Share via

Random restarts

Anonymous
2023-03-07T18:53:26+00:00

Hi all, my laptop is getting restarted randomly i would say from Jan 23 and for some reason when checking the dump file its actually around two months old from today but yes the laptop was doing this restarts at that time too and yes i am late to report because since past this whole time i have tried everything i could but all resulted in nothing & i dont know why my system is not making latest dump files because even today my laptop had restarted, anyway i am uploading that old dump file here let me know if you can find anything in this..

Some info - recently one month back I had upgraded the ram from 8 to 16gb and thats all, i dont think ram is the issue though !

okay i cant upload it in onedrive its asking for permission i dont know i am the administrator anyway, here i have run it in the Windbg and here is the result -

Microsoft (R) Windows Debugger Version 10.0.25200.1003 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.

Loading Dump File [C:\Windows\system32\%SystemRoot%\Minidump]
Could not open dump file [%SystemRoot%\Minidump], Win32 error 0n3
    "The system cannot find the path specified."

Microsoft (R) Windows Debugger Version 10.0.25200.1003 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.

Loading Dump File [C:\Windows\Minidump\011623-9875-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 19041 MP (12 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS Personal
Machine Name:
Kernel base = 0xfffff802`5b000000 PsLoadedModuleList = 0xfffff802`5bc2a290
Debug session time: Mon Jan 16 17:47:58.688 2023 (UTC + 5:30)
System Uptime: 0 days 1:22:50.510
Loading Kernel Symbols
..

Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
Run !sym noisy before .reload to track down problems loading symbols.

.............................................................
................................................................
................................................................
.............................
Loading User Symbols
Loading unloaded module list
.................
For analysis of this file, run !analyze -v
nt!KeBugCheckEx:
fffff802`5b3f92a0 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:fffffe0a`01e1a360=000000000000003b
6: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the BugCheck
Arg2: fffff8025b8dd0d3, Address of the instruction which caused the BugCheck
Arg3: fffffe0a01e1ac60, Address of the context record for the exception that caused the BugCheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2843

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 14823

    Key  : Analysis.IO.Other.Mb
    Value: 9

    Key  : Analysis.IO.Read.Mb
    Value: 0

    Key  : Analysis.IO.Write.Mb
    Value: 26

    Key  : Analysis.Init.CPU.mSec
    Value: 609

    Key  : Analysis.Init.Elapsed.mSec
    Value: 150770

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 93

    Key  : Bugcheck.Code.DumpHeader
    Value: 0x3b

    Key  : Bugcheck.Code.Register
    Value: 0x3b

    Key  : Dump.Attributes.AsUlong
    Value: 8

    Key  : Dump.Attributes.KernelGeneratedTriageDump
    Value: 1

FILE_IN_CAB:  011623-9875-01.dmp

DUMP_FILE_ATTRIBUTES: 0x8
  Kernel Generated Triage Dump

BUGCHECK_CODE:  3b

BUGCHECK_P1: c0000005

BUGCHECK_P2: fffff8025b8dd0d3

BUGCHECK_P3: fffffe0a01e1ac60

BUGCHECK_P4: 0

CONTEXT:  fffffe0a01e1ac60 -- (.cxr 0xfffffe0a01e1ac60)
rax=0000000000000000 rbx=ffff948de60a59b0 rcx=0000000000000068
rdx=ffff948de63766b0 rsi=ffff948de60a59b0 rdi=000000000000026c
rip=fffff8025b8dd0d3 rsp=fffffe0a01e1b668 rbp=ffff948de6291500
 r8=ffff948de6376680  r9=0000000000000000 r10=0000000000332878
r11=fffffe0a01e1b6b0 r12=ffffb67bff400000 r13=fffffe0a01e1b748
r14=fffff8025b8dd030 r15=0000000000400000
iopl=0         nv up ei pl nz na pe nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00050202
nt!ObpCaptureHandleInformationEx+0xa3:
fffff802`5b8dd0d3 0fb64828        movzx   ecx,byte ptr [rax+28h] ds:002b:00000000`00000028=??
Resetting default scope

