C
ChrisMStone
Guest
I'm getting rather annoyed at this now. My PC is bluescreening once or twice a day now, and has been a for a little while.
It frequently happens when I come back to the PC after not using it for a while, but not instantly, usually after I pull up a browser or navigate to something else after logging in.
I googled the error on the blue screen, didn't find much, ran the memory diagnostic, didn't find anything. Updated bios and any drivers I could find (it's a laptop, so there wasn't much but I upgraded the graphics drivers)
I can't seem to google anything out of this minidump file that's useful either.
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff80331a9e1be, ffffca86db316cd0, 0}
Probably caused by : ntkrnlmp.exe ( nt!ObpCaptureHandleInformation+8e )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80331a9e1be, Address of the instruction which caused the bugcheck
Arg3: ffffca86db316cd0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 10.0.18362.1139 (WinBuild.160101.0800)
SYSTEM_MANUFACTURER: ASUSTeK COMPUTER INC.
SYSTEM_PRODUCT_NAME: G752VS
SYSTEM_SKU: ASUS-NotebookSKU
SYSTEM_VERSION: 1.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: G752VS.312
BIOS_DATE: 04/24/2019
BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
BASEBOARD_PRODUCT: G752VS
BASEBOARD_VERSION: 1.0
DUMP_TYPE: 2
DUMP_FILE_ATTRIBUTES: 0x8
Kernel Generated Triage Dump
BUGCHECK_P1: c0000005
BUGCHECK_P2: fffff80331a9e1be
BUGCHECK_P3: ffffca86db316cd0
BUGCHECK_P4: 0
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
FAULTING_IP:
nt!ObpCaptureHandleInformation+8e
fffff803`31a9e1be 410fb64118 movzx eax,byte ptr [r9+18h]
CONTEXT: ffffca86db316cd0 -- (.cxr 0xffffca86db316cd0)
rax=0000000000001008 rbx=ffff990b19fffcb0 rcx=0000000000000008
rdx=0000000000100850 rsi=ffff990b19fffcb0 rdi=000000000000232c
rip=fffff80331a9e1be rsp=ffffca86db3176c8 rbp=ffff990b0c3f0b40
r8=0000000000000000 r9=0000000000100820 r10=0000000000369cb0
r11=ffffca86db317710 r12=ffffba7f16800050 r13=ffffca86db3177c0
r14=fffff80331a9e130 r15=00000000004ee3a8
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00050202
nt!ObpCaptureHandleInformation+0x8e:
fffff803`31a9e1be 410fb64118 movzx eax,byte ptr [r9+18h] ds:002b:00000000`00100838=??
Resetting default scope
CPU_COUNT: 8
CPU_MHZ: a98
CPU_VENDOR: GenuineIntel
CPU_FAMILY: 6
CPU_MODEL: 5e
CPU_STEPPING: 3
CPU_MICROCODE: 6,5e,3,0 (F,M,S,R) SIG: C6'00000000 (cache) C6'00000000 (init)
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: steam.exe
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-XXXXXX
ANALYSIS_SESSION_TIME: 10-20-2020 08:32:03.0841
ANALYSIS_VERSION: 10.0.16299.15 amd64fre
LAST_CONTROL_TRANSFER: from fffff80331b0b909 to fffff80331a9e1be
STACK_TEXT:
ffffca86`db3176c8 fffff803`31b0b909 : 00000000`0000232c 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ObpCaptureHandleInformation+0x8e
ffffca86`db3176d0 fffff803`31b09195 : fffff803`31a9e130 ffff990b`0c3f0b58 ffffca86`004ee3a8 00000000`004ee3a8 : nt!ExpSnapShotHandleTables+0x131
ffffca86`db317760 fffff803`31800ccf : 00000000`10c1a050 ffffe58e`00020000 00000800`00369cb0 ffffba7f`16800050 : nt!ExpGetHandleInformation+0x71
ffffca86`db3177b0 fffff803`317ffaab : 00000000`004ee3c0 00000000`00000000 00000000`00000002 00000000`0000a000 : nt!ExpQuerySystemInformation+0x10ff
ffffca86`db3179c0 fffff803`313d4555 : ffffe58e`89bc2080 00000000`00000001 00000000`00000001 ffffca86`db317a80 : nt!NtQuerySystemInformation+0x2b
ffffca86`db317a00 00007ff9`0a73c784 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25
