Crash in srvhost, Analyzed 5 dumps, total processed 309, rate equals 1.62%



Top 1: Version = 1.7224.1005.626, Total count = 5


dump count = 1

ChildEBP RetAddr  
009fe910 779a020a ntdll!RtlpWaitOnCriticalSection+0x93
009fe948 779a0059 ntdll!RtlpEnterCriticalSectionContended+0x1aa
009fe9ec 759808ce ntdll!RtlEnterCriticalSection+0x49
009fea90 7598033e KERNELBASE!CreateFileInternal+0x57e
009feac4 759790b6 KERNELBASE!CreateFileW+0x5e
009feb28 009fee38 KERNELBASE!GetTempFileNameW+0x1a6
WARNING: Frame IP not in any known module. Following frames may be wrong.
009feba8 779a0d6f 0x9fee38
009febe4 04472e78 ntdll!RtlpInsertFreeBlock+0x11f
009fec30 00650073 0x4472e78
009fec34 00730072 0x650073
009fec38 0078005c 0x730072
009fec3c 00780074 0x78005c
009fec40 00630079 0x780074
009fec44 00730067 0x630079
009fec48 0041005c 0x730067
009fec4c 00700070 0x41005c
009fec50 00610044 0x700070
009fec54 00610074 0x610044
009fec58 004c005c 0x610074
009fec5c 0063006f 0x4c005c
009fec60 006c0061 0x63006f
009fec64 0054005c 0x6c0061
009fec68 006d0065 srvhost!_Nan_C+0x5c
009fec6c 005c0070 0x6d0065
009fec70 00000000 0x5c0070
59eacf2c5fd2cf3968b2e9b3e3e41d10_000.dmp

dump count = 1

ChildEBP RetAddr  
0099e8d8 7743020a ntdll!RtlpWaitOnCriticalSection+0x93
0099e910 77430059 ntdll!RtlpEnterCriticalSectionContended+0x1aa
0099e9b4 760608ce ntdll!RtlEnterCriticalSection+0x49
0099ea58 7606033e KERNELBASE!CreateFileInternal+0x57e
0099ea8c 760590b6 KERNELBASE!CreateFileW+0x5e
0099eaf0 0099ee00 KERNELBASE!GetTempFileNameW+0x1a6
WARNING: Frame IP not in any known module. Following frames may be wrong.
0099eb70 77430d6f 0x99ee00
0099ebac 074811b0 ntdll!RtlpInsertFreeBlock+0x11f
0099ebf8 00650073 0x74811b0
0099ebfc 00730072 0x650073
0099ec00 0041005c 0x730072
0099ec04 004d0044 0x41005c
0099ec08 004e0049 0x4d0044
0099ec0c 007e0049 0x4e0049
0099f5c8 7743f28a srvhost!__acrt_fltout+0xc95
0099f604 7743c8cc ntdll!LdrpRecordModuleDependency+0x17
0099f6ac 7743eca0 ntdll!RtlDeactivateActivationContextUnsafeFast+0x9c
7743ebd2 fdc8a583 ntdll!LdrpLoadForwardedDll+0x180
7743ebd6 8d00ffff 0xfdc8a583
7743ebda fffdc885 0x8d00ffff
7743ebde 8d5650ff 0xfffdc885
7743ebe2 fffdd095 0x8d5650ff
7743ebe6 d88d8dff 0xfffdd095
7743ebea e8fffffe 0xd88d8dff
7743ebee ffffc60a 0xe8fffffe
7743ebf2 fdcc8589 0xffffc60a
7743ebf6 c085ffff 0xfdcc8589
7743ebfa 858d2e78 0xc085ffff
7743ebfe fffffdcc 0x858d2e78
7743ec02 c4b5ff50 0xfffffdcc
7743ec06 fffffffd 0xc4b5ff50
7743ec0a fffdc0b5 0xfffffffd
7743ec0e 75ff56ff 0xfffdc0b5
7743ec12 c8b5ff10 KERNELBASE!`string'+0x1b
7743ec16 8bfffffd 0xc8b5ff10
7743ec1a fffdbc95 0x8bfffffd
7743ec1e d08d8dff 0xfffdbc95
7743ec22 e8fffffd 0xd08d8dff
7743ec26 fffff636 0xe8fffffd
7743ec2a fefc45c7 0xfffff636
7743ec2e e8ffffff 0xfefc45c7
7743ec32 00000000 0xe8ffffff
4cab27d546f66c2750ad956b80d6f6a1_000.dmp

