locked
Explorer.exe crashes when searching inside mapped drive RRS feed

  • Question

  • Hi,

    Starting Windows 10 Anniversary Build, my organization's users report that their explorer.exe will crash randomly when accessing a mapped drive.

    I have followed the general advice to create a user-mode dump following this website to obtained the file for analyzing in VS2015

    http://answers.microsoft.com/en-us/windows/forum/windows_8-files/file-explorer-crush-doun/8ab3efc9-849d-4fa3-a055-6b9d854275f7

    Apparently, the corruption comes from the thumbcache.dll and following this website, it was promptly cleared, however it did not resolve the crashing error.

    http://www.thewindowsclub.com/rebuild-icon-clear-thumbnail-cache-windows-10

    This is the result from !analysis -v

    Microsoft (R) Windows Debugger Version 10.0.14321.1024 X86
    Copyright (c) Microsoft Corporation. All rights reserved.

    DESKTOP-T67P5R4\Dell Precision  (npipe WinIDE_01D230109C929ABB) connected at Thu Oct 27 13:11:45 2016

    Microsoft (R) Windows Debugger Version 10.0.14321.1024 X86
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\CrashDumps\explorer.exe.3900.dmp]
    User Mini Dump File: Only registers, stack and portions of memory are available

    Symbol search path is: https://msdl.microsoft.com/download/symbols;srv*
    Executable search path is:
    Windows 10 Version 14393 MP (4 procs) Free x64
    Product: WinNt, suite: SingleUserTS
    Built by: 10.0.14393.206 (rs1_release.160915-0644)
    Machine Name:
    Debug session time: Thu Oct 27 12:47:06.000 2016 (UTC + 8:00)
    System Uptime: not available
    Process Uptime: 0 days 0:01:03.000
    ................................................................
    ................................................................
    ................................................................
    ...........................................................
    Loading unloaded module list
    ...............................
    This dump file has an exception of interest stored in it.
    The stored exception information can be accessed via .ecxr.
    (f3c.d7c): Unknown exception - code c0000374 (first/second chance not available)
    ntdll!NtWaitForMultipleObjects+0x14:
    00007ffd`9fbb59a4 c3              ret
    A timeout occurred.  The timeout can be increased in the Debugging options page
    0:035> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Exception Analysis                                   *
    *                                                                             *
    *******************************************************************************

    Cannot find frame 0x1b, previous scope unchanged
    *** WARNING: Unable to verify timestamp for sppc.dll
    *** ERROR: Module load completed but symbols could not be loaded for sppc.dll
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for winhttp.dll -
    *** WARNING: Unable to verify timestamp for nvwgf2umx.dll
    *** ERROR: Module load completed but symbols could not be loaded for nvwgf2umx.dll
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for DropboxExt64.65536.dll -
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for GROOVEEX.DLL -

    DUMP_CLASS: 2

    DUMP_QUALIFIER: 400

    CONTEXT:  (.ecxr)
    rax=0000000000000000 rbx=00000000c0000374 rcx=0000000000000003
    rdx=00007ffd9fb56fe4 rsi=0000000000000001 rdi=00007ffd9fc5f6b0
    rip=00007ffd9fc073f3 rsp=0000000006f9ddc0 rbp=0000000000000000
     r8=0000000000000000  r9=0000000000000000 r10=0000000000000000
    r11=0000000100000000 r12=000000000bba3f00 r13=0000000000000000
    r14=0000000000000000 r15=0000000000000001
    iopl=0         nv up ei pl nz na po nc
    cs=0033  ss=002b  ds=002b  es=002b  fs=0053  gs=002b             efl=00000206
    ntdll!RtlReportCriticalFailure+0x97:
    00007ffd`9fc073f3 eb00            jmp     ntdll!RtlReportCriticalFailure+0x99 (00007ffd`9fc073f5)
    Resetting default scope

    FAULTING_IP:
    ntdll!RtlReportCriticalFailure+97
    00007ffd`9fc073f3 eb00            jmp     ntdll!RtlReportCriticalFailure+0x99 (00007ffd`9fc073f5)

