Share via

BSOD Help

Anonymous
2024-06-22T17:15:33+00:00

Hello,

I'm not sure what is happening, but I have had some strange sporadic BSOD recently, ranging from gaming to system idle. It's rather a recent install of Windows 11.

I attempted to understand the .dmp but it's well out of my depths I have managed to obtain the following (if the actual file would help let me know)

Screenshot attached of the system specification for reference- I have recently just turned off XMP as the BSOD would state "Memory Management".

************* Preparing the environment for Debugger Extensions Gallery repositories **************
   ExtensionRepository : Implicit
   UseExperimentalFeatureForNugetShare : true
   AllowNugetExeUpdate : true
   NonInteractiveNuget : true
   AllowNugetMSCredentialProviderInstall : true
   AllowParallelInitializationOfLocalRepositories : true

   EnableRedirectToV8JsProvider : false

   -- Configuring repositories
      ----> Repository : LocalInstalled, Enabled: true
      ----> Repository : UserExtensions, Enabled: true

>>>>>>>>>>>>> Preparing the environment for Debugger Extensions Gallery repositories completed, duration 0.000 seconds

************* Waiting for Debugger Extensions Gallery to Initialize **************

>>>>>>>>>>>>> Waiting for Debugger Extensions Gallery to Initialize completed, duration 0.031 seconds
   ----> Repository : UserExtensions, Enabled: true, Packages count: 0
   ----> Repository : LocalInstalled, Enabled: true, Packages count: 41

Microsoft (R) Windows Debugger Version 10.0.27553.1004 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.

Loading Dump File [C:\Windows\Minidump\062224-7093-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 22621 MP (32 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Kernel base = 0xfffff802`35c00000 PsLoadedModuleList = 0xfffff802`36813150
Debug session time: Sat Jun 22 17:59:00.940 2024 (UTC + 1:00)
System Uptime: 0 days 23:07:29.612
Loading Kernel Symbols
...............................................................
................................................................
................................................................
.............................
Loading User Symbols
PEB is paged out (Peb.Ldr = 00000000`03087018).  Type ".hh dbgerr001" for details
Loading unloaded module list
................................
For analysis of this file, run !analyze -v
nt!KeBugCheckEx:
fffff802`3601a240 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffcf00`5f52dc10=000000000000001a
4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

MEMORY_MANAGEMENT (1a)
    # Any other values for parameter 1 must be individually examined.
Arguments:
Arg1: 0000000000061941, The subtype of the BugCheck.
Arg2: ffffe4003a5df708
Arg3: 0000000000000009
Arg4: ffffcf005f52dd30

Debugging Details:
------------------

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 296

    Key  : Analysis.Elapsed.mSec
    Value: 8239

    Key  : Analysis.IO.Other.Mb
    Value: 11

    Key  : Analysis.IO.Read.Mb
    Value: 0

    Key  : Analysis.IO.Write.Mb
    Value: 25

    Key  : Analysis.Init.CPU.mSec
    Value: 31

    Key  : Analysis.Init.Elapsed.mSec
    Value: 71280

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 89

    Key  : Bugcheck.Code.LegacyAPI
    Value: 0x1a

    Key  : Bugcheck.Code.TargetModel
    Value: 0x1a

    Key  : Dump.Attributes.AsUlong
    Value: 1808

    Key  : Dump.Attributes.DiagDataWrittenToHeader
    Value: 1

    Key  : Dump.Attributes.ErrorCode
    Value: 0

    Key  : Dump.Attributes.KernelGeneratedTriageDump
    Value: 1

    Key  : Dump.Attributes.LastLine
    Value: Dump completed successfully.