00000000`0839e558 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`0a73c784
THREAD_SHA1_HASH_MOD_FUNC: 20654208cc7e34b6bf534b6083db1b7ca9d50f43
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: b82aaf982d74a828a75f5006a9093ee776989e55
THREAD_SHA1_HASH_MOD: ee8fcf1fb60cb6e3e2f60ddbed2ec02b5748a693
FOLLOWUP_IP:
nt!ObpCaptureHandleInformation+8e
fffff803`31a9e1be 410fb64118 movzx eax,byte ptr [r9+18h]
FAULT_INSTR_CODE: 41b60f41
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!ObpCaptureHandleInformation+8e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
IMAGE_VERSION: 10.0.18362.1139
STACK_COMMAND: .cxr 0xffffca86db316cd0 ; kb
BUCKET_ID_FUNC_OFFSET: 8e
FAILURE_BUCKET_ID: 0x3B_nt!ObpCaptureHandleInformation
BUCKET_ID: 0x3B_nt!ObpCaptureHandleInformation
PRIMARY_PROBLEM_CLASS: 0x3B_nt!ObpCaptureHandleInformation
TARGET_TIME: 2020-10-20T09:42:15.000Z
OSBUILD: 18362
OSSERVICEPACK: 1139
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 784
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: unknown_date
BUILDDATESTAMP_STR: 160101.0800
BUILDLAB_STR: WinBuild
BUILDOSVER_STR: 10.0.18362.1139
ANALYSIS_SESSION_ELAPSED_TIME: 90f
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0x3b_nt!obpcapturehandleinformation
FAILURE_ID_HASH: {a8099bb9-8a37-c3fc-a57a-50539451905f}
Followup: MachineOwner
---------
Continue reading...
It frequently happens when I come back to the PC after not using it for a while, but not instantly, usually after I pull up a browser or navigate to something else after logging in.
I googled the error on the blue screen, didn't find much, ran the memory diagnostic, didn't find anything. Updated bios and any drivers I could find (it's a laptop, so there wasn't much but I upgraded the graphics drivers)
I can't seem to google anything out of this minidump file that's useful either.
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 3B, {c0000005, fffff80331a9e1be, ffffca86db316cd0, 0}
Probably caused by : ntkrnlmp.exe ( nt!ObpCaptureHandleInformation+8e )
Followup: MachineOwner
---------
2: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff80331a9e1be, Address of the instruction which caused the bugcheck
Arg3: ffffca86db316cd0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
DUMP_CLASS: 1
DUMP_QUALIFIER: 400
BUILD_VERSION_STRING: 10.0.18362.1139 (WinBuild.160101.0800)
SYSTEM_MANUFACTURER: ASUSTeK COMPUTER INC.
SYSTEM_PRODUCT_NAME: G752VS
SYSTEM_SKU: ASUS-NotebookSKU
SYSTEM_VERSION: 1.0
BIOS_VENDOR: American Megatrends Inc.
BIOS_VERSION: G752VS.312
BIOS_DATE: 04/24/2019
BASEBOARD_MANUFACTURER: ASUSTeK COMPUTER INC.
BASEBOARD_PRODUCT: G752VS
BASEBOARD_VERSION: 1.0
DUMP_TYPE: 2
DUMP_FILE_ATTRIBUTES: 0x8
Kernel Generated Triage Dump
BUGCHECK_P1: c0000005
BUGCHECK_P2: fffff80331a9e1be
BUGCHECK_P3: ffffca86db316cd0
BUGCHECK_P4: 0
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
FAULTING_IP:
nt!ObpCaptureHandleInformation+8e
fffff803`31a9e1be 410fb64118 movzx eax,byte ptr [r9+18h]
CONTEXT: ffffca86db316cd0 -- (.cxr 0xffffca86db316cd0)
rax=0000000000001008 rbx=ffff990b19fffcb0 rcx=0000000000000008
rdx=0000000000100850 rsi=ffff990b19fffcb0 rdi=000000000000232c
rip=fffff80331a9e1be rsp=ffffca86db3176c8 rbp=ffff990b0c3f0b40
r8=0000000000000000 r9=0000000000100820 r10=0000000000369cb0
r11=ffffca86db317710 r12=ffffba7f16800050 r13=ffffca86db3177c0
r14=fffff80331a9e130 r15=00000000004ee3a8
iopl=0 nv up ei pl nz na pe nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00050202
nt!ObpCaptureHandleInformation+0x8e:
fffff803`31a9e1be 410fb64118 movzx eax,byte ptr [r9+18h] ds:002b:00000000`00100838=??
