locked
BSOD - BAD_POOL_CALLER RRS feed

  • Question

  • Hi.

    I have had this BAD_POOL_CALLER bluescreen error, but I need some help to fix it, because this one goes beyond my bluescreen capabilities. I should mention that I recently also have had a different bluescreen error which pointed towards the graphics driver, but I haven't had time to take a look at it yet. 

    The following link contains a ZIP-file with five minidump files, the MSInfo and a copy of the blue screen error:
    https://onedrive.live.com/redir?resid=D99CE1FCF5247C33!113&authkey=!AD7iGUHE9_dXNYM&ithint=file%2czip

    After the bluescreen my computer asked for a system restore, when it rebooted. My computer is a HP pavilion dv6 Notebook PC with Windows 7 Home Premium.

    I hope someone can point me in the right direction.

    Kind regards, Malene. 

    Monday, May 2, 2016 10:42 AM

Answers

  • Related to btmhsf.sys Bluetooth HighSpeed Filter Driver from Intel Corporation.  Yours if from 2011.

    Completely remove the current driver (or software) and install the newest driver available.  For instructions on how to do that Read all about updating drivers by my partner JMH3143 here http://answers.microsoft.com/en-us/windows/wiki/windows_other-hardware/updating-a-driver/a5e6345e-af9b-4099-bef0-8d22254aa1c1?tm=1436753520149

    If you continue to crash I would remove Symantec as it often causes this kind of issue

    Microsoft (R) Windows Debugger Version 10.0.14318.1022 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [C:\Users\Zigzag3143\Desktop\050116-60965-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    
    ************* Symbol Path validation summary **************
    Response                         Time (ms)     Location
    Deferred                                       SRV*D:\symbols*http://msdl.microsoft.com/download/symbols
    Symbol search path is: SRV*D:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS Personal
    Built by: 7601.23392.amd64fre.win7sp1_ldr.160317-0600
    Machine Name:
    Kernel base = 0xfffff800`02e58000 PsLoadedModuleList = 0xfffff800`0309a730
    Debug session time: Sun May  1 05:36:29.920 2016 (UTC - 4:00)
    System Uptime: 0 days 0:00:31.137
    Loading Kernel Symbols
    .
    
    Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
    Run !sym noisy before .reload to track down problems loading symbols.
    
    ..............................................................
    ................................................................
    ............
    Loading User Symbols
    Loading unloaded module list
    ..
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck C2, {7, 109b, 420000c, fffffa800d73ccd0}
    
    *** WARNING: Unable to verify timestamp for btmhsf.sys
    *** ERROR: Module load completed but symbols could not be loaded for btmhsf.sys
    GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
    GetPointerFromAddress: unable to read from fffff800031040b8
    Probably caused by : btmhsf.sys ( btmhsf+668f )
    
    Followup:     MachineOwner
    ---------
    
    3: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    BAD_POOL_CALLER (c2)
    The current thread is making a bad pool request.  Typically this is at a bad IRQL level or double freeing the same allocation, etc.
    Arguments:
    Arg1: 0000000000000007, Attempt to free pool which was already freed
    Arg2: 000000000000109b, Pool tag value from the pool header
    Arg3: 000000000420000c, Contents of the first 4 bytes of the pool header
    Arg4: fffffa800d73ccd0, Address of the block of pool being deallocated
    
    Debugging Details:
    ------------------
    
    GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
    
    DUMP_CLASS: 1
    
    DUMP_QUALIFIER: 400
    
    BUILD_VERSION_STRING:  7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    SYSTEM_MANUFACTURER:  Hewlett-Packard
    
    SYSTEM_PRODUCT_NAME:  HP Pavilion dv6 Notebook PC
    
    SYSTEM_SKU:  B0B59EA#UUW
    
    SYSTEM_VERSION:  0691210000204610000620100
    
    BIOS_VENDOR:  Hewlett-Packard
    
    BIOS_VERSION:  F.13
    
    BIOS_DATE:  12/05/2011
    
    BASEBOARD_MANUFACTURER:  Hewlett-Packard
    
    BASEBOARD_PRODUCT:  17FA
    
    BASEBOARD_VERSION:  10.56
    
    DUMP_TYPE:  2
    
    BUGCHECK_P1: 7
    
    BUGCHECK_P2: 109b
    
    BUGCHECK_P3: 420000c
    
    BUGCHECK_P4: fffffa800d73ccd0
    
    POOL_ADDRESS: GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
     fffffa800d73ccd0 Nonpaged pool
    
