@B0n3cru5h3r Habe vorhin 3 Passes durchgejagt, keine Fehler. Dieser Fehler taucht nur bei dem einen Spiel auf, nirgendwo sonst. Ich habe schon den Bugcheckcode gecheckt, 0x50 wird anscheinend oft durch fehlerhafte Treiber ausgelöst, wenn die Adresse angegeben ist (was anscheinend in diesem Fall ist).
@Shakyor Hier ist die simple und detaillierte Analyse vom BSOD, die WinDBG raushaut:
Simpel:
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
BugCheck 50, {fffff87fa5ef28a8, 0, fffff8800e06cf97, 5}
*** ERROR: Module load completed but symbols could not be loaded for BEDaisy.sys
Probably caused by : BEDaisy.sys ( BEDaisy+bf97 )
detailliert:
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except.
Typically the address is just plain bad or it is pointing at freed memory.
Arguments:
Arg1: fffff87fa5ef28a8, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff8800e06cf97, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000005, (reserved)
Debugging Details:
------------------
KEY_VALUES_STRING: 1
TIMELINE_ANALYSIS: 1
DUMP_CLASS: 1
DUMP_QUALIFIER: 401
BUILD_VERSION_STRING: 7601.24168.amd64fre.win7sp1_ldr.180608-0600
SYSTEM_MANUFACTURER: MSI
SYSTEM_PRODUCT_NAME: MS-7996
SYSTEM_SKU: Default string
SYSTEM_VERSION: 1.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: 2.H0
BIOS_DATE: 06/16/2018
BASEBOARD_MANUFACTURER: MSI
BASEBOARD_PRODUCT: H110M PRO-D (MS-7996)
BASEBOARD_VERSION: 1.0
DUMP_TYPE: 1
BUGCHECK_P1: fffff87fa5ef28a8
BUGCHECK_P2: 0
BUGCHECK_P3: fffff8800e06cf97
BUGCHECK_P4: 5
READ_ADDRESS: fffff87fa5ef28a8
FAULTING_IP:
BEDaisy+bf97
fffff880`0e06cf97 4a8b1410 mov rdx,qword ptr [rax+r10]
MM_INTERNAL_CODE: 5
IMAGE_NAME: BEDaisy.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 5b59f829
MODULE_NAME: BEDaisy
FAULTING_MODULE: fffff8800e061000 BEDaisy
CPU_COUNT: 4
CPU_MHZ: c78
CPU_VENDOR: GenuineIntel
CPU_FAMILY: 6
CPU_MODEL: 5e
CPU_STEPPING: 3
CPU_MICROCODE: 6,5e,3,0 (F,M,S,R) SIG: C6'00000000 (cache) C6'00000000 (init)
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: RainbowSix.exe
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: TWENTYONE-PC
ANALYSIS_SESSION_TIME: 08-04-2018 21:48:28.0390
ANALYSIS_VERSION: 10.0.17134.12 amd64fre
TRAP_FRAME: fffff880020ba5c0 -- (.trap 0xfffff880020ba5c0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=000007ffffff0000 rbx=0000000000000000 rcx=fffff880020ba844
rdx=0000077ffe1e5a10 rsi=0000000000000000 rdi=0000000000000000
rip=fffff8800e06d340 rsp=fffff880020ba758 rbp=0000000000000000
r8=0000000000000024 r9=0000000000000004 r10=0000000000000001
r11=fffff880020ba820 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na pe cy
BEDaisy+0xc340:
fffff880`0e06d340 488b440af8 mov rax,qword ptr [rdx+rcx-8] ds:00000000`002a024c=????????????????
