- # win10, Windows crashed in MsMpEng.exe when installing FireFox on case-insensitive NFSv4.2 filesystem (NFS server FreeBSD 16.0 with ZFS)
- Microsoft (R) Windows Debugger Version 10.0.19041.685 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- Loading Dump File [C:\Windows\MEMORY.DMP]
- Kernel Bitmap Dump File: Full address space is available
- Symbol search path is: srv*
- Executable search path is:
- Windows 10 Kernel Version 19041 MP (8 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Built by: 19041.1.amd64fre.vb_release.191206-1406
- Machine Name:
- Kernel base = 0xfffff804`1e200000 PsLoadedModuleList = 0xfffff804`1ee2a420
- Debug session time: Sat May 9 13:32:05.591 2026 (UTC + 2:00)
- System Uptime: 0 days 0:49:54.502
- Loading Kernel Symbols
- ...............................................................
- ................................................................
- ................................................................
- ........................
- Loading User Symbols
- ................................................................
- .....................
- Loading unloaded module list
- .....................................................
- For analysis of this file, run !analyze -v
- 5: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- MEMORY_MANAGEMENT (1a)
- # Any other values for parameter 1 must be individually examined.
- Arguments:
- Arg1: 0000000000041791, The subtype of the bugcheck.
- Arg2: fffffb00068aa890
- Arg3: ffffd406c6711400
- Arg4: 020000200003ab04
- Debugging Details:
- ------------------
- KEY_VALUES_STRING: 1
- Key : Analysis.CPU.Sec
- Value: 4
- Key : Analysis.DebugAnalysisProvider.CPP
- Value: Create: 8007007e on WINGRENDEL02
- Key : Analysis.DebugData
- Value: CreateObject
- Key : Analysis.DebugModel
- Value: CreateObject
- Key : Analysis.Elapsed.Sec
- Value: 15
- Key : Analysis.Memory.CommitPeak.Mb
- Value: 155
- Key : Analysis.System
- Value: CreateObject
- BUGCHECK_CODE: 1a
- BUGCHECK_P1: 41791
- BUGCHECK_P2: fffffb00068aa890
- BUGCHECK_P3: ffffd406c6711400
- BUGCHECK_P4: 20000200003ab04
- BLACKBOXBSD: 1 (!blackboxbsd)
- BLACKBOXNTFS: 1 (!blackboxntfs)
- BLACKBOXPNP: 1 (!blackboxpnp)
- BLACKBOXWINLOGON: 1
- PROCESS_NAME: MsMpEng.exe
- STACK_TEXT:
- ffff960b`b7987478 fffff804`1e445169 : 00000000`0000001a 00000000`00041791 fffffb00`068aa890 ffffd406`c6711400 : nt!KeBugCheckEx
- ffff960b`b7987480 fffff804`1e7f7586 : ffff960b`b79876c0 00000000`00000103 ffff960b`00000002 00000000`00000000 : nt!MmUnlockPages+0xd89
- ffff960b`b7987570 fffff804`1e7f62e3 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MmCopyVirtualMemory+0x7d6
- ffff960b`b79879c0 fffff804`1e7f617b : ffffa882`132de080 0000002e`fce7da78 0000017c`f040bfb0 0000002e`fce7dbf0 : nt!MiReadWriteVirtualMemory+0x153
- ffff960b`b7987a50 fffff804`1e611505 : 0000002e`fce7d7f0 0000017c`f0417814 ffffa882`07cd2da0 ffff9801`6af80180 : nt!NtReadVirtualMemory+0x1b