BLACKBOXBSD: 1 (!blackboxbsd)

BLACKBOXNTFS: 1 (!blackboxntfs)

BLACKBOXPNP: 1 (!blackboxpnp)

BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  brave.exe

STACK_TEXT:  
fffffe0a`01e1b668 fffff802`5b94cdd1     : 00000000`0000026c 00000000`00000000 ffffbb88`00000000 fffff802`5b2d7c42 : nt!ObpCaptureHandleInformationEx+0xa3
fffffe0a`01e1b670 fffff802`5b8dcf0a     : fffff802`5b8dd030 ffff948d`e6291518 00000000`00400000 fffffe0a`01e1b7b0 : nt!ExpSnapShotHandleTables+0x131
fffffe0a`01e1b700 fffff802`5b94a4d1     : fffffe0a`01e1b7b0 00000000`00332878 00000000`00400000 00000000`00000001 : nt!ObGetHandleInformationEx+0x3a
fffffe0a`01e1b740 fffff802`5b62945c     : 00001bc4`00804000 00000000`00020000 ffffb67b`ff400000 ffffbb88`a8ac1000 : nt!ExpGetHandleInformationEx+0x5d
fffffe0a`01e1b780 fffff802`5b628197     : 00000000`00400000 00000000`00000000 00001bc4`00801020 0000000a`923febdf : nt!ExpQuerySystemInformation+0x117c
fffffe0a`01e1bac0 fffff802`5b40caf8     : ffffbb88`98ed0000 00000000`00000010 fffffe0a`01e1bb80 0000012a`10ee9270 : nt!NtQuerySystemInformation+0x37
fffffe0a`01e1bb00 00007ff9`1d8ad784     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
0000000a`923fec68 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`1d8ad784

SYMBOL_NAME:  nt!ObpCaptureHandleInformationEx+a3

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.2364

STACK_COMMAND:  .cxr 0xfffffe0a01e1ac60 ; kb

BUCKET_ID_FUNC_OFFSET:  a3

FAILURE_BUCKET_ID:  AV_nt!ObpCaptureHandleInformationEx

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {75002e6d-4bad-06b9-3ee7-03d1c1f57a25}

Followup:     MachineOwner
---------

6: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the BugCheck
Arg2: fffff8025b8dd0d3, Address of the instruction which caused the BugCheck
Arg3: fffffe0a01e1ac60, Address of the context record for the exception that caused the BugCheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2453

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 2456

    Key  : Analysis.IO.Other.Mb
    Value: 9

    Key  : Analysis.IO.Read.Mb
    Value: 0

    Key  : Analysis.IO.Write.Mb
    Value: 26

    Key  : Analysis.Init.CPU.mSec
    Value: 3452

    Key  : Analysis.Init.Elapsed.mSec
    Value: 165599

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 96

    Key  : Bugcheck.Code.DumpHeader
    Value: 0x3b

    Key  : Bugcheck.Code.Register
    Value: 0x3b

    Key  : Dump.Attributes.AsUlong
    Value: 8

    Key  : Dump.Attributes.KernelGeneratedTriageDump
    Value: 1

FILE_IN_CAB:  011623-9875-01.dmp

DUMP_FILE_ATTRIBUTES: 0x8
  Kernel Generated Triage Dump

BUGCHECK_CODE:  3b

BUGCHECK_P1: c0000005

BUGCHECK_P2: fffff8025b8dd0d3

BUGCHECK_P3: fffffe0a01e1ac60

BUGCHECK_P4: 0

CONTEXT:  fffffe0a01e1ac60 -- (.cxr 0xfffffe0a01e1ac60)
rax=0000000000000000 rbx=ffff948de60a59b0 rcx=0000000000000068
rdx=ffff948de63766b0 rsi=ffff948de60a59b0 rdi=000000000000026c
rip=fffff8025b8dd0d3 rsp=fffffe0a01e1b668 rbp=ffff948de6291500
 r8=ffff948de6376680  r9=0000000000000000 r10=0000000000332878
r11=fffffe0a01e1b6b0 r12=ffffb67bff400000 r13=fffffe0a01e1b748
r14=fffff8025b8dd030 r15=0000000000400000
iopl=0         nv up ei pl nz na pe nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00050202
nt!ObpCaptureHandleInformationEx+0xa3:
fffff802`5b8dd0d3 0fb64828        movzx   ecx,byte ptr [rax+28h] ds:002b:00000000`00000028=??
Resetting default scope