    FREED_POOL_TAG:  Irp 
    
    BUGCHECK_STR:  0xc2_7_Irp 
    
    CPU_COUNT: 4
    
    CPU_MHZ: 9be
    
    CPU_VENDOR:  GenuineIntel
    
    CPU_FAMILY: 6
    
    CPU_MODEL: 2a
    
    CPU_STEPPING: 7
    
    CPU_MICROCODE: 6,2a,7,0 (F,M,S,R)  SIG: 25'00000000 (cache) 25'00000000 (init)
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT
    
    PROCESS_NAME:  System
    
    CURRENT_IRQL:  0
    
    ANALYSIS_SESSION_HOST:  DESKTOP-6TOHK78
    
    ANALYSIS_SESSION_TIME:  05-02-2016 05:29:19.0237
    
    ANALYSIS_VERSION: 10.0.14318.1022 amd64fre
    
    LAST_CONTROL_TRANSFER:  from fffff80002ffebf9 to fffff80002ec8380
    
    STACK_TEXT:  
    fffff880`035b5b98 fffff800`02ffebf9 : 00000000`000000c2 00000000`00000007 00000000`0000109b 00000000`0420000c : nt!KeBugCheckEx
    fffff880`035b5ba0 fffff880`0a0e368f : 00000000`00000500 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 : nt!ExFreePoolWithTag+0x17d1
    fffff880`035b5c50 00000000`00000500 : 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 : btmhsf+0x668f
    fffff880`035b5c58 0000057f`00000000 : fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 : 0x500
    fffff880`035b5c60 fffffa80`004d6253 : fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 : 0x0000057f`00000000
    fffff880`035b5c68 fffffa80`0cac4000 : fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 : 0xfffffa80`004d6253
    fffff880`035b5c70 fffff880`033d7180 : 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 : 0xfffffa80`0cac4000
    fffff880`035b5c78 0000057f`f35712c8 : fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 : 0xfffff880`033d7180
    fffff880`035b5c80 fffffa80`0ca8ed50 : fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 00000000`00000000 : 0x0000057f`f35712c8
    fffff880`035b5c88 fffffa80`0ca8ed50 : 00000000`00000001 fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 : 0xfffffa80`0ca8ed50
    fffff880`035b5c90 00000000`00000001 : fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 : 0xfffffa80`0ca8ed50
    fffff880`035b5c98 fffff880`00f40c70 : 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 : 0x1
    fffff880`035b5ca0 00000000`00000000 : fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 fffffa80`0ca8efb0 : Wdf01000!FxWmiIrpHandler::m_WmiDispatchTable+0x1030
    
    
    STACK_COMMAND:  kb
    
    THREAD_SHA1_HASH_MOD_FUNC:  ab6ec2d76d70c0b86d6b8dc36ab7c592f44d87e0
    
    THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  0f5c02d13062453b0354d8761200b8c108b337b5
    
    THREAD_SHA1_HASH_MOD:  92040c5975a7fc99924144741188284a900b86a6
    
    FOLLOWUP_IP: 
    btmhsf+668f
    fffff880`0a0e368f ??              ???
    