Resetting default scope
EXCEPTION_RECORD: fffff880020ba518 -- (.exr 0xfffff880020ba518)
ExceptionAddress: fffff8800e06d340 (BEDaisy+0x000000000000c340)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000000
Parameter[1]: 00000000002a024c
Attempt to read from address 00000000002a024c
LAST_CONTROL_TRANSFER: from fffff8000377b486 to fffff800036a98a0
STACK_TEXT:
fffff880`020b92f8 fffff800`0377b486 : 00000000`00000050 fffff87f`a5ef28a8 00000000`00000000 fffff880`020b9450 : nt!KeBugCheckEx
fffff880`020b9300 fffff800`036b5a96 : 00000000`00000000 fffff87f`a5ef28a8 00000000`00000000 fffff880`020b9700 : nt!MmAccessFault+0x736
fffff880`020b9450 fffff880`0e06cf97 : 00000000`00000000 00000000`00000000 00000000`00000000 fffff800`03674a5b : nt!KiPageFault+0x356
fffff880`020b95e0 fffff880`0e06d00a : 00000000`00000000 00000000`00000000 fffff880`020b9d80 fffff800`03674b50 : BEDaisy+0xbf97
fffff880`020b9610 fffff800`036b0c0d : fffff880`0e0b8e68 00000000`00000000 fffff880`0e061000 00000000`00000000 : BEDaisy+0xc00a
fffff880`020b9640 fffff800`036757b5 : fffff880`0e0b8e68 fffff880`020b96b8 fffff880`020ba518 fffff880`0e061000 : nt!RtlpExecuteHandlerForException+0xd
fffff880`020b9670 fffff800`037873de : fffff880`020ba518 fffff880`020b9d80 fffff880`00000000 00000000`00000001 : nt!RtlDispatchException+0x415
fffff880`020b9d50 fffff800`036b7e42 : fffff880`020ba518 fffffa80`13991180 fffff880`020ba5c0 00000000`00000000 : nt!KiDispatchException+0x17e
fffff880`020ba3e0 fffff800`036b5b62 : 00000000`00000000 00000000`002a024c 00000000`00000200 fffffa80`13991180 : nt!KiExceptionDispatch+0xc2
fffff880`020ba5c0 fffff880`0e06d340 : fffff880`0e2af68e fffffa80`13991180 fffffa80`13991100 00000000`00000068 : nt!KiPageFault+0x422
fffff880`020ba758 fffff880`0e2af68e : fffffa80`13991180 fffffa80`13991100 00000000`00000068 00000000`00000000 : BEDaisy+0xc340
fffff880`020ba760 fffff800`038ecf8a : 00000000`00000002 00000000`00000000 fffffa80`1094f840 fffffa80`10dfd2e0 : BEDaisy+0x24e68e
fffff880`020bc850 fffff800`03ac4819 : fffffa80`1094f840 00000000`00000030 fffffa80`1094f840 fffff800`037ef180 : nt!IopSynchronousServiceTail+0xfa
fffff880`020bc8c0 fffff800`03956f86 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!IopXxxControlFile+0xc49
fffff880`020bca00 fffff800`036b79d3 : ffffcdf1`2762d797 fffffa80`12a56630 00000000`00000000 00000000`00000000 : nt!NtDeviceIoControlFile+0x56
fffff880`020bca70 00000000`77b1991a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0015f028 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x77b1991a
THREAD_SHA1_HASH_MOD_FUNC: e8089a12bfc2b07294e3e86491a33762081bc306
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: 42fe40d87191b2759b1469d3577ec7319268e5a5
THREAD_SHA1_HASH_MOD: f72657577657077484da77978f29e70f750eea0a
FOLLOWUP_IP:
BEDaisy+bf97
fffff880`0e06cf97 4a8b1410 mov rdx,qword ptr [rax+r10]
FAULT_INSTR_CODE: 10148b4a
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: BEDaisy+bf97
FOLLOWUP_NAME: MachineOwner
STACK_COMMAND: .thread ; .cxr ; kb
FAILURE_BUCKET_ID: X64_0x50_BEDaisy+bf97
BUCKET_ID: X64_0x50_BEDaisy+bf97
PRIMARY_PROBLEM_CLASS: X64_0x50_BEDaisy+bf97
TARGET_TIME: 2018-08-04T10:36:56.000Z
OSBUILD: 7601
OSSERVICEPACK: 1000
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 784
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 7
OSEDITION: Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS Personal
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: 2018-06-08 17:34:37
BUILDDATESTAMP_STR: 180608-0600
BUILDLAB_STR: win7sp1_ldr
BUILDOSVER_STR: 6.1.7601.24168.amd64fre.win7sp1_ldr.180608-0600
ANALYSIS_SESSION_ELAPSED_TIME: ba5
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:x64_0x50_bedaisy+bf97
FAILURE_ID_HASH: {0ab7f222-390f-a532-9d9c-2a48d1a002f7}
---
ich habe ein paar Zeilen entfernt, allerdings waren diese nur da um anzuzeigen, dass die Analyse zuende war oder an Befehle zu erinnern, also nicht wichtig für den Dump sind.