Crash in srvhost, Analyzed 3 dumps, total processed 129, rate equals 2.33%



Top 1: Version = 1.7224.1005.626, Total count = 3


dump count = 1

ChildEBP RetAddr  
00f3eb44 76b0724e KERNELBASE!RaiseException+0x62
00f3ebe8 76b06cbe KERNELBASE!CreateFileInternal+0x57e
00f3ec1c 76af4166 KERNELBASE!CreateFileW+0x5e
00f3ec80 00f3ef90 KERNELBASE!GetTempFileNameW+0x1a6
WARNING: Frame IP not in any known module. Following frames may be wrong.
00f3ed00 77cf0cbf 0xf3ef90
00f3ed3c 0420ea30 ntdll!RtlpInsertFreeBlock+0x11f
00f3ed88 00650073 0x420ea30
00f3ed8c 00730072 0x650073
00f3ed90 0041005c 0x730072
00f3ed94 006d0064 0x41005c
00f3efdc 77d236ac srvhost!__crt_strtox::divide+0xf4
00f3f00c 76b27857 ntdll!ZwCreateThreadEx+0xc
77d2ae20 1475ffec KERNELBASE!CreateRemoteThreadEx+0x227
77d2ae24 ff1075ff 0x1475ffec
77d2ae28 75ff0c75 0xff1075ff
77d2ae2c 4c406808 wintrust!SIPObject_::CreateIndirectData+0xe635
77d2ae30 706877d2 0x4c406808
77d2ae34 e877ddb3 0x706877d2
77d2ae38 ffffbb80 0xe877ddb3
77d2ae3c 5d18c483 0xffffbb80
77d2ae40 ccccccc3 0x5d18c483
77d2ae44 cccccccc 0xccccccc3
77d2ae48 cccccccc 0xcccccccc
77d2ae4c 050e7a80 0xcccccccc
77d2ae50 8b661175 0x50e7a80
77d2ae54 ffff5c9d 0x8b661175
77d2ae58 02cf80ff 0xffff5c9d
77d2ae5c b3fee780 0x2cf80ff
77d2ae60 6604eb3f 0xb3fee780
77d2ae64 66133fbb 0x6604eb3f
77d2ae68 ff5e9d89 0x66133fbb
77d2ae6c add9ffff 0xff5e9d89
77d2ae70 ffffff5e 0xadd9ffff
77d2ae74 dd386dbb 0xffffff5e
77d2ae78 89e5d977 0xdd386dbb
77d2ae7c ffff6c95 0x89e5d977
77d2ae80 bddd9bff 0xffff6c95
77d2ae84 ffffff60 0xbddd9bff
77d2ae88 ff7085c6 0xffffff60
77d2ae8c 9b00ffff 0xff7085c6
77d2ae90 ff618d8a 0x9b00ffff
77d2ae94 e1d0ffff 0xff618d8a
77d2ae98 c1d0f9d0 0xe1d0ffff
77d2ae9c 0f24c18a 0xc1d0f9d0
77d2aea0 c0be0fd7 0xf24c18a
77d2aea4 0404e181 0xc0be0fd7
77d2aea8 da8b0000 0x404e181
77d2aeac c383d803 0xda8b0000
77d2aeb0 0b8b5110 0xc383d803
77d2aeb4 91e015ff 0xb8b5110
77d2aeb8 ff5977dd 0x91e015ff
77d2aebc 0e7a8023 0xff5977dd
77d2aec0 66117505 0xe7a8023
77d2aec4 ff5c9d8b 0x66117505
77d2aec8 cf80ffff 0xff5c9d8b
77d2aecc fee78002 0xcf80ffff
77d2aed0 04eb3fb3 0xfee78002
77d2aed4 133fbb66 0x4eb3fb3
77d2aed8 5e9d8966 0x133fbb66
77d2aedc d9ffffff 0x5e9d8966
77d2aee0 ffff5ead 0xd9ffffff
77d2aee4 386dbbff 0xffff5ead
77d2aee8 e5d977dd 0x386dbbff
77d2aeec ff6c9589 0xe5d977dd
77d2aef0 dd9bffff 0xff6c9589
77d2aef4 ffff60bd 0xdd9bffff
77d2aef8 7085c6ff 0xffff60bd
77d2aefc 00ffffff 0x7085c6ff
77d2af00 8d8ac9d9 0xffffff
77d2af04 ffffff61 0x8d8ac9d9
77d2af08 dd9be5d9 0xffffff61
77d2af0c ffff60bd 0xdd9be5d9
77d2af10 8ac9d9ff 0xffff60bd
77d2af14 ffff61ad 0x8ac9d9ff
77d2af18 d0e5d0ff 0xffff61ad
77d2af1c 8ac5d0fd 0xd0e5d0ff
77d2af20 d70f24c5 0x8ac5d0fd
77d2af24 e1d0e08a 0xd70f24c5
77d2af28 c1d0f9d0 0xe1d0e08a
77d2af2c 0f24c18a 0xc1d0f9d0
77d2af30 d0e4d0d7 0xf24c18a
77d2af34 0fc40ae4 0xd0e4d0d7
77d2af38 e181c0be 0xfc40ae4
77d2af3c 00000000 0xe181c0be
9e39cd6395b3e81cfe4fe6583d794814_000.dmp

dump count = 1

003cfb98 7513343d srvhost!__scrt_common_main_seh+0xfa
003cfba4 77579802 kernel32!BaseThreadInitThunk+0xe
003cfbe4 775797d5 ntdll!__RtlUserThreadStart+0x70
003cfbfc 00000000 ntdll!_RtlUserThreadStart+0x1b
098dc6819340393a5616ba1260d17782_000.dmp

dump count = 1

ChildEBP RetAddr  
WARNING: Frame IP not in any known module. Following frames may be wrong.
0039f024 00f1e2f8 0xf102c50
0039f04c 00f1e84a srvhost!CPluginMgr::StartTpi+0x48
0039f050 00f1b690 srvhost!std::_Func_impl_no_alloc<std::_Binder<std::_Unforced,void (__thiscall CPluginMgr::*)(void),CPluginMgr *>,void,void *>::_Do_call+0xa
0039f0f0 00f1b88c srvhost!CDelayCall::ProcessWindowMessage+0x120
0039f140 755762fa srvhost!ATL::CWindowImplBaseT<ATL::CWindow,ATL::CWinTraits<1442840576,0> >::WindowProc+0x6c
0039f16c 75576d3a user32!InternalCallWinProc+0x23
0039f1e4 755777c4 user32!UserCallWinProcCheckWow+0x109
0039f244 7557788a user32!DispatchMessageWorker+0x3bc
0039f254 00f1a5ff user32!DispatchMessageW+0xf
0039f8a8 00f27e11 srvhost!main+0x71f
0039f8f0 771e336a srvhost!__scrt_common_main_seh+0xfa
0039f8fc 779c9902 kernel32!BaseThreadInitThunk+0xe
0039f93c 779c98d5 ntdll!__RtlUserThreadStart+0x70
0039f954 00000000 ntdll!_RtlUserThreadStart+0x1b
11e6cce19bb6be7fa4e0cc43bf062f87_000.dmp