    EXCEPTION_RECORD:  (.exr -1)
    ExceptionAddress: 00007ffd9fc073f3 (ntdll!RtlReportCriticalFailure+0x0000000000000097)
       ExceptionCode: c0000374
      ExceptionFlags: 00000001
    NumberParameters: 1
       Parameter[0]: 00007ffd9fc5f6b0

    PROCESS_NAME:  explorer.exe

    ERROR_CODE: (NTSTATUS) 0xc0000374 - A heap has been corrupted.

    EXCEPTION_CODE: (NTSTATUS) 0xc0000374 - A heap has been corrupted.

    EXCEPTION_CODE_STR:  c0000374

    EXCEPTION_PARAMETER1:  00007ffd9fc5f6b0

    WATSON_BKT_PROCSTAMP:  57dacb32

    WATSON_BKT_PROCVER:  10.0.14393.206

    PROCESS_VER_PRODUCT:  Microsoft® Windows® Operating System

    WATSON_BKT_MODULE:  ntdll.dll

    WATSON_BKT_MODSTAMP:  57dac931

    WATSON_BKT_MODOFFSET:  f73f3

    WATSON_BKT_MODVER:  10.0.14393.206

    MODULE_VER_PRODUCT:  Microsoft® Windows® Operating System

    BUILD_VERSION_STRING:  10.0.14393.0 (rs1_release.160715-1616)

    MODLIST_WITH_TSCHKSUM_HASH:  2f2dc48c1381389f15962bf278087895a2c6f1cb

    MODLIST_SHA1_HASH:  cf56346dc57db100b7daac5bef6ce1ff99acb70e

    NTGLOBALFLAG:  0

    APPLICATION_VERIFIER_FLAGS:  0

    DUMP_FLAGS:  94

    DUMP_TYPE:  1

    ANALYSIS_SESSION_HOST:  DESKTOP-T67P5R4

    ANALYSIS_SESSION_TIME:  10-27-2016 13:21:39.0774

    ANALYSIS_VERSION: 10.0.14321.1024 x86fre

    THREAD_ATTRIBUTES:
    LAST_CONTROL_TRANSFER:  from 00007ffd9fc07d4a to 00007ffd9fc073f3

    FAULTING_THREAD:  ffffffff

    THREAD_SHA1_HASH_MOD_FUNC:  8bd90cd3ee0596bf0e6f41843e19831af01f153d

    THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  d9927507d33b2ab3be0d18c8e1adb9f58643ec3b

    OS_LOCALE:  ENE

    PROBLEM_CLASSES:



    ACTIONABLE_HEAP_CORRUPTION
        Tid    [0xd7c]
        Frame  [0x02]: ntdll!RtlpLogHeapFailure
        String [heap_failure_invalid_argument]
        Failure Bucketing



    BIASED_HEAP_BLOCK
        Tid    [0xd7c]
        Frame  [0x03]: ntdll!RtlFreeHeap


