EDIT 1: Creo otra respuesta porque si edito el anterior me dice que saque la imagen, pero la quiero dejar porque es información .-.
EDIT 2: Tuve que copiar y pegar los archivos de Minidump en otra carpeta (en este caso el escritorio) porque no me dejaba subirlos a la página
Los archivos seleccionados fueron: El primero y último de la lista de archivos en modo detalle por fecha de modificación y el que me dijiste vos (“010919…”)
#1
Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
Online Crash Dump Analysis Service
See http://www.osronline.com for more information
Windows 7 Kernel Version 7601 (Service Pack 1) MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.24260.amd64fre.win7sp1_ldr.180908-0600
Machine Name:
Kernel base = 0xfffff800`03063000 PsLoadedModuleList = 0xfffff800`0329dc90
Debug session time: Thu Jan 17 17:15:17.431 2019 (UTC - 5:00)
System Uptime: 0 days 1:17:55.571
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
NTFS_FILE_SYSTEM (24)
If you see NtfsExceptionFilter on the stack then the 2nd and 3rd
parameters are the exception record and context record. Do a .cxr
on the 3rd parameter and then kb to obtain a more informative stack
trace.
Arguments:
Arg1: 00000000001904fb
Arg2: fffff88003185798
Arg3: fffff88003185000
Arg4: fffff880012ae342
Debugging Details:
------------------
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
EXCEPTION_RECORD: fffff88003185798 -- (.exr 0xfffff88003185798)
ExceptionAddress: fffff880012ae342 (Ntfs!NtfsCommonClose+0x0000000000000272)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff
CONTEXT: fffff88003185000 -- (.cxr 0xfffff88003185000)
rax=fffff8a028947df0 rbx=fffffa800afa24f0 rcx=7ffff8a028947df0
rdx=0000000000000000 rsi=fffff8a028947b40 rdi=fffff88003185af8
rip=fffff880012ae342 rsp=fffff880031859d0 rbp=fffff800032747a0
r8=fffffa8009cc0db8 r9=0000000000000009 r10=fffff8800126f700
r11=fffff8a028947e60 r12=fffffa80078c1180 r13=0000000000000000
r14=fffff8a028947ed8 r15=0000000000000001
iopl=0 nv up ei ng nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010286
Ntfs!NtfsCommonClose+0x272:
fffff880`012ae342 48894108 mov qword ptr [rcx+8],rax ds:002b:7ffff8a0`28947df8=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 1
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80003301100
GetUlongFromAddress: unable to read from fffff800033011c8
ffffffffffffffff
FOLLOWUP_IP:
Ntfs!NtfsCommonClose+272
fffff880`012ae342 48894108 mov qword ptr [rcx+8],rax
FAULTING_IP:
Ntfs!NtfsCommonClose+272
fffff880`012ae342 48894108 mov qword ptr [rcx+8],rax
BUGCHECK_STR: 0x24
LAST_CONTROL_TRANSFER: from fffff880013017a2 to fffff880012ae342
STACK_TEXT:
fffff880`031859d0 fffff880`013017a2 : fffffa80`0afa24f0 fffff8a0`28947c70 fffff8a0`28947b40 fffffa80`078c1180 : Ntfs!NtfsCommonClose+0x272
fffff880`03185aa0 fffff800`03091b39 : 00000000`00000000 fffff800`0333d601 fffff800`032d6f00 00000000`00000002 : Ntfs!NtfsFspCloseInternal+0x186
fffff880`03185b70 fffff800`033a5d10 : 00000000`00000000 fffff880`03040180 00000000`00000080 00000000`00000001 : nt!ExpWorkerThread+0x111
fffff880`03185c00 fffff800`030fc9a6 : fffff880`03040180 fffffa80`06215040 fffff880`0304f1c0 00000000`00000000 : nt!PspSystemThreadStartup+0x194
fffff880`03185c40 00000000`00000000 : fffff880`03186000 fffff880`03180000 fffff880`03184570 00000000`00000000 : nt!KiStartSystemThread+0x16
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: Ntfs!NtfsCommonClose+272
