Microsoft (R) Windows Debugger Version 6.10.0003.233 X86 Copyright (c) Microsoft Corporation. All rights reserved. Opened \\.\com1 Waiting to reconnect... Connected to Windows Server 2003 3790 x86 compatible target at (Tue Apr 26 13:02:54.279 2022 (GMT+2)), ptr64 FALSE Kernel Debugger connection established. Symbol search path is: srv*c:\symbols\*http://msdl.microsoft.com/download/symbols Executable search path is: Windows Server 2003 Kernel Version 3790 MP (1 procs) Free x86 compatible Built by: 3790.srv03_sp2_rtm.070216-1710 Machine Name: Kernel base = 0x80800000 PsLoadedModuleList = 0x808a6ea8 System Uptime: not available IPRT: RTMpPoke => rtMpPokeCpuUsingDpc vgdrvHeartbeatInit: Setting up heartbeat to trigger every 2000 milliseconds vgdrvNtInit: Device is ready! VBoxService 5.2.44 r139111 (verbosity: 0) win.x86 (Jul 9 2020 18:12:12) release log 00:00:00.000000 main Log opened 2022-04-26T11:03:09.968750000Z 00:00:00.015625 main OS Product: Windows 2003 00:00:00.015625 main OS Release: 5.2.3790 00:00:00.031250 main OS Service Pack: 2 00:00:00.046875 main Executable: C:\WINDOWS\System32\VBoxService.exe 00:00:00.046875 main Process ID: 596 00:00:00.046875 main Package type: WINDOWS_32BITS_GENERIC 00:00:00.062500 main 5.2.44 r139111 started. Verbose level = 0 AFD: AfdPprThreshold value queried from transport: 2960 Windows version 5.2 Starting services ... Starting service 'display' ... Service 'display' started Starting service 'clipboard' ... Service 'clipboard' started Starting service 'seamless' ... Service 'seamless' started Starting service 'VRDP' ... Service 'VRDP' started Starting service 'IPC' ... VBoxIPCInit: Local IPC server now running at "\\.\pipe\VBoxTrayIPC-Администратор" Service 'IPC' started Starting service 'LA' ... LA: RegQueryValueExW: failed [SOFTWARE\Oracle\VirtualBox Guest Additions/VBoxTrayLog] LA: RegQueryValueExW: failed [SOFTWARE\Oracle\VirtualBox Guest Additions/VBoxTrayLA] LA: DetachOnDisconnect=true Service 'LA' started Starting service 'draganddrop' ... DnD: Drag and drop service successfully started Service 'draganddrop' started All services started VBOXNP: DLL loaded. Break instruction exception - code 80000003 (first chance) ******************************************************************************* * * * You are seeing this message because you pressed either * * CTRL+C (if you run kd.exe) or, * * CTRL+BREAK (if you run WinDBG), * * on your debugger machine's keyboard. * * * * THIS IS NOT A BUG OR A SYSTEM CRASH * * * * If you did not intend to break into the debugger, press the "g" key, then * * press the "Enter" key now. This message might immediately reappear. If it * * does, press "g" and "Enter" again. * * * ******************************************************************************* nt!RtlpBreakWithStatusInstruction: 80871f24 cc int 3 0: kd> !process 0 0 **** NT ACTIVE PROCESS DUMP **** PROCESS 89d97818 SessionId: none Cid: 0004 Peb: 00000000 ParentCid: 0000 DirBase: 7fca1020 ObjectTable: e1000e38 HandleCount: 354. Image: System PROCESS 89a10d88 SessionId: none Cid: 012c Peb: 7ffde000 ParentCid: 0004 DirBase: 7fca1040 ObjectTable: e129e408 HandleCount: 19. Image: SMSS.EXE PROCESS 89b60d88 SessionId: 0 Cid: 015c Peb: 7ffd8000 ParentCid: 012c DirBase: 7fca1060 ObjectTable: e15237a0 HandleCount: 342. Image: CSRSS.EXE PROCESS 89be79b0 SessionId: 0 Cid: 0174 Peb: 7ffd7000 ParentCid: 012c DirBase: 7fca1080 ObjectTable: e1579918 HandleCount: 494. Image: WINLOGON.EXE PROCESS 89b026f8 SessionId: 0 Cid: 01a4 Peb: 7ffdf000 ParentCid: 0174 DirBase: 7fca10a0 ObjectTable: e1601d68 HandleCount: 263. Image: SERVICES.EXE PROCESS 89a95638 SessionId: 0 Cid: 01b0 Peb: 7ffdf000 ParentCid: 0174 DirBase: 7fca10c0 ObjectTable: e15929e8 HandleCount: 394. Image: LSASS.EXE PROCESS 89bdad88 SessionId: 0 Cid: 0254 Peb: 7ffde000 ParentCid: 01a4 DirBase: 7fca10e0 ObjectTable: e16d0630 HandleCount: 124. Image: VBoxService.exe PROCESS 89a7d630 SessionId: 0 Cid: 028c Peb: 7ffd9000 ParentCid: 01a4 DirBase: 7fca1100 ObjectTable: e16b8d28 HandleCount: 88. Image: SVCHOST.EXE PROCESS 89a4e330 SessionId: 0 Cid: 02d0 Peb: 7ffde000 ParentCid: 01a4 DirBase: 7fca1120 ObjectTable: e16eee90 HandleCount: 201. Image: SVCHOST.EXE PROCESS 89a4f3d8 SessionId: 0 Cid: 0310 Peb: 7ffd5000 ParentCid: 01a4 DirBase: 7fca1140 ObjectTable: e16f5108 HandleCount: 127. Image: SVCHOST.EXE PROCESS 89bd9478 SessionId: 0 Cid: 0338 Peb: 7ffd4000 ParentCid: 01a4 DirBase: 7fca1160 ObjectTable: e1548008 HandleCount: 153. Image: SVCHOST.EXE PROCESS 895a1148 SessionId: 0 Cid: 0348 Peb: 7ffd4000 ParentCid: 01a4 DirBase: 7fca1180 ObjectTable: e1774cc8 HandleCount: 739. Image: SVCHOST.EXE PROCESS 8957e360 SessionId: 0 Cid: 03e0 Peb: 7ffd7000 ParentCid: 01a4 DirBase: 7fca11a0 ObjectTable: e133adf8 HandleCount: 127. Image: SPOOLSV.EXE PROCESS 89d96d88 SessionId: 0 Cid: 0400 Peb: 7ffd5000 ParentCid: 01a4 DirBase: 7fca11c0 ObjectTable: e178b830 HandleCount: 156. Image: MSDTC.EXE PROCESS 89a15550 SessionId: 0 Cid: 0480 Peb: 7ffdf000 ParentCid: 01a4 DirBase: 7fca11e0 ObjectTable: e1295068 HandleCount: 71. Image: SVCHOST.EXE PROCESS 89a40458 SessionId: 0 Cid: 04b0 Peb: 7ffde000 ParentCid: 01a4 DirBase: 7fca1200 ObjectTable: e178d3f8 HandleCount: 41. Image: SVCHOST.EXE PROCESS 892725e8 SessionId: 0 Cid: 0568 Peb: 7ffd9000 ParentCid: 01a4 DirBase: 7fca1240 ObjectTable: e12b01e8 HandleCount: 145. Image: SVCHOST.EXE PROCESS 89a50218 SessionId: 0 Cid: 067c Peb: 7ffd8000 ParentCid: 0654 DirBase: 7fca1260 ObjectTable: e17a0f00 HandleCount: 286. Image: EXPLORER.EXE PROCESS 89a42240 SessionId: 0 Cid: 06c0 Peb: 7ffdf000 ParentCid: 067c DirBase: 7fca1280 ObjectTable: e190c9c8 HandleCount: 127. Image: VBoxTray.exe PROCESS 89a42bf0 SessionId: 0 Cid: 06c8 Peb: 7ffdf000 ParentCid: 067c DirBase: 7fca12a0 ObjectTable: e18d0988 HandleCount: 80. Image: CTFMON.EXE PROCESS 89c60d88 SessionId: 0 Cid: 0778 Peb: 7ffdc000 ParentCid: 0348 DirBase: 7fca12c0 ObjectTable: e1395f28 HandleCount: 131. Image: wuauclt.exe 0: kd> .process /P 89a50218 Implicit process is now 89a50218 .cache forcedecodeptes done 0: kd> bl 0 e bf929411 0001 (0001) win32k!DxDdDynamicModeChange 1 e bf9332d0 0001 (0001) win32k!DrvEnableDirectDrawForModeChange 2 e bf933310 0001 (0001) win32k!DrvDisableDirectDrawForModeChange 3 e bf9d403e 0001 (0001) dxg!DxDdResumeDirectDraw 4 e bf9d9672 0001 (0001) dxg!DxDdSuspendDirectDraw 5 e bf8239ff 0001 (0001) win32k!DxEngSetHdevData 6 e bf9d3ab8 0001 (0001) dxg!PDEVOBJ::cDirectDrawDisableLocks 7 e bf80ac9c 0001 (0001) win32k!PDEVOBJ::bDisabled 8 e bf944b18 0001 (0001) win32k!PDEVOBJ::bMetaDriver 0: kd> uf /i /c win32k!DrvChangeDisplaySettings win32k!DrvChangeDisplaySettings (bf806814), 855 instructions win32k!DrvChangeDisplaySettings+0x345 (bf8025b7): call to win32k!DrvDisableDirectDrawForModeChange (bf933310) win32k!DrvChangeDisplaySettings+0x44a (bf8025d6): call to win32k!DrvCreateCloneHDEV (bf935140) win32k!DrvChangeDisplaySettings+0x832 (bf80261a): call to win32k!DrvSetSharedDevLock (bf9330ea) win32k!DrvChangeDisplaySettings+0x838 (bf802620): call to win32k!DrvSetSharedPalette (bf93323b) win32k!DrvChangeDisplaySettings+0x850 (bf802640): call to win32k!DrvRealizeHalftonePalette (bf933126) win32k!DrvChangeDisplaySettings+0x887 (bf802655): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x88f (bf80265d): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x8ab (bf802679): call to win32k!DrvEnableDirectDrawForModeChange (bf9332d0) win32k!DrvChangeDisplaySettings+0x94f (bf8026ad): call to win32k!DrvBackoutMDEV (bf9350b8) win32k!DrvChangeDisplaySettings+0x956 (bf8026b4): call to nt!ExFreePoolWithTag (80892344) win32k!DrvChangeDisplaySettings+0x967 (bf8026c5): call to win32k!DrvEnableMDEV (bf934caf) win32k!DrvChangeDisplaySettings+0x9a7 (bf802700): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x9ba (bf802713): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x9d8 (bf80272e): call to win32k!DrvEnableMDEV (bf934caf) win32k!DrvChangeDisplaySettings+0xa48 (bf80279e): call to win32k!DrvDisableDisplay (bf934e0f) win32k!DrvChangeDisplaySettings+0xa5d (bf8027b3): call to win32k!DrvDestroyMDEV (bf933007) win32k!DrvChangeDisplaySettings+0x1a6 (bf8068d0): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x1b1 (bf8068db): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x1cf (bf8068f9): call to nt!RtlQueryRegistryValues (80961ea0) win32k!DrvChangeDisplaySettings+0x2c5 (bf80691a): call to win32k!CheckAndNotifyDualView (bf80932b) win32k!DrvChangeDisplaySettings+0x2e6 (bf80693b): call to win32k!DrvCreateMDEV (bf8044db) win32k!DrvChangeDisplaySettings+0x87a (bf8069e4): call to win32k!XEPALOBJ::apalResetColorTable (bf8a6f88) win32k!DrvChangeDisplaySettings+0x947 (bf806a77): call to win32k!GreUpdateSharedDevCaps (bf80a691) win32k!DrvChangeDisplaySettings+0x97c (bf806a7f): call to win32k!MULTIDEVLOCKOBJ::~MULTIDEVLOCKOBJ (bf80ab58) win32k!DrvChangeDisplaySettings+0x984 (bf806a87): call to win32k!MULTIDEVLOCKOBJ::~MULTIDEVLOCKOBJ (bf80ab58) win32k!DrvChangeDisplaySettings+0xa68 (bf806a9a): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0xa73 (bf806aa5): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0xa81 (bf806ac3): call to nt!ExFreePoolWithTag (80892344) win32k!DrvChangeDisplaySettings+0x590 (bf808083): call to win32k!bDynamicModeChange (bf944ef8) win32k!DrvChangeDisplaySettings+0x361 (bf80810a): call to win32k!MULTIDEVLOCKOBJ::vInit (bf9338df) win32k!DrvChangeDisplaySettings+0x36a (bf808113): call to win32k!MULTIDEVLOCKOBJ::vInit (bf9338df) win32k!DrvChangeDisplaySettings+0x389 (bf80813a): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x391 (bf808142): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x399 (bf80814a): call to win32k!MULTIDEVLOCKOBJ::vLock (bf93396e) win32k!DrvChangeDisplaySettings+0x3a1 (bf808152): call to win32k!MULTIDEVLOCKOBJ::vLock (bf93396e) win32k!DrvChangeDisplaySettings+0x3aa (bf80815b): call to win32k!vSpHideSprites (bf92de5c) win32k!DrvChangeDisplaySettings+0x4a1 (bf8081a0): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x4ac (bf8081ab): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x4b7 (bf8081b6): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x4c2 (bf8081c1): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x4c7 (bf8081c6): call to win32k!GreAcquireHmgrSemaphore (bf8989a8) win32k!DrvChangeDisplaySettings+0x4df (bf8081e6): call to win32k!bDynamicModeChange (bf944ef8) win32k!DrvChangeDisplaySettings+0x5c6 (bf808200): call to win32k!GreReleaseHmgrSemaphore (bf89886e) win32k!DrvChangeDisplaySettings+0x5d1 (bf80820b): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x5dc (bf808216): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x5e7 (bf808221): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x5f2 (bf80822c): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x3e9 (bf808296): call to win32k!DrvCreateCloneHDEV (bf935140) win32k!DrvChangeDisplaySettings+0x48d (bf8082cb): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x95 (bf8088db): call to win32k!DrvGetDeviceFromName (bf833143) win32k!DrvChangeDisplaySettings+0xca (bf808902): call to win32k!DrvGetPruneFlag (bf80a1b2) win32k!DrvChangeDisplaySettings+0xda (bf808912): call to nt!RtlInitUnicodeString (80875440) win32k!DrvChangeDisplaySettings+0xff (bf808937): call to win32k!DrvProbeAndCaptureDevmode (bf803903) win32k!DrvChangeDisplaySettings+0x111 (bf808949): call to nt!ExFreePoolWithTag (80892344) win32k!DrvChangeDisplaySettings+0x77e (bf809173): call to win32k!DxDdDynamicModeChange (bf929411) win32k!DrvChangeDisplaySettings+0x78b (bf809180): call to win32k!DrvTransferGdiObjects (bf9352e4) win32k!DrvChangeDisplaySettings+0x7b2 (bf8091a7): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!DrvChangeDisplaySettings+0x7c4 (bf8091b9): call to win32k!PDEVOBJ::CompletePDEV (bf82b8e9) win32k!DrvChangeDisplaySettings+0x7ee (bf8091ce): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!DrvChangeDisplaySettings+0x7ff (bf8091df): call to win32k!vSpHideSprites (bf92de5c) win32k!DrvChangeDisplaySettings+0x80c (bf8091ec): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x814 (bf8091f4): call to win32k!MULTIDEVLOCKOBJ::vUnlock (bf80ab6e) win32k!DrvChangeDisplaySettings+0x81c (bf8091fc): call to win32k!MULTIDEVLOCKOBJ::vUnlock (bf80ab6e) win32k!DrvChangeDisplaySettings+0x7d9 (bf809214): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!DrvChangeDisplaySettings+0x6cb (bf80921d): call to win32k!bDynamicModeChange (bf944ef8) win32k!DrvChangeDisplaySettings+0x64a (bf80925b): call to win32k!hCreateHDEV (bf80487c) win32k!DrvChangeDisplaySettings+0x669 (bf80927a): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x674 (bf809285): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x67f (bf809290): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x68a (bf80929b): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x695 (bf8092a6): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvChangeDisplaySettings+0x69a (bf8092ab): call to win32k!GreAcquireHmgrSemaphore (bf8989a8) win32k!DrvChangeDisplaySettings+0x6a9 (bf8092be): call to win32k!bDynamicModeChange (bf944ef8) win32k!DrvChangeDisplaySettings+0x6e6 (bf8092dc): call to win32k!GreReleaseHmgrSemaphore (bf89886e) win32k!DrvChangeDisplaySettings+0x6f1 (bf8092e7): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x6fc (bf8092f2): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x707 (bf8092fd): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x712 (bf809308): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x71a (bf809310): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x1f4 (bf80938f): call to win32k!CheckAndNotifyDualView (bf80932b) win32k!DrvChangeDisplaySettings+0x206 (bf8093a5): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x211 (bf8093b0): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvChangeDisplaySettings+0x233 (bf8093c9): call to win32k!DrvDisableMDEV (bf934f5f) win32k!DrvChangeDisplaySettings+0x252 (bf8093e8): call to win32k!DrvCreateMDEV (bf8044db) win32k!DrvChangeDisplaySettings+0x262 (bf8093f8): call to win32k!DrvEnableMDEV (bf934caf) win32k!DrvChangeDisplaySettings+0x153 (bf809492): call to nt!RtlQueryRegistryValues (80961ea0) win32k!DrvChangeDisplaySettings+0x170 (bf8094b2): call to win32k!DrvUpdateDisplayDriverParameters (bf932269) win32k!DrvChangeDisplaySettings+0x508 (bf8094df): call to win32k!bDynamicModeChange (bf944ef8) 0: kd> uf /i /c win32k!DrvCreateCloneHDEV win32k!DrvCreateCloneHDEV (bf935140), 111 instructions win32k!DrvCreateCloneHDEV+0x7 (bf935147): call to win32k!_SEH_prolog (bf898740) win32k!DrvCreateCloneHDEV+0x1d (bf93515d): call to win32k!SPRITELOCK::SPRITELOCK (bf8af85a) win32k!DrvCreateCloneHDEV+0x28 (bf935168): call to win32k!PDEVOBJ::PDEVOBJ (bf935edc) win32k!DrvCreateCloneHDEV+0x40 (bf935180): call to win32k!PALLOCMEM (bf8b3ec0) win32k!DrvCreateCloneHDEV+0x55 (bf935195): call to win32k!bSpEnableSprites (bf80afaf) win32k!DrvCreateCloneHDEV+0x65 (bf9351a5): call to win32k!vEnableSynchronize (bf80c5ff) win32k!DrvCreateCloneHDEV+0x91 (bf9351d1): call to win32k!HmgShareCheckLock (bf8987d1) win32k!DrvCreateCloneHDEV+0xca (bf93520a): call to win32k!EBRUSHOBJ::vInitBrush (bf89fea7) win32k!DrvCreateCloneHDEV+0xd7 (bf935217): call to win32k!HmgDecrementShareReferenceCount (bf898af9) win32k!DrvCreateCloneHDEV+0x125 (bf93526f): call to win32k!bDeleteBrush (bf89b637) win32k!DrvCreateCloneHDEV+0x136 (bf935280): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvCreateCloneHDEV+0x145 (bf93528f): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!DrvCreateCloneHDEV+0x150 (bf93529a): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvCreateCloneHDEV+0x164 (bf9352ae): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!DrvCreateCloneHDEV+0x172 (bf9352bc): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!DrvCreateCloneHDEV+0x17d (bf9352c7): call to nt!ExFreePoolWithTag (80892344) win32k!DrvCreateCloneHDEV+0x186 (bf9352d0): call to win32k!SPRITELOCK::~SPRITELOCK (bf8af845) win32k!DrvCreateCloneHDEV+0x18d (bf9352d7): call to win32k!