    BUGCHECK_STR:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK

    DEFAULT_BUCKET_ID:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument

    STACK_TEXT:  
    00007ffd`9fc5f718 00007ffd`9fbcc840 ntdll!RtlFreeHeap+0x80730
    00007ffd`9fc5f720 00007ffd`8865ab9e thumbcache!CThumbnailCache::_GetThumbnailInternal+0x24e
    00007ffd`9fc5f728 00007ffd`8865aca1 thumbcache!CThumbnailCache::GetThumbnailPrivate+0x91
    00007ffd`9fc5f730 00007ffd`88658a91 thumbcache!CThumbnailCacheAPI::GetThumbnailPrivate+0xd1
    00007ffd`9fc5f738 00007ffd`88658d0f thumbcache!CThumbnailCacheAPI::GetThumbnail+0x2f
    00007ffd`9fc5f740 00007ffd`9c71a7d3 windows_storage!CShellItem::_GetThumbnail+0xaf
    00007ffd`9fc5f748 00007ffd`9c71ae5c windows_storage!CShellItem::GetSharedBitmap+0x14c
    00007ffd`9fc5f750 00007ffd`9cbaa92d windows_storage!CFolderThumbnail::_SkewThumbnail+0xa9
    00007ffd`9fc5f758 00007ffd`9c92ab92 windows_storage!`OpenWithLogging::Instance'::`2'::`dynamic atexit destructor for 'wrapper''+0x4d4b2
    00007ffd`9fc5f760 00007ffd`9c728f1a windows_storage!CFolderThumbnail::Extract+0x10a
    00007ffd`9fc5f768 00007ffd`88653b32 thumbcache!RunExtractor+0x2a2
    00007ffd`9fc5f770 00007ffd`88651f73 thumbcache!CThumbnailCache::_PerformFullExtractionCore+0x19f
    00007ffd`9fc5f778 00007ffd`88652162 thumbcache!CThumbnailCache::_PerformFullExtraction+0xce
    00007ffd`9fc5f780 00007ffd`8865ba08 thumbcache!CThumbnailCache::_GetThumbnailImpl+0x938
    00007ffd`9fc5f788 00007ffd`8865ab4d thumbcache!CThumbnailCache::_GetThumbnailInternal+0x1fd
    00007ffd`9fc5f790 00007ffd`8865aca1 thumbcache!CThumbnailCache::GetThumbnailPrivate+0x91
    00007ffd`9fc5f798 00007ffd`88658a91 thumbcache!CThumbnailCacheAPI::GetThumbnailPrivate+0xd1
    00007ffd`9fc5f7a0 00007ffd`88658d0f thumbcache!CThumbnailCacheAPI::GetThumbnail+0x2f
    00007ffd`9fc5f7a8 00007ffd`9c71a7d3 windows_storage!CShellItem::_GetThumbnail+0xaf
    00007ffd`9fc5f7b0 00007ffd`9c71ae5c windows_storage!CShellItem::GetSharedBitmap+0x14c
    00007ffd`9fc5f7b8 00007ffd`9c71c8c4 windows_storage!CThumbnailExtractTask::InternalResumeRT+0x194
    00007ffd`9fc5f7c0 00007ffd`9c7dc047 windows_storage!CRunnableTask::Run+0xe7
    00007ffd`9fc5f7c8 00007ffd`9c7dd479 windows_storage!CShellTask::TT_Run+0x89
    00007ffd`9fc5f7d0 00007ffd`9c7dc1e8 windows_storage!CShellTaskThread::ThreadProc+0xd0
    00007ffd`9fc5f7d8 00007ffd`9c7df04f windows_storage!CShellTaskThread::s_ThreadProc+0x2f
    00007ffd`9fc5f7e0 00007ffd`9c1c7c86 SHCore!ExecuteWorkItemThreadProc+0x16
    00007ffd`9fc5f7e8 00007ffd`9fb5d9f9 ntdll!RtlpTpWorkCallback+0x129
    00007ffd`9fc5f7f0 00007ffd`9fb42caa ntdll!TppWorkerThread+0x4aa
    00007ffd`9fc5f7f8 00007ffd`9d438364 kernel32!BaseThreadInitThunk+0x14
    00007ffd`9fc5f800 00007ffd`9fb75e91 ntdll!RtlUserThreadStart+0x21


    STACK_COMMAND:  dps 7ffd9fc5f718 ; kb

    THREAD_SHA1_HASH_MOD:  36b67cd0ff2794841403e12ae855ee792a8db48b

    FOLLOWUP_IP:
    thumbcache!CThumbnailCache::_GetThumbnailInternal+24e
    00007ffd`8865ab9e 4584e4          test    r12b,r12b