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: Ntfs
IMAGE_NAME: Ntfs.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 5b946669
STACK_COMMAND: .cxr 0xfffff88003185000 ; kb
FAILURE_BUCKET_ID: X64_0x24_Ntfs!NtfsCommonClose+272
BUCKET_ID: X64_0x24_Ntfs!NtfsCommonClose+272
Followup: MachineOwner
#2
Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
Online Crash Dump Analysis Service
See http://www.osronline.com for more information
Windows 7 Kernel Version 7601 (Service Pack 1) MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.24260.amd64fre.win7sp1_ldr.180908-0600
Machine Name:
Kernel base = 0xfffff800`0305d000 PsLoadedModuleList = 0xfffff800`03297c90
Debug session time: Wed Jan 9 14:32:30.252 2019 (UTC - 5:00)
System Uptime: 0 days 0:19:04.376
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff8000323737d, Address of the instruction which caused the bugcheck
Arg3: fffff88007842b60, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
FAULTING_IP:
nt!ExFreePoolWithTag+36d
fffff800`0323737d 0fb606 movzx eax,byte ptr [rsi]
CONTEXT: fffff88007842b60 -- (.cxr 0xfffff88007842b60)
rax=00000000001b80f0 rbx=fffff8a0241d5c80 rcx=0000000000002607
rdx=000000000000000d rsi=7ffffa8007c5eb00 rdi=0000000000000001
rip=fffff8000323737d rsp=fffff88007843530 rbp=0000000000000000
r8=0000000000013038 r9=0000000000000070 r10=fffff8000305d000
r11=000000000000079b r12=0000000000000007 r13=fffff8a0241d5c90
r14=0000000000000000 r15=fffffa8006093500
iopl=0 nv up ei pl nz na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010206
nt!ExFreePoolWithTag+0x36d:
fffff800`0323737d 0fb606 movzx eax,byte ptr [rsi] ds:002b:7ffffa80`07c5eb00=??
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: firefox.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff8000323737d
STACK_TEXT:
fffff880`07843530 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExFreePoolWithTag+0x36d
FOLLOWUP_IP:
nt!ExFreePoolWithTag+36d
fffff800`0323737d 0fb606 movzx eax,byte ptr [rsi]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!ExFreePoolWithTag+36d
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 5b94669f
STACK_COMMAND: .cxr 0xfffff88007842b60 ; kb
FAILURE_BUCKET_ID: X64_0x3B_nt!ExFreePoolWithTag+36d
BUCKET_ID: X64_0x3B_nt!ExFreePoolWithTag+36d
Followup: MachineOwner
#3
Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
Online Crash Dump Analysis Service
See http://www.osronline.com for more information
Windows 7 Kernel Version 7601 (Service Pack 1) MP (6 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 7601.23418.amd64fre.win7sp1_ldr.160408-2045
Machine Name:
Kernel base = 0xfffff800`03066000 PsLoadedModuleList = 0xfffff800`032a8730
Debug session time: Fri Nov 9 13:44:45.450 2018 (UTC - 5:00)
System Uptime: 0 days 4:08:16.574
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_THREAD_EXCEPTION_NOT_HANDLED_M (1000007e)
This is a very common bugcheck. Usually the exception address pinpoints
the driver/function that caused the problem. Always note this address
as well as the link date of the driver/image that contains this address.
Some common problems are exception code 0x80000003. This means a hard
coded breakpoint or assertion was hit, but this system was booted
/NODEBUG. This is not supposed to happen as developers should never have
hardcoded breakpoints in retail code, but ...
If this happens, make sure a debugger gets connected, and the
system is booted /DEBUG. This will let us see why this breakpoint is
happening.
