Hello. I received a BSOD error on Windows 10 9860 caused by vmware.exe process. I attach here the analysis of dump file:
MEMORY_MANAGEMENT (1a)
# Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000001015, The subtype of the bugcheck.
Arg2: ffffc0009b838000
Arg3: 0000000000138399
Arg4: 0000000000380001
Debugging Details:
------------------
BUGCHECK_STR: 0x1a_1015
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
PROCESS_NAME: vmware.exe
CURRENT_IRQL: 2
ANALYSIS_VERSION: 6.3.9600.17237 (debuggers(dbg).140716-0327) amd64fre
LAST_CONTROL_TRANSFER: from fffff802e34dd8f5 to fffff802e34d3c73
STACK_TEXT: ffffd000`20ef14f0 fffff802`e34dd8f5 : fffff802`e36deec0 fffff802`e36deec0 00000000`00000000 ffffe000`bf6733a0 : nt!MiDeleteSystemPagableVm+0x7a3
ffffd000`20ef1690 fffff802`e3438a44 : ffffd000`20ef1b50 00000024`000f0007 ffffc000`9b838000 ffffe000`aec00000 : nt!MiFreePagedPoolPages+0x205
ffffd000`20ef1810 fffff802`e363a18e : 00000000`00000000 00000000`00000000 00000000`00000020 00000000`00000000 : nt!MiFreePoolPages+0x34
ffffd000`20ef1840 fffff802`e363a98d : ffffc000`9cf5d820 ffffc000`a4c7a210 00000000`00000001 00000000`00000003 : nt!ExDeferredFreePool+0x3de
ffffd000`20ef18c0 fffff802`e38a1476 : 00000000`00000002 00000000`00000000 ffffe000`c29014e0 00000000`00000000 : nt!ExFreePoolWithTag+0x74d
ffffd000`20ef19a0 fffff802`e3458091 : 00000000`00000002 00000000`00000000 00000000`00000000 00000001`00000000 : nt!MiSegmentDelete+0xd6
ffffd000`20ef19e0 fffff802`e380f3a1 : 00000000`00000000 ffffc000`968d9030 00000000`00000000 ffffc000`968d9060 : nt!MiCheckControlArea+0x1a1
ffffd000`20ef1a40 fffff802`e3420c7f : 00000000`00000000 00000000`00000000 ffffd000`20ef1b99 ffffc000`968d9060 : nt!ObpRemoveObjectRoutine+0x61
ffffd000`20ef1aa0 fffff802`e380a0fb : ffffc000`968d9030 00000000`00000000 ffffd000`20ef1b99 ffffe000`aec4dd50 : nt!ObfDereferenceObjectWithTag+0x8f
ffffd000`20ef1ae0 fffff802`e3542ae3 : ffffe000`bf673080 00000000`00000564 00000000`0030fdb0 00000000`0040f3a4 : nt!NtClose+0x20b
ffffd000`20ef1c00 00000000`77bb2122 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0030e978 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77bb2122
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!ExDeferredFreePool+3de
fffff802`e363a18e 4c8be3 mov r12,rbx
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: nt!ExDeferredFreePool+3de
FOLLOWUP_NAME: Pool_corruption
IMAGE_NAME: Pool_Corruption
DEBUG_FLR_IMAGE_TIMESTAMP: 0
MODULE_NAME: Pool_Corruption
BUCKET_ID_FUNC_OFFSET: 3de
FAILURE_BUCKET_ID: 0x1a_1015_nt!ExDeferredFreePool
BUCKET_ID: 0x1a_1015_nt!ExDeferredFreePool
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0x1a_1015_nt!exdeferredfreepool
FAILURE_ID_HASH: {d82a7e7b-09f4-e862-9d39-cca6de199853}
Followup: Pool_corruption
---------