    FAULT_INSTR_CODE:  fe48445

    SYMBOL_STACK_INDEX:  1

    SYMBOL_NAME:  thumbcache!CThumbnailCache::_GetThumbnailInternal+24e

    FOLLOWUP_NAME:  MachineOwner

    MODULE_NAME: thumbcache

    IMAGE_NAME:  thumbcache.dll

    DEBUG_FLR_IMAGE_TIMESTAMP:  578998ff

    FAILURE_BUCKET_ID:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_c0000374_thumbcache.dll!CThumbnailCache::_GetThumbnailInternal

    BUCKET_ID:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK_thumbcache!CThumbnailCache::_GetThumbnailInternal+24e

    PRIMARY_PROBLEM_CLASS:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK_thumbcache!CThumbnailCache::_GetThumbnailInternal+24e

    FAILURE_EXCEPTION_CODE:  c0000374

    FAILURE_IMAGE_NAME:  thumbcache.dll

    BUCKET_ID_IMAGE_STR:  thumbcache.dll

    FAILURE_MODULE_NAME:  thumbcache

    BUCKET_ID_MODULE_STR:  thumbcache

    FAILURE_FUNCTION_NAME:  CThumbnailCache::_GetThumbnailInternal

    BUCKET_ID_FUNCTION_STR:  CThumbnailCache::_GetThumbnailInternal

    BUCKET_ID_OFFSET:  24e

    BUCKET_ID_MODTIMEDATESTAMP:  578998ff

    BUCKET_ID_MODCHECKSUM:  584a8

    BUCKET_ID_MODVER_STR:  10.0.14393.0

    BUCKET_ID_PREFIX_STR:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK_

    FAILURE_PROBLEM_CLASS:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument

    FAILURE_SYMBOL_NAME:  thumbcache.dll!CThumbnailCache::_GetThumbnailInternal

    WATSON_STAGEONE_URL:  http://watson.microsoft.com/StageOne/explorer.exe/10.0.14393.206/57dacb32/ntdll.dll/10.0.14393.206/57dac931/c0000374/000f73f3.htm?Retriage=1

    TARGET_TIME:  2016-10-27T04:47:06.000Z

    OSBUILD:  14393

    OSSERVICEPACK:  0

    SERVICEPACK_NUMBER: 0

    OS_REVISION: 0

    SUITE_MASK:  256

    PRODUCT_TYPE:  1

    OSPLATFORM_TYPE:  x64

    OSNAME:  Windows 10

    OSEDITION:  Windows 10 WinNt SingleUserTS

    USER_LCID:  0

    OSBUILD_TIMESTAMP:  2016-07-16 10:21:29

    BUILDDATESTAMP_STR:  160715-1616

    BUILDLAB_STR:  rs1_release

    BUILDOSVER_STR:  10.0.14393.0

    ANALYSIS_SESSION_ELAPSED_TIME: 5a1d90

    ANALYSIS_SOURCE:  UM

    FAILURE_ID_HASH_STRING:  um:actionable_heap_corruption_heap_failure_invalid_argument_c0000374_thumbcache.dll!cthumbnailcache::_getthumbnailinternal

    FAILURE_ID_HASH:  {64f6876c-d655-9cf4-5dfb-18170ca44410}

    Followup:     MachineOwner
    ---------

    Thursday, October 27, 2016 10:24 AM

Answers

All replies

  • Hello

    Go to View tab and click on Options > Change file and folder options
    Then in the Change file and folder options, go to view
    Turn on "Launch folder windows in a seperate process"


    Regards, Regin Ravi

    • Marked as answer by asddsa87 Friday, October 28, 2016 1:36 AM
    Thursday, October 27, 2016 10:52 AM
  • there are multiple reports of problems with thumbnail loading from network drives, which started after the Anniversary update:
    File Explorer Crashing in Windows 10 After Update to Anniversary Edition
    Explorer crashes in thumbcache.dll
    Explorer Crashes Searching Network Folders
    seems like a new bug in Windows.