- ffff960b`b7987a90 00007ffa`6c3add84 : 00007ffa`69b2fed5 00007ffa`53373600 00000000`00116000 0000017c`e3dfd090 : nt!KiSystemServiceCopyEnd+0x25
- 0000002e`fce7da58 00007ffa`69b2fed5 : 00007ffa`53373600 00000000`00116000 0000017c`e3dfd090 00007ffa`53372f75 : ntdll!NtReadVirtualMemory+0x14
- 0000002e`fce7da60 00007ffa`5394e79c : 0000017c`e3dfd090 00000000`7ffee000 00000000`00000000 00000000`0000001b : KERNELBASE!ReadProcessMemory+0x15
- 0000002e`fce7dab0 00007ffa`5337250b : 0000017c`e3dfd090 0000017c`e3dfd178 0000017c`e3dfd090 0000017c`81bb3920 : mpengine!ReadProcessMemoryInternal+0x11c
- 0000002e`fce7db40 00007ffa`53371b3d : 0000017c`81bb3850 00007ffa`53a9bc84 0000017c`e3dfd090 0000017c`81bb3920 : mpengine!CSMSProcess::ScanRange+0x12b
- 0000002e`fce7dc10 00007ffa`53371018 : 0000017c`e3dfd090 0000017c`e3dfd090 00000000`00000002 00000000`00000000 : mpengine!CSMSProcess::Scan1Worker+0x2ed
- 0000002e`fce7dcd0 00007ffa`533706fc : 0000017c`e3dfd090 00000000`00000000 0000002e`00000000 00000000`00000604 : mpengine!CSMSProcess::Scan+0x4b0
- 0000002e`fce7ddb0 00007ffa`5327abf0 : 0000017c`f102dc00 0000017c`00000579 00007ffa`53d17ab0 00000000`00000c70 : mpengine!CEMSContext::EmsScan+0x350
- 0000002e`fce7deb0 00007ffa`5327a6e2 : 0000017c`84711f20 0000017c`84711f20 0000017c`84712d60 00000000`00000000 : mpengine!RunEMS+0x474
- 0000002e`fce7e040 00007ffa`5327a0ba : 0000017c`d4110480 0000002e`fce7e1b0 00000000`00000000 0000017c`d4110488 : mpengine!CResmgrems::ScanImpl+0x23e
- 0000002e`fce7e120 00007ffa`5330f36f : 00000000`00000000 00000000`0000008e 00000000`0000008e 00000000`00000000 : mpengine!CResmgrems::Scan+0x1a
- 0000002e`fce7e260 00007ffa`53abd3de : 0000017c`82d52940 0000002e`fce7e550 00000000`00000000 0000017c`f102dc00 : mpengine!ResmgrProcessResource+0x22b
- 0000002e`fce7e410 00007ffa`53abb386 : 0000017c`f0d549b0 00000000`00000000 00000000`00000000 0000017c`f0d549b0 : mpengine!ResScan+0x946
- 0000002e`fce7e860 00007ffa`53505aa5 : 0000017c`80e712f0 0000017c`f0d54ba0 0000017c`f0d549b0 00007ffa`53ff6260 : mpengine!ScanOpenWithContext+0x1bb6
- 0000002e`fce7ec70 00007ffa`5340f861 : 0000017c`d41c9fd0 00000000`00000078 0000017c`80e712f0 00000000`0000800c : mpengine!UberScanOpen+0x1c9
- 0000002e`fce7ed90 00007ffa`534f902c : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : mpengine!ksignal+0xde1
- 0000002e`fce7f030 00007ffa`534f8104 : 00000000`00000000 0000002e`fce7f9a0 00000000`00000000 00000000`00000000 : mpengine!DispatchSignalHelper+0xdc
- 0000002e`fce7f090 00007ffa`5b71e395 : 00000000`00004026 00000000`00000078 0000017c`80d2c930 00007ffa`5b8b4fb7 : mpengine!DispatchSignalOnHandle+0x7c
- 0000002e`fce7f880 00007ffa`5b766b3e : 00007ffa`5bc76268 00007ffa`5b815478 00000000`ffffffff 00000000`ffffffff : mpsvc!rsignal_wrapper+0x205