    Key  : Dump.Attributes.ProgressPercentage
    Value: 0

    Key  : Failure.Bucket
    Value: 0x1a_61941_PAGE_TABLE_RESERVED_BITS_SET_IMAGE_hardware_ram

    Key  : Failure.Hash
    Value: {c6e5c6cf-692e-7852-5dc5-b74944540fc0}

    Key  : Hypervisor.Enlightenments.ValueHex
    Value: 1417df84

    Key  : Hypervisor.Flags.AnyHypervisorPresent
    Value: 1

    Key  : Hypervisor.Flags.ApicEnlightened
    Value: 0

    Key  : Hypervisor.Flags.ApicVirtualizationAvailable
    Value: 1

    Key  : Hypervisor.Flags.AsyncMemoryHint
    Value: 0

    Key  : Hypervisor.Flags.CoreSchedulerRequested
    Value: 0

    Key  : Hypervisor.Flags.CpuManager
    Value: 1

    Key  : Hypervisor.Flags.DeprecateAutoEoi
    Value: 1

    Key  : Hypervisor.Flags.DynamicCpuDisabled
    Value: 1

    Key  : Hypervisor.Flags.Epf
    Value: 0

    Key  : Hypervisor.Flags.ExtendedProcessorMasks
    Value: 1

    Key  : Hypervisor.Flags.HardwareMbecAvailable
    Value: 1

    Key  : Hypervisor.Flags.MaxBankNumber
    Value: 0

    Key  : Hypervisor.Flags.MemoryZeroingControl
    Value: 0

    Key  : Hypervisor.Flags.NoExtendedRangeFlush
    Value: 0

    Key  : Hypervisor.Flags.NoNonArchCoreSharing
    Value: 1

    Key  : Hypervisor.Flags.Phase0InitDone
    Value: 1

    Key  : Hypervisor.Flags.PowerSchedulerQos
    Value: 0

    Key  : Hypervisor.Flags.RootScheduler
    Value: 0

    Key  : Hypervisor.Flags.SynicAvailable
    Value: 1

    Key  : Hypervisor.Flags.UseQpcBias
    Value: 0

    Key  : Hypervisor.Flags.Value
    Value: 21631230

    Key  : Hypervisor.Flags.ValueHex
    Value: 14a10fe

    Key  : Hypervisor.Flags.VpAssistPage
    Value: 1

    Key  : Hypervisor.Flags.VsmAvailable
    Value: 1

    Key  : Hypervisor.RootFlags.AccessStats
    Value: 1

    Key  : Hypervisor.RootFlags.CrashdumpEnlightened
    Value: 1

    Key  : Hypervisor.RootFlags.CreateVirtualProcessor
    Value: 1

    Key  : Hypervisor.RootFlags.DisableHyperthreading
    Value: 0

    Key  : Hypervisor.RootFlags.HostTimelineSync
    Value: 1

    Key  : Hypervisor.RootFlags.HypervisorDebuggingEnabled
    Value: 0

    Key  : Hypervisor.RootFlags.IsHyperV
    Value: 1

    Key  : Hypervisor.RootFlags.LivedumpEnlightened
    Value: 1

    Key  : Hypervisor.RootFlags.MapDeviceInterrupt
    Value: 1

    Key  : Hypervisor.RootFlags.MceEnlightened
    Value: 1

    Key  : Hypervisor.RootFlags.Nested
    Value: 0

    Key  : Hypervisor.RootFlags.StartLogicalProcessor
    Value: 1

    Key  : Hypervisor.RootFlags.Value
    Value: 1015

    Key  : Hypervisor.RootFlags.ValueHex
    Value: 3f7

BUGCHECK_CODE:  1a

BUGCHECK_P1: 61941

BUGCHECK_P2: ffffe4003a5df708

BUGCHECK_P3: 9

BUGCHECK_P4: ffffcf005f52dd30

FILE_IN_CAB:  062224-7093-01.dmp

TAG_NOT_DEFINED_202b:  *** Unknown TAG in analysis list 202b

DUMP_FILE_ATTRIBUTES: 0x1808
  Kernel Generated Triage Dump

BLACKBOXBSD: 1 (!blackboxbsd)

BLACKBOXNTFS: 1 (!blackboxntfs)

BLACKBOXPNP: 1 (!blackboxpnp)

BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  cmd.exe

STACK_TEXT:  
ffffcf00`5f52dc08 fffff802`36043e16     : 00000000`0000001a 00000000`00061941 ffffe400`3a5df708 00000000`00000009 : nt!KeBugCheckEx
ffffcf00`5f52dc10 fffff802`3602b47e     : 00000000`00000000 00000000`00000014 00000000`00000000 fffff802`3601c511 : nt!MmAccessFault+0x1f46f6
ffffcf00`5f52dd30 fffff802`3649e02a     : 00000000`01000010 00000000`00040286 ffffcf00`5f52dee8 00000000`00000018 : nt!KiPageFault+0x37e
ffffcf00`5f52dec0 fffff802`364a4174     : 00000000`0000014c ffffe400`3a45e640 ffffe400`3a3cc530 fffff802`35eaedd8 : nt!ObpCaptureHandleInformation+0x9a
ffffcf00`5f52def0 fffff802`365791b1     : fffff802`3649df90 ffffe400`3a45e658 00000000`00080000 ffffcf00`5f52e044 : nt!ExpSnapShotHandleTables+0x132
ffffcf00`5f52df80 fffff802`365f4061     : ffffcf00`5f52e044 00000000`0002bf40 00000000`00080000 ffffcf00`5f52ea78 : nt!ObGetHandleInformation+0x39
ffffcf00`5f52dfc0 fffff802`364b8637     : ffff948c`31ed0010 00000000`00000000 ffffbf00`b2955010 ffff948c`3385cb20 : nt!ExpGetHandleInformation+0x5d
ffffcf00`5f52e000 fffff802`362dfebd     : 00000000`0000045a ffffcf00`5f52e8f1 00000000`00015c20 00000000`00080010 : nt!ExpQuerySystemInformation+0x1d8717
ffffcf00`5f52e830 fffff802`3602f805     : ffffbf00`00000000 00000000`00001001 ffff948c`31ed0000 fffff802`35e2b564 : nt!NtQuerySystemInformation+0x5d
ffffcf00`5f52e870 fffff802`3601fd30     : fffff802`7d65439b ffff948c`31ed0010 00000000`01000000 fffff802`36016c10 : nt!KiSystemServiceCopyEnd+0x25
ffffcf00`5f52ea08 fffff802`7d65439b     : ffff948c`31ed0010 00000000`01000000 fffff802`36016c10 ffff948c`4b7e5af8 : nt!KiServiceLinkage
ffffcf00`5f52ea10 ffff948c`31ed0010     : 00000000`01000000 fffff802`36016c10 ffff948c`4b7e5af8 00000000`0eacef59 : EasyAntiCheat+0xc5439b
ffffcf00`5f52ea18 00000000`01000000     : fffff802`36016c10 ffff948c`4b7e5af8 00000000`0eacef59 fffff802`36016c10 : 0xffff948c`31ed0010
ffffcf00`5f52ea20 fffff802`36016c0f     : ffff948c`4b7e5af8 00000000`0eacef59 fffff802`36016c10 ffff948c`4fef8301 : 0x1000000
ffffcf00`5f52ea28 ffff948c`4b7e5af8     : 00000000`0eacef59 fffff802`36016c10 ffff948c`4fef8301 36594b58`29a7e751 : nt!ZwQueryDirectoryFile+0x1f
ffffcf00`5f52ea30 00000000`0eacef59     : fffff802`36016c10 ffff948c`4fef8301 36594b58`29a7e751 00000000`00000001 : 0xffff948c`4b7e5af8
ffffcf00`5f52ea38 fffff802`36016c0f     : ffff948c`4fef8301 36594b58`29a7e751 00000000`00000001 ffff948c`51925100 : 0xeacef59
ffffcf00`5f52ea40 ffff948c`4fef8301     : 36594b58`29a7e751 00000000`00000001 ffff948c`51925100 00000000`000072b4 : nt!ZwQueryDirectoryFile+0x1f
ffffcf00`5f52ea48 36594b58`29a7e751     : 00000000`00000001 ffff948c`51925100 00000000`000072b4 fffff802`7ca742d8 : 0xffff948c`4fef8301
ffffcf00`5f52ea50 00000000`00000001     : ffff948c`51925100 00000000`000072b4 fffff802`7ca742d8 ffff948c`51a79080 : 0x36594b58`29a7e751
ffffcf00`5f52ea58 ffff948c`51925100     : 00000000`000072b4 fffff802`7ca742d8 ffff948c`51a79080 ffffcf00`5f52eb10 : 0x1
ffffcf00`5f52ea60 00000000`000072b4     : fffff802`7ca742d8 ffff948c`51a79080 ffffcf00`5f52eb10 00000000`000072c8 : 0xffff948c`51925100
ffffcf00`5f52ea68 fffff802`7ca742d8     : ffff948c`51a79080 ffffcf00`5f52eb10 00000000`000072c8 00000000`000072c8 : 0x72b4
ffffcf00`5f52ea70 ffff948c`51a79080     : ffffcf00`5f52eb10 00000000`000072c8 00000000`000072c8 ffff948c`51925100 : EasyAntiCheat+0x742d8
