ilya2016
24-09-2016, 14:20
CRITICAL_PROCESS_DIED (ef)
A critical system process died
Arguments:
Arg1: ffff9b03371cc800, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
ETW minidump data unavailable
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 10.0.14393.187 (rs1_release_inmarket.160906-1818)
SYSTEM_MANUFACTURER: MSI
SYSTEM_PRODUCT_NAME: MS-7640
SYSTEM_SKU: To be filled by O.E.M.
SYSTEM_VERSION: 3.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: V20.3
BIOS_DATE: 09/23/2013
BASEBOARD_MANUFACTURER: MSI
BASEBOARD_PRODUCT: 990FXA-GD65 (MS-7640)
BASEBOARD_VERSION: 3.0
DUMP_TYPE: 2
DUMP_FILE_ATTRIBUTES: 0x8
Kernel Generated Triage Dump
BUGCHECK_P1: ffff9b03371cc800
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: svchost.exe
CRITICAL_PROCESS: svchost.exe
EXCEPTION_CODE: (NTSTATUS) 0x37821040 - <Unable to get error code text>
ERROR_CODE: (NTSTATUS) 0x37821040 - <Unable to get error code text>
CRITICAL_PROCESS_REPORTGUID: {af3a515c-4816-4bd6-8cb5-af37b8ebdbda}
CPU_COUNT: 8
CPU_MHZ: f1e
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 15
CPU_MODEL: 1
CPU_STEPPING: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0xEF
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: SPEK
ANALYSIS_SESSION_TIME: 09-24-2016 13:54:00.0848
ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
LAST_CONTROL_TRANSFER: from fffff80213086f66 to fffff80212b500b0
STACK_TEXT:
ffffc001`959f2978 fffff802`13086f66 : 00000000`000000ef ffff9b03`371cc800 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
ffffc001`959f2980 fffff802`12fb6d43 : ffff9b03`371cc800 ffff9b03`37821360 00000000`00000000 ffff9b03`37821040 : nt!PspCatchCriticalBreak+0xd6
ffffc001`959f29e0 fffff802`12ec2779 : ffff9b03`00000000 ffff9b03`371cc800 ffff9b03`37821360 00000000`00000000 : nt! ?? ::NNGAKEGL::`string'+0x39c93
ffffc001`959f2a50 fffff802`12ec2530 : ffff9b03`371cc800 00000000`c0000005 ffff9b03`371cc800 ffff9b03`37821040 : nt!PspTerminateProcess+0x101
ffffc001`959f2a90 fffff802`12b5ad93 : ffff9b03`371cc800 ffff9b03`37821040 ffffc001`959f2b80 00000000`00000003 : nt!NtTerminateProcess+0x9c
ffffc001`959f2b00 00007ffd`a72853d4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
000000d3`20efc5d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`a72853d4
STACK_COMMAND: kb
THREAD_SHA1_HASH_MOD_FUNC: 87c4a57b08db2499156fb80767122c5fe8c2351e
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: b761276a38b6a13196e8eddd294bddece76fca78
THREAD_SHA1_HASH_MOD: ee8fcf1fb60cb6e3e2f60ddbed2ec02b5748a693
FOLLOWUP_IP:
nt!PspCatchCriticalBreak+d6
fffff802`13086f66 cc int 3
FAULT_INSTR_CODE: ff8440cc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!PspCatchCriticalBreak+d6
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 57cf9a34
IMAGE_VERSION: 10.0.14393.187
BUCKET_ID_FUNC_OFFSET: d6
FAILURE_BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_37821040_KERNELBASE.dll!FindNextVolumeW_nt!PspCatchCritic alBreak
BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_37821040_KERNELBASE.dll!FindNextVolumeW_nt!PspCatchCritic alBreak
PRIMARY_PROBLEM_CLASS: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_37821040_KERNELBASE.dll!FindNextVolumeW_nt!PspCatchCritic alBreak
TARGET_TIME: 2016-09-24T10:28:02.000Z
OSBUILD: 14393
OSSERVICEPACK: 187
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2016-09-07 07:40:20
BUILDDATESTAMP_STR: 160906-1818
BUILDLAB_STR: rs1_release_inmarket
BUILDOSVER_STR: 10.0.14393.187
ANALYSIS_SESSION_ELAPSED_TIME: 5e1
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xef_svchost.exe_bugcheck_critical_process_37821040_kernelbase.dll!findnextvolumew_nt!pspcatchcri ticalbreak
FAILURE_ID_HASH: {459c53e9-aa89-dcfc-0723-3661f4c225bb}
Followup: MachineOwner
---------
Дамп прикрепил в винрар т.к размер 383 кб ограничение по загрузке на форум
A critical system process died
Arguments:
Arg1: ffff9b03371cc800, Process object or thread object
Arg2: 0000000000000000, If this is 0, a process died. If this is 1, a thread died.