- 0000002e`fce7f940 00007ffa`5b81509a : 0000017c`80d353c0 0000017c`80d353c0 0000017c`d31fbf80 00007ffa`5bb4d550 : mpsvc!OnDemandScanWorker+0x5de
- 0000002e`fce7f9d0 00007ffa`5b814f33 : 0000017c`d3100388 0000017c`80d353c0 0000017c`d38ce7d0 0000017c`d38ce880 : mpsvc!MpService::CMpSvcScanWorkItem::Run+0xca
- 0000002e`fce7fa40 00007ffa`5b849a9d : 0000017c`d3236890 00007ffa`6c380f96 0000017c`80d353c0 0000017c`80d353d0 : mpsvc!MpService::CMpSvcScansQueue::Dispatch+0x33
- 0000002e`fce7fa80 00007ffa`5ab3be98 : 0000002e`fce7faf8 0000017c`80d39ad0 0000017c`d38fdc90 00001a3d`757a3072 : mpsvc!MpService::CMpSvcScanWorkItem::OnAction+0x1d
- 0000002e`fce7fab0 00007ffa`5ab3bd83 : 0000017c`d31fbf80 0000017c`d31fbf90 0000017c`d31fbf80 0000017c`d31fbf90 : MpClient!CommonUtil::CMpSimpleThreadPool::Call+0x5c
- 0000002e`fce7fb00 00007ffa`6c373720 : 0000017c`d3236890 0000017c`d3236958 0000017c`e89a15f0 0000017c`d38fdc90 : MpClient!CommonUtil::CMpSimpleThreadPool::AsyncDequeue+0xdf
- 0000002e`fce7fb70 00007ffa`6c35d79a : 00000000`00000000 00000000`00000000 0000017c`d38fdc90 0000017c`80d39ad0 : ntdll!TppWorkpExecuteCallback+0x130
- 0000002e`fce7fbc0 00007ffa`6b3c7374 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : ntdll!TppWorkerThread+0x68a
- 0000002e`fce7fec0 00007ffa`6c35cc91 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : KERNEL32!BaseThreadInitThunk+0x14
- 0000002e`fce7fef0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : ntdll!RtlUserThreadStart+0x21
- SYMBOL_NAME: nt!MmUnlockPages+d89
- MODULE_NAME: nt
- STACK_COMMAND: .thread ; .cxr ; kb
- IMAGE_NAME: memory_corruption
- BUCKET_ID_FUNC_OFFSET: d89
- FAILURE_BUCKET_ID: 0x1a_41791_nt!MmUnlockPages
- OS_VERSION: 10.0.19041.1
- BUILDLAB_STR: vb_release
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- FAILURE_ID_HASH: {257cd050-e4e1-a6f4-7c65-0c6aaef71f68}
- Followup: MachineOwner
- ---------
- 5: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- MEMORY_MANAGEMENT (1a)
- # Any other values for parameter 1 must be individually examined.
- Arguments:
- Arg1: 0000000000041791, The subtype of the bugcheck.
- Arg2: fffffb00068aa890
- Arg3: ffffd406c6711400
- Arg4: 020000200003ab04
- Debugging Details:
- ------------------
- KEY_VALUES_STRING: 1
- Key : Analysis.CPU.Sec
- Value: 2
- Key : Analysis.DebugAnalysisProvider.CPP
- Value: Create: 8007007e on WINGRENDEL02
- Key : Analysis.DebugData
- Value: CreateObject
- Key : Analysis.DebugModel
- Value: CreateObject
- Key : Analysis.Elapsed.Sec
- Value: 2
- Key : Analysis.Memory.CommitPeak.Mb
- Value: 155
- Key : Analysis.System
- Value: CreateObject
- BUGCHECK_CODE: 1a
- BUGCHECK_P1: 41791
- BUGCHECK_P2: fffffb00068aa890
- BUGCHECK_P3: ffffd406c6711400
- BUGCHECK_P4: 20000200003ab04
- BLACKBOXBSD: 1 (!blackboxbsd)
- BLACKBOXNTFS: 1 (!blackboxntfs)
- BLACKBOXPNP: 1 (!blackboxpnp)
- BLACKBOXWINLOGON: 1
- PROCESS_NAME: MsMpEng.exe
- STACK_TEXT:
- ffff960b`b7987478 fffff804`1e445169 : 00000000`0000001a 00000000`00041791 fffffb00`068aa890 ffffd406`c6711400 : nt!KeBugCheckEx
- ffff960b`b7987480 fffff804`1e7f7586 : ffff960b`b79876c0 00000000`00000103 ffff960b`00000002 00000000`00000000 : nt!MmUnlockPages+0xd89
- ffff960b`b7987570 fffff804`1e7f62e3 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!MmCopyVirtualMemory+0x7d6
- ffff960b`b79879c0 fffff804`1e7f617b : ffffa882`132de080 0000002e`fce7da78 0000017c`f040bfb0 0000002e`fce7dbf0 : nt!MiReadWriteVirtualMemory+0x153
- ffff960b`b7987a50 fffff804`1e611505 : 0000002e`fce7d7f0 0000017c`f0417814 ffffa882`07cd2da0 ffff9801`6af80180 : nt!NtReadVirtualMemory+0x1b
- ffff960b`b7987a90 00007ffa`6c3add84 : 00007ffa`69b2fed5 00007ffa`53373600 00000000`00116000 0000017c`e3dfd090 : nt!KiSystemServiceCopyEnd+0x25
- 0000002e`fce7da58 00007ffa`69b2fed5 : 00007ffa`53373600 00000000`00116000 0000017c`e3dfd090 00007ffa`53372f75 : ntdll!NtReadVirtualMemory+0x14
- 0000002e`fce7da60 00007ffa`5394e79c : 0000017c`e3dfd090 00000000`7ffee000 00000000`00000000 00000000`0000001b : KERNELBASE!ReadProcessMemory+0x15
- 0000002e`fce7dab0 00007ffa`5337250b : 0000017c`e3dfd090 0000017c`e3dfd178 0000017c`e3dfd090 0000017c`81bb3920 : mpengine!ReadProcessMemoryInternal+0x11c
- 0000002e`fce7db40 00007ffa`53371b3d : 0000017c`81bb3850 00007ffa`53a9bc84 0000017c`e3dfd090 0000017c`81bb3920 : mpengine!CSMSProcess::ScanRange+0x12b
- 0000002e`fce7dc10 00007ffa`53371018 : 0000017c`e3dfd090 0000017c`e3dfd090 00000000`00000002 00000000`00000000 : mpengine!CSMSProcess::Scan1Worker+0x2ed
- 0000002e`fce7dcd0 00007ffa`533706fc : 0000017c`e3dfd090 00000000`00000000 0000002e`00000000 00000000`00000604 : mpengine!CSMSProcess::Scan+0x4b0
- 0000002e`fce7ddb0 00007ffa`5327abf0 : 0000017c`f102dc00 0000017c`00000579 00007ffa`53d17ab0 00000000`00000c70 : mpengine!CEMSContext::EmsScan+0x350
- 0000002e`fce7deb0 00007ffa`5327a6e2 : 0000017c`84711f20 0000017c`84711f20 0000017c`84712d60 00000000`00000000 : mpengine!RunEMS+0x474
- 0000002e`fce7e040 00007ffa`5327a0ba : 0000017c`d4110480 0000002e`fce7e1b0 00000000`00000000 0000017c`d4110488 : mpengine!CResmgrems::ScanImpl+0x23e
- 0000002e`fce7e120 00007ffa`5330f36f : 00000000`00000000 00000000`0000008e 00000000`0000008e 00000000`00000000 : mpengine!CResmgrems::Scan+0x1a
- 0000002e`fce7e260 00007ffa`53abd3de : 0000017c`82d52940 0000002e`fce7e550 00000000`00000000 0000017c`f102dc00 : mpengine!ResmgrProcessResource+0x22b
- 0000002e`fce7e410 00007ffa`53abb386 : 0000017c`f0d549b0 00000000`00000000 00000000`00000000 0000017c`f0d549b0 : mpengine!ResScan+0x946
- 0000002e`fce7e860 00007ffa`53505aa5 : 0000017c`80e712f0 0000017c`f0d54ba0 0000017c`f0d549b0 00007ffa`53ff6260 : mpengine!ScanOpenWithContext+0x1bb6
- 0000002e`fce7ec70 00007ffa`5340f861 : 0000017c`d41c9fd0 00000000`00000078 0000017c`80e712f0 00000000`0000800c : mpengine!UberScanOpen+0x1c9