    As a workaround your users can try this:
    View Tab -> Options button -> then the view tab on that window -> Then under files and folders I checked the box that says "Always show icons, never thumbnails"



    • Edited by EckiS Thursday, October 27, 2016 1:55 PM
    • Marked as answer by asddsa87 Friday, October 28, 2016 1:36 AM
    Thursday, October 27, 2016 1:50 PM
  • Both the nvwgf2umx.dll and DropboxExt64.65536.dll are referenced in the crash:

    *** WARNING: Unable to verify timestamp for sppc.dll
    *** ERROR: Module load completed but symbols could not be loaded for sppc.dll
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for winhttp.dll -
    *** WARNING: Unable to verify timestamp for nvwgf2umx.dll
    *** ERROR: Module load completed but symbols could not be loaded for nvwgf2umx.dll
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for DropboxExt64.65536.dll -
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for GROOVEEX.DLL

    Try uninstalling and reinstalling the NVIDIA graphics driver using the latest version and uninstall and reinstall Dropbox using the latest version.

    Thursday, October 27, 2016 5:20 PM
  • Hi EckiS,

    Thanks for the tip!

    It appears to help where I have a test case to reproduce this error, but I'll really like the Windows 10 team to solve this issue in the next roll out

    Friday, October 28, 2016 1:40 AM
  • Hi Ravi,

    Your solution isn't exactly specific to my case, but it did prevent explorer.exe from crashing completely!

    Thanks!

    Friday, October 28, 2016 1:41 AM
  • Instead of accessing the folder over the network mapped share (Z:Folder/../..) try to access over UNC path (\Server\Volume\File) and rename folders to shorten length.
    I had a similar issue and the crashing explorer was because of the file path was too long in that directory. 

    My crash log

    Event Viewer Log:

    Faulting application name: explorer.exe, version: 10.0.14393.447, time stamp: 0x5819bde0
    Faulting module name: ntdll.dll, version: 10.0.14393.447, time stamp: 0x5819bc32
    Exception code: 0xc0000374
    Fault offset: 0x00000000000f7423
    Faulting process ID: 0x112c
    Faulting application start time: 0x01d2447c1e7d4af8
    Faulting application path: C:\Windows\explorer.exe
    Faulting module path: C:\Windows\SYSTEM32\ntdll.dll
    Report ID: 836fed68-46e4-4d42-b356-d49984625e24
    Faulting package full name: 
    Faulting package-relative application ID: 

    Windbg:

    Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
    Copyright (c) Microsoft Corporation. All rights reserved.
    
    
    Loading Dump File [C:\CrashDumps\explorer.exe.5640.dmp]
    User Mini Dump File: Only registers, stack and portions of memory are available
    
    Symbol search path is: srv*
    Executable search path is: 
    Windows 10 Version 14393 MP (4 procs) Free x64
    Product: WinNt, suite: SingleUserTS
    Built by: 10.0.14393.206 (rs1_release.160915-0644)
    Machine Name:
    Debug session time: Tue Nov 22 14:47:24.000 2016 (UTC + 11:00)
    System Uptime: not available
    Process Uptime: 0 days 0:00:28.000
    ................................................................
    ................................................................
    ................................................................
    ................................................................
    ..........
    Loading unloaded module list
    ......................................
    This dump file has an exception of interest stored in it.
    The stored exception information can be accessed via .ecxr.
    (1608.2a88): Unknown exception - code c0000374 (first/second chance not available)
    ntdll!NtWaitForMultipleObjects+0x14:
    00007ffb`145359b4 c3              ret
    0:089> !analyze -v
    *******************************************************************************
    *                                                                             *
    *                        Exception Analysis                                   *
    *                                                                             *
    *******************************************************************************
    
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for explorerframe.dll - 
    *** ERROR: Module load completed but symbols could not be loaded for explorer.exe
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for sppc.dll - 
    *** ERROR: Symbol file could not be found.  Defaulted to export symbols for twinui.dll - 
    