    SYMBOL_STACK_INDEX:  2
    
    SYMBOL_NAME:  btmhsf+668f
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: btmhsf
    
    IMAGE_NAME:  btmhsf.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4e0232f6
    
    FAILURE_BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    PRIMARY_PROBLEM_CLASS:  X64_0xc2_7_Irp__btmhsf+668f
    
    TARGET_TIME:  2016-05-01T09:36:29.000Z
    
    OSBUILD:  7601
    
    OSSERVICEPACK:  1000
    
    SERVICEPACK_NUMBER: 0
    
    OS_REVISION: 0
    
    SUITE_MASK:  784
    
    PRODUCT_TYPE:  1
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 7
    
    OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS Personal
    
    OS_LOCALE:  
    
    USER_LCID:  0
    
    OSBUILD_TIMESTAMP:  2016-03-17 17:43:02
    
    BUILDDATESTAMP_STR:  160317-0600
    
    BUILDLAB_STR:  win7sp1_ldr
    
    BUILDOSVER_STR:  6.1.7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    ANALYSIS_SESSION_ELAPSED_TIME: 4ac
    
    ANALYSIS_SOURCE:  KM
    
    FAILURE_ID_HASH_STRING:  km:x64_0xc2_7_irp__btmhsf+668f
    
    FAILURE_ID_HASH:  {a3318dcc-5673-e743-31fd-bd5be523a9df}
    
    Followup:     MachineOwner
    ---------
    
    3: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    BAD_POOL_CALLER (c2)
    The current thread is making a bad pool request.  Typically this is at a bad IRQL level or double freeing the same allocation, etc.
    Arguments:
    Arg1: 0000000000000007, Attempt to free pool which was already freed
    Arg2: 000000000000109b, Pool tag value from the pool header
    Arg3: 000000000420000c, Contents of the first 4 bytes of the pool header
    Arg4: fffffa800d73ccd0, Address of the block of pool being deallocated
    
    Debugging Details:
    ------------------
    
    GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
    
    DUMP_CLASS: 1
    
    DUMP_QUALIFIER: 400
    
    BUILD_VERSION_STRING:  7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    SYSTEM_MANUFACTURER:  Hewlett-Packard
    
    SYSTEM_PRODUCT_NAME:  HP Pavilion dv6 Notebook PC
    
    SYSTEM_SKU:  B0B59EA#UUW
    
    SYSTEM_VERSION:  0691210000204610000620100
    
    BIOS_VENDOR:  Hewlett-Packard
    
    BIOS_VERSION:  F.13
    
    BIOS_DATE:  12/05/2011
    
    BASEBOARD_MANUFACTURER:  Hewlett-Packard
    
    BASEBOARD_PRODUCT:  17FA
    
    BASEBOARD_VERSION:  10.56
    
    DUMP_TYPE:  2
    
    BUGCHECK_P1: 7
    
    BUGCHECK_P2: 109b
    
    BUGCHECK_P3: 420000c
    
    BUGCHECK_P4: fffffa800d73ccd0
    
    POOL_ADDRESS: GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
     fffffa800d73ccd0 Nonpaged pool
    
    FREED_POOL_TAG:  Irp 
    
    BUGCHECK_STR:  0xc2_7_Irp 
    
    CPU_COUNT: 4
    
    CPU_MHZ: 9be
    
    CPU_VENDOR:  GenuineIntel
    
    CPU_FAMILY: 6
    
    CPU_MODEL: 2a
    
    CPU_STEPPING: 7
    
    CPU_MICROCODE: 6,2a,7,0 (F,M,S,R)  SIG: 25'00000000 (cache) 25'00000000 (init)
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT
    