_SEH_epilog (bf898780) 0: kd> uf /i /c win32k!bDynamicModeChange win32k!bDynamicModeChange (bf944ef8), 652 instructions win32k!bDynamicModeChange+0x16 (bf944f0e): call to win32k!bDynamicMatchEnoughForModeChange (bf944b3b) win32k!bDynamicModeChange+0x2e (bf944f26): call to win32k!Win32AllocPool (bf898ac7) win32k!bDynamicModeChange+0x59 (bf944f51): call to win32k!vDisableSynchronize (bf8e9272) win32k!bDynamicModeChange+0x5f (bf944f57): call to win32k!vDisableSynchronize (bf8e9272) win32k!bDynamicModeChange+0x97 (bf944f8f): call to win32k!SEMOBJ::SEMOBJ (bf898850) win32k!bDynamicModeChange+0x9d (bf944f95): call to win32k!bDynamicRemoveAllDriverRealizations (bf944bf2) win32k!bDynamicModeChange+0xab (bf944fa3): call to win32k!bDynamicRemoveAllDriverRealizations (bf944bf2) win32k!bDynamicModeChange+0xc6 (bf944fbe): call to win32k!PDEVOBJ::sizl (bf82edb8) win32k!bDynamicModeChange+0xf8 (bf944ff0): call to win32k!PDEVOBJ::sizl (bf82edb8) win32k!bDynamicModeChange+0x138 (bf945030): call to win32k!bDynamicIntersectVisRect (bf944d5f) win32k!bDynamicModeChange+0x15a (bf945052): call to win32k!bDynamicIntersectVisRect (bf944d5f) win32k!bDynamicModeChange+0x1a2 (bf94509a): call to watchdog!WdEnterMonitoredSection (f7528120) win32k!bDynamicModeChange+0x1b1 (bf9450a9): unresolvable call: call ecx win32k!bDynamicModeChange+0x1c6 (bf9450be): call to watchdog!WdExitMonitoredSection (f752818a) win32k!bDynamicModeChange+0x27a (bf945172): call to win32k!HmgSafeNextObjt (bf82b94c) win32k!bDynamicModeChange+0x2b9 (bf9451b1): call to win32k!vDynamicSwitchPalettes (bf944db5) win32k!bDynamicModeChange+0x311 (bf945209): call to win32k!HmgSafeNextObjt (bf82b94c) win32k!bDynamicModeChange+0x334 (bf94522c): call to win32k!PDEVOBJ::vReferencePdev (bf8a0b8d) win32k!bDynamicModeChange+0x348 (bf945240): call to win32k!PDEVOBJ::vReferencePdev (bf8a0b8d) win32k!bDynamicModeChange+0x352 (bf94524a): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!bDynamicModeChange+0x35c (bf945254): call to win32k!HmgSafeNextObjt (bf82b94c) win32k!bDynamicModeChange+0x36d (bf945265): call to win32k!vChangeWndObjs (bf92f7a7) win32k!bDynamicModeChange+0x37a (bf945272): call to win32k!HmgShareLock (bf898d90) win32k!bDynamicModeChange+0x3be (bf9452b6): call to win32k!EBRUSHOBJ::vInitBrush (bf89fea7) win32k!bDynamicModeChange+0x3de (bf9452d6): call to win32k!EBRUSHOBJ::vInitBrush (bf89fea7) win32k!bDynamicModeChange+0x3e6 (bf9452de): call to win32k!HmgDecrementShareReferenceCount (bf898af9) win32k!bDynamicModeChange+0x5eb (bf9454e3): call to win32k!PDEVOBJ::bMetaDriver (bf944b18) win32k!bDynamicModeChange+0x5f4 (bf9454ec): call to win32k!PDEVOBJ::bMetaDriver (bf944b18) win32k!bDynamicModeChange+0x778 (bf945670): unresolvable call: call dword ptr [eax+59Ch] win32k!bDynamicModeChange+0x788 (bf945680): unresolvable call: call dword ptr [eax+59Ch] win32k!bDynamicModeChange+0x797 (bf94568f): call to win32k!DxDdDynamicModeChange (bf929411) win32k!bDynamicModeChange+0x7a2 (bf94569a): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!bDynamicModeChange+0x7ad (bf9456a5): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!bDynamicModeChange+0x7b3 (bf9456ab): call to win32k!vResetSurfacePalette (bf80c452) win32k!bDynamicModeChange+0x7bb (bf9456b3): call to win32k!vResetSurfacePalette (bf80c452) win32k!bDynamicModeChange+0x7c4 (bf9456bc): call to win32k!vSpDynamicModeChange (bf92e4ee) win32k!bDynamicModeChange+0x7cc (bf9456c4): call to win32k!UpdateGammaRampOnDevice (bf9763f4) win32k!bDynamicModeChange+0x7e7 (bf9456df): call to nt!ExFreePoolWithTag (80892344) win32k!bDynamicModeChange+0x7ee (bf9456e6): call to win32k!vEnableSynchronize (bf80c5ff) win32k!bDynamicModeChange+0x7f4 (bf9456ec): call to win32k!vEnableSynchronize (bf80c5ff) win32k!bDynamicModeChange+0x7fc (bf9456f4): call to win32k!GreReleaseSemaphore (bf89f34a) 0: kd> bu win32k!DrvCreateCloneHDEV WARNING: Software breakpoints on session addresses can cause bugchecks. Use hardware execution breakpoints (ba e) if possible. 0: kd> bl 0 e bf929411 0001 (0001) win32k!DxDdDynamicModeChange 1 e bf9332d0 0001 (0001) win32k!DrvEnableDirectDrawForModeChange 2 e bf933310 0001 (0001) win32k!DrvDisableDirectDrawForModeChange 3 e bf9d403e 0001 (0001) dxg!DxDdResumeDirectDraw 4 e bf9d9672 0001 (0001) dxg!DxDdSuspendDirectDraw 5 e bf8239ff 0001 (0001) win32k!DxEngSetHdevData 6 e bf9d3ab8 0001 (0001) dxg!PDEVOBJ::cDirectDrawDisableLocks 7 e bf80ac9c 0001 (0001) win32k!PDEVOBJ::bDisabled 8 e bf944b18 0001 (0001) win32k!PDEVOBJ::bMetaDriver 9 e bf935140 0001 (0001) win32k!DrvCreateCloneHDEV 0: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa179d0 bf8239db e1550008 00000000 baa17a0c dxg!DxDdSuspendDirectDraw baa179e0 bf934e29 e1550008 00000000 00000000 win32k!GreSuspendDirectDraw+0x1c baa17a0c bf80780f e1550008 00000000 00000000 win32k!DrvDisableDisplay+0x1a baa17a74 bf804781 e1336980 e14e9de0 e18d6f20 win32k!hCreateHDEV+0x159 baa17bf0 bf8093ed baa17cb8 e18d81e0 00000001 win32k!DrvCreateMDEV+0x4f0 baa17ce4 bf90ffcb baa17cb8 e1550008 00000000 win32k!DrvChangeDisplaySettings+0x257 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> dd esp L3 baa179d4 bf8239db e1550008 00000000 1: kd> uf /i /c win32k!hCreateHdev win32k!hCreateHDEV (bf80487c), 422 instructions win32k!hCreateHDEV+0x206 (bf8030f8): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!hCreateHDEV+0x20e (bf803100): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!hCreateHDEV+0x219 (bf80310b): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!hCreateHDEV+0x227 (bf803119): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!hCreateHDEV+0x23b (bf80312d): call to watchdog!WdEnterMonitoredSection (f7528120) win32k!hCreateHDEV+0x248 (bf80313a): call to win32k!DrvEnableDisplay (bf934bdd) win32k!hCreateHDEV+0x256 (bf803148): call to watchdog!WdExitMonitoredSection (f752818a) win32k!hCreateHDEV+0x25f (bf803151): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!hCreateHDEV+0x26a (bf80315c): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!hCreateHDEV+0x45d (bf8031b0): call to win32k!bDeleteBrush (bf89b637) win32k!hCreateHDEV+0x7 (bf804883): call to win32k!