1.

Microsoft (R) Windows Debugger Version 10.0.21349.1004 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\dammy\Desktop\070121-6031-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available


************* Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       srv*
Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 19041 MP (12 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Edition build lab: 19041.1.amd64fre.vb_release.191206-1406
Machine Name:
Kernel base = 0xfffff804`81a00000 PsLoadedModuleList = 0xfffff804`8262a290
Debug session time: Thu Jul  1 21:09:54.724 2021 (UTC + 2:00)
System Uptime: 0 days 0:04:03.376
Loading Kernel Symbols
...............................................................
................................................................
..................................................
Loading User Symbols
Loading unloaded module list
......
For analysis of this file, run !analyze -v
nt!KeBugCheckEx:
fffff804`81df6b90 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffe688`9592a7e0=0000000000000192
5: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KERNEL_AUTO_BOOST_LOCK_ACQUISITION_WITH_RAISED_IRQL (192)
A lock tracked by AutoBoost was acquired while executing at DISPATCH_LEVEL or
above.
Arguments:
Arg1: ffffa90e70909080, The address of the thread.
Arg2: ffffa90e72054ab0, The lock address.
Arg3: 0000000000000000, The IRQL at which the lock was acquired.
Arg4: 0000000000000000, Reserved.

Debugging Details:
------------------


KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2390

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 4178

    Key  : Analysis.Init.CPU.mSec
    Value: 296

    Key  : Analysis.Init.Elapsed.mSec
    Value: 2655

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 73

    Key  : WER.OS.Branch
    Value: vb_release

    Key  : WER.OS.Timestamp
    Value: 2019-12-06T14:06:00Z

    Key  : WER.OS.Version
    Value: 10.0.19041.1


BUGCHECK_CODE:  192

BUGCHECK_P1: ffffa90e70909080

BUGCHECK_P2: ffffa90e72054ab0

BUGCHECK_P3: 0

BUGCHECK_P4: 0

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  CpuOcct64.exe

STACK_TEXT:  
ffffe688`9592a7d8 fffff804`81c07c0b     : 00000000`00000192 ffffa90e`70909080 ffffa90e`72054ab0 00000000`00000000 : nt!KeBugCheckEx
ffffe688`9592a7e0 fffff804`81ffdece     : ffffa90e`72054180 00000000`000003ff ffffa90e`00000000 ffffa90e`70324380 : nt!ExAcquirePushLockExclusiveEx+0x14b
ffffe688`9592a820 fffff804`81c132d2     : ffffffff`ffffffff ffff8386`4a84cc18 ffffa90e`72e41b40 00000000`00000000 : nt!MiRemoveSharedCommitNode+0x9e
ffffe688`9592a890 fffff804`82000b49     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MiDeleteVad+0xa22
ffffe688`9592a9a0 fffff804`82000922     : ffffa90e`72605be0 00000000`00000000 ffffa90e`72054180 00000000`00000000 : nt!MiUnmapVad+0x49
ffffe688`9592a9d0 fffff804`82000799     : ffff96b3`38581186 000000d1`90efde70 00000000`540be3ff 00000000`00000000 : nt!MiUnmapViewOfSection+0x152
ffffe688`9592aab0 fffff804`81e085b8     : ffffa90e`70909080 0000022f`fbaa0000 ffffe688`9592ab80 ffffa90e`72054180 : nt!NtUnmapViewOfSectionEx+0x99
ffffe688`9592ab00 00007ffe`a9350794     : 00007ffe`a6d28be3 00000000`00000000 00000000`00000000 00000000`ffffffff : nt!KiSystemServiceCopyEnd+0x28
000000d1`90efdeb8 00007ffe`a6d28be3     : 00000000`00000000 00000000`00000000 00000000`ffffffff 00000000`00000000 : 0x00007ffe`a9350794
000000d1`90efdec0 00000000`00000000     : 00000000`00000000 00000000`ffffffff 00000000`00000000 00000000`00000138 : 0x00007ffe`a6d28be3


SYMBOL_NAME:  nt!ExAcquirePushLockExclusiveEx+14b

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.1081

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  14b

FAILURE_BUCKET_ID:  0x192_nt!ExAcquirePushLockExclusiveEx

OS_VERSION:  10.0.19041.1

BUILDLAB_STR:  vb_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {70f07b19-205c-f6b9-7ad5-00ec20680212}

Followup:     MachineOwner
---------

2.

