 : nt!KeBugCheckEx
    ffff8282`de053380 fffff803`19bd1c69     : ffff8282`de053510 fffff803`1cb85bbc 00000000`1ecd25d4 00000000`00000000 : nt!KiBugCheckDispatch+0x69
    ffff8282`de0534c0 fffff803`19abd0cf     : ffff9b01`1e240180 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x469
    ffff8282`de053650 fffff803`19b8a21a     : ffff8282`de0538e8 00000000`1ed7d42e ffff8282`de0537f0 ffffd28e`973ee200 : nt!KiGetNextTimerExpirationDueTime+0x11f
    ffff8282`de053690 fffff803`19b8a0fd     : 00000000`00000002 ffffd28e`973ee000 ffff8282`de053940 00000000`1ed710de : nt!KeEstimateClockTickDuration+0x4e
    ffff8282`de0536f0 fffff803`19b89ff0     : 00000000`1efb49fa ffffd28e`973ee010 ffffd28e`973ee200 ffffd28e`973ee010 : nt!PpmEstimateIdleDuration+0xd1
    ffff8282`de053860 fffff803`19b89d62     : 00000000`00000000 ffff8282`de053b50 ffffd28e`973ee200 ffffd28e`973ee010 : nt!PpmComputeIdleDurationHint+0x78
    ffff8282`de0538d0 fffff803`19a314e7     : 00000000`00000000 00000000`00000004 00000000`00658c2a 00000000`00000000 : nt!PpmIdleSelectStates+0x132
    ffff8282`de053b00 fffff803`19bc7614     : ffffffff`00000000 ffff9b01`1e240180 ffffd28e`9d7f3080 00000000`00000438 : nt!PoIdle+0x4c7
    ffff8282`de053c60 00000000`00000000     : ffff8282`de054000 ffff8282`de04e000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x44
    
    SYMBOL_NAME:  nt!KiGetNextTimerExpirationDueTime+11f
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    IMAGE_VERSION:  10.0.18362.1316
    
    STACK_COMMAND:  .thread ; .cxr ; kb
    
    BUCKET_ID_FUNC_OFFSET:  11f
    
    FAILURE_BUCKET_ID:  AV_nt!KiGetNextTimerExpirationDueTime
    
    OS_VERSION:  10.0.18362.1
    
    BUILDLAB_STR:  19h1_release
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 10
    
    FAILURE_ID_HASH:  {fb98d682-2f5f-b11b-1a7d-94cf0bd39105}
    
    Followup:     MachineOwner
    ---------
    

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2021-02-11T15:27:05+00:00

    Microsoft (R) Windows Debugger Version 10.0.20153.1000 AMD64 Copyright (c) Microsoft Corporation. All rights reserved.

    Loading Dump File [C:\Users\GOOD LUCK\Desktop\minidump\012221-7703-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    ************* Path validation summary **************
    Response                         Time (ms)     Location
    Deferred                                       srv*
    Symbol search path is: srv*
    Executable search path is: 
    Windows 10 Kernel Version 18362 MP (12 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Edition build lab: 18362.1.amd64fre.19h1_release.190318-1202
    Machine Name:
    Kernel base = 0xfffff800`3e200000 PsLoadedModuleList = 0xfffff800`3e6461b0
    Debug session time: Fri Jan 22 21:24:15.659 2021 (UTC + 1:00)
    System Uptime: 0 days 0:05:17.319
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ..............................................
    Loading User Symbols
    Loading unloaded module list
    .......
    For analysis of this file, run !analyze -v
    nt!KeBugCheckEx:
    fffff800`3e3c3b20 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffff838c`63690430=0000000000000050
    5: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced.  This cannot be protected by try-except.
    Typically the address is just plain bad or it is pointing at freed memory.
    Arguments:
    Arg1: ffffc07de1c00000, memory referenced.
    Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
    Arg3: ffffac9cc4843446, If non-zero, the instruction address which referenced the bad memory
    address.
    Arg4: 0000000000000002, (reserved)
    
    Debugging Details:
    ------------------
    
    Could not read faulting driver name
    
    KEY_VALUES_STRING: 1
    
        Key  : Analysis.CPU.mSec
        Value: 4999
    
        Key  : Analysis.DebugAnalysisProvider.CPP
        Value: Create: 8007007e on DESKTOP-KL6MEN5
    