ffffcf00`5f52ea78 ffffcf00`5f52eb10     : 00000000`000072c8 00000000`000072c8 ffff948c`51925100 fffff802`7d5fa767 : 0xffff948c`51a79080
ffffcf00`5f52ea80 00000000`000072c8     : 00000000`000072c8 ffff948c`51925100 fffff802`7d5fa767 ffff948c`51a79080 : 0xffffcf00`5f52eb10
ffffcf00`5f52ea88 00000000`000072c8     : ffff948c`51925100 fffff802`7d5fa767 ffff948c`51a79080 ffffcf00`5f52eb10 : 0x72c8
ffffcf00`5f52ea90 ffff948c`51925100     : fffff802`7d5fa767 ffff948c`51a79080 ffffcf00`5f52eb10 00000000`000072c8 : 0x72c8
ffffcf00`5f52ea98 fffff802`7d5fa767     : ffff948c`51a79080 ffffcf00`5f52eb10 00000000`000072c8 00000000`000072b4 : 0xffff948c`51925100
ffffcf00`5f52eaa0 ffff948c`51a79080     : ffffcf00`5f52eb10 00000000`000072c8 00000000`000072b4 ffff948c`4d231a20 : EasyAntiCheat+0xbfa767
ffffcf00`5f52eaa8 ffffcf00`5f52eb10     : 00000000`000072c8 00000000`000072b4 ffff948c`4d231a20 fffff802`6070bc12 : 0xffff948c`51a79080
ffffcf00`5f52eab0 00000000`000072c8     : 00000000`000072b4 ffff948c`4d231a20 fffff802`6070bc12 ffff948c`3535c0c0 : 0xffffcf00`5f52eb10
ffffcf00`5f52eab8 00000000`000072b4     : ffff948c`4d231a20 fffff802`6070bc12 ffff948c`3535c0c0 ffff948c`3535c0c0 : 0x72c8
ffffcf00`5f52eac0 ffff948c`4d231a20     : fffff802`6070bc12 ffff948c`3535c0c0 ffff948c`3535c0c0 00000000`0eacb8fe : 0x72b4
ffffcf00`5f52eac8 fffff802`6070bc12     : ffff948c`3535c0c0 ffff948c`3535c0c0 00000000`0eacb8fe ffff948c`1f366da0 : 0xffff948c`4d231a20
ffffcf00`5f52ead0 ffff948c`3535c0c0     : ffff948c`3535c0c0 00000000`0eacb8fe ffff948c`1f366da0 ffff948c`4d231a20 : MpKslDrv+0xbc12
ffffcf00`5f52ead8 ffff948c`3535c0c0     : 00000000`0eacb8fe ffff948c`1f366da0 ffff948c`4d231a20 fffff802`6070bffd : 0xffff948c`3535c0c0
ffffcf00`5f52eae0 00000000`0eacb8fe     : ffff948c`1f366da0 ffff948c`4d231a20 fffff802`6070bffd ffff1b4c`67d88bc4 : 0xffff948c`3535c0c0
ffffcf00`5f52eae8 ffff948c`1f366da0     : ffff948c`4d231a20 fffff802`6070bffd ffff1b4c`67d88bc4 fffff802`39a0d9c0 : 0xeacb8fe
ffffcf00`5f52eaf0 ffff948c`4d231a20     : fffff802`6070bffd ffff1b4c`67d88bc4 fffff802`39a0d9c0 00000000`0000000e : 0xffff948c`1f366da0
ffffcf00`5f52eaf8 fffff802`6070bffd     : ffff1b4c`67d88bc4 fffff802`39a0d9c0 00000000`0000000e ffff948c`51925140 : 0xffff948c`4d231a20
ffffcf00`5f52eb00 ffff1b4c`67d88bc4     : fffff802`39a0d9c0 00000000`0000000e ffff948c`51925140 00000000`00000000 : MpKslDrv+0xbffd
ffffcf00`5f52eb08 fffff802`39a0d9c0     : 00000000`0000000e ffff948c`51925140 00000000`00000000 fffff802`3690c130 : 0xffff1b4c`67d88bc4
ffffcf00`5f52eb10 fffff802`362fa30a     : ffffcf00`5f52eb80 00000000`00000001 ffff948c`3535c0c0 00000000`00000000 : iorate!IoRateProcessCreateNotify+0x40
ffffcf00`5f52eb40 fffff802`362fae03     : 00000000`00000000 00000000`00000000 00000000`00000001 ffff948c`4c82d2f0 : nt!PspCallProcessNotifyRoutines+0x246
ffffcf00`5f52ec10 fffff802`363772ce     : ffff948c`33eb4080 ffff948c`3535c0c0 ffffcf00`5f52f3c0 ffffcf00`5f52f278 : nt!PspInsertThread+0x72f
ffffcf00`5f52ecf0 fffff802`3602f805     : 00000000`00000000 00000000`00e0e1c8 00000000`00e0e0f8 fffff802`363b3765 : nt!NtCreateUserProcess+0xa2e
ffffcf00`5f52f9b0 00007ff9`e7631974     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25
00000000`00e0de28 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`e7631974