Microsoft (R) Windows Debugger Version 10.0.21349.1004 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\dammy\Desktop\070121-5812-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available


************* Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       srv*
Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 19041 MP (12 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Edition build lab: 19041.1.amd64fre.vb_release.191206-1406
Machine Name:
Kernel base = 0xfffff800`1ac00000 PsLoadedModuleList = 0xfffff800`1b82a290
Debug session time: Thu Jul  1 20:22:48.562 2021 (UTC + 2:00)
System Uptime: 2 days 1:46:59.811
Loading Kernel Symbols
...............................................................
................................................................
...................................................
Loading User Symbols
Loading unloaded module list
............................
For analysis of this file, run !analyze -v
nt!KeBugCheckEx:
fffff800`1aff6b90 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:fffffb0c`01ce2850=0000000000000162
5: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KERNEL_AUTO_BOOST_INVALID_LOCK_RELEASE (162)
A lock tracked by AutoBoost was released by a thread that did not own the lock.
This is typically caused when some thread releases a lock on behalf of another
thread (which is not legal with AutoBoost tracking enabled) or when some thread
tries to release a lock it no longer owns.
Arguments:
Arg1: ffffa982f407e080, The address of the thread
Arg2: ffffa982f0eb79f0, The lock address
Arg3: 00000000ffffffff, The session ID of the thread
Arg4: 0000000000000000, Reserved

Debugging Details:
------------------


KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2374

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 7061

    Key  : Analysis.Init.CPU.mSec
    Value: 343

    Key  : Analysis.Init.Elapsed.mSec
    Value: 1684

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 73

    Key  : WER.OS.Branch
    Value: vb_release

    Key  : WER.OS.Timestamp
    Value: 2019-12-06T14:06:00Z

    Key  : WER.OS.Version
    Value: 10.0.19041.1


BUGCHECK_CODE:  162

BUGCHECK_P1: ffffa982f407e080

BUGCHECK_P2: ffffa982f0eb79f0

BUGCHECK_P3: ffffffff

BUGCHECK_P4: 0

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXPNP: 1 (!blackboxpnp)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  CpuOcct64.exe

STACK_TEXT:  
fffffb0c`01ce2848 fffff800`1b013b43     : 00000000`00000162 ffffa982`f407e080 ffffa982`f0eb79f0 00000000`ffffffff : nt!KeBugCheckEx
fffffb0c`01ce2850 fffff800`1b1fdf7a     : ffff8382`0000003f ffff8382`00000000 ffff8382`25f19a80 ffffa982`f3d54060 : nt!KeAbPostRelease+0x208e53
fffffb0c`01ce28b0 fffff800`1b1fe65d     : 00000000`00000000 ffff8382`25f19ac8 00000000`00000000 00000000`00000000 : nt!MiRemoveSharedCommitNode+0x14a
fffffb0c`01ce2920 fffff800`1b1f36dc     : ffff8382`00000000 00000000`00000000 ffffffff`ffffffff ffff8382`2b2563c0 : nt!MiSectionClose+0x1d
fffffb0c`01ce2950 fffff800`1b1f73ac     : 00000000`000000f0 0000027f`5b170000 00000000`00000000 fffff800`1b2007aa : nt!ObCloseHandleTableEntry+0x24c
fffffb0c`01ce2a90 fffff800`1b0085b8     : ffffa982`f407e000 0000027f`5b170000 fffffb0c`01ce2b80 ffffa982`f0eb70c0 : nt!NtClose+0xec
fffffb0c`01ce2b00 00007ff8`9f5ed004     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
00000080`b89fdeb8 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff8`9f5ed004


SYMBOL_NAME:  nt!KeAbPostRelease+208e53

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.1081

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  208e53

FAILURE_BUCKET_ID:  0x162_nt!KeAbPostRelease

OS_VERSION:  10.0.19041.1

BUILDLAB_STR:  vb_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {b939a70d-6d74-7d7d-94c9-2a7b2f9e3520}

Followup:     MachineOwner
---------

3.