    DUMP_CLASS: 2
    
    DUMP_QUALIFIER: 400
    
    CONTEXT:  (.ecxr)
    rax=00007ffb0ffc1064 rbx=00000000c0000374 rcx=0000000000000003
    rdx=00007ffb144d6fe4 rsi=0000000000000001 rdi=00007ffb145df6b0
    rip=00007ffb14587423 rsp=000000000fe9ce60 rbp=0000000000000000
     r8=0000000000000000  r9=0000000000000000 r10=0000000000000000
    r11=0000000500000000 r12=0000000000000100 r13=0000000000000100
    r14=0000000000000000 r15=000000000fe9d258
    iopl=0         nv up ei pl nz na pe nc
    cs=0033  ss=002b  ds=002b  es=002b  fs=0053  gs=002b             efl=00000202
    ntdll!RtlReportCriticalFailure+0x97:
    00007ffb`14587423 eb00            jmp     ntdll!RtlReportCriticalFailure+0x99 (00007ffb`14587425)
    Resetting default scope
    
    FAULTING_IP: 
    ntdll!RtlReportCriticalFailure+97
    00007ffb`14587423 eb00            jmp     ntdll!RtlReportCriticalFailure+0x99 (00007ffb`14587425)
    
    EXCEPTION_RECORD:  (.exr -1)
    ExceptionAddress: 00007ffb14587423 (ntdll!RtlReportCriticalFailure+0x0000000000000097)
       ExceptionCode: c0000374
      ExceptionFlags: 00000001
    NumberParameters: 1
       Parameter[0]: 00007ffb145df6b0
    
    PROCESS_NAME:  explorer.exe
    
    ERROR_CODE: (NTSTATUS) 0xc0000374 - A heap has been corrupted.
    
    EXCEPTION_CODE: (NTSTATUS) 0xc0000374 - A heap has been corrupted.
    
    EXCEPTION_CODE_STR:  c0000374
    
    EXCEPTION_PARAMETER1:  00007ffb145df6b0
    
    WATSON_BKT_PROCSTAMP:  5819bde0
    
    WATSON_BKT_PROCVER:  10.0.14393.447
    
    PROCESS_VER_PRODUCT:  Microsoft® Windows® Operating System
    
    WATSON_BKT_MODULE:  ntdll.dll
    
    WATSON_BKT_MODSTAMP:  5819bc32
    
    WATSON_BKT_MODOFFSET:  f7423
    
    WATSON_BKT_MODVER:  10.0.14393.447
    
    MODULE_VER_PRODUCT:  Microsoft® Windows® Operating System
    
    BUILD_VERSION_STRING:  10.0.14393.0 (rs1_release.160715-1616)
    
    MODLIST_WITH_TSCHKSUM_HASH:  4b625e8bb8c2c0463387c31db591732c44d59f13
    
    MODLIST_SHA1_HASH:  9ccd5754667d79a2086ea1a86b5afe180071ca85
    
    NTGLOBALFLAG:  0
    
    APPLICATION_VERIFIER_FLAGS:  0
    
    DUMP_FLAGS:  94
    
    DUMP_TYPE:  1
    
    ANALYSIS_SESSION_HOST:  DESKTOP-FE82SMO
    
    ANALYSIS_SESSION_TIME:  11-22-2016 16:00:16.0641
    
    ANALYSIS_VERSION: 10.0.14321.1024 amd64fre
    
    THREAD_ATTRIBUTES: 
    LAST_CONTROL_TRANSFER:  from 00007ffb14587d7a to 00007ffb14587423
    
    FAULTING_THREAD:  ffffffff
    
    THREAD_SHA1_HASH_MOD_FUNC:  5608f9560be5a11cb48778b91d99b871d4d196a2
    
    THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  fb381cb1165988a3f1848f47013b7f0a385a161e
    
    OS_LOCALE:  ENA
    
    PROBLEM_CLASSES: 
    
    
    
    ACTIONABLE_HEAP_CORRUPTION
        Tid    [0x2a88]
        Frame  [0x02]: ntdll!RtlpLogHeapFailure
        String [heap_failure_invalid_argument]
        Failure Bucketing
    
