PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff80000170c10, memory referenced.
Arg2: 0000000000000001, value 0 = read operation, 1 = write operation.
Arg3: fffff80003466715, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000000, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800033070e0
fffff80000170c10
FAULTING_IP:
nt!WmipAllocEntry+115
fffff800`03466715 48894808 mov qword ptr [rax+8],rcx
MM_INTERNAL_CODE: 0
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: System
CURRENT_IRQL: 0
TRAP_FRAME: fffff88003180970 -- (.trap 0xfffff88003180970)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff80000170c08 rbx=0000000000000000 rcx=fffff8a000165010
rdx=fffff8000327c538 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80003466715 rsp=fffff88003180b00 rbp=fffffa8003f5705a
r8=fffff78000000008 r9=0000000000000000 r10=0000000000000000
r11=fffff88002fd3180 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe nc
nt!WmipAllocEntry+0x115:
fffff800`03466715 48894808 mov qword ptr [rax+8],rcx ds:9b30:fffff800`00170c10=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff8000314ff14 to fffff800030cf740
STACK_TEXT:
fffff880`03180808 fffff800`0314ff14 : 00000000`00000050 fffff800`00170c10 00000000`00000001 fffff880`03180970 : nt!KeBugCheckEx
fffff880`03180810 fffff800`030cd82e : 00000000`00000001 fffff8a0`00170c68 fffff8a0`02185100 00000000`00000801 : nt! ?? ::FNODOBFM::`string'+0x42837
fffff880`03180970 fffff800`03466715 : fffffa80`03f59b00 fffffa80`03f57018 fffffa80`03f59b30 fffffa80`03f5705a : nt!KiPageFault+0x16e
fffff880`03180b00 fffff800`034f9881 : fffff8a0`0011c728 fffffa80`03f5705a fffffa80`03f59b30 fffffa80`03f570cc : nt!WmipAllocEntry+0x115
fffff880`03180b30 fffff800`034f9b46 : fffff8a0`00170cc8 00000000`0000021c 00000000`0000021c fffffa80`03f5705a : nt!WmipAddDataSource+0x91
fffff880`03180bc0 fffff800`034fa5f1 : 00000000`00000000 fffffa80`03f57058 00000000`00002000 00000000`0000021c : nt!WmipProcessWmiRegInfo+0x96
fffff880`03180c20 fffff800`03526e9c : fffffa80`03f59b30 fffff800`032745f8 fffffa80`018f5040 fffff8a0`02059700 : nt!WmipRegisterOrUpdateDS+0x101
fffff880`03180c80 fffff800`030dc961 : fffff800`03526e40 fffff800`0333b008 fffff800`032745f8 00000000`00000000 : nt!WmipRegistrationWorker+0x5c
fffff880`03180cb0 fffff800`03373c06 : 00000000`00000000 fffffa80`018f5040 00000000`00000080 fffffa80`01846890 : nt!ExpWorkerThread+0x111
fffff880`03180d40 fffff800`030adc26 : fffff880`02f63180 fffffa80`018f5040 fffff880`02f6dfc0 00000000`00000000 : nt!PspSystemThreadStartup+0x5a
fffff880`03180d80 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KxStartSystemThread+0x16
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!WmipAllocEntry+115
fffff800`03466715 48894808 mov qword ptr [rax+8],rcx
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!WmipAllocEntry+115
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 4c1c44a9
FAILURE_BUCKET_ID: X64_0x50_nt!WmipAllocEntry+115
BUCKET_ID: X64_0x50_nt!WmipAllocEntry+115
Followup: MachineOwner
---------