Microsoft (R) Windows Debugger Version 10.0.21349.1004 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\dammy\Desktop\070121-5968-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available


************* Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       srv*
Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 19041 MP (12 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Edition build lab: 19041.1.amd64fre.vb_release.191206-1406
Machine Name:
Kernel base = 0xfffff802`52a00000 PsLoadedModuleList = 0xfffff802`5362a290
Debug session time: Thu Jul  1 20:41:05.182 2021 (UTC + 2:00)
System Uptime: 0 days 0:17:47.838
Loading Kernel Symbols
...............................................................
................................................................
..................................................
Loading User Symbols
Loading unloaded module list
......
For analysis of this file, run !analyze -v
nt!KeBugCheckEx:
fffff802`52df6b90 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffb680`19401910=0000000000000192
4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KERNEL_AUTO_BOOST_LOCK_ACQUISITION_WITH_RAISED_IRQL (192)
A lock tracked by AutoBoost was acquired while executing at DISPATCH_LEVEL or
above.
Arguments:
Arg1: ffffa48cf2999080, The address of the thread.
Arg2: ffffde08867095c0, The lock address.
Arg3: 0000000000000000, The IRQL at which the lock was acquired.
Arg4: 0000000000000000, Reserved.

Debugging Details:
------------------


KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2530

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 2562

    Key  : Analysis.Init.CPU.mSec
    Value: 311

    Key  : Analysis.Init.Elapsed.mSec
    Value: 2988

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 71

    Key  : WER.OS.Branch
    Value: vb_release

    Key  : WER.OS.Timestamp
    Value: 2019-12-06T14:06:00Z

    Key  : WER.OS.Version
    Value: 10.0.19041.1


BUGCHECK_CODE:  192

BUGCHECK_P1: ffffa48cf2999080

BUGCHECK_P2: ffffde08867095c0

BUGCHECK_P3: 0

BUGCHECK_P4: 0

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  CpuOcct64.exe

STACK_TEXT:  
ffffb680`19401908 fffff802`52c07c0b     : 00000000`00000192 ffffa48c`f2999080 ffffde08`867095c0 00000000`00000000 : nt!KeBugCheckEx
ffffb680`19401910 fffff802`52ff35e8     : ffffde08`867095c0 00000000`00001000 00000000`00000000 ffffde08`8dcf04c0 : nt!ExAcquirePushLockExclusiveEx+0x14b
ffffb680`19401950 fffff802`52ff73ac     : 00000000`00000130 00000266`47b10000 00000000`00000000 fffff802`530007aa : nt!ObCloseHandleTableEntry+0x158
ffffb680`19401a90 fffff802`52e085b8     : ffffa48c`f2999000 00000266`47b10000 ffffb680`19401b80 ffffa48c`f2cec0c0 : nt!NtClose+0xec
ffffb680`19401b00 00007ffa`0dfed004     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
0000008b`10ffe108 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffa`0dfed004


SYMBOL_NAME:  nt!ExAcquirePushLockExclusiveEx+14b

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.1081

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  14b

FAILURE_BUCKET_ID:  0x192_nt!ExAcquirePushLockExclusiveEx

OS_VERSION:  10.0.19041.1

BUILDLAB_STR:  vb_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {70f07b19-205c-f6b9-7ad5-00ec20680212}

Followup:     MachineOwner
---------

4.

Microsoft (R) Windows Debugger Version 10.0.21349.1004 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\dammy\Desktop\070121-6000-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available


************* Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       srv*
Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 19041 MP (12 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Edition build lab: 19041.1.amd64fre.vb_release.191206-1406
Machine Name:
Kernel base = 0xfffff806`4f400000 PsLoadedModuleList = 0xfffff806`5002a290
Debug session time: Thu Jul  1 20:48:37.451 2021 (UTC + 2:00)
System Uptime: 0 days 0:07:03.108
Loading Kernel Symbols
...............................................................
................................................................
..................................................
Loading User Symbols
Loading unloaded module list
......
For analysis of this file, run !analyze -v
nt!KeBugCheckEx:
fffff806`4f7f6b90 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffa60a`6e4144e0=000000000000000a
4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: fffffffffffffff8, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
	bit 0 : value 0 = read operation, 1 = write operation
	bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff8064f64bee0, address which referenced memory

Debugging Details:
------------------


KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2733

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 2812

    Key  : Analysis.Init.CPU.mSec
    Value: 280

    Key  : Analysis.Init.Elapsed.mSec
    Value: 1657

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 72

    Key  : WER.OS.Branch
    Value: vb_release

    Key  : WER.OS.Timestamp
    Value: 2019-12-06T14:06:00Z

    Key  : WER.OS.Version
    Value: 10.0.19041.1


BUGCHECK_CODE:  a

BUGCHECK_P1: fffffffffffffff8

BUGCHECK_P2: 2

BUGCHECK_P3: 0

BUGCHECK_P4: fffff8064f64bee0

READ_ADDRESS: fffff806500fb390: Unable to get MiVisibleState
Unable to get NonPagedPoolStart
Unable to get NonPagedPoolEnd
Unable to get PagedPoolStart
Unable to get PagedPoolEnd
unable to get nt!MmSpecialPagesInUse
 fffffffffffffff8 