Arguments:
Arg1: ffffffffc0000005, The exception code that was not handled
Arg2: fffff880127bfe47, The address that the exception occurred at
Arg3: fffff88002e57568, Exception Record Address
Arg4: fffff88002e56dc0, Context Record Address
Debugging Details:
------------------
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
FAULTING_IP:
dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+2b
fffff880`127bfe47 0fba63540d bt dword ptr [rbx+54h],0Dh
EXCEPTION_RECORD: fffff88002e57568 -- (.exr 0xfffff88002e57568)
ExceptionAddress: fffff880127bfe47 (dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+0x000000000000002b)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: ffffffffffffffff
Attempt to read from address ffffffffffffffff
CONTEXT: fffff88002e56dc0 -- (.cxr 0xfffff88002e56dc0)
rax=fffff8a005dd0e40 rbx=dffff8a005f0fcd0 rcx=fffffa8009212000
rdx=fffffa800bad61f0 rsi=fffffa8009212000 rdi=fffffa8009212000
rip=fffff880127bfe47 rsp=fffff88002e577a0 rbp=fffffa800a46f068
r8=fffffa8006707601 r9=0000000000000000 r10=0000000000000000
r11=00000000000003c7 r12=fffffa800bad61f0 r13=0000000000000001
r14=0000000000000000 r15=0000000000000001
iopl=0 nv up ei ng nz na po nc
cs=0010 ss=0000 ds=002b es=002b fs=0053 gs=002b efl=00010286
dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+0x2b:
fffff880`127bfe47 0fba63540d bt dword ptr [rbx+54h],0Dh ds:002b:dffff8a0`05f0fd24=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
PROCESS_NAME: System
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".
EXCEPTION_PARAMETER1: 0000000000000000
EXCEPTION_PARAMETER2: ffffffffffffffff
READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80003312100
GetUlongFromAddress: unable to read from fffff800033121c8
ffffffffffffffff
FOLLOWUP_IP:
dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+2b
fffff880`127bfe47 0fba63540d bt dword ptr [rbx+54h],0Dh
BUGCHECK_STR: 0x7E
LAST_CONTROL_TRANSFER: from fffff880127bd00f to fffff880127bfe47
STACK_TEXT:
fffff880`02e577a0 fffff880`127bd00f : 00000000`00000000 fffffa80`0a2a1020 00000000`000001c3 00000000`00000000 : dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+0x2b
fffff880`02e577d0 fffff880`127d77f1 : 00000000`00000000 fffff8a0`01ec4d20 fffffa80`00000000 fffffa80`06707640 : dxgmms1!VIDMM_GLOBAL::PrepareDmaBuffer+0x43f
fffff880`02e579a0 fffff880`127d752c : fffff880`030a9fc0 fffff880`127d6f00 fffffa80`00000000 fffffa80`00000000 : dxgmms1!VidSchiSubmitRenderCommand+0x241
fffff880`02e57b90 fffff880`127d702a : 00000000`00000000 fffffa80`09ffda60 00000000`00000080 fffffa80`090a7410 : dxgmms1!VidSchiSubmitQueueCommand+0x50
fffff880`02e57bc0 fffff800`0336dbc6 : 00000000`02d4b1c1 fffffa80`08e66b50 fffffa80`060d0040 fffffa80`08e66b50 : dxgmms1!VidSchiWorkerThread+0xd6
fffff880`02e57c00 fffff800`030c76a6 : fffff880`030a5180 fffffa80`08e66b50 fffff880`030b0040 00000000`00000020 : nt!PspSystemThreadStartup+0x5a
fffff880`02e57c40 00000000`00000000 : fffff880`02e58000 fffff880`02e52000 fffff880`02e57540 00000000`00000000 : nt!KxStartSystemThread+0x16
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+2b
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: dxgmms1
IMAGE_NAME: dxgmms1.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 57089785
STACK_COMMAND: .cxr 0xfffff88002e56dc0 ; kb
FAILURE_BUCKET_ID: X64_0x7E_dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+2b
BUCKET_ID: X64_0x7E_dxgmms1!VIDMM_GLOBAL::ReferenceAllocationForPreparation+2b
Followup: MachineOwner
No sé si dice que tengo un problema en la memoria RAM o algo por el estilo. Espero que sea de ayuda esta información y esté bien dada, gracias