dump count = 1

ChildEBP RetAddr  
003cfcdc 736a6cbf ntdll!RtlDeleteCriticalSection+0x83
003cfcf4 736a6c83 bcryptprimitives!AesCtr_safe_shutdown+0x22
003cfd00 736a6ced bcryptprimitives!ShutdownRNG+0x1c
003cfd08 736a6c56 bcryptprimitives!BASE_UNINIT_PROV+0xc
003cfd10 76fc9264 bcryptprimitives!DllMain+0x6f
003cfd30 76fe8fa8 ntdll!LdrpCallInitRoutine+0x14
003cfdd4 76fe8e4a ntdll!LdrShutdownProcess+0x1aa
003cfde8 76627a3c ntdll!RtlExitUserProcess+0x74
003cfdfc 0018275a kernel32!ExitProcessStub+0x12
003cfe08 001826ef srvhost!exit_or_terminate_process+0x40
003cfe40 00182895 srvhost!common_exit+0xee
003cfe54 00177e90 srvhost!exit+0x11
003cfe94 7662344d srvhost!__scrt_common_main_seh+0x179
003cfea0 76fc9802 kernel32!BaseThreadInitThunk+0xe
003cfee0 76fc97d5 ntdll!__RtlUserThreadStart+0x70
003cfef8 00000000 ntdll!_RtlUserThreadStart+0x1b
982f8bcd20a96d315687bb589ad4f2cd_000.dmp

dump count = 1

ChildEBP RetAddr  
WARNING: Frame IP not in any known module. Following frames may be wrong.
03b8f65c 7714d568 0xf2364f8
03b8f678 7711f591 ntdll!RtlProcessFlsData+0x57
03b8f710 7711f53f ntdll!LdrShutdownThread+0x35
03b8f720 752e850c ntdll!RtlExitUserThread+0x2a
03b8f734 76c905d0 KERNELBASE!FreeLibraryAndExitThread+0x5f
03b8f744 011cf07a kernel32!FreeLibraryAndExitThreadStub+0x10
03b8f758 011cf156 srvhost!common_end_thread+0x56
03b8f764 011cefcc srvhost!_endthreadex+0xd
03b8f7a0 76c9ef8c srvhost!thread_start<unsigned int (__stdcall*)(void *)>+0x5c
03b8f7ac 7715367a kernel32!BaseThreadInitThunk+0xe
03b8f7ec 7715364d ntdll!__RtlUserThreadStart+0x70
03b8f804 00000000 ntdll!_RtlUserThreadStart+0x1b
8f87bfa71931eec4a8e9d43a5e78c5d1_000.dmp

dump count = 1

ChildEBP RetAddr  
004afb08 71df7070 uxtheme!WppCleanupUm+0x15
004afb14 71df3857 uxtheme!DllMain+0x92
004afb74 77df92c0 uxtheme!__DllMainCRTStartup+0xe1
004afb94 77e0f567 ntdll!LdrpCallInitRoutine+0x14
004afc38 77e0f409 ntdll!LdrShutdownProcess+0x1aa
004afc4c 76437a7c ntdll!RtlExitUserProcess+0x74
004afc60 0007275a kernel32!ExitProcessStub+0x12
004afc6c 000726ef srvhost!exit_or_terminate_process+0x40
004afca4 00072895 srvhost!common_exit+0xee
004afcb8 00067e90 srvhost!exit+0x11
004afcf8 7643347d srvhost!__scrt_common_main_seh+0x179
004afd04 77df9852 kernel32!BaseThreadInitThunk+0xe
004afd44 77df9825 ntdll!__RtlUserThreadStart+0x70
004afd5c 00000000 ntdll!_RtlUserThreadStart+0x1b
38ccf6d7a8f76372ff034cff750f60a3_001.dmp