- 0000002e`fce7ed90 00007ffa`534f902c : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : mpengine!ksignal+0xde1
- 0000002e`fce7f030 00007ffa`534f8104 : 00000000`00000000 0000002e`fce7f9a0 00000000`00000000 00000000`00000000 : mpengine!DispatchSignalHelper+0xdc
- 0000002e`fce7f090 00007ffa`5b71e395 : 00000000`00004026 00000000`00000078 0000017c`80d2c930 00007ffa`5b8b4fb7 : mpengine!DispatchSignalOnHandle+0x7c
- 0000002e`fce7f880 00007ffa`5b766b3e : 00007ffa`5bc76268 00007ffa`5b815478 00000000`ffffffff 00000000`ffffffff : mpsvc!rsignal_wrapper+0x205
- 0000002e`fce7f940 00007ffa`5b81509a : 0000017c`80d353c0 0000017c`80d353c0 0000017c`d31fbf80 00007ffa`5bb4d550 : mpsvc!OnDemandScanWorker+0x5de
- 0000002e`fce7f9d0 00007ffa`5b814f33 : 0000017c`d3100388 0000017c`80d353c0 0000017c`d38ce7d0 0000017c`d38ce880 : mpsvc!MpService::CMpSvcScanWorkItem::Run+0xca
- 0000002e`fce7fa40 00007ffa`5b849a9d : 0000017c`d3236890 00007ffa`6c380f96 0000017c`80d353c0 0000017c`80d353d0 : mpsvc!MpService::CMpSvcScansQueue::Dispatch+0x33
- 0000002e`fce7fa80 00007ffa`5ab3be98 : 0000002e`fce7faf8 0000017c`80d39ad0 0000017c`d38fdc90 00001a3d`757a3072 : mpsvc!MpService::CMpSvcScanWorkItem::OnAction+0x1d
- 0000002e`fce7fab0 00007ffa`5ab3bd83 : 0000017c`d31fbf80 0000017c`d31fbf90 0000017c`d31fbf80 0000017c`d31fbf90 : MpClient!CommonUtil::CMpSimpleThreadPool::Call+0x5c
- 0000002e`fce7fb00 00007ffa`6c373720 : 0000017c`d3236890 0000017c`d3236958 0000017c`e89a15f0 0000017c`d38fdc90 : MpClient!CommonUtil::CMpSimpleThreadPool::AsyncDequeue+0xdf
- 0000002e`fce7fb70 00007ffa`6c35d79a : 00000000`00000000 00000000`00000000 0000017c`d38fdc90 0000017c`80d39ad0 : ntdll!TppWorkpExecuteCallback+0x130
- 0000002e`fce7fbc0 00007ffa`6b3c7374 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : ntdll!TppWorkerThread+0x68a
- 0000002e`fce7fec0 00007ffa`6c35cc91 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : KERNEL32!BaseThreadInitThunk+0x14
- 0000002e`fce7fef0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : ntdll!RtlUserThreadStart+0x21
- SYMBOL_NAME: nt!MmUnlockPages+d89
- MODULE_NAME: nt
- STACK_COMMAND: .thread ; .cxr ; kb
- IMAGE_NAME: memory_corruption
- BUCKET_ID_FUNC_OFFSET: d89
- FAILURE_BUCKET_ID: 0x1a_41791_nt!MmUnlockPages
- OS_VERSION: 10.0.19041.1
- BUILDLAB_STR: vb_release
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- FAILURE_ID_HASH: {257cd050-e4e1-a6f4-7c65-0c6aaef71f68}
- Followup: MachineOwner
- ---------
win10, Windows crashed in MsMpEng.exe when installing FireFox on case-insensitive NFSv4.2 filesystem (NFS server FreeBSD 16.0 with ZFS)
Posted by Anonymous on Sat 9th May 2026 12:53
raw | new post
Submit a correction or amendment below (click here to make a fresh posting)
After submitting an amendment, you'll be able to view the differences between the old and new posts easily.
nrubsig.kpaste.net RSS