Resetting default scope
CPU_COUNT: 8
CPU_MHZ: a98
CPU_VENDOR: GenuineIntel
CPU_FAMILY: 6
CPU_MODEL: 5e
CPU_STEPPING: 3
CPU_MICROCODE: 6,5e,3,0 (F,M,S,R) SIG: C6'00000000 (cache) C6'00000000 (init)
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN8_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: steam.exe
CURRENT_IRQL: 0
ANALYSIS_SESSION_HOST: DESKTOP-XXXXXX
ANALYSIS_SESSION_TIME: 10-20-2020 08:32:03.0841
ANALYSIS_VERSION: 10.0.16299.15 amd64fre
LAST_CONTROL_TRANSFER: from fffff80331b0b909 to fffff80331a9e1be
STACK_TEXT:
ffffca86`db3176c8 fffff803`31b0b909 : 00000000`0000232c 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ObpCaptureHandleInformation+0x8e
ffffca86`db3176d0 fffff803`31b09195 : fffff803`31a9e130 ffff990b`0c3f0b58 ffffca86`004ee3a8 00000000`004ee3a8 : nt!ExpSnapShotHandleTables+0x131
ffffca86`db317760 fffff803`31800ccf : 00000000`10c1a050 ffffe58e`00020000 00000800`00369cb0 ffffba7f`16800050 : nt!ExpGetHandleInformation+0x71
ffffca86`db3177b0 fffff803`317ffaab : 00000000`004ee3c0 00000000`00000000 00000000`00000002 00000000`0000a000 : nt!ExpQuerySystemInformation+0x10ff
ffffca86`db3179c0 fffff803`313d4555 : ffffe58e`89bc2080 00000000`00000001 00000000`00000001 ffffca86`db317a80 : nt!NtQuerySystemInformation+0x2b
ffffca86`db317a00 00007ff9`0a73c784 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x25
00000000`0839e558 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ff9`0a73c784
THREAD_SHA1_HASH_MOD_FUNC: 20654208cc7e34b6bf534b6083db1b7ca9d50f43
THREAD_SHA1_HASH_MOD_FUNC_OFFSET: b82aaf982d74a828a75f5006a9093ee776989e55
THREAD_SHA1_HASH_MOD: ee8fcf1fb60cb6e3e2f60ddbed2ec02b5748a693
FOLLOWUP_IP:
nt!ObpCaptureHandleInformation+8e
fffff803`31a9e1be 410fb64118 movzx eax,byte ptr [r9+18h]
FAULT_INSTR_CODE: 41b60f41
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!ObpCaptureHandleInformation+8e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 0
IMAGE_VERSION: 10.0.18362.1139
STACK_COMMAND: .cxr 0xffffca86db316cd0 ; kb
BUCKET_ID_FUNC_OFFSET: 8e
FAILURE_BUCKET_ID: 0x3B_nt!ObpCaptureHandleInformation
BUCKET_ID: 0x3B_nt!ObpCaptureHandleInformation
PRIMARY_PROBLEM_CLASS: 0x3B_nt!ObpCaptureHandleInformation
TARGET_TIME: 2020-10-20T09:42:15.000Z
OSBUILD: 18362
OSSERVICEPACK: 1139
SERVICEPACK_NUMBER: 0
OS_REVISION: 0
SUITE_MASK: 784
PRODUCT_TYPE: 1
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
OSEDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
OS_LOCALE:
USER_LCID: 0
OSBUILD_TIMESTAMP: unknown_date
BUILDDATESTAMP_STR: 160101.0800
BUILDLAB_STR: WinBuild
BUILDOSVER_STR: 10.0.18362.1139
ANALYSIS_SESSION_ELAPSED_TIME: 90f
ANALYSIS_SOURCE: KM
FAILURE_ID_HASH_STRING: km:0x3b_nt!obpcapturehandleinformation
FAILURE_ID_HASH: {a8099bb9-8a37-c3fc-a57a-50539451905f}
Followup: MachineOwner
---------
Continue reading...