Arg3: 0000000000000000
Arg4: 0000000000000000
Debugging Details:
------------------
ETW minidump data unavailable
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 10.0.14393.187 (rs1_release_inmarket.160906-1818)
SYSTEM_MANUFACTURER: MSI
SYSTEM_PRODUCT_NAME: MS-7640
SYSTEM_SKU: To be filled by O.E.M.
SYSTEM_VERSION: 3.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: V20.3
BIOS_DATE: 09/23/2013
BASEBOARD_MANUFACTURER: MSI
BASEBOARD_PRODUCT: 990FXA-GD65 (MS-7640)
BASEBOARD_VERSION: 3.0
DUMP_TYPE: 2
DUMP_FILE_ATTRIBUTES: 0x8
Kernel Generated Triage Dump
BUGCHECK_P1: ffff9b03371cc800
BUGCHECK_P2: 0
BUGCHECK_P3: 0
BUGCHECK_P4: 0
PROCESS_NAME: svchost.exe
CRITICAL_PROCESS: svchost.exe
EXCEPTION_CODE: (NTSTATUS) 0x37821040 - <Unable to get error code text>
ERROR_CODE: (NTSTATUS) 0x37821040 - <Unable to get error code text>
CRITICAL_PROCESS_REPORTGUID: {af3a515c-4816-4bd6-8cb5-af37b8ebdbda}
CPU_COUNT: 8
CPU_MHZ: f1e
CPU_VENDOR: AuthenticAMD
CPU_FAMILY: 15
CPU_MODEL: 1
CPU_STEPPING: 2
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0xEF
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: SPEK
ANALYSIS_SESSION_TIME: 09-24-2016 13:54:00.0848
ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
LAST_CONTROL_TRANSFER: from fffff80213086f66 to fffff80212b500b0
STACK_TEXT:
ffffc001`959f2978 fffff802`13086f66 : 00000000`000000ef ffff9b03`371cc800 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
ffffc001`959f2980 fffff802`12fb6d43 : ffff9b03`371cc800 ffff9b03`37821360 00000000`00000000 ffff9b03`37821040 : nt!PspCatchCriticalBreak+0xd6
ffffc001`959f29e0 fffff802`12ec2779 : ffff9b03`00000000 ffff9b03`371cc800 ffff9b03`37821360 00000000`00000000 : nt! ?? ::NNGAKEGL::`string'+0x39c93
ffffc001`959f2a50 fffff802`12ec2530 : ffff9b03`371cc800 00000000`c0000005 ffff9b03`371cc800 ffff9b03`37821040 : nt!PspTerminateProcess+0x101
ffffc001`959f2a90 fffff802`12b5ad93 : ffff9b03`371cc800 ffff9b03`37821040 ffffc001`959f2b80 00000000`00000003 : nt!NtTerminateProcess+0x9c
ffffc001`959f2b00 00007ffd`a72853d4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
000000d3`20efc5d8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffd`a72853d4
STACK_COMMAND: kb
THREAD_SHA1_HASH_MOD_FUNC: 87c4a57b08db2499156fb80767122c5fe8c2351e
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: b761276a38b6a13196e8eddd294bddece76fca78
THREAD_SHA1_HASH_MOD: ee8fcf1fb60cb6e3e2f60ddbed2ec02b5748a693
FOLLOWUP_IP:
nt!PspCatchCriticalBreak+d6
fffff802`13086f66 cc int 3
FAULT_INSTR_CODE: ff8440cc
SYMBOL_STACK_INDEX: 1
SYMBOL_NAME: nt!PspCatchCriticalBreak+d6
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 57cf9a34
IMAGE_VERSION: 10.0.14393.187
BUCKET_ID_FUNC_OFFSET: d6
FAILURE_BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_37821040_KERNELBASE.dll!FindNextVolumeW_nt!PspCatchCritic alBreak
BUCKET_ID: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_37821040_KERNELBASE.dll!FindNextVolumeW_nt!PspCatchCritic alBreak
PRIMARY_PROBLEM_CLASS: 0xEF_svchost.exe_BUGCHECK_CRITICAL_PROCESS_37821040_KERNELBASE.dll!FindNextVolumeW_nt!PspCatchCritic alBreak
TARGET_TIME: 2016-09-24T10:28:02.000Z
OSBUILD: 14393
OSSERVICEPACK: 187
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 272
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2016-09-07 07:40:20
BUILDDATESTAMP_STR: 160906-1818
BUILDLAB_STR: rs1_release_inmarket
BUILDOSVER_STR: 10.0.14393.187
ANALYSIS_SESSION_ELAPSED_TIME: 5e1
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0xef_svchost.exe_bugcheck_critical_process_37821040_kernelbase.dll!findnextvolumew_nt!pspcatchcri ticalbreak
FAILURE_ID_HASH: {459c53e9-aa89-dcfc-0723-3661f4c225bb}
Followup: MachineOwner
---------
Дамп прикрепил в винрар т.к размер 383 кб ограничение по загрузке на форум