Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64 Copyright (c) Microsoft Corporation. All rights reserved. Loading Dump File [C:\Users\Knut\Documents\111610-21949-01.dmp] Mini Kernel Dump File: Only registers and stack trace are available Symbol search path is: srv*"c:\temp"*http://msdl.microsoft.com/downloads/symbols Executable search path is: srv*c:\temp*http://msdl.microsoft.com/downloads/symbols Windows 7 Kernel Version 7600 MP (4 procs) Free x64 Product: WinNt, suite: TerminalServer SingleUserTS Personal Built by: 7600.16617.amd64fre.win7_gdr.100618-1621 Machine Name: Kernel base = 0xfffff800`02a4d000 PsLoadedModuleList = 0xfffff800`02c8ae50 Debug session time: Tue Nov 16 21:48:38.845 2010 (UTC + 1:00) System Uptime: 0 days 10:50:40.281 Loading Kernel Symbols . Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long. Run !sym noisy before .reload to track down problems loading symbols. .............................................................. ................................................................ .................... Loading User Symbols Loading unloaded module list ............. ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* Use !analyze -v to get detailed debugging information. BugCheck 1A, {41284, fffff900c5cc3001, d92, fffff90000812000} Unable to load image \SystemRoot\System32\cdd.dll, Win32 error 0n2 *** WARNING: Unable to verify timestamp for cdd.dll *** ERROR: Module load completed but symbols could not be loaded for cdd.dll Probably caused by : cdd.dll ( cdd+264f ) Followup: MachineOwner --------- 1: kd> !analyze -v ******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* MEMORY_MANAGEMENT (1a) # Any other values for parameter 1 must be individually examined. Arguments: Arg1: 0000000000041284, A PTE or the working set list is corrupt. Arg2: fffff900c5cc3001 Arg3: 0000000000000d92 Arg4: fffff90000812000 Debugging Details: ------------------ BUGCHECK_STR: 0x1a_41284 CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT PROCESS_NAME: csrss.exe CURRENT_IRQL: 0 LAST_CONTROL_TRANSFER: from fffff80002b123b3 to fffff80002abd740 STACK_TEXT: fffff880`077f1758 fffff800`02b123b3 : 00000000`0000001a 00000000`00041284 fffff900`c5cc3001 00000000`00000d92 : nt!KeBugCheckEx fffff880`077f1760 fffff800`02a62fbe : 00000000`00000d92 fffffa80`02736060 00000000`00000000 fffffa80`03b9eb60 : nt! ?? ::FNODOBFM::`string'+0x4a83 fffff880`077f17a0 fffff800`02e6d260 : fffff900`c5cc3000 fffff880`000003fd fffffa80`03c906d0 00000000`00000000 : nt! ?? ::FNODOBFM::`string'+0x2df20 fffff880`077f18f0 fffff800`02e6d333 : fffff900`c2320020 00000000`00000002 00000000`00000006 00000000`00000002 : nt!MiRemoveFromSystemSpace+0x1d0 fffff880`077f1950 fffff960`0074264f : 00000000`00000001 00000000`00000000 00000000`64646344 00000000`64646344 : nt!MmUnmapViewInSystemSpace+0x73 fffff880`077f1980 00000000`00000001 : 00000000`00000000 00000000`64646344 00000000`64646344 ffffffff`fffd73b1 : cdd+0x264f fffff880`077f1988 00000000`00000000 : 00000000`64646344 00000000`64646344 ffffffff`fffd73b1 fffff960`00745e31 : 0x1 STACK_COMMAND: kb FOLLOWUP_IP: cdd+264f fffff960`0074264f ?? ??? SYMBOL_STACK_INDEX: 5 SYMBOL_NAME: cdd+264f FOLLOWUP_NAME: MachineOwner MODULE_NAME: cdd IMAGE_NAME: cdd.dll DEBUG_FLR_IMAGE_TIMESTAMP: 0 FAILURE_BUCKET_ID: X64_0x1a_41284_cdd+264f BUCKET_ID: X64_0x1a_41284_cdd+264f Followup: MachineOwner ---------