Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Windows\Minidump\050815-15958-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`04455000 PsLoadedModuleList = 0xfffff800`0469ae90
Debug session time: Fri May 8 21:57:53.274 2015 (UTC + 8:00)
System Uptime: 0 days 2:51:55.211
Loading Kernel Symbols
...............................................................
................................................................
..........................
Loading User Symbols
Loading unloaded module list
..............
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 19, {20, fffffa8010755980, fffffa8010755a00, c080008}
GetPointerFromAddress: unable to read from fffff800047060e8
Probably caused by : Unknown_Image
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000020, a pool block header size is corrupt.
Arg2: fffffa8010755980, The pool entry we were looking for within the page.
Arg3: fffffa8010755a00, The next pool entry.
Arg4: 000000000c080008, (reserved)
Debugging Details:
------------------
BUGCHECK_STR: 0x19_20
POOL_ADDRESS: fffffa8010755980
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: SearchIndexer.
CURRENT_IRQL: 1
LAST_CONTROL_TRANSFER: from 0000000000000000 to 0000000000000000
STACK_TEXT:
00000000`00000000 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x0
STACK_COMMAND: kb
PROCESS_OBJECT: fffffa800b552550
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Unknown_Module
IMAGE_NAME: Unknown_Image
DEBUG_FLR_IMAGE_TIMESTAMP: 0
BUCKET_ID: INVALID_KERNEL_CONTEXT
Followup: MachineOwner
---------
0: kd> !process fffffa800b552550 3
GetPointerFromAddress: unable to read from fffff80004706000
PROCESS fffffa800b552550
SessionId: none Cid: 0544 Peb: 7fffffd6000 ParentCid: 0258
DirBase: 19e61b000 ObjectTable: fffff8a0012895f0 HandleCount: <Data Not Accessible>
Image: SearchIndexer.
VadRoot fffffa800a0ef0d0 Vads 412 Clone 0 Private 4188. Modified 3123. Locked 1.
DeviceMap fffff8a000008ca0
Token fffff8a00196e060
ReadMemory error: Cannot get nt!KeMaximumIncrement value.
fffff78000000000: Unable to get shared data
ElapsedTime 00:00:00.000
UserTime 00:00:00.000
KernelTime 00:00:00.000
QuotaPoolUsage[PagedPool] 0
QuotaPoolUsage[NonPagedPool] 0
Working Set Sizes (now,min,max) (7143, 50, 345) (28572KB, 200KB, 1380KB)
PeakWorkingSetSize 8727
VirtualSize 197 Mb
PeakVirtualSize 280 Mb
PageFaultCount 28482
MemoryPriority BACKGROUND
BasePriority 8
CommitCharge 9067
*** Error in reading nt!_ETHREAD @ fffffa800b554060
0: kd> lmvm Unknown_Module
start end module name
0: kd> !process
GetPointerFromAddress: unable to read from fffff80004706000
PROCESS fffffa800b552550
SessionId: none Cid: 0544 Peb: 7fffffd6000 ParentCid: 0258
DirBase: 19e61b000 ObjectTable: fffff8a0012895f0 HandleCount: <Data Not Accessible>
Image: SearchIndexer.
VadRoot fffffa800a0ef0d0 Vads 412 Clone 0 Private 4188. Modified 3123. Locked 1.
DeviceMap fffff8a000008ca0
Token fffff8a00196e060
ReadMemory error: Cannot get nt!KeMaximumIncrement value.
fffff78000000000: Unable to get shared data
ElapsedTime 00:00:00.000
UserTime 00:00:00.000
KernelTime 00:00:00.000
QuotaPoolUsage[PagedPool] 0
QuotaPoolUsage[NonPagedPool] 0
Working Set Sizes (now,min,max) (7143, 50, 345) (28572KB, 200KB, 1380KB)
PeakWorkingSetSize 8727
VirtualSize 197 Mb
PeakVirtualSize 280 Mb
PageFaultCount 28482
MemoryPriority BACKGROUND
BasePriority 8
CommitCharge 9067
*** Error in reading nt!_ETHREAD @ fffffa800b554060
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Windows\Minidump\050815-15958-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: SRV*C:\Symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 7 Kernel Version 7601 (Service Pack 1) MP (8 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.17514.amd64fre.win7sp1_rtm.101119-1850
Machine Name:
Kernel base = 0xfffff800`04455000 PsLoadedModuleList = 0xfffff800`0469ae90
Debug session time: Fri May 8 21:57:53.274 2015 (UTC + 8:00)
System Uptime: 0 days 2:51:55.211
Loading Kernel Symbols
...............................................................