BLACKBOXBSD: 1 (!blackboxbsd)

BLACKBOXNTFS: 1 (!blackboxntfs)

BLACKBOXPNP: 1 (!blackboxpnp)

BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  brave.exe

STACK_TEXT:  
fffffe0a`01e1b668 fffff802`5b94cdd1     : 00000000`0000026c 00000000`00000000 ffffbb88`00000000 fffff802`5b2d7c42 : nt!ObpCaptureHandleInformationEx+0xa3
fffffe0a`01e1b670 fffff802`5b8dcf0a     : fffff802`5b8dd030 ffff948d`e6291518 00000000`00400000 fffffe0a`01e1b7b0 : nt!ExpSnapShotHandleTables+0x131
fffffe0a`01e1b700 fffff802`5b94a4d1     : fffffe0a`01e1b7b0 00000000`00332878 00000000`00400000 00000000`00000001 : nt!ObGetHandleInformationEx+0x3a
fffffe0a`01e1b740 fffff802`5b62945c     : 00001bc4`00804000 00000000`00020000 ffffb67b`ff400000 ffffbb88`a8ac1000 : nt!ExpGetHandleInformationEx+0x5d
fffffe0a`01e1b780 fffff802`5b628197     : 00000000`00400000 00000000`00000000 00001bc4`00801020 0000000a`923febdf : nt!ExpQuerySystemInformation+0x117c
fffffe0a`01e1bac0 fffff802`5b40caf8     : ffffbb88`98ed0000 00000000`00000010 fffffe0a`01e1bb80 0000012a`10ee9270 : nt!NtQuerySystemInformation+0x37
fffffe0a`01e1bb00 00007ff9`1d8ad784     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
0000000a`923fec68 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`1d8ad784

SYMBOL_NAME:  nt!ObpCaptureHandleInformationEx+a3

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.2364

STACK_COMMAND:  .cxr 0xfffffe0a01e1ac60 ; kb

BUCKET_ID_FUNC_OFFSET:  a3

FAILURE_BUCKET_ID:  AV_nt!ObpCaptureHandleInformationEx

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {75002e6d-4bad-06b9-3ee7-03d1c1f57a25}

Followup:     MachineOwner
---------

6: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the BugCheck
Arg2: fffff8025b8dd0d3, Address of the instruction which caused the BugCheck
Arg3: fffffe0a01e1ac60, Address of the context record for the exception that caused the BugCheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2436