MODULE_NAME: hardware

IMAGE_NAME:  hardware_ram

STACK_COMMAND:  .cxr; .ecxr ; kb

FAILURE_BUCKET_ID:  0x1a_61941_PAGE_TABLE_RESERVED_BITS_SET_IMAGE_hardware_ram

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {c6e5c6cf-692e-7852-5dc5-b74944540fc0}

Followup:     MachineOwner
---------

*** Personal information deleted by the moderator. Please see the Microsoft Community Frequently Asked Questions for more information on how you can protect your privacy. ***

Windows for home | Windows 11 | Performance and system failures

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

Answer accepted by question author

Anonymous
2024-06-25T09:03:11+00:00

Hello,

Thanks for the clarification.

Please feel free to let me know if you have any further updates, thanks.

Was this answer helpful?

1 person found this answer helpful.
0 comments No comments

4 additional answers

Sort by: Most helpful
  1. Anonymous
    2024-06-29T13:33:04+00:00

    Hello,

    I have not heard back from you in 96 hours. If you need further help at this point, please create a new thread to discuss those concerns.

    Best Regards,

    Sheng G. - MSFT | Microsoft Community Support Specialist

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2024-06-27T11:29:45+00:00

    Hello,

    I have not received the message from you yet. If there is anything more that I can do for you or if anything is unclear, please do not hesitate to let me know.

    Best Regards,

    Sheng G. - MSFT | Microsoft Community Support Specialist

    Was this answer helpful?

    0 comments No comments
  3. Anonymous
    2024-06-23T09:47:04+00:00

    Hello Sheng,

    I greatly appreciate your informative response.

    Once you mentioned Easy Anti-Cheat I knew it's a high possibility that this is causing the problem as it did not happen before installing a game using this software.

    Looking at search results I can see people have similar faults. I will however run a MemTest to confirm my memory is good.

    Thank you kindly.

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2024-06-23T03:21:42+00:00

    Hello Ashley Ledbetter,

    Thanks for reaching out here in the Microsoft Answers Community.

    Based on the dump, it seems that there is a faulty memory stick, which also triggered Easy Anti-cheat.

    Since you have already disabled the over-clocking and under-voltage based on the description, please try uninstalling Easy Anti-cheat and the games that use it, and see whether the issue persists, as such anti-cheat drivers often have access to raw memory.

    If there are new dumps, please upload the dump files to a file-sharing website (like OneDrive), so we can analyze them further.

    We look forward to your response.

    Best Regards,

    Sheng G. - MSFT | Microsoft Community Support Specialist

    Was this answer helpful?

    0 comments No comments