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  CpuOcct64.exe

TRAP_FRAME:  ffffa60a6e414620 -- (.trap 0xffffa60a6e414620)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=0000000000000000 rbx=0000000000000000 rcx=0000000000000000
rdx=ffffcc857437e9b0 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8064f64bee0 rsp=ffffa60a6e4147b0 rbp=0000000000000000
 r8=0000000000000000  r9=00000000000001ff r10=00000000ffffffff
r11=ffff870000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na po nc
nt!MiEmptyPageAccessLog+0xa0:
fffff806`4f64bee0 4c8b36          mov     r14,qword ptr [rsi] ds:00000000`00000000=????????????????
Resetting default scope

STACK_TEXT:  
ffffa60a`6e4144d8 fffff806`4f808b69     : 00000000`0000000a ffffffff`fffffff8 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
ffffa60a`6e4144e0 fffff806`4f804e69     : 00000000`00000027 00000000`00000000 ffffa60a`6e414770 ffffcc85`7437e700 : nt!KiBugCheckDispatch+0x69
ffffa60a`6e414620 fffff806`4f64bee0     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x469
ffffa60a`6e4147b0 fffff806`4f64bde7     : ffffcc85`7437e9b0 ffffcc85`ffffffff 00000003`00000000 00000000`00000000 : nt!MiEmptyPageAccessLog+0xa0
ffffa60a`6e414840 fffff806`4f612d58     : 00000000`00000000 ffffffff`ffffffff 00000000`00000000 ffffcc85`760b1080 : nt!MiDrainSystemAccessLog+0x97
ffffa60a`6e414890 fffff806`4fa00b49     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MiDeleteVad+0x4a8
ffffa60a`6e4149a0 fffff806`4fa00922     : ffffcc85`75367e80 00000000`00000000 ffffcc85`7437e080 00000000`00000000 : nt!MiUnmapVad+0x49
ffffa60a`6e4149d0 fffff806`4fa00799     : ffffb57b`799af664 00000030`fbafdf90 00000000`540be3ff 00000000`00000000 : nt!MiUnmapViewOfSection+0x152
ffffa60a`6e414ab0 fffff806`4f8085b8     : ffffcc85`760b1080 0000016d`a9440000 ffffa60a`6e414b80 ffffcc85`7437e080 : nt!NtUnmapViewOfSectionEx+0x99
ffffa60a`6e414b00 00007ffe`68d50794     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
00000030`fbafdfd8 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffe`68d50794


SYMBOL_NAME:  nt!MiEmptyPageAccessLog+a0

MODULE_NAME: nt

IMAGE_VERSION:  10.0.19041.1081

STACK_COMMAND:  .thread ; .cxr ; kb

IMAGE_NAME:  ntkrnlmp.exe

BUCKET_ID_FUNC_OFFSET:  a0

FAILURE_BUCKET_ID:  AV_nt!MiEmptyPageAccessLog

OS_VERSION:  10.0.19041.1

BUILDLAB_STR:  vb_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {18874cb9-02c8-297c-e41f-9e712e158c7d}

Followup:     MachineOwner
---------

5.

Microsoft (R) Windows Debugger Version 10.0.21349.1004 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Users\dammy\Desktop\070121-5781-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available


************* Path validation summary **************
Response                         Time (ms)     Location
Deferred                                       srv*
Symbol search path is: srv*
Executable search path is: 
Windows 10 Kernel Version 19041 MP (12 procs) Free x64
Product: WinNt, suite: TerminalServer SingleUserTS
Edition build lab: 19041.1.amd64fre.vb_release.191206-1406
Machine Name:
Kernel base = 0xfffff802`12600000 PsLoadedModuleList = 0xfffff802`1322a290
Debug session time: Thu Jul  1 21:00:42.161 2021 (UTC + 2:00)
System Uptime: 0 days 0:11:35.818
Loading Kernel Symbols
...............................................................
................................................................
..................................................
Loading User Symbols
Loading unloaded module list
......
For analysis of this file, run !analyze -v
nt!KeBugCheckEx:
fffff802`129f6b90 48894c2408      mov     qword ptr [rsp+8],rcx ss:0018:ffffa707`9ae4c520=0000000000000162
4: kd> !analyze -v
*******************************************************************************
*                                                                             *
*                        Bugcheck Analysis                                    *
*                                                                             *
*******************************************************************************