        Key  : Analysis.DebugData
        Value: CreateObject
    
        Key  : Analysis.DebugModel
        Value: CreateObject
    
        Key  : Analysis.Elapsed.mSec
        Value: 5161
    
        Key  : Analysis.Memory.CommitPeak.Mb
        Value: 87
    
        Key  : Analysis.System
        Value: CreateObject
    
        Key  : WER.OS.Branch
        Value: 19h1_release
    
        Key  : WER.OS.Timestamp
        Value: 2019-03-18T12:02:00Z
    
        Key  : WER.OS.Version
        Value: 10.0.18362.1
    
    ADDITIONAL_XML: 1
    
    OS_BUILD_LAYERS: 1
    
    BUGCHECK_CODE:  50
    
    BUGCHECK_P1: ffffc07de1c00000
    
    BUGCHECK_P2: 0
    
    BUGCHECK_P3: ffffac9cc4843446
    
    BUGCHECK_P4: 2
    
    READ_ADDRESS: fffff8003e7713b8: Unable to get MiVisibleState
    Unable to get NonPagedPoolStart
    Unable to get NonPagedPoolEnd
    Unable to get PagedPoolStart
    Unable to get PagedPoolEnd
    fffff8003e6283b8: Unable to get Flags value from nt!KdVersionBlock
    fffff8003e6283b8: Unable to get Flags value from nt!KdVersionBlock
    unable to get nt!MmSpecialPagesInUse
     ffffc07de1c00000 
    
    MM_INTERNAL_CODE:  2
    
    BLACKBOXBSD: 1 (!blackboxbsd)
    
    BLACKBOXNTFS: 1 (!blackboxntfs)
    
    BLACKBOXWINLOGON: 1
    
    CUSTOMER_CRASH_COUNT:  1
    
    PROCESS_NAME:  explorer.exe
    
    TRAP_FRAME:  ffff838c636906d0 -- (.trap 0xffff838c636906d0)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=0000000000000000 rbx=0000000000000000 rcx=ffffbe081d5f1b10
    rdx=ffffbe081d5f1b10 rsi=0000000000000000 rdi=0000000000000000
    rip=ffffac9cc4843446 rsp=ffff838c63690860 rbp=ffff838c636909b0
     r8=00000000000000e0  r9=0000000000000008 r10=0000000000000023
    r11=ffffc07de1c00000 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei pl zr ac po nc
    ffffac9c`c4843446 490fa303        bt      qword ptr [r11],rax ds:ffffc07d`e1c00000=????????????????
    Resetting default scope
    
    STACK_TEXT:  
    ffff838c`63690428 fffff800`3e40de82     : 00000000`00000050 ffffc07d`e1c00000 00000000`00000000 ffff838c`636906d0 : nt!KeBugCheckEx
    ffff838c`63690430 fffff800`3e2caaff     : ffffacc8`80200100 00000000`00000000 00000000`00000000 ffffc07d`e1c00000 : nt!MiSystemFault+0x198d62
    ffff838c`63690530 fffff800`3e3d1b5e     : 00000000`00000000 00000000`00000001 00000000`00000000 00000000`00000000 : nt!MmAccessFault+0x34f
    ffff838c`636906d0 ffffac9c`c4843446     : 00000000`00000836 ffffacc8`808e3120 fffff800`3e23c670 ffffac9c`c45ca085 : nt!KiPageFault+0x35e
    ffff838c`63690860 00000000`00000836     : ffffacc8`808e3120 fffff800`3e23c670 ffffac9c`c45ca085 00000000`00000001 : 0xffffac9c`c4843446
    ffff838c`63690868 ffffacc8`808e3120     : fffff800`3e23c670 ffffac9c`c45ca085 00000000`00000001 00000000`00000001 : 0x836
    ffff838c`63690870 fffff800`3e23c66f     : ffffac9c`c45ca085 00000000`00000001 00000000`00000001 00000000`00000836 : 0xffffacc8`808e3120
    ffff838c`63690878 ffffac9c`c45ca085     : 00000000`00000001 00000000`00000001 00000000`00000836 ffffacc8`808e3120 : nt!ExAcquireResourceExclusiveLite+0x31f
    ffff838c`63690880 ffffac9c`c423982f     : ffff838c`636909b0 ffffacc8`8842b7a0 ffffacc8`8842b7a0 00000000`00000026 : win32kbase!GreReleaseSemaphoreInternal+0x15
    ffff838c`636908b0 fffff800`3e3d5358     : ffffffff`9b010e90 00000000`00000000 00000000`00000000 00000000`00000001 : win32kfull!NtGdiAlphaBlend+0x90f
    ffff838c`63690dd0 00007ffe`6bb01fe4     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
    00000000`0328da68 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffe`6bb01fe4
    