................................................................
..........................
Loading User Symbols
Loading unloaded module list
..............
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 19, {20, fffffa8010755980, fffffa8010755a00, c080008}
GetPointerFromAddress: unable to read from fffff800047060e8
Probably caused by : Unknown_Image
Followup: MachineOwner
---------
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BAD_POOL_HEADER (19)
The pool is already corrupt at the time of the current request.
This may or may not be due to the caller.
The internal pool links must be walked to figure out a possible cause of
the problem, and then special pool applied to the suspect tags or the driver
verifier to a suspect driver.
Arguments:
Arg1: 0000000000000020, a pool block header size is corrupt.
Arg2: fffffa8010755980, The pool entry we were looking for within the page.
Arg3: fffffa8010755a00, The next pool entry.
Arg4: 000000000c080008, (reserved)
Debugging Details:
------------------
BUGCHECK_STR: 0x19_20
POOL_ADDRESS: fffffa8010755980
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
PROCESS_NAME: SearchIndexer.
CURRENT_IRQL: 1
LAST_CONTROL_TRANSFER: from 0000000000000000 to 0000000000000000
STACK_TEXT:
00000000`00000000 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x0
STACK_COMMAND: kb
PROCESS_OBJECT: fffffa800b552550
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Unknown_Module
IMAGE_NAME: Unknown_Image
DEBUG_FLR_IMAGE_TIMESTAMP: 0
BUCKET_ID: INVALID_KERNEL_CONTEXT
Followup: MachineOwner
---------
0: kd> !process fffffa800b552550 3
GetPointerFromAddress: unable to read from fffff80004706000
PROCESS fffffa800b552550
SessionId: none Cid: 0544 Peb: 7fffffd6000 ParentCid: 0258
DirBase: 19e61b000 ObjectTable: fffff8a0012895f0 HandleCount: <Data Not Accessible>
Image: SearchIndexer.
VadRoot fffffa800a0ef0d0 Vads 412 Clone 0 Private 4188. Modified 3123. Locked 1.
DeviceMap fffff8a000008ca0
Token fffff8a00196e060
ReadMemory error: Cannot get nt!KeMaximumIncrement value.
fffff78000000000: Unable to get shared data
ElapsedTime 00:00:00.000
UserTime 00:00:00.000
KernelTime 00:00:00.000
QuotaPoolUsage[PagedPool] 0
QuotaPoolUsage[NonPagedPool] 0
Working Set Sizes (now,min,max) (7143, 50, 345) (28572KB, 200KB, 1380KB)
PeakWorkingSetSize 8727
VirtualSize 197 Mb
PeakVirtualSize 280 Mb
PageFaultCount 28482
MemoryPriority BACKGROUND
BasePriority 8
CommitCharge 9067
*** Error in reading nt!_ETHREAD @ fffffa800b554060
0: kd> lmvm Unknown_Module
start end module name
0: kd> !process
GetPointerFromAddress: unable to read from fffff80004706000
PROCESS fffffa800b552550
SessionId: none Cid: 0544 Peb: 7fffffd6000 ParentCid: 0258
DirBase: 19e61b000 ObjectTable: fffff8a0012895f0 HandleCount: <Data Not Accessible>
Image: SearchIndexer.
VadRoot fffffa800a0ef0d0 Vads 412 Clone 0 Private 4188. Modified 3123. Locked 1.
DeviceMap fffff8a000008ca0
Token fffff8a00196e060
ReadMemory error: Cannot get nt!KeMaximumIncrement value.
fffff78000000000: Unable to get shared data
ElapsedTime 00:00:00.000
UserTime 00:00:00.000
KernelTime 00:00:00.000
QuotaPoolUsage[PagedPool] 0
QuotaPoolUsage[NonPagedPool] 0
Working Set Sizes (now,min,max) (7143, 50, 345) (28572KB, 200KB, 1380KB)
PeakWorkingSetSize 8727
VirtualSize 197 Mb
PeakVirtualSize 280 Mb
PageFaultCount 28482
MemoryPriority BACKGROUND
BasePriority 8
CommitCharge 9067
*** Error in reading nt!_ETHREAD @ fffffa800b554060