_SEH_prolog (bf898740) win32k!hCreateHDEV+0x34 (bf8048ac): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!hCreateHDEV+0x1d9 (bf8048dd): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!hCreateHDEV+0x280 (bf8048fd): call to win32k!PALLOCMEM (bf8b3ec0) win32k!hCreateHDEV+0x2d5 (bf80492f): call to win32k!ldevLoadDriver (bf804b57) win32k!hCreateHDEV+0x2ec (bf804946): call to win32k!bSetDeviceSessionUsage (bf80c188) win32k!hCreateHDEV+0x314 (bf80496e): call to win32k!PDEVOBJ::PDEVOBJ (bf82b29c) win32k!hCreateHDEV+0x382 (bf8049c9): call to win32k!GreCreateWatchdogs (bf80ad11) win32k!hCreateHDEV+0x393 (bf8049da): call to win32k!PDEVOBJ::bMakeSurface (bf80ae4a) win32k!hCreateHDEV+0x3bb (bf804a02): call to win32k!HmgShareCheckLock (bf8987d1) win32k!hCreateHDEV+0x402 (bf804a49): call to win32k!EBRUSHOBJ::vInitBrush (bf89fea7) win32k!hCreateHDEV+0x40f (bf804a56): call to win32k!HmgDecrementShareReferenceCount (bf898af9) win32k!hCreateHDEV+0x4ad (bf804ad1): call to win32k!Win32AllocPool (bf898ac7) win32k!hCreateHDEV+0x4d9 (bf804afd): call to win32k!memmove (bf8ad27f) win32k!hCreateHDEV+0x4f3 (bf804b17): call to win32k!DrvUpdateAttachFlag (bf80a5d3) win32k!hCreateHDEV+0x505 (bf804b20): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!hCreateHDEV+0x516 (bf804b31): call to win32k!PDEVOBJ::vProfileDriver (bf80be30) win32k!hCreateHDEV+0x562 (bf804b41): call to nt!ExFreePoolWithTag (80892344) win32k!hCreateHDEV+0x559 (bf804b4a): call to win32k!_SEH_epilog (bf898780) win32k!hCreateHDEV+0x85 (bf807735): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!hCreateHDEV+0x90 (bf807740): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!hCreateHDEV+0x9b (bf80774b): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!hCreateHDEV+0xb0 (bf807760): call to watchdog!WdEnterMonitoredSection (f7528120) win32k!hCreateHDEV+0x126 (bf8077ee): call to win32k!PDEVOBJ::vReferencePdev (bf8a0b8d) win32k!hCreateHDEV+0x154 (bf80780a): call to win32k!DrvDisableDisplay (bf934e0f) win32k!hCreateHDEV+0x17b (bf80782c): call to watchdog!WdExitMonitoredSection (f752818a) win32k!hCreateHDEV+0x187 (bf807838): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!hCreateHDEV+0x192 (bf807843): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!hCreateHDEV+0x19d (bf80784e): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!hCreateHDEV+0x1b0 (bf807861): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!hCreateHDEV+0x1bc (bf80786d): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!hCreateHDEV+0x524 (bf808572): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!hCreateHDEV+0x530 (bf80857e): call to nt!ExFreePoolWithTag (80892344) win32k!hCreateHDEV+0x552 (bf8085a0): call to win32k!DrvEnableDisplay (bf934bdd) win32k!hCreateHDEV+0x1f2 (bf8085b2): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!hCreateHDEV+0x2c5 (bf8086ce): call to win32k!ldevLoadInternal (bf8086dd) win32k!hCreateHDEV+0x572 (bf80996e): call to win32k!bSetDeviceSessionUsage (bf80c188) win32k!hCreateHDEV+0x57c (bf809978): call to win32k!PDEVOBJ::vUnreferencePdev (bf8a35b8) win32k!hCreateHDEV+0x324 (bf809983): call to win32k!bSetDeviceSessionUsage (bf80c188) win32k!hCreateHDEV+0x32c (bf80998b): call to win32k!ldevUnloadImage (bf8064fd) 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17998 bf9d3acf e1550008 00000008 00000001 win32k!DxEngSetHdevData baa179ac bf9d973e 00000001 00000000 00000000 dxg!PDEVOBJ::cDirectDrawDisableLocks+0x17 baa179d0 bf8239db e1550008 00000000 baa17a0c dxg!DxDdSuspendDirectDraw+0xcc baa179e0 bf934e29 e1550008 00000000 00000000 win32k!GreSuspendDirectDraw+0x1c baa17a0c bf80780f e1550008 00000000 00000000 win32k!DrvDisableDisplay+0x1a baa17a74 bf804781 e1336980 e14e9de0 e18d6f20 win32k!hCreateHDEV+0x159 baa17bf0 bf8093ed baa17cb8 e18d81e0 00000001 win32k!DrvCreateMDEV+0x4f0 baa17ce4 bf90ffcb baa17cb8 e1550008 00000000 win32k!DrvChangeDisplaySettings+0x257 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> dd esp L4 baa1799c bf9d3acf e1550008 00000008 00000001 1: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 1: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 1: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 0: kd> g Breakpoint 2 hit win32k!DrvDisableDirectDrawForModeChange: bf933310 8bff mov edi,edi 0: kd> kb ChildEBP RetAddr Args to Child baa17c00 bf8025bc e153fe30 e1336460 baa17c24 win32k!DrvDisableDirectDrawForModeChange baa17ce4 bf90ffcb ffdf6630 00000000 00000000 win32k!DrvChangeDisplaySettings+0x34a baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 0: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 0: kd> kb ChildEBP RetAddr Args to Child baa17be4 bf9333a9 e1550008 00000002 e1336460 dxg!DxDdSuspendDirectDraw baa17c00 bf8025bc baa17c24 e1336460 baa17c24 win32k!DrvDisableDirectDrawForModeChange+0x99 baa17ce4 bf90ffcb ffdf6630 00000000 00000000 win32k!DrvChangeDisplaySettings+0x34a baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 0: kd> dd esp L3 baa17be8 bf9333a9 e1550008 00000002 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 1: kd> dd esp L3 baa17be8 bf9333a9 e1550008 00000002 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17be4 bf9333a9 e1168008 00000002 e1336460 dxg!DxDdSuspendDirectDraw baa17c00 bf8025bc baa17c24 e1336460 baa17c24 win32k!DrvDisableDirectDrawForModeChange+0x99 baa17ce4 bf90ffcb ffdf6630 00000000 00000000 win32k!DrvChangeDisplaySettings+0x34a baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> dd esp L3 baa17be8 bf9333a9 e1168008 00000002 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 0 hit win32k!DxDdDynamicModeChange: bf929411 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17b98 bf945694 e1550008 e1168008 00000000 win32k!DxDdDynamicModeChange baa17c08 bf8081eb e1550008 e1168008 89b450e0 win32k!bDynamicModeChange+0x79c baa17ce4 bf90ffcb ffdf6630 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0x4e4 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> dd esp L4 baa17b9c bf945694 e1550008 e1168008 00000000 1: kd> uf /i /c win32k!DrvDisableDirectDrawForModeChange win32k!DrvDisableDirectDrawForModeChange (bf933310), 88 instructions win32k!DrvDisableDirectDrawForModeChange+0x94 (bf9333a4): call to win32k!GreSuspendDirectDrawEx (bf9293fb) win32k!DrvDisableDirectDrawForModeChange+0xb5 (bf9333c5): call to win32k!Win32AllocPool (bf898ac7) 1: kd> uf /i /c win32k!DrvEnableDirectDrawForModeChange win32k!DrvEnableDirectDrawForModeChange (bf9332d0), 28 instructions win32k!DrvEnableDirectDrawForModeChange+0x1a (bf9332ea): call to win32k!GreResumeDirectDraw (bf823d2b) win32k!DrvEnableDirectDrawForModeChange+0x2f (bf9332ff): call to nt!ExFreePoolWithTag (80892344) 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 1: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 1: kd> g Breakpoint 1 hit win32k!DrvEnableDirectDrawForModeChange: bf9332d0 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17c08 bf80267e baa17c24 00000000 89b450e0 win32k!DrvEnableDirectDrawForModeChange baa17ce4 bf90ffcb e1550008 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0x8b0 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> bu nt!ExFreePoolWithTag 1: kd> bl 0 e bf929411 0001 (0001) win32k!DxDdDynamicModeChange 1 e bf9332d0 0001 (0001) win32k!DrvEnableDirectDrawForModeChange 2 e bf933310 0001 (0001) win32k!DrvDisableDirectDrawForModeChange 3 e bf9d403e 0001 (0001) dxg!DxDdResumeDirectDraw 4 e bf9d9672 0001 (0001) dxg!DxDdSuspendDirectDraw 5 e bf8239ff 0001 (0001) win32k!DxEngSetHdevData 6 e bf9d3ab8 0001 (0001) dxg!PDEVOBJ::cDirectDrawDisableLocks 7 e bf80ac9c 0001 (0001) win32k!PDEVOBJ::bDisabled 8 e bf944b18 0001 (0001) win32k!PDEVOBJ::bMetaDriver 9 e bf935140 0001 (0001) win32k!DrvCreateCloneHDEV 10 e 80892344 0001 (0001) nt!ExFreePoolWithTag 1: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17bdc bf823d47 e1550008 00000000 baa17c08 dxg!DxDdResumeDirectDraw baa17bec bf9332ef e1550008 00000000 e153fe30 win32k!GreResumeDirectDraw+0x1c baa17c08 bf80267e baa17c24 00000000 89b450e0 win32k!DrvEnableDirectDrawForModeChange+0x1f baa17ce4 bf90ffcb e1550008 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0x8b0 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> dd esp L3 baa17be0 bf823d47 e1550008 00000000 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17bdc bf823d47 e1550008 00000000 baa17c08 dxg!DxDdResumeDirectDraw baa17bec bf9332ef e1550008 00000000 e153fe30 win32k!GreResumeDirectDraw+0x1c baa17c08 bf80267e baa17c24 00000000 89b450e0 win32k!DrvEnableDirectDrawForModeChange+0x1f baa17ce4 bf90ffcb e1550008 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0x8b0 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> dd esp L3 baa17be0 bf823d47 e1550008 00000000 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17bdc bf823d47 e1168008 00000000 baa17c08 dxg!DxDdResumeDirectDraw baa17bec bf9332ef e1168008 00000000 e153fe30 win32k!GreResumeDirectDraw+0x1c baa17c08 bf80267e baa17c24 00000000 89b450e0 win32k!DrvEnableDirectDrawForModeChange+0x1f baa17ce4 bf90ffcb e1550008 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0x8b0 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> dd esp L3 baa17be0 bf823d47 e1168008 00000000 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 10 hit nt!ExFreePoolWithTag: 80892344 8bff mov edi,edi 1: kd> k ChildEBP RetAddr baa17bc4 bf8a353b nt!ExFreePoolWithTag baa17bf4 bf933047 win32k!PDEVOBJ::vUnreferencePdev+0x188 baa17c0c bf8027b8 win32k!DrvDestroyMDEV+0x40 baa17ce4 bf90ffcb win32k!DrvChangeDisplaySettings+0xa62 baa17d28 bf90a6aa win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 ntdll+0x285ec 0128ef10 7c937d0b 0x7371d9e4 0128ef88 7c9377bb ntdll+0x27d0b 0128f020 7c93b02a ntdll+0x277bb 0128f034 7c944772 ntdll+0x2b02a 0128f038 7c944a4b ntdll+0x34772 0128f050 7c941bf1 ntdll+0x34a4b 00000000 00000000 ntdll+0x31bf1 1: kd> kb ChildEBP RetAddr Args to Child baa17bc4 bf8a353b e15273d8 00000000 e153fe44 nt!ExFreePoolWithTag baa17bf4 bf933047 00000000 e1336460 00000000 win32k!PDEVOBJ::vUnreferencePdev+0x188 baa17c0c bf8027b8 e1168008 89b450e0 00000001 win32k!DrvDestroyMDEV+0x40 baa17ce4 bf90ffcb 00000001 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0xa62 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 00000000 00000000 00000000 00000000 00000000 ntdll+0x31bf1 1: kd> g Breakpoint 10 hit nt!ExFreePoolWithTag: 80892344 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17b28 bf8c756d e12d9900 00000000 baa17b44 nt!ExFreePoolWithTag baa17b38 bf898c58 e12d9900 baa17b54 bf898c7d win32k!UserRtlFreeMem+0x10 baa17b44 bf898c7d 89a961e0 e12d9900 baa17ba4 win32k!ExFreeToPagedLookasideList+0x1e baa17b54 bf8b4108 e12d9900 00000005 0000024c win32k!FreeObject+0x29 baa17ba4 bf8b41db 00000000 baa17c14 baa17bc8 win32k!SURFACE::bDeleteSurface+0x10b baa17bb4 bf8c1e9a 00000000 baa17c14 e12d9900 win32k!SURFREF::bDeleteSurface+0x12 baa17bc8 bf8a354f 0105002e e153fe44 e153fe30 win32k!bDeleteSurface+0x20 baa17bf4 bf933047 