Tak v minidumpu mi to píše tohle:
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Instrukce na adrese 0x%08lx odkazovala na adresu pam
FAULTING_IP:
SYMEFA+1c24a
8aef324a 8b4804 mov ecx,dword ptr [eax+4]
EXCEPTION_RECORD: 8d17bb2c -- (.exr 0xffffffff8d17bb2c)
ExceptionAddress: 8aef324a (SYMEFA+0x0001c24a)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 6e664d4a
Attempt to read from address 6e664d4a
CONTEXT: 8d17b710 -- (.cxr 0xffffffff8d17b710)
eax=6e664d46 ebx=82cc6e5f ecx=6e664d46 edx=00000000 esi=8d17bc10 edi=00000000
eip=8aef324a esp=8d17bbf4 ebp=8d17bbf4 iopl=0 nv up ei pl nz na po nc
cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00210202
SYMEFA+0x1c24a:
8aef324a 8b4804 mov ecx,dword ptr [eax+4] ds

6e664d4a=????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: STRING_DEREFERENCE
PROCESS_NAME: System
CURRENT_IRQL: 0
ERROR_CODE: (NTSTATUS) 0xc0000005 - Instrukce na adrese 0x%08lx odkazovala na adresu pam
EXCEPTION_PARAMETER1: 00000000
EXCEPTION_PARAMETER2: 6e664d4a
READ_ADDRESS: GetPointerFromAddress: unable to read from 82bba718
Unable to read MiSystemVaType memory at 82b9a160
6e664d4a
FOLLOWUP_IP:
SYMEFA+1c24a
8aef324a 8b4804 mov ecx,dword ptr [eax+4]
BUGCHECK_STR: 0x7E
LAST_CONTROL_TRANSFER: from 8aeee51b to 8aef324a
STACK_TEXT:
WARNING: Stack unwind information not available. Following frames may be wrong.
8d17bbf4 8aeee51b 8aee0b48 07fa4da7 82a8e3f1 SYMEFA+0x1c24a
8d17bcbc 8aeef402 00000000 862dc4e0 8d17bd00 SYMEFA+0x1751b
8d17bccc 8ae613c8 862dc4e0 858aaa10 8d0aecc4 SYMEFA+0x18402
8d17bd00 82abff2b 00000000 00000000 84fcc240 fltmgr!FltpProcessGenericWorkItem+0x38
8d17bd50 82c6066d 00000000 bdf92e2e 00000000 nt!ExpWorkerThread+0x10d
8d17bd90 82b120d9 82abfe1e 00000000 00000000 nt!PspSystemThreadStartup+0x9e
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x19
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: SYMEFA+1c24a
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: SYMEFA
IMAGE_NAME: SYMEFA.SYS
DEBUG_FLR_IMAGE_TIMESTAMP: 4b0b384b
STACK_COMMAND: .cxr 0xffffffff8d17b710 ; kb
FAILURE_BUCKET_ID: 0x7E_SYMEFA+1c24a
BUCKET_ID: 0x7E_SYMEFA+1c24a
Followup: MachineOwner
---------