    PROCESS_NAME:  System
    
    CURRENT_IRQL:  0
    
    ANALYSIS_SESSION_HOST:  DESKTOP-6TOHK78
    
    ANALYSIS_SESSION_TIME:  05-02-2016 05:29:20.0438
    
    ANALYSIS_VERSION: 10.0.14318.1022 amd64fre
    
    LAST_CONTROL_TRANSFER:  from fffff80002ffebf9 to fffff80002ec8380
    
    STACK_TEXT:  
    fffff880`035b5b98 fffff800`02ffebf9 : 00000000`000000c2 00000000`00000007 00000000`0000109b 00000000`0420000c : nt!KeBugCheckEx
    fffff880`035b5ba0 fffff880`0a0e368f : 00000000`00000500 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 : nt!ExFreePoolWithTag+0x17d1
    fffff880`035b5c50 00000000`00000500 : 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 : btmhsf+0x668f
    fffff880`035b5c58 0000057f`00000000 : fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 : 0x500
    fffff880`035b5c60 fffffa80`004d6253 : fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 : 0x0000057f`00000000
    fffff880`035b5c68 fffffa80`0cac4000 : fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 : 0xfffffa80`004d6253
    fffff880`035b5c70 fffff880`033d7180 : 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 : 0xfffffa80`0cac4000
    fffff880`035b5c78 0000057f`f35712c8 : fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 : 0xfffff880`033d7180
    fffff880`035b5c80 fffffa80`0ca8ed50 : fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 00000000`00000000 : 0x0000057f`f35712c8
    fffff880`035b5c88 fffffa80`0ca8ed50 : 00000000`00000001 fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 : 0xfffffa80`0ca8ed50
    fffff880`035b5c90 00000000`00000001 : fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 : 0xfffffa80`0ca8ed50
    fffff880`035b5c98 fffff880`00f40c70 : 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 : 0x1
    fffff880`035b5ca0 00000000`00000000 : fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 fffffa80`0ca8efb0 : Wdf01000!FxWmiIrpHandler::m_WmiDispatchTable+0x1030
    
    
    STACK_COMMAND:  kb
    
    THREAD_SHA1_HASH_MOD_FUNC:  ab6ec2d76d70c0b86d6b8dc36ab7c592f44d87e0
    
    THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  0f5c02d13062453b0354d8761200b8c108b337b5
    
    THREAD_SHA1_HASH_MOD:  92040c5975a7fc99924144741188284a900b86a6
    
    FOLLOWUP_IP: 
    btmhsf+668f
    fffff880`0a0e368f ??              ???
    
    SYMBOL_STACK_INDEX:  2
    
    SYMBOL_NAME:  btmhsf+668f
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: btmhsf
    
    IMAGE_NAME:  btmhsf.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4e0232f6
    
    FAILURE_BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    PRIMARY_PROBLEM_CLASS:  X64_0xc2_7_Irp__btmhsf+668f
    
    TARGET_TIME:  2016-05-01T09:36:29.000Z
    
    OSBUILD:  7601
    
    OSSERVICEPACK:  1000
    
    SERVICEPACK_NUMBER: 0
    
    OS_REVISION: 0
    
    SUITE_MASK:  784
    
    PRODUCT_TYPE:  1
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 7
    
    OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS Personal
    
    OS_LOCALE:  
    
    USER_LCID:  0
    
    OSBUILD_TIMESTAMP:  2016-03-17 17:43:02
    
    BUILDDATESTAMP_STR:  160317-0600
    
    BUILDLAB_STR:  win7sp1_ldr
    
    BUILDOSVER_STR:  6.1.7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    ANALYSIS_SESSION_ELAPSED_TIME: 4ad
    
    ANALYSIS_SOURCE:  KM
    
    FAILURE_ID_HASH_STRING:  km:x64_0xc2_7_irp__btmhsf+668f
    
    FAILURE_ID_HASH:  {a3318dcc-5673-e743-31fd-bd5be523a9df}
    
    Followup:     MachineOwner
    ---------
    
    3: kd> lmvm btmhsf
    Browse full module list
    start             end                 module name
    fffff880`0a0dd000 fffff880`0a126000   btmhsf   T (no symbols)           
        Loaded symbol image file: btmhsf.sys
        Image path: \SystemRoot\system32\DRIVERS\btmhsf.sys
        Image name: btmhsf.sys
        Browse all global symbols  functions  data
        Timestamp:        Wed Jun 22 14:22:46 2011 (4E0232F6)
        CheckSum:         00048DE4
        ImageSize:        00049000
        Translations:     0000.04b0 0000.04e4 0409.04b0 0409.04e4
    


    Wanikiya and Dyami--Team Zigzag Windows IT-PRO (MS-MVP)

    Monday, May 2, 2016 11:39 AM

All replies

  • Related to btmhsf.sys Bluetooth HighSpeed Filter Driver from Intel Corporation.  Yours if from 2011.