    SYMBOL_NAME:  win32kbase!GreReleaseSemaphoreInternal+15
    
    MODULE_NAME: win32kbase
    
    IMAGE_NAME:  win32kbase.sys
    
    IMAGE_VERSION:  10.0.18362.1316
    
    STACK_COMMAND:  .thread ; .cxr ; kb
    
    BUCKET_ID_FUNC_OFFSET:  15
    
    FAILURE_BUCKET_ID:  AV_R_INVALID_win32kbase!GreReleaseSemaphoreInternal
    
    OS_VERSION:  10.0.18362.1
    
    BUILDLAB_STR:  19h1_release
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 10
    
    FAILURE_ID_HASH:  {4d8a3bea-f00e-64f3-8500-6ce1747fffb4}
    
    Followup:     MachineOwner
    ---------
    

    Was this answer helpful?

    0 comments No comments
  5. Anonymous
    2021-02-11T15:27:59+00:00

    Microsoft (R) Windows Debugger Version 10.0.20153.1000 AMD64 Copyright (c) Microsoft Corporation. All rights reserved.

    Loading Dump File [C:\Users\GOOD LUCK\Desktop\minidump\021121-7468-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    ************* Path validation summary **************
    Response                         Time (ms)     Location
    Deferred                                       srv*
    Symbol search path is: srv*
    Executable search path is: 
    Windows 10 Kernel Version 18362 MP (12 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS
    Edition build lab: 18362.1.amd64fre.19h1_release.190318-1202
    Machine Name:
    Kernel base = 0xfffff805`43c00000 PsLoadedModuleList = 0xfffff805`440461b0
    Debug session time: Thu Feb 11 16:24:43.296 2021 (UTC + 1:00)
    System Uptime: 0 days 0:28:23.957
    Loading Kernel Symbols
    ...............................................................
    ................................................................
    ...................................................
    Loading User Symbols
    Loading unloaded module list
    .......
    For analysis of this file, run !analyze -v
    nt!KeBugCheckEx:
    fffff805`43dc3b20 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffff8104`46e53950=000000000000000a
    4: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    IRQL_NOT_LESS_OR_EQUAL (a)
    An attempt was made to access a pageable (or completely invalid) address at an
    interrupt request level (IRQL) that is too high.  This is usually
    caused by drivers using improper addresses.
    If a kernel debugger is available get the stack backtrace.
    Arguments:
    Arg1: 0000000000000250, memory referenced
    Arg2: 0000000000000002, IRQL
    Arg3: 0000000000000000, bitfield :
    bit 0 : value 0 = read operation, 1 = write operation
    bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
    Arg4: fffff80543dcabf8, address which referenced memory
    
    Debugging Details:
    ------------------
    
    *** WARNING: Unable to verify checksum for win32k.sys
    
    KEY_VALUES_STRING: 1
    
        Key  : Analysis.CPU.mSec
        Value: 3374
    
        Key  : Analysis.DebugAnalysisProvider.CPP
        Value: Create: 8007007e on DESKTOP-KL6MEN5
    