    
    
    BIASED_HEAP_BLOCK
        Tid    [0x2a88]
        Frame  [0x03]: ntdll!RtlFreeHeap
    
    
    BUGCHECK_STR:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK
    
    DEFAULT_BUCKET_ID:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument
    
    STACK_TEXT:  
    00007ffb`145df718 00007ffb`1454c880 ntdll!RtlFreeHeap+0x80770
    00007ffb`145df720 00007ffb`07561c8c thumbcache!CThumbnailCache::GetThumbnailDimensionsWithFlags+0xbc
    00007ffb`145df728 00007ffb`07564b0e thumbcache!CThumbnailCacheAPI::GetThumbnailDimensionsWithFlags+0x8e
    00007ffb`145df730 00007ffb`10d686f0 windows_storage!CImageManager::_GetThumbnailDimensionsOnUIThread+0xd0
    00007ffb`145df738 00007ffb`10d68853 windows_storage!CImageManager::_InsertThumbnailDimensions+0x37
    00007ffb`145df740 00007ffb`10e556f1 windows_storage!CImageManager::_InsertThumbnailDimensionsIfApplicable+0xcd
    00007ffb`145df748 00007ffb`10e546c1 windows_storage!CImageManager::_StartExtractionForItem+0x4d
    00007ffb`145df750 00007ffb`111ee0de windows_storage!CImageManager::_GetIdealImage+0x132
    00007ffb`145df758 00007ffb`10fb1160 windows_storage!`OpenWithLogging::Instance'::`2'::`dynamic atexit destructor for 'wrapper''+0x63a80
    00007ffb`145df760 00007ffb`10f71984 windows_storage!`OpenWithLogging::Instance'::`2'::`dynamic atexit destructor for 'wrapper''+0x242a4
    00007ffb`145df768 00007ffa`f90b1421 explorerframe!DllGetClassObject+0x1ede1
    00007ffb`145df770 00007ffa`eedd84c0 dui70!DirectUI::Element::_DisplayNodeCallback+0x370
    00007ffb`145df778 00007ffb`06edb431 duser!GPCB::xwInvokeDirect+0xd1
    00007ffb`145df780 00007ffb`06edf438 duser!DuVisual::xrDrawTrivial+0x198
    00007ffb`145df788 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df790 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df798 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df7a0 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df7a8 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df7b0 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df7b8 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df7c0 00007ffb`06edf477 duser!DuVisual::xrDrawTrivial+0x1d7
    00007ffb`145df7c8 00007ffb`06edff55 duser!DuVisual::xrDrawFull+0x505
    00007ffb`145df7d0 00007ffb`06edfe07 duser!DuVisual::xrDrawFull+0x3b7
    00007ffb`145df7d8 00007ffb`06edf9e5 duser!DuVisual::xrDrawStart+0x41
    00007ffb`145df7e0 00007ffb`06edd989 duser!DuRootGadget::xrDrawTree+0x17d
    00007ffb`145df7e8 00007ffb`06eda89a duser!HWndContainer::xdHandleMessage+0x34a
    00007ffb`145df7f0 00007ffb`06ed9f3f duser!ExtraInfoWndProc+0x6f
    00007ffb`145df7f8 00007ffb`136d1c24 user32!UserCallWinProcCheckWow+0x274
    00007ffb`145df800 00007ffb`136d17bb user32!CallWindowProcW+0x8b
    00007ffb`145df808 00007ffb`040e87c0 comctl32!CallNextSubclassProc+0xb0
    00007ffb`145df810 00007ffb`040e8597 comctl32!DefSubclassProc+0x77
    
    
    STACK_COMMAND:  dps 7ffb145df718 ; kb
    
    THREAD_SHA1_HASH_MOD:  ad46fe46f9fe1a28ade2b1f701ffcbc217d0dcfe
    
    FOLLOWUP_IP: 
    thumbcache!CThumbnailCache::GetThumbnailDimensionsWithFlags+bc
    00007ffb`07561c8c f605ad9e040001  test    byte ptr [thumbcache!Microsoft_Windows_Shell_CoreEnableBits (00007ffb`075abb40)],1
    