    Completely remove the current driver (or software) and install the newest driver available.  For instructions on how to do that Read all about updating drivers by my partner JMH3143 here http://answers.microsoft.com/en-us/windows/wiki/windows_other-hardware/updating-a-driver/a5e6345e-af9b-4099-bef0-8d22254aa1c1?tm=1436753520149

    If you continue to crash I would remove Symantec as it often causes this kind of issue

    Microsoft (R) Windows Debugger Version 10.0.14318.1022 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [C:\Users\Zigzag3143\Desktop\050116-60965-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available
    
    
    ************* Symbol Path validation summary **************
    Response                         Time (ms)     Location
    Deferred                                       SRV*D:\symbols*http://msdl.microsoft.com/download/symbols
    Symbol search path is: SRV*D:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: 
    Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
    Product: WinNt, suite: TerminalServer SingleUserTS Personal
    Built by: 7601.23392.amd64fre.win7sp1_ldr.160317-0600
    Machine Name:
    Kernel base = 0xfffff800`02e58000 PsLoadedModuleList = 0xfffff800`0309a730
    Debug session time: Sun May  1 05:36:29.920 2016 (UTC - 4:00)
    System Uptime: 0 days 0:00:31.137
    Loading Kernel Symbols
    .
    
    Press ctrl-c (cdb, kd, ntsd) or ctrl-break (windbg) to abort symbol loads that take too long.
    Run !sym noisy before .reload to track down problems loading symbols.
    
    ..............................................................
    ................................................................
    ............
    Loading User Symbols
    Loading unloaded module list
    ..
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    Use !analyze -v to get detailed debugging information.
    
    BugCheck C2, {7, 109b, 420000c, fffffa800d73ccd0}
    
    *** WARNING: Unable to verify timestamp for btmhsf.sys
    *** ERROR: Module load completed but symbols could not be loaded for btmhsf.sys
    GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
    GetPointerFromAddress: unable to read from fffff800031040b8
    Probably caused by : btmhsf.sys ( btmhsf+668f )
    
    Followup:     MachineOwner
    ---------
    
    3: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    BAD_POOL_CALLER (c2)
    The current thread is making a bad pool request.  Typically this is at a bad IRQL level or double freeing the same allocation, etc.
    Arguments:
    Arg1: 0000000000000007, Attempt to free pool which was already freed
    Arg2: 000000000000109b, Pool tag value from the pool header
    Arg3: 000000000420000c, Contents of the first 4 bytes of the pool header
    Arg4: fffffa800d73ccd0, Address of the block of pool being deallocated
    
    Debugging Details:
    ------------------
    
    GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
    
    DUMP_CLASS: 1
    
    DUMP_QUALIFIER: 400
    
    BUILD_VERSION_STRING:  7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    SYSTEM_MANUFACTURER:  Hewlett-Packard
    
    SYSTEM_PRODUCT_NAME:  HP Pavilion dv6 Notebook PC
    
    SYSTEM_SKU:  B0B59EA#UUW
    
    SYSTEM_VERSION:  0691210000204610000620100
    
    BIOS_VENDOR:  Hewlett-Packard
    
    BIOS_VERSION:  F.13
    
    BIOS_DATE:  12/05/2011
    
    BASEBOARD_MANUFACTURER:  Hewlett-Packard
    
    BASEBOARD_PRODUCT:  17FA
    
    BASEBOARD_VERSION:  10.56
    
    DUMP_TYPE:  2
    
    BUGCHECK_P1: 7
    
    BUGCHECK_P2: 109b
    
    BUGCHECK_P3: 420000c
    
    BUGCHECK_P4: fffffa800d73ccd0
    
    POOL_ADDRESS: GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
     fffffa800d73ccd0 Nonpaged pool
    
    FREED_POOL_TAG:  Irp 
    
    BUGCHECK_STR:  0xc2_7_Irp 
    
    CPU_COUNT: 4
    
    CPU_MHZ: 9be
    
    CPU_VENDOR:  GenuineIntel
    
    CPU_FAMILY: 6
    
    CPU_MODEL: 2a
    
    CPU_STEPPING: 7
    
    CPU_MICROCODE: 6,2a,7,0 (F,M,S,R)  SIG: 25'00000000 (cache) 25'00000000 (init)
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT
    
