Loading Dump File [C:\Users\Nicke\Desktop\MEMORY.DMP]
Kernel Summary Dump File: Only kernel address space is available
Symbol search path is: SRV*C:\aa*
http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7600 MP (2 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7600.16539.x86fre.win7_gdr.100226-1909
Machine Name:
Kernel base = 0x82855000 PsLoadedModuleList = 0x8299d810
Debug session time: Sun Jun 20 00:06:27.907 2010 (UTC + 2:00)
System Uptime: 0 days 2:20:40.360
Loading Kernel Symbols
.................................................. .............
.................................................. ..............
.........................
Loading User Symbols
PEB is paged out (Peb.Ldr = 7ffde00c). Type ".hh dbgerr001" for details
Loading unloaded module list
......
0: kd> g
^ No runnable debuggees error in 'g'
0: kd> g
^ No runnable debuggees error in 'g'
0: kd> !analyze -v
************************************************** *****************************
* *
* Bugcheck Analysis *
* *
************************************************** *****************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: 959893f8, memory referenced.
Arg2: 00000000, value 0 = read operation, 1 = write operation.
Arg3: 97101887, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 00000000, (reserved)
Debugging Details:
------------------
Page 6ef4d not present in the dump file. Type ".hh dbgerr004" for details
Page 6ef4d not present in the dump file. Type ".hh dbgerr004" for details
READ_ADDRESS: 959893f8
FAULTING_IP:
cdd!CopyBits+b7
97101887 8b4514 mov eax,dword ptr [ebp+14h]
MM_INTERNAL_CODE: 0
IMAGE_NAME: cdd.dll
DEBUG_FLR_IMAGE_TIMESTAMP: 4a5bd992
MODULE_NAME: cdd
FAULTING_MODULE: 97100000 cdd
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: csrss.exe
CURRENT_IRQL: 0
TRAP_FRAME: 959a9358 -- (.trap 0xffffffff959a9358)
ErrCode = 00000000
eax=03e9c000 ebx=00001400 ecx=00000000 edx=00000000 esi=fbebc000 edi=03e9c000
eip=97101887 esp=959a93cc ebp=959893e4 iopl=0 nv up ei pl nz ac po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010212
cdd!CopyBits+0xb7:
97101887 8b4514 mov eax,dword ptr [ebp+14h] ss:0010:959893f8=????????
Resetting default scope
LAST_CONTROL_TRANSFER: from 8289b638 to 828da903
STACK_TEXT:
959a9340 8289b638 00000000 959893f8 00000000 nt!MmAccessFault+0x106
959a9340 97101887 00000000 959893f8 00000000 nt!KiTrap0E+0xdc
959a93e4 971045a9 03be0000 000001d0 00001400 cdd!CopyBits+0xb7
959a9ac4 9710540f ff4cb730 00000000 00000000 cdd!CddPresentBlt+0x229
959a9d50 82a636bb ffb73010 bbd1d1df 00000000 cdd!PresentWorkerThread+0xadb
959a9d90 829150f9 97104934 ffb73010 00000000 nt!PspSystemThreadStartup+0x9e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19
STACK_COMMAND: kb
FOLLOWUP_IP:
cdd!CopyBits+b7
97101887 8b4514 mov eax,dword ptr [ebp+14h]
SYMBOL_STACK_INDEX: 2
SYMBOL_NAME: cdd!CopyBits+b7
FOLLOWUP_NAME: MachineOwner
FAILURE_BUCKET_ID: 0x50_cdd!CopyBits+b7
BUCKET_ID: 0x50_cdd!CopyBits+b7
Followup: MachineOwner
---------