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 2488

    Key  : Analysis.IO.Other.Mb
    Value: 9

    Key  : Analysis.IO.Read.Mb
    Value: 0

    Key  : Analysis.IO.Write.Mb
    Value: 26

    Key  : Analysis.Init.CPU.mSec
    Value: 5905

    Key  : Analysis.Init.Elapsed.mSec
    Value: 168060

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 96

    Key  : Bugcheck.Code.DumpHeader
    Value: 0x3b

    Key  : Bugcheck.Code.Register
    Value: 0x3b

    Key  : Dump.Attributes.AsUlong
    Value: 8

    Key  : Dump.Attributes.KernelGeneratedTriageDump
    Value: 1

FILE_IN_CAB:  011623-9875-01.dmp

DUMP_FILE_ATTRIBUTES: 0x8
  Kernel Generated Triage Dump

BUGCHECK_CODE:  3b

BUGCHECK_P1: c0000005

BUGCHECK_P2: fffff8025b8dd0d3

BUGCHECK_P3: fffffe0a01e1ac60

BUGCHECK_P4: 0

CONTEXT:  fffffe0a01e1ac60 -- (.cxr 0xfffffe0a01e1ac60)
rax=0000000000000000 rbx=ffff948de60a59b0 rcx=0000000000000068
rdx=ffff948de63766b0 rsi=ffff948de60a59b0 rdi=000000000000026c
rip=fffff8025b8dd0d3 rsp=fffffe0a01e1b668 rbp=ffff948de6291500
 r8=ffff948de6376680  r9=0000000000000000 r10=0000000000332878
r11=fffffe0a01e1b6b0 r12=ffffb67bff400000 r13=fffffe0a01e1b748
r14=fffff8025b8dd030 r15=0000000000400000
iopl=0         nv up ei pl nz na pe nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00050202
nt!ObpCaptureHandleInformationEx+0xa3:
fffff802`5b8dd0d3 0fb64828        movzx   ecx,byte ptr [rax+28h] ds:002b:00000000`00000028=??
Resetting default scope

BLACKBOXBSD: 1 (!blackboxbsd)

BLACKBOXNTFS: 1 (!blackboxntfs)

BLACKBOXPNP: 1 (!blackboxpnp)

BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  brave.exe

STACK_TEXT:  
fffffe0a`01e1b668 fffff802`5b94cdd1     : 00000000`0000026c 00000000`00000000 ffffbb88`00000000 fffff802`5b2d7c42 : nt!ObpCaptureHandleInformationEx+0xa3
fffffe0a`01e1b670 fffff802`5b8dcf0a     : fffff802`5b8dd030 ffff948d`e6291518 00000000`00400000 fffffe0a`01e1b7b0 : nt!ExpSnapShotHandleTables+0x131
fffffe0a`01e1b700 fffff802`5b94a4d1     : fffffe0a`01e1b7b0 00000000`00332878 00000000`00400000 00000000`00000001 : nt!ObGetHandleInformationEx+0x3a
fffffe0a`01e1b740 fffff802`5b62945c     : 00001bc4`00804000 00000000`00020000 ffffb67b`ff400000 ffffbb88`a8ac1000 : nt!ExpGetHandleInformationEx+0x5d
fffffe0a`01e1b780 fffff802`5b628197     : 00000000`00400000 00000000`00000000 00001bc4`00801020 0000000a`923febdf : nt!ExpQuerySystemInformation+0x117c
fffffe0a`01e1bac0 fffff802`5b40caf8     : ffffbb88`98ed0000 00000000`00000010 fffffe0a`01e1bb80 0000012a`10ee9270 : nt!NtQuerySystemInformation+0x37
fffffe0a`01e1bb00 00007ff9`1d8ad784     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
0000000a`923fec68 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`1d8ad784

SYMBOL_NAME:  nt!ObpCaptureHandleInformationEx+a3

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.2364

STACK_COMMAND:  .cxr 0xfffffe0a01e1ac60 ; kb

BUCKET_ID_FUNC_OFFSET:  a3

FAILURE_BUCKET_ID:  AV_nt!ObpCaptureHandleInformationEx

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {75002e6d-4bad-06b9-3ee7-03d1c1f57a25}

Followup:     MachineOwner
---------

6: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the BugCheck
Arg2: fffff8025b8dd0d3, Address of the instruction which caused the BugCheck
Arg3: fffffe0a01e1ac60, Address of the context record for the exception that caused the BugCheck
Arg4: 0000000000000000, zero.