    PROCESS_NAME:  System
    
    CURRENT_IRQL:  0
    
    ANALYSIS_SESSION_HOST:  DESKTOP-6TOHK78
    
    ANALYSIS_SESSION_TIME:  05-02-2016 05:29:19.0237
    
    ANALYSIS_VERSION: 10.0.14318.1022 amd64fre
    
    LAST_CONTROL_TRANSFER:  from fffff80002ffebf9 to fffff80002ec8380
    
    STACK_TEXT:  
    fffff880`035b5b98 fffff800`02ffebf9 : 00000000`000000c2 00000000`00000007 00000000`0000109b 00000000`0420000c : nt!KeBugCheckEx
    fffff880`035b5ba0 fffff880`0a0e368f : 00000000`00000500 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 : nt!ExFreePoolWithTag+0x17d1
    fffff880`035b5c50 00000000`00000500 : 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 : btmhsf+0x668f
    fffff880`035b5c58 0000057f`00000000 : fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 : 0x500
    fffff880`035b5c60 fffffa80`004d6253 : fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 : 0x0000057f`00000000
    fffff880`035b5c68 fffffa80`0cac4000 : fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 : 0xfffffa80`004d6253
    fffff880`035b5c70 fffff880`033d7180 : 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 : 0xfffffa80`0cac4000
    fffff880`035b5c78 0000057f`f35712c8 : fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 : 0xfffff880`033d7180
    fffff880`035b5c80 fffffa80`0ca8ed50 : fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 00000000`00000000 : 0x0000057f`f35712c8
    fffff880`035b5c88 fffffa80`0ca8ed50 : 00000000`00000001 fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 : 0xfffffa80`0ca8ed50
    fffff880`035b5c90 00000000`00000001 : fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 : 0xfffffa80`0ca8ed50
    fffff880`035b5c98 fffff880`00f40c70 : 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 : 0x1
    fffff880`035b5ca0 00000000`00000000 : fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 fffffa80`0ca8efb0 : Wdf01000!FxWmiIrpHandler::m_WmiDispatchTable+0x1030
    
    
    STACK_COMMAND:  kb
    
    THREAD_SHA1_HASH_MOD_FUNC:  ab6ec2d76d70c0b86d6b8dc36ab7c592f44d87e0
    
    THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  0f5c02d13062453b0354d8761200b8c108b337b5
    
    THREAD_SHA1_HASH_MOD:  92040c5975a7fc99924144741188284a900b86a6
    
    FOLLOWUP_IP: 
    btmhsf+668f
    fffff880`0a0e368f ??              ???
    
    SYMBOL_STACK_INDEX:  2
    
    SYMBOL_NAME:  btmhsf+668f
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: btmhsf
    
    IMAGE_NAME:  btmhsf.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4e0232f6
    
    FAILURE_BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    PRIMARY_PROBLEM_CLASS:  X64_0xc2_7_Irp__btmhsf+668f
    
    TARGET_TIME:  2016-05-01T09:36:29.000Z
    
    OSBUILD:  7601
    
    OSSERVICEPACK:  1000
    
    SERVICEPACK_NUMBER: 0
    
    OS_REVISION: 0
    
    SUITE_MASK:  784
    
    PRODUCT_TYPE:  1
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 7
    
    OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS Personal
    
    OS_LOCALE:  
    
    USER_LCID:  0
    
    OSBUILD_TIMESTAMP:  2016-03-17 17:43:02
    
    BUILDDATESTAMP_STR:  160317-0600
    
    BUILDLAB_STR:  win7sp1_ldr
    
    BUILDOSVER_STR:  6.1.7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    ANALYSIS_SESSION_ELAPSED_TIME: 4ac
    
    ANALYSIS_SOURCE:  KM
    
    FAILURE_ID_HASH_STRING:  km:x64_0xc2_7_irp__btmhsf+668f
    
    FAILURE_ID_HASH:  {a3318dcc-5673-e743-31fd-bd5be523a9df}
    
    Followup:     MachineOwner
    ---------
    
    3: kd> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Bugcheck Analysis                                    *
    *                                                                             *
    *******************************************************************************
    