    FAULT_INSTR_CODE:  9ead05f6
    
    SYMBOL_STACK_INDEX:  1
    
    SYMBOL_NAME:  thumbcache!CThumbnailCache::GetThumbnailDimensionsWithFlags+bc
    
    FOLLOWUP_NAME:  MachineOwner
    
    MODULE_NAME: thumbcache
    
    IMAGE_NAME:  thumbcache.dll
    
    DEBUG_FLR_IMAGE_TIMESTAMP:  578998ff
    
    FAILURE_BUCKET_ID:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_c0000374_thumbcache.dll!CThumbnailCache::GetThumbnailDimensionsWithFlags
    
    BUCKET_ID:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK_thumbcache!CThumbnailCache::GetThumbnailDimensionsWithFlags+bc
    
    PRIMARY_PROBLEM_CLASS:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK_thumbcache!CThumbnailCache::GetThumbnailDimensionsWithFlags+bc
    
    FAILURE_EXCEPTION_CODE:  c0000374
    
    FAILURE_IMAGE_NAME:  thumbcache.dll
    
    BUCKET_ID_IMAGE_STR:  thumbcache.dll
    
    FAILURE_MODULE_NAME:  thumbcache
    
    BUCKET_ID_MODULE_STR:  thumbcache
    
    FAILURE_FUNCTION_NAME:  CThumbnailCache::GetThumbnailDimensionsWithFlags
    
    BUCKET_ID_FUNCTION_STR:  CThumbnailCache::GetThumbnailDimensionsWithFlags
    
    BUCKET_ID_OFFSET:  bc
    
    BUCKET_ID_MODTIMEDATESTAMP:  578998ff
    
    BUCKET_ID_MODCHECKSUM:  584a8
    
    BUCKET_ID_MODVER_STR:  10.0.14393.0
    
    BUCKET_ID_PREFIX_STR:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument_BIASED_HEAP_BLOCK_
    
    FAILURE_PROBLEM_CLASS:  ACTIONABLE_HEAP_CORRUPTION_heap_failure_invalid_argument
    
    FAILURE_SYMBOL_NAME:  thumbcache.dll!CThumbnailCache::GetThumbnailDimensionsWithFlags
    
    WATSON_STAGEONE_URL:  http://watson.microsoft.com/StageOne/explorer.exe/10.0.14393.447/5819bde0/ntdll.dll/10.0.14393.447/5819bc32/c0000374/000f7423.htm?Retriage=1
    
    TARGET_TIME:  2016-11-22T03:47:24.000Z
    
    OSBUILD:  14393
    
    OSSERVICEPACK:  0
    
    SERVICEPACK_NUMBER: 0
    
    OS_REVISION: 0
    
    SUITE_MASK:  256
    
    PRODUCT_TYPE:  1
    
    OSPLATFORM_TYPE:  x64
    
    OSNAME:  Windows 10
    
    OSEDITION:  Windows 10 WinNt SingleUserTS
    
    USER_LCID:  0
    
    OSBUILD_TIMESTAMP:  2016-07-16 12:21:29
    
    BUILDDATESTAMP_STR:  160715-1616
    
    BUILDLAB_STR:  rs1_release
    
    BUILDOSVER_STR:  10.0.14393.0
    
    ANALYSIS_SESSION_ELAPSED_TIME: 939d
    
    ANALYSIS_SOURCE:  UM
    
    FAILURE_ID_HASH_STRING:  um:actionable_heap_corruption_heap_failure_invalid_argument_c0000374_thumbcache.dll!cthumbnailcache::getthumbnaildimensionswithflags
    
    FAILURE_ID_HASH:  {6e79c4b9-c5e7-e435-f2df-ae6186af0530}
    
    Followup:     MachineOwner
    ---------



    Tuesday, November 22, 2016 10:19 PM