Debugging Details:
------------------

KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2436

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 2446

    Key  : Analysis.IO.Other.Mb
    Value: 9

    Key  : Analysis.IO.Read.Mb
    Value: 0

    Key  : Analysis.IO.Write.Mb
    Value: 26

    Key  : Analysis.Init.CPU.mSec
    Value: 8359

    Key  : Analysis.Init.Elapsed.mSec
    Value: 190484

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 96

    Key  : Bugcheck.Code.DumpHeader
    Value: 0x3b

    Key  : Bugcheck.Code.Register
    Value: 0x3b

    Key  : Dump.Attributes.AsUlong
    Value: 8

    Key  : Dump.Attributes.KernelGeneratedTriageDump
    Value: 1

FILE_IN_CAB:  011623-9875-01.dmp

DUMP_FILE_ATTRIBUTES: 0x8
  Kernel Generated Triage Dump

BUGCHECK_CODE:  3b

BUGCHECK_P1: c0000005

BUGCHECK_P2: fffff8025b8dd0d3

BUGCHECK_P3: fffffe0a01e1ac60

BUGCHECK_P4: 0

CONTEXT:  fffffe0a01e1ac60 -- (.cxr 0xfffffe0a01e1ac60)
rax=0000000000000000 rbx=ffff948de60a59b0 rcx=0000000000000068
rdx=ffff948de63766b0 rsi=ffff948de60a59b0 rdi=000000000000026c
rip=fffff8025b8dd0d3 rsp=fffffe0a01e1b668 rbp=ffff948de6291500
 r8=ffff948de6376680  r9=0000000000000000 r10=0000000000332878
r11=fffffe0a01e1b6b0 r12=ffffb67bff400000 r13=fffffe0a01e1b748
r14=fffff8025b8dd030 r15=0000000000400000
iopl=0         nv up ei pl nz na pe nc
cs=0010  ss=0018  ds=002b  es=002b  fs=0053  gs=002b             efl=00050202
nt!ObpCaptureHandleInformationEx+0xa3:
fffff802`5b8dd0d3 0fb64828        movzx   ecx,byte ptr [rax+28h] ds:002b:00000000`00000028=??
Resetting default scope

BLACKBOXBSD: 1 (!blackboxbsd)

BLACKBOXNTFS: 1 (!blackboxntfs)

BLACKBOXPNP: 1 (!blackboxpnp)

BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  brave.exe

STACK_TEXT:  
fffffe0a`01e1b668 fffff802`5b94cdd1     : 00000000`0000026c 00000000`00000000 ffffbb88`00000000 fffff802`5b2d7c42 : nt!ObpCaptureHandleInformationEx+0xa3
fffffe0a`01e1b670 fffff802`5b8dcf0a     : fffff802`5b8dd030 ffff948d`e6291518 00000000`00400000 fffffe0a`01e1b7b0 : nt!ExpSnapShotHandleTables+0x131
fffffe0a`01e1b700 fffff802`5b94a4d1     : fffffe0a`01e1b7b0 00000000`00332878 00000000`00400000 00000000`00000001 : nt!ObGetHandleInformationEx+0x3a
fffffe0a`01e1b740 fffff802`5b62945c     : 00001bc4`00804000 00000000`00020000 ffffb67b`ff400000 ffffbb88`a8ac1000 : nt!ExpGetHandleInformationEx+0x5d
fffffe0a`01e1b780 fffff802`5b628197     : 00000000`00400000 00000000`00000000 00001bc4`00801020 0000000a`923febdf : nt!ExpQuerySystemInformation+0x117c
fffffe0a`01e1bac0 fffff802`5b40caf8     : ffffbb88`98ed0000 00000000`00000010 fffffe0a`01e1bb80 0000012a`10ee9270 : nt!NtQuerySystemInformation+0x37
fffffe0a`01e1bb00 00007ff9`1d8ad784     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
0000000a`923fec68 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`1d8ad784

SYMBOL_NAME:  nt!ObpCaptureHandleInformationEx+a3

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.2364

STACK_COMMAND:  .cxr 0xfffffe0a01e1ac60 ; kb

BUCKET_ID_FUNC_OFFSET:  a3

FAILURE_BUCKET_ID:  AV_nt!ObpCaptureHandleInformationEx

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {75002e6d-4bad-06b9-3ee7-03d1c1f57a25}