    BAD_POOL_CALLER (c2)
    The current thread is making a bad pool request.  Typically this is at a bad IRQL level or double freeing the same allocation, etc.
    Arguments:
    Arg1: 0000000000000007, Attempt to free pool which was already freed
    Arg2: 000000000000109b, Pool tag value from the pool header
    Arg3: 000000000420000c, Contents of the first 4 bytes of the pool header
    Arg4: fffffa800d73ccd0, Address of the block of pool being deallocated
    
    Debugging Details:
    ------------------
    
    GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
    
    DUMP_CLASS: 1
    
    DUMP_QUALIFIER: 400
    
    BUILD_VERSION_STRING:  7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    SYSTEM_MANUFACTURER:  Hewlett-Packard
    
    SYSTEM_PRODUCT_NAME:  HP Pavilion dv6 Notebook PC
    
    SYSTEM_SKU:  B0B59EA#UUW
    
    SYSTEM_VERSION:  0691210000204610000620100
    
    BIOS_VENDOR:  Hewlett-Packard
    
    BIOS_VERSION:  F.13
    
    BIOS_DATE:  12/05/2011
    
    BASEBOARD_MANUFACTURER:  Hewlett-Packard
    
    BASEBOARD_PRODUCT:  17FA
    
    BASEBOARD_VERSION:  10.56
    
    DUMP_TYPE:  2
    
    BUGCHECK_P1: 7
    
    BUGCHECK_P2: 109b
    
    BUGCHECK_P3: 420000c
    
    BUGCHECK_P4: fffffa800d73ccd0
    
    POOL_ADDRESS: GetPointerFromAddress: unable to read from fffff80003104100
    Unable to get MmSystemRangeStart
    GetUlongPtrFromAddress: unable to read from fffff800031042e8
    GetUlongPtrFromAddress: unable to read from fffff80003104498
     fffffa800d73ccd0 Nonpaged pool
    
    FREED_POOL_TAG:  Irp 
    
    BUGCHECK_STR:  0xc2_7_Irp 
    
    CPU_COUNT: 4
    
    CPU_MHZ: 9be
    
    CPU_VENDOR:  GenuineIntel
    
    CPU_FAMILY: 6
    
    CPU_MODEL: 2a
    
    CPU_STEPPING: 7
    
    CPU_MICROCODE: 6,2a,7,0 (F,M,S,R)  SIG: 25'00000000 (cache) 25'00000000 (init)
    
    CUSTOMER_CRASH_COUNT:  1
    
    DEFAULT_BUCKET_ID:  WIN7_DRIVER_FAULT
    
    PROCESS_NAME:  System
    
    CURRENT_IRQL:  0
    
    ANALYSIS_SESSION_HOST:  DESKTOP-6TOHK78
    
    ANALYSIS_SESSION_TIME:  05-02-2016 05:29:20.0438
    
    ANALYSIS_VERSION: 10.0.14318.1022 amd64fre
    
    LAST_CONTROL_TRANSFER:  from fffff80002ffebf9 to fffff80002ec8380
    
    STACK_TEXT:  
    fffff880`035b5b98 fffff800`02ffebf9 : 00000000`000000c2 00000000`00000007 00000000`0000109b 00000000`0420000c : nt!KeBugCheckEx
    fffff880`035b5ba0 fffff880`0a0e368f : 00000000`00000500 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 : nt!ExFreePoolWithTag+0x17d1
    fffff880`035b5c50 00000000`00000500 : 0000057f`00000000 fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 : btmhsf+0x668f
    fffff880`035b5c58 0000057f`00000000 : fffffa80`004d6253 fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 : 0x500
    fffff880`035b5c60 fffffa80`004d6253 : fffffa80`0cac4000 fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 : 0x0000057f`00000000
    fffff880`035b5c68 fffffa80`0cac4000 : fffff880`033d7180 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 : 0xfffffa80`004d6253
    fffff880`035b5c70 fffff880`033d7180 : 0000057f`f35712c8 fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 : 0xfffffa80`0cac4000
    fffff880`035b5c78 0000057f`f35712c8 : fffffa80`0ca8ed50 fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 : 0xfffff880`033d7180
    fffff880`035b5c80 fffffa80`0ca8ed50 : fffffa80`0ca8ed50 00000000`00000001 fffff880`00f40c70 00000000`00000000 : 0x0000057f`f35712c8
    fffff880`035b5c88 fffffa80`0ca8ed50 : 00000000`00000001 fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 : 0xfffffa80`0ca8ed50
    fffff880`035b5c90 00000000`00000001 : fffff880`00f40c70 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 : 0xfffffa80`0ca8ed50
    fffff880`035b5c98 fffff880`00f40c70 : 00000000`00000000 fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 : 0x1
    fffff880`035b5ca0 00000000`00000000 : fffff880`0a0def17 0000057f`f35712c8 0000057f`f35712c8 fffffa80`0ca8efb0 : Wdf01000!FxWmiIrpHandler::m_WmiDispatchTable+0x1030
    
