PAGE_FAULT_IN_NONPAGED_AREA (50) Invalid system memory was referenced. This cannot be protected by try-except, it must be protected by a Probe. Typically the address is just plain bad or it is pointing at freed memory. Arguments: Arg1: fffffffffffffc00, memory referenced. Arg2: 0000000000000001, value 0 = read operation, 1 = write operation. Arg3: fffff96000185c59, If non-zero, the instruction address which referenced the bad memory address. Arg4: 0000000000000000, (reserved) Debugging Details: ------------------ Could not read faulting driver name TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2 WRITE_ADDRESS: GetPointerFromAddress: unable to read from fffff800030b7100 GetUlongFromAddress: unable to read from fffff800030b71c0 fffffffffffffc00 FAULTING_IP: win32k!memmove+1c9 fffff960`00185c59 c10274 rol dword ptr [rdx],74h MM_INTERNAL_CODE: 0 CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT BUGCHECK_STR: 0x50 PROCESS_NAME: explorer.exe CURRENT_IRQL: 0 TRAP_FRAME: fffff88003e11a10 -- (.trap 0xfffff88003e11a10) NOTE: The trap frame does not contain all registers. Some register values may be zeroed or incorrect. rax=fffff900c1b552a4 rbx=0000000000000000 rcx=fffff900c1b556a4 rdx=fffffffffffffc00 rsi=0000000000000000 rdi=0000000000000000 rip=fffff96000185c59 rsp=fffff88003e11ba8 rbp=0000000005b05b06 r8=000000000000006c r9=fffff900c1b4f238 r10=fffff900c1b5f238 r11=fffff900c1b55638 r12=0000000000000000 r13=0000000000000000 r14=0000000000000000 r15=0000000000000000 iopl=0 nv up ei ng nz ac po cy win32k!memmove+0x1c9: fffff960`00185c59 c10274 rol dword ptr [rdx],74h ds:ffffffff`fffffc00=???????? Resetting default scope MISALIGNED_IP: win32k!memmove+1c9 fffff960`00185c59 c10274 rol dword ptr [rdx],74h LAST_CONTROL_TRANSFER: from fffff80002efdbf0 to fffff80002e7fbc0 STACK_TEXT: fffff880`03e118a8 fffff800`02efdbf0 : 00000000`00000050 ffffffff`fffffc00 00000000`00000001 fffff880`03e11a10 : nt!KeBugCheckEx fffff880`03e118b0 fffff800`02e7dcee : 00000000`00000001 ffffffff`fffffc00 00000000`ffffff00 fffff880`03e11c80 : nt! ?? ::FNODOBFM::`string'+0x4518f fffff880`03e11a10 fffff960`00185c59 : fffff960`002a33c8 00000000`00000000 fffff880`03e11c80 00000000`05b05b06 : nt!KiPageFault+0x16e fffff880`03e11ba8 fffff960`002a33c8 : 00000000`00000000 fffff880`03e11c80 00000000`05b05b06 0000002b`0000001b : win32k!memmove+0x1c9 fffff880`03e11bb0 fffff960`002a3de8 : 00000000`05b05b06 fffff900`c1b544ec 00000000`00000000 fffff900`c1a75bd0 : win32k!NtGdiUpdateTransform+0x544 fffff880`03e11c10 fffff960`002a4060 : fffff900`c1b4f018 fffff900`c20c1988 00000000`00000001 00000000`ffffffff : win32k!NtGdiUpdateTransform+0xf64 fffff880`03e11e10 fffff960`002a47c2 : fffff900`c1a75be8 00000000`00000000 fffff900`c1b4f018 fffff900`c2bffe90 : win32k!NtGdiUpdateTransform+0x11dc fffff880`03e11ed0 fffff960`002a4a31 : fffff900`c1a75be8 fffff900`c20c1988 fffff900`c2bffe90 fffff900`c1d62990 : win32k!NtGdiUpdateTransform+0x193e fffff880`03e11ff0 fffff960`002a4bf0 : fffff900`c00c0010 00000000`0000003c fffff880`03e12440 fffff900`c1a75bd0 : win32k!EngNineGrid+0xb1 fffff880`03e12090 fffff960`002a50ad : 00000000`00000000 fffff900`c20c1988 fffff900`c2bffe90 fffff900`c1a75bd0 : win32k!EngDrawStream+0x1a0 fffff880`03e12140 fffff960`002a59ff : fffff880`03e12258 fffff900`c1fca900 fffff900`c20c1970 fffff900`c1d62990 : win32k!NtGdiDrawStreamInternal+0x47d fffff880`03e121f0 fffff960`002c1230 : 00000000`3201185c 00000000`00000000 fffff880`03e12410 fffff960`00000000 : win32k!GreDrawStream+0x917 fffff880`03e123e0 fffff800`02e7ee53 : 00000000`0295e3b0 fffff880`03e125c0 ffffffff`bf0404c7 fffff960`002c1194 : win32k!NtGdiDrawStream+0x9c fffff880`03e12540 000007fe`ff58319a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13 00000000`0295e168 fffff800`02e77210 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7fe`ff58319a fffff880`03e12720 fffff880`03e12870 : fffff880`03565180 00000000`00000000 fffffa80`134f5060 fffffa80`12cb6170 : nt!KiCallUserMode fffff880`03e12728 fffff880`03565180 : 00000000`00000000 fffffa80`134f5060 fffffa80`12cb6170 fffff880`03e12c70 : 0xfffff880`03e12870 fffff880`03e12730 00000000`00000000 : fffffa80`134f5060 fffffa80`12cb6170 fffff880`03e12c70 00000000`00000000 : 0xfffff880`03565180 STACK_COMMAND: kb FOLLOWUP_IP: win32k!memmove+1c9 fffff960`00185c59 c10274 rol dword ptr [rdx],74h SYMBOL_STACK_INDEX: 3 SYMBOL_NAME: win32k!memmove+1c9 FOLLOWUP_NAME: MachineOwner IMAGE_NAME: hardware DEBUG_FLR_IMAGE_TIMESTAMP: 0 MODULE_NAME: hardware FAILURE_BUCKET_ID: X64_IP_MISALIGNED BUCKET_ID: X64_IP_MISALIGNED