00000000 e1336460 00000000 win32k!PDEVOBJ::vUnreferencePdev+0x1f1 baa17c0c bf8027b8 e1168008 89b450e0 00000001 win32k!DrvDestroyMDEV+0x40 baa17ce4 bf90ffcb 00000001 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0xa62 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 1: kd> g Breakpoint 10 hit nt!ExFreePoolWithTag: 80892344 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17b28 bf8c756d e157b670 00000000 baa17b44 nt!ExFreePoolWithTag baa17b38 bf898c58 e157b670 baa17b54 bf898c7d win32k!UserRtlFreeMem+0x10 baa17b44 bf898c7d 89a961e0 e157b670 baa17ba4 win32k!ExFreeToPagedLookasideList+0x1e baa17b54 bf8b4108 e157b670 00000005 00000250 win32k!FreeObject+0x29 baa17ba4 bf8b41db 00000000 baa17c14 baa17bc8 win32k!SURFACE::bDeleteSurface+0x10b baa17bb4 bf8c1e9a 00000000 baa17c14 e157b670 win32k!SURFREF::bDeleteSurface+0x12 baa17bc8 bf8a354f 0105002f e153fe44 e153fe30 win32k!bDeleteSurface+0x20 baa17bf4 bf933047 00000000 e1336460 00000000 win32k!PDEVOBJ::vUnreferencePdev+0x1f1 baa17c0c bf8027b8 e1168008 89b450e0 00000001 win32k!DrvDestroyMDEV+0x40 baa17ce4 bf90ffcb 00000001 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0xa62 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 1: kd> g Breakpoint 10 hit nt!ExFreePoolWithTag: 80892344 8bff mov edi,edi 1: kd> kb ChildEBP RetAddr Args to Child baa17b28 bf8c756d e154f8d8 00000000 baa17b44 nt!ExFreePoolWithTag baa17b38 bf898c58 e154f8d8 baa17b54 bf898c7d win32k!UserRtlFreeMem+0x10 baa17b44 bf898c7d 89a961e0 e154f8d8 baa17ba4 win32k!ExFreeToPagedLookasideList+0x1e baa17b54 bf8b4108 e154f8d8 00000005 00000254 win32k!FreeObject+0x29 baa17ba4 bf8b41db 00000000 baa17c14 baa17bc8 win32k!SURFACE::bDeleteSurface+0x10b baa17bb4 bf8c1e9a 00000000 baa17c14 e154f8d8 win32k!SURFREF::bDeleteSurface+0x12 baa17bc8 bf8a354f 01050030 e153fe44 e153fe30 win32k!bDeleteSurface+0x20 baa17bf4 bf933047 00000000 e1336460 00000000 win32k!PDEVOBJ::vUnreferencePdev+0x1f1 baa17c0c bf8027b8 e1168008 89b450e0 00000001 win32k!DrvDestroyMDEV+0x40 baa17ce4 bf90ffcb 00000001 baa17c24 00000000 win32k!DrvChangeDisplaySettings+0xa62 baa17d28 bf90a6aa 00000000 0218df08 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 0218df08 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 0218df08 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ed6c 7371d9e4 00000000 0128ed98 00000000 ntdll+0x285ec 0128ef10 7c937d0b 7c821d1e 00000244 00000000 0x7371d9e4 0128ef88 7c9377bb 7c81dac0 029bfcd8 0227d478 ntdll+0x27d0b 0128f020 7c93b02a 0128f0bc 7c938270 7c944778 ntdll+0x277bb 0128f034 7c944772 7c944a4b 4f230000 4f2f9348 ntdll+0x2b02a 0128f038 7c944a4b 4f230000 4f2f9348 0128f0ac ntdll+0x34772 0128f050 7c941bf1 7c948bf3 4f230000 0128f02c ntdll+0x34a4b 1: kd> bl 0 e bf929411 0001 (0001) win32k!DxDdDynamicModeChange 1 e bf9332d0 0001 (0001) win32k!DrvEnableDirectDrawForModeChange 2 e bf933310 0001 (0001) win32k!DrvDisableDirectDrawForModeChange 3 e bf9d403e 0001 (0001) dxg!DxDdResumeDirectDraw 4 e bf9d9672 0001 (0001) dxg!DxDdSuspendDirectDraw 5 e bf8239ff 0001 (0001) win32k!DxEngSetHdevData 6 e bf9d3ab8 0001 (0001) dxg!PDEVOBJ::cDirectDrawDisableLocks 7 e bf80ac9c 0001 (0001) win32k!PDEVOBJ::bDisabled 8 e bf944b18 0001 (0001) win32k!PDEVOBJ::bMetaDriver 9 e bf935140 0001 (0001) win32k!DrvCreateCloneHDEV 10 e 80892344 0001 (0001) nt!ExFreePoolWithTag 1: kd> bc 10 1: kd> bl 0 e bf929411 0001 (0001) win32k!DxDdDynamicModeChange 1 e bf9332d0 0001 (0001) win32k!DrvEnableDirectDrawForModeChange 2 e bf933310 0001 (0001) win32k!DrvDisableDirectDrawForModeChange 3 e bf9d403e 0001 (0001) dxg!DxDdResumeDirectDraw 4 e bf9d9672 0001 (0001) dxg!DxDdSuspendDirectDraw 5 e bf8239ff 0001 (0001) win32k!DxEngSetHdevData 6 e bf9d3ab8 0001 (0001) dxg!PDEVOBJ::cDirectDrawDisableLocks 7 e bf80ac9c 0001 (0001) win32k!PDEVOBJ::bDisabled 8 e bf944b18 0001 (0001) win32k!PDEVOBJ::bMetaDriver 9 e bf935140 0001 (0001) win32k!DrvCreateCloneHDEV 1: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 0: kd> kb ChildEBP RetAddr Args to Child baa179d0 bf8239db e1550008 00000000 baa17a0c dxg!DxDdSuspendDirectDraw baa179e0 bf934e29 e1550008 00000000 00000000 win32k!GreSuspendDirectDraw+0x1c baa17a0c bf80780f e1550008 00000000 baa17bec win32k!DrvDisableDisplay+0x1a baa17a74 bf804781 e1336980 e149eaf0 e18d6f20 win32k!hCreateHDEV+0x159 baa17bf0 bf8093ed 00000000 00000000 00000001 win32k!DrvCreateMDEV+0x4f0 baa17ce4 bf90ffcb 00000000 e1550008 00000000 win32k!DrvChangeDisplaySettings+0x257 baa17d28 bf90a6aa 00000000 00000000 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 00000000 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 00000000 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ee50 73703c10 00000000 00000000 00000000 ntdll+0x285ec 0128ee78 7371dd22 029bfcd8 00000001 00000000 0x73703c10 0128eec4 4f282569 022812c8 0000012c 00cd77a8 0x7371dd22 0128f134 4f282a44 00cd9304 00cd380c 01001ca0 0x4f282569 0128f6f4 4f2637b2 000300c8 00cd77a8 00cd380c 0x4f282a44 0128f858 7c939fb5 0219e9e0 0128f944 7c939f3d 0x4f2637b2 0128f864 7c939f3d 000907a8 7c939f59 77f5d36a ntdll+0x29fb5 0128f944 77389509 00090000 00000000 0219e9e8 ntdll+0x29f3d 0128f948 00090000 00000000 0219e9e8 0128fa10 0x77389509 0128f94c 00000000 0219e9e8 0128fa10 000b8258 0x90000 0: kd> uf /i /c win32k!DrvDisableDisplay win32k!DrvDisableDisplay (bf934e0f), 117 instructions win32k!DrvDisableDisplay+0x15 (bf934e24): call to win32k!GreSuspendDirectDraw (bf8239bf) win32k!DrvDisableDisplay+0x20 (bf934e2f): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvDisableDisplay+0x2b (bf934e3a): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvDisableDisplay+0x36 (bf934e45): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvDisableDisplay+0x4b (bf934e5a): call to watchdog!WdEnterMonitoredSection (f7528120) win32k!DrvDisableDisplay+0x96 (bf934ea5): call to win32k!SURFACE::pfnBitBlt (bf8b4a56) win32k!DrvDisableDisplay+0x9b (bf934eaa): unresolvable call: call eax win32k!DrvDisableDisplay+0xb7 (bf934ec6): call to win32k!PDEVOBJ::vSync (bf8ad1c9) win32k!DrvDisableDisplay+0xcd (bf934edc): unresolvable call: call eax win32k!DrvDisableDisplay+0xdf (bf934eee): call to win32k!bSetDeviceSessionUsage (bf80c188) win32k!DrvDisableDisplay+0xe9 (bf934ef8): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!DrvDisableDisplay+0x110 (bf934f1f): call to watchdog!WdExitMonitoredSection (f752818a) win32k!DrvDisableDisplay+0x11c (bf934f2b): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvDisableDisplay+0x127 (bf934f36): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvDisableDisplay+0x132 (bf934f41): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvDisableDisplay+0x13d (bf934f4c): call to win32k!GreResumeDirectDraw (bf823d2b) 0: kd> uf /i /c win32k!DrvEnableDisplay win32k!DrvEnableDisplay (bf934bdd), 63 instructions win32k!DrvEnableDisplay+0x13 (bf934bf0): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvEnableDisplay+0x1e (bf934bfb): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvEnableDisplay+0x29 (bf934c06): call to win32k!GreAcquireSemaphore (bf8989b3) win32k!DrvEnableDisplay+0x3e (bf934c1b): call to watchdog!WdEnterMonitoredSection (f7528120) win32k!DrvEnableDisplay+0x51 (bf934c2e): call to win32k!bSetDeviceSessionUsage (bf80c188) win32k!DrvEnableDisplay+0x76 (bf934c53): unresolvable call: call eax win32k!DrvEnableDisplay+0x81 (bf934c5e): call to win32k!PDEVOBJ::bDisabled (bf80ac9c) win32k!DrvEnableDisplay+0x96 (bf934c73): call to watchdog!WdExitMonitoredSection (f752818a) win32k!DrvEnableDisplay+0xa2 (bf934c7f): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvEnableDisplay+0xad (bf934c8a): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvEnableDisplay+0xb8 (bf934c95): call to win32k!GreReleaseSemaphore (bf89f34a) win32k!DrvEnableDisplay+0xc0 (bf934c9d): call to win32k!GreResumeDirectDraw (bf823d2b) 0: kd> dd esp L3 baa179d4 bf8239db e1550008 00000000 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 0: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 0: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 0: kd> g Breakpoint 2 hit win32k!DrvDisableDirectDrawForModeChange: bf933310 8bff mov edi,edi 0: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 0: kd> kb ChildEBP RetAddr Args to Child baa17be4 bf9333a9 e1550008 00000002 e18d8da0 dxg!DxDdSuspendDirectDraw baa17c00 bf8025bc baa17c24 e18d8da0 baa17c24 win32k!DrvDisableDirectDrawForModeChange+0x99 baa17ce4 bf90ffcb 005a2940 00000000 00000000 win32k!DrvChangeDisplaySettings+0x34a baa17d28 bf90a6aa 00000000 00000000 00000000 win32k!xxxUserChangeDisplaySettings+0x138 baa17d4c 8088978c 00000000 00000000 00000004 win32k!NtUserChangeDisplaySettings+0x47 baa17d4c 7c9385ec 00000000 00000000 00000004 nt!KiFastCallEntry+0xfc WARNING: Stack unwind information not available. Following frames may be wrong. 0128ee50 73703c10 00000000 00000000 00000000 ntdll+0x285ec 0128ee78 7371dd22 029bfcd8 00000001 00000000 0x73703c10 0128eec4 4f282569 022812c8 0000012c 00cd77a8 0x7371dd22 0128f134 4f282a44 00cd9304 00cd380c 01001ca0 0x4f282569 0128f6f4 4f2637b2 000300c8 00cd77a8 00cd380c 0x4f282a44 0128f858 7c939fb5 0219e9e0 0128f944 7c939f3d 0x4f2637b2 0128f864 7c939f3d 000907a8 7c939f59 77f5d36a ntdll+0x29fb5 0128f944 77389509 00090000 00000000 0219e9e8 ntdll+0x29f3d 0128f948 00090000 00000000 0219e9e8 0128fa10 0x77389509 0128f94c 00000000 0219e9e8 0128fa10 000b8258 0x90000 0: kd> dd esp L3 baa17be8 bf9333a9 e1550008 00000002 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 0 hit win32k!DxDdDynamicModeChange: bf929411 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 0: kd> g Breakpoint 7 hit win32k!PDEVOBJ::bDisabled: bf80ac9c 8bff mov edi,edi 0: kd> g Breakpoint 1 hit win32k!DrvEnableDirectDrawForModeChange: bf9332d0 8bff mov edi,edi 0: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g 00:12:37.768554 timesync vgsvcTimeSyncWorker: Radical host time change: 16 769 172 000 000ns (HostNow=1 650 990 532 784 000 000 ns HostLast=1 650 973 763 612 000 000 ns) 00:12:47.771484 timesync vgsvcTimeSyncWorker: Radical guest time change: 16 769 172 000 000ns (GuestNow=1 650 990 542 784 000 000 ns GuestLast=1 650 973 773 612 000 000 ns fSetTimeLastLoop=true ) Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 0: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 0: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 0: kd> g Breakpoint 4 hit dxg!DxDdSuspendDirectDraw: bf9d9672 8bff mov edi,edi 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g Breakpoint 3 hit dxg!DxDdResumeDirectDraw: bf9d403e 8bff mov edi,edi 1: kd> g Breakpoint 6 hit dxg!PDEVOBJ::cDirectDrawDisableLocks: bf9d3ab8 8bff mov edi,edi 1: kd> g Breakpoint 5 hit win32k!DxEngSetHdevData: bf8239ff 8bff mov edi,edi 1: kd> g VBOXNP: DLL loaded. 00:12:54.349609 control Guest control service stopped 00:12:54.380859 control Guest control worker returned with rc=VINF_SUCCESS 00:12:54.396484 main Session 0 is about to close ... 00:12:54.412109 main Stopping all guest processes ... 00:12:54.427734 main Closing all guest files ... 00:12:54.505859 main Ended.