    
    STACK_COMMAND:  kb
    
    THREAD_SHA1_HASH_MOD_FUNC:  ab6ec2d76d70c0b86d6b8dc36ab7c592f44d87e0
    
    THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  0f5c02d13062453b0354d8761200b8c108b337b5
    
    THREAD_SHA1_HASH_MOD:  92040c5975a7fc99924144741188284a900b86a6
    
    FOLLOWUP_IP: 
    btmhsf+668f
    fffff880`0a0e368f ??              ???
    
    SYMBOL_STACK_INDEX:  2
    
    SYMBOL_NAME:  btmhsf+668f
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: btmhsf
    
    IMAGE_NAME:  btmhsf.sys
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  4e0232f6
    
    FAILURE_BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    BUCKET_ID:  X64_0xc2_7_Irp__btmhsf+668f
    
    PRIMARY_PROBLEM_CLASS:  X64_0xc2_7_Irp__btmhsf+668f
    
    TARGET_TIME:  2016-05-01T09:36:29.000Z
    
    OSBUILD:  7601
    
    OSSERVICEPACK:  1000
    
    SERVICEPACK_NUMBER: 0
    
    OS_REVISION: 0
    
    SUITE_MASK:  784
    
    PRODUCT_TYPE:  1
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 7
    
    OSEDITION:  Windows 7 WinNt (Service Pack 1) TerminalServer SingleUserTS Personal
    
    OS_LOCALE:  
    
    USER_LCID:  0
    
    OSBUILD_TIMESTAMP:  2016-03-17 17:43:02
    
    BUILDDATESTAMP_STR:  160317-0600
    
    BUILDLAB_STR:  win7sp1_ldr
    
    BUILDOSVER_STR:  6.1.7601.23392.amd64fre.win7sp1_ldr.160317-0600
    
    ANALYSIS_SESSION_ELAPSED_TIME: 4ad
    
    ANALYSIS_SOURCE:  KM
    
    FAILURE_ID_HASH_STRING:  km:x64_0xc2_7_irp__btmhsf+668f
    
    FAILURE_ID_HASH:  {a3318dcc-5673-e743-31fd-bd5be523a9df}
    
    Followup:     MachineOwner
    ---------
    
    3: kd> lmvm btmhsf
    Browse full module list
    start             end                 module name
    fffff880`0a0dd000 fffff880`0a126000   btmhsf   T (no symbols)           
        Loaded symbol image file: btmhsf.sys
        Image path: \SystemRoot\system32\DRIVERS\btmhsf.sys
        Image name: btmhsf.sys
        Browse all global symbols  functions  data
        Timestamp:        Wed Jun 22 14:22:46 2011 (4E0232F6)
        CheckSum:         00048DE4
        ImageSize:        00049000
        Translations:     0000.04b0 0000.04e4 0409.04b0 0409.04e4
    


    Wanikiya and Dyami--Team Zigzag Windows IT-PRO (MS-MVP)

    Monday, May 2, 2016 11:39 AM
  • Hi MGJensen,

    How’s everything going? Please feel free to give us any update.

    Best regards,

    Carl Fan


    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact tnmff@microsoft.com.

    Thursday, May 5, 2016 8:22 AM