        Key  : Analysis.DebugData
        Value: CreateObject
    
        Key  : Analysis.DebugModel
        Value: CreateObject
    
        Key  : Analysis.Elapsed.mSec
        Value: 10701
    
        Key  : Analysis.Memory.CommitPeak.Mb
        Value: 81
    
        Key  : Analysis.System
        Value: CreateObject
    
        Key  : WER.OS.Branch
        Value: 19h1_release
    
        Key  : WER.OS.Timestamp
        Value: 2019-03-18T12:02:00Z
    
        Key  : WER.OS.Version
        Value: 10.0.18362.1
    
    ADDITIONAL_XML: 1
    
    OS_BUILD_LAYERS: 1
    
    BUGCHECK_CODE:  a
    
    BUGCHECK_P1: 250
    
    BUGCHECK_P2: 2
    
    BUGCHECK_P3: 0
    
    BUGCHECK_P4: fffff80543dcabf8
    
    READ_ADDRESS: fffff805441713b8: Unable to get MiVisibleState
    Unable to get NonPagedPoolStart
    Unable to get NonPagedPoolEnd
    Unable to get PagedPoolStart
    Unable to get PagedPoolEnd
    fffff805440283b8: Unable to get Flags value from nt!KdVersionBlock
    fffff805440283b8: Unable to get Flags value from nt!KdVersionBlock
    unable to get nt!MmSpecialPagesInUse
     0000000000000250 
    
    BLACKBOXBSD: 1 (!blackboxbsd)
    
    BLACKBOXNTFS: 1 (!blackboxntfs)
    
    BLACKBOXWINLOGON: 1
    
    CUSTOMER_CRASH_COUNT:  1
    
    PROCESS_NAME:  EpicGamesLauncher.exe
    
    TRAP_FRAME:  ffff810446e53a90 -- (.trap 0xffff810446e53a90)
    NOTE: The trap frame does not contain all registers.
    Some register values may be zeroed or incorrect.
    rax=ffff810446e53c18 rbx=0000000000000000 rcx=0000000000040202
    rdx=ffffb58bff6e1080 rsi=0000000000000000 rdi=0000000000000000
    rip=fffff80543dcabf8 rsp=ffff810446e53c20 rbp=00000067b4bbbdff
     r8=00000000000001b0  r9=0000000000000000 r10=0000fffff8055471
    r11=ffff7efc2d200000 r12=0000000000000000 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000000
    iopl=0         nv up ei ng nz na pe nc
    nt!SwapContext+0xb8:
    fffff805`43dcabf8 488b9750020000  mov     rdx,qword ptr [rdi+250h] ds:00000000`00000250=????????????????
    Resetting default scope
    
    BAD_STACK_POINTER:  ffff810446e53948
    
    STACK_TEXT:  
    ffff8104`46e53948 fffff805`43dd5929     : 00000000`0000000a 00000000`00000250 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
    ffff8104`46e53950 fffff805`43dd1c69     : fffff805`43b75b20 fffff805`43b5f37a ffff782f`3248c31a ffff8f01`6aa51340 : nt!KiBugCheckDispatch+0x69
    ffff8104`46e53a90 fffff805`43dcabf8     : ffff8f01`6aa40180 00000067`b4bbbdff ffffb58b`ff6e1080 00000000`00000000 : nt!KiPageFault+0x469
    ffff8104`46e53c20 fffff805`43dc7726     : ffffffff`00000000 ffff8f01`6aa40180 ffffb58b`f690f040 00000000`0000057c : nt!SwapContext+0xb8
    ffff8104`46e53c60 00000000`00000000     : ffff8104`46e54000 ffff8104`46e4e000 00000000`00000000 00000000`00000000 : nt!KiIdleLoop+0x156
    
    SYMBOL_NAME:  nt!SwapContext+b8
    
    MODULE_NAME: nt
    
    IMAGE_NAME:  ntkrnlmp.exe
    
    IMAGE_VERSION:  10.0.18362.1316
    
    STACK_COMMAND:  .thread ; .cxr ; kb
    
    BUCKET_ID_FUNC_OFFSET:  b8
    
    FAILURE_BUCKET_ID:  AV_STACKPTR_ERROR_nt!SwapContext
    
    OS_VERSION:  10.0.18362.1
    
    BUILDLAB_STR:  19h1_release
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 10
    
    FAILURE_ID_HASH:  {a673eb48-d3c6-1b05-1d3c-a271b7506fbf}
    
    Followup:     MachineOwner
    ---------
    

    Was this answer helpful?

    0 comments No comments