1: kd> !process PROCESS ffffe000bc4008c0 SessionId: 6 Cid: 2d38 Peb: 7f744000 ParentCid: 70c4 DirBase: 183cc7000 ObjectTable: ffffc000ae0ca8c0 HandleCount: Image: vmware.exe VadRoot ffffe000c32955c0 Vads 587 Clone 0 Private 8095. Modified 12955. Locked 0. DeviceMap ffffc000aa78f0b0 Token ffffc000a690c060 ElapsedTime 00:33:37.900 UserTime 00:00:01.671 KernelTime 00:00:03.328 QuotaPoolUsage[PagedPool] 629120 QuotaPoolUsage[NonPagedPool] 88208 Working Set Sizes (now,min,max) (23167, 50, 345) (92668KB, 200KB, 1380KB) PeakWorkingSetSize 23358 VirtualSize 315 Mb PeakVirtualSize 400 Mb PageFaultCount 1586504 MemoryPriority BACKGROUND BasePriority 8 CommitCharge 11558 Job ffffe000bf7bd320 THREAD ffffe000bf673080 Cid 2d38.52d8 Teb: 000000007f74a000 Win32Thread: fffff90144933010 RUNNING on processor 1 THREAD ffffe000c4bb94c0 Cid 2d38.a348 Teb: 000000007f61a000 Win32Thread: fffff90144817010 WAIT: (UserRequest) UserMode Non-Alertable ffffe000c15543c0 NotificationEvent ffffe000c37d0460 SynchronizationEvent THREAD ffffe000af2b3080 Cid 2d38.9070 Teb: 000000007f617000 Win32Thread: fffff90140870570 WAIT: (UserRequest) UserMode Alertable ffffe000bffc7c10 NotificationEvent ffffe000c52e22a0 NotificationEvent ffffe000bff392c0 NotificationEvent ffffe000c2ceb720 NotificationEvent ffffe000c234d060 SynchronizationEvent ffffe000beaad440 SynchronizationEvent ffffe000af0d53a0 SynchronizationEvent ffffe000af1ba8a0 NotificationEvent ffffe000c26c7d90 SynchronizationEvent THREAD ffffe000c2106840 Cid 2d38.81d8 Teb: 000000007f608000 Win32Thread: fffff90144f174b0 WAIT: (UserRequest) UserMode Non-Alertable ffffe000c4365060 NotificationEvent ffffe000c56f58a0 SynchronizationEvent THREAD ffffe000c4e06840 Cid 2d38.6aac Teb: 000000007f605000 Win32Thread: fffff901441b3a60 WAIT: (UserRequest) UserMode Non-Alertable ffffe000bf5b61e0 Semaphore Limit 0x7fffffff THREAD ffffe000c3921400 Cid 2d38.32f8 Teb: 000000007f5fc000 Win32Thread: 0000000000000000 WAIT: (UserRequest) UserMode Alertable ffffe000c0c85850 NotificationEvent THREAD ffffe000c470c340 Cid 2d38.8ad8 Teb: 000000007f60b000 Win32Thread: fffff90140840b30 WAIT: (UserRequest) UserMode Non-Alertable ffffe000c1f26180 Semaphore Limit 0x7fffffff THREAD ffffe000c5090840 Cid 2d38.615c Teb: 000000007f5f6000 Win32Thread: 0000000000000000 WAIT: (WrQueue) UserMode Alertable ffffe000af78e080 QueueObject THREAD ffffe000c43cc080 Cid 2d38.9304 Teb: 000000007f5db000 Win32Thread: fffff901441ac010 WAIT: (WrUserRequest) UserMode Non-Alertable ffffe000c018d250 SynchronizationEvent THREAD ffffe000af5e2380 Cid 2d38.7b58 Teb: 000000007f61d000 Win32Thread: fffff90144341b30 WAIT: (UserRequest) UserMode Non-Alertable ffffe000c30ca490 Semaphore Limit 0x7fffffff THREAD ffffe000c1330080 Cid 2d38.217c Teb: 000000007f611000 Win32Thread: fffff9014083d010 WAIT: (UserRequest) UserMode Non-Alertable ffffe000c1b171f0 SynchronizationEvent ffffe000c0b02410 NotificationEvent ffffe000c43f34c0 SynchronizationEvent THREAD ffffe000af423480 Cid 2d38.2158 Teb: 000000007f747000 Win32Thread: 0000000000000000 WAIT: (WrQueue) UserMode Alertable ffffe000c125d4c0 QueueObject THREAD ffffe000c21bb080 Cid 2d38.284c Teb: 000000007f60e000 Win32Thread: 0000000000000000 WAIT: (WrQueue) UserMode Non-Alertable ffffe000c47dc340 QueueObject THREAD ffffe000c473f080 Cid 2d38.9478 Teb: 000000007f5ff000 Win32Thread: 0000000000000000 WAIT: (WrQueue) UserMode Alertable ffffe000c125d4c0 QueueObject
Message was edited by: Darius Davis: Added missing line breaks in again.