KERNEL_AUTO_BOOST_INVALID_LOCK_RELEASE (162)
A lock tracked by AutoBoost was released by a thread that did not own the lock.
This is typically caused when some thread releases a lock on behalf of another
thread (which is not legal with AutoBoost tracking enabled) or when some thread
tries to release a lock it no longer owns.
Arguments:
Arg1: ffffc10305e42080, The address of the thread
Arg2: ffffc103042669b0, The lock address
Arg3: 00000000ffffffff, The session ID of the thread
Arg4: 0000000000000000, Reserved

Debugging Details:
------------------


KEY_VALUES_STRING: 1

    Key  : Analysis.CPU.mSec
    Value: 2624

    Key  : Analysis.DebugAnalysisManager
    Value: Create

    Key  : Analysis.Elapsed.mSec
    Value: 4013

    Key  : Analysis.Init.CPU.mSec
    Value: 280

    Key  : Analysis.Init.Elapsed.mSec
    Value: 1876

    Key  : Analysis.Memory.CommitPeak.Mb
    Value: 73

    Key  : WER.OS.Branch
    Value: vb_release

    Key  : WER.OS.Timestamp
    Value: 2019-12-06T14:06:00Z

    Key  : WER.OS.Version
    Value: 10.0.19041.1


BUGCHECK_CODE:  162

BUGCHECK_P1: ffffc10305e42080

BUGCHECK_P2: ffffc103042669b0

BUGCHECK_P3: ffffffff

BUGCHECK_P4: 0

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

PROCESS_NAME:  CpuOcct64.exe

STACK_TEXT:  
ffffa707`9ae4c518 fffff802`12a13b43     : 00000000`00000162 ffffc103`05e42080 ffffc103`042669b0 00000000`ffffffff : nt!KeBugCheckEx
ffffa707`9ae4c520 fffff802`12bfe2c3     : ffffe40e`0000003f ffffc103`00000000 ffffc103`09a86980 ffffc103`00000002 : nt!KeAbPostRelease+0x208e53
ffffa707`9ae4c580 fffff802`12bfe62d     : ffffc102`f9936820 ffffc103`04266080 00000000`00000000 00000000`00000000 : nt!MiInsertSharedCommitNode+0x223
ffffa707`9ae4c600 fffff802`12bf4028     : 00000000`00000001 00000000`00000000 00000000`00000000 00000000`00000001 : nt!MiSectionOpen+0x1d
ffffa707`9ae4c630 fffff802`12bf6499     : ffffe40e`a49e00e0 00000000`00000001 00000000`00000000 ffffe40e`a49e00e0 : nt!ObpIncrementHandleCountEx+0x348
ffffa707`9ae4c730 fffff802`12d015cf     : 00000000`00000000 00000000`00000000 ffffe40e`00000000 ffffc102`f9936820 : nt!ObpCreateHandle+0x239
ffffa707`9ae4c920 fffff802`12d0128c     : 00000000`00000000 00000000`00000000 000001f6`2a3b4e00 ffffc102`f9936820 : nt!ObOpenObjectByNameEx+0x31f
ffffa707`9ae4ca50 fffff802`12c9366c     : 0000003c`95afde88 ffffa707`9ae4cb80 00000000`00000000 000001f6`287b0000 : nt!ObOpenObjectByName+0x5c
ffffa707`9ae4caa0 fffff802`12a085b8     : 00000000`00000000 000001f6`287b0000 ffffa707`9ae4cb80 ffffc103`04266080 : nt!NtOpenSection+0x6c
ffffa707`9ae4cb00 00007ffe`a8aed504     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
0000003c`95afddc8 00000000`00000000     : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffe`a8aed504


SYMBOL_NAME:  nt!KeAbPostRelease+208e53

MODULE_NAME: nt

IMAGE_NAME:  ntkrnlmp.exe

IMAGE_VERSION:  10.0.19041.1081

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  208e53

FAILURE_BUCKET_ID:  0x162_nt!KeAbPostRelease

OS_VERSION:  10.0.19041.1

BUILDLAB_STR:  vb_release

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

FAILURE_ID_HASH:  {b939a70d-6d74-7d7d-94c9-2a7b2f9e3520}

Followup:     MachineOwner
---------