Followup:     MachineOwner
---------

6: kd> lmvm nt
Browse full module list
start             end                 module name
fffff802`5b000000 fffff802`5c046000   nt         (pdb symbols)          C:\ProgramData\Dbg\sym\ntkrnlmp.pdb\2B2A15FA1FE2122BB1A39ED3572741D21\ntkrnlmp.pdb
    Loaded symbol image file: ntkrnlmp.exe
    Mapped memory image file: C:\ProgramData\Dbg\sym\ntkrnlmp.exe\0E02AFC51046000\ntkrnlmp.exe
    Image path: ntkrnlmp.exe
    Image name: ntkrnlmp.exe
    Browse all global symbols  functions  data
    Image was built with /Brepro flag.
    Timestamp:        0E02AFC5 (This is a reproducible build file hash, not a timestamp)
    CheckSum:         00A6206B
    ImageSize:        01046000
    File version:     10.0.19041.2364
    Product version:  10.0.19041.2364
    File flags:       0 (Mask 3F)
    File OS:          40004 NT Win32
    File type:        1.0 App
    File date:        00000000.00000000
    Translations:     0409.04b0
    Information from resource tables:
        CompanyName:      Microsoft Corporation
        ProductName:      Microsoft® Windows® Operating System
        InternalName:     ntkrnlmp.exe
        OriginalFilename: ntkrnlmp.exe
        ProductVersion:   10.0.19041.2364
        FileVersion:      10.0.19041.2364 (WinBuild.160101.0800)
        FileDescription:  NT Kernel & System
        LegalCopyright:   © Microsoft Corporation. All rights reserved.
Windows for home | Windows 10 | Performance and system failures

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

12 answers

Sort by: Most helpful
  1. DaveM121 891.6K Reputation points Independent Advisor
    2023-03-11T15:13:38+00:00

    Hi hitesh chand,

    If your PC continues to crash and t does produce a new dump file, please upload that, without that data it is nearly impossible to troubleshoot the crashes.

    Was this answer helpful?

    1 person found this answer helpful.
    0 comments No comments
  2. Anonymous
    2023-03-10T08:59:49+00:00

    Hi Dave, i did wht you said, and my laptop actually crashed right away three times, so as you mentioned i had to reset the verifier in safe mode but yes it has created three minidump files and i have uploaded them in the path, please let me know if you find anything -

    Minidump.rar

    Thanks !

    Was this answer helpful?

    0 comments No comments
  3. DaveM121 891.6K Reputation points Independent Advisor
    2023-03-09T14:45:38+00:00

    Hi hitesh chand,

    No need to apologize, I will be here.

    Your minidump file just indicates memory (RAM) corruption no specific driver is listed

    To try to force Windows 10 show any faulting drivers, the best option would be to turn on Driver Verifier, let your PC crash 3 times, then you must turn off Driver Verifier, and finally, upload any newly created minidump files

    https://answers.microsoft.com/en-us/windows/for...


    Note, if you have any difficulty getting into Windows with Driver Verifier enabled:

    Start your PC, just as Windows attempts to load (spinning dots), press and hold Power Button for 5 - 10 seconds to perform a Hard Shut Down

    Do this twice

    On the third start Windows will boot into the Recovery Environment and from there you can access System Repair, Safe Mode, Command Prompt... etc.

    Go to Troubleshoot - Advanced Option - Startup Settings and click Restart

    Upon restart, press 4 to enter Safe Mode

    Open Command Prompt as Administrator and run these two commands, then restart your PC.

    verifier /reset

    verifier /bootmode resetonbootfail

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2023-03-09T14:40:29+00:00

    Hi dave, i apologize for delay in reply i actually got very busy, below is the link for the rar file i have created for the minidump...

    I jst wanted to let you know this minidump is very old, even today my system got restarted for no reason but no mini dump file was created so... let me know if you find anything.

    Thanks.

    011623-9875-01.rar

    Was this answer helpful?

    0 comments No comments
  5. DaveM121 891.6K Reputation points Independent Advisor
    2023-03-07T19:28:11+00:00

    Hi hitesh chand,

    I am Dave, I will help you with this.

    Please upload any minidump files you have, I will check those to see if they provide any insight into a potential cause of the system crashes.

    Open Windows File Explorer.

    Navigate to C:\Windows\Minidump

    Copy any minidump files onto your Desktop, then zip those up.

    Upload the zip file to the Cloud (OneDrive, DropBox... etc.), then choose to share those and get a share link.

    Then post the link here to the zip file, so we can take a look for you.

    Was this answer helpful?

    0 comments No comments