Jump to content

Recommended Posts

All the information comes from reverse engineering.

 

0x6645F7 is in function 0x664470 where "this" is MagicTarget class.

 

I know that because it's called like this in one place:

MagicTarget::unk_664470(&v2->magicTarget, v2, v6, v5);

In that function happens this:

tList<ActiveEffect*> v5 = (*((int (**)(void))a1->vtable + 7))();

Then all entries in the list are iterated and this is what caused crash:

(*(void (__thiscall **)(ActiveEffect *))((void (__thiscall **)(_DWORD))v8->vtable + 2))(v8);

I don't know why though, it's possible the entry was a bad pointer.

 

After reading gameplayers optimisation guide i stuck the below into my enblocal.ini

 

ExpandSystemMemoryX64=false

ReduceSystemMemoryUsage=true

 

and issue causing this crash seems to have gone away so far

 

Link to comment

Well, I managed to make my Skyrim crash for no reason,  here's what I got.

 

Exception Record and Address:

 

 

EXCEPTION_RECORD:  ffffffff -- (.exr 0xffffffffffffffff)

ExceptionAddress: 00a50a3d (TESV+0x00650a3d)

   ExceptionCode: c0000005 (Access violation)

  ExceptionFlags: 00000000

NumberParameters: 2

   Parameter[0]: 00000000

   Parameter[1]: 3ed63c45

Attempt to read from address 3ed63c45

 

DEFAULT_BUCKET_ID:  INVALID_POINTER_READ

 

PROCESS_NAME:  TESV.exe

 

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

 

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

 

EXCEPTION_PARAMETER1:  00000000

 

EXCEPTION_PARAMETER2:  3ed63c45

 

READ_ADDRESS:  3ed63c45

 

FOLLOWUP_IP:

TESV+650a3d

00a50a3d 8b4704          mov     eax,dword ptr [edi+4]

 

FAULTING_THREAD:  000016d8

 

PRIMARY_PROBLEM_CLASS:  INVALID_POINTER_READ

 

BUGCHECK_STR:  APPLICATION_FAULT_INVALID_POINTER_READ

 

IP_ON_HEAP:  d3458948

The fault address in not in any loaded module, please check your build's rebase

log at \bin\build_logs\timebuild\ntrebase.log for module which may

contain the address if it were loaded.

 

FRAME_ONE_INVALID: 1

 

LAST_CONTROL_TRANSFER:  from d3458948 to 00a50a3d

 

STACK_TEXT: 

WARNING: Stack unwind information not available. Following frames may be wrong.

124cf720 d3458948 3ed63c4d 00000000 00a512a1 TESV+0x650a3d

00000000 00000000 00000000 00000000 00000000 0xd3458948

 

 

 

 

Loaded Module List:

 

 

start    end        module name
003d0000 003e6000   XINPUT1_3 XINPUT1_3.dll
00400000 01e12000   TESV     TESV.exe    
02300000 02d55000   d3d9     d3d9.dll    
0f6b0000 0f7f3000   nvspcap  nvspcap.dll 
10000000 10047000   binkw32  binkw32.dll 
38000000 3892d000   steamclient steamclient.dll
53d10000 54927000   nvd3dum  nvd3dum.dll 
54950000 549de000   XAudio2_6 XAudio2_6.dll
549e0000 54ca1000   Steam2   Steam2.dll  
54cb0000 550fa000   D3DX9_40 D3DX9_40.dll
55130000 55280000   gameoverlayrenderer gameoverlayrenderer.dll
55280000 55357000   Steam    Steam.dll   
55360000 553ed000   nioverride nioverride.dll
553f0000 5547b000   chargen  chargen.dll 
55480000 55547000   StorageUtil StorageUtil.dll
55860000 55a45000   D3DX9_42 D3DX9_42.dll
55a60000 55a8b000   SexLabUtil SexLabUtil.dll
55a90000 55ac7000   OneTweak OneTweak.dll
55ad0000 55af3000   MemoryBlocksLog MemoryBlocksLog.dll
55b00000 55b69000   msvcp100 msvcp100.dll
55b70000 55c3a000   skse_1_9_32 skse_1_9_32.dll
55c40000 55d2e000   msvcr120 msvcr120.dll
55d30000 55da1000   msvcp120 msvcp120.dll
56030000 56321000   nvapi    nvapi.dll   
56430000 565f3000   d3d9_56430000 d3d9.dll    
56860000 5698b000   nvSCPAPI nvSCPAPI.dll
569a0000 56a0f000   hook     hook.dll    
56a10000 56a4c000   MfgConsole MfgConsole.dll
56a50000 56a78000   steam_api steam_api.dll
57220000 572df000   msvcr100 msvcr100.dll
60000000 60021000   CSERHelper CSERHelper.dll
65750000 6583b000   dbghelp  dbghelp.dll 
67420000 67429000   hid      hid.dll     
67480000 67487000   avrt     avrt.dll    
674d0000 67506000   AudioSes AudioSes.dll
675a0000 675d9000   MMDevAPI MMDevAPI.dll
675e0000 676f5000   dbghelp_675e0000 dbghelp.dll 
6a240000 6a293000   vstdlib_s vstdlib_s.dll
6b200000 6b2b1000   tier0_s  tier0_s.dll 
6c750000 6c7d4000   comctl32 comctl32.dll
6f490000 6f4b6000   skse_steam_loader skse_steam_loader.dll
702a0000 70312000   dsound   dsound.dll  
70320000 70352000   winmm    winmm.dll   
70360000 70455000   propsys  propsys.dll 
70990000 70996000   d3d8thk  d3d8thk.dll 
70b40000 70b70000   dinput8  dinput8.dll 
71c60000 71c68000   secur32  secur32.dll 
72290000 722b5000   powrprof powrprof.dll
72470000 72483000   dwmapi   dwmapi.dll  
72490000 72510000   uxtheme  uxtheme.dll 
72840000 7288c000   apphelp  apphelp.dll 
72a40000 72a47000   X3DAudio1_7 X3DAudio1_7.dll
72a50000 72a5e000   CellStabilizer CellStabilizer.dll
74200000 74207000   winnsi   winnsi.dll  
74210000 7422c000   IPHLPAPI IPHLPAPI.DLL
743e0000 743e7000   wsock32  wsock32.dll 
74800000 74809000   version  version.dll 
748d0000 748dc000   CRYPTBASE CRYPTBASE.dll
748e0000 74940000   sspicli  sspicli.dll 
74950000 7497f000   wintrust wintrust.dll
74980000 74aa1000   crypt32  crypt32.dll 
74ab0000 74aba000   lpk      lpk.dll     
74ac0000 74b17000   shlwapi  shlwapi.dll 
74b20000 74bec000   msctf    msctf.dll   
74bf0000 74c8d000   usp10    usp10.dll   
74d20000 74d25000   psapi    psapi.dll   
74d30000 74e8c000   ole32    ole32.dll   
74e90000 74f3c000   msvcrt   msvcrt.dll  
74f50000 750ed000   setupapi setupapi.dll
750f0000 751f0000   user32   user32.dll  
751f0000 751f6000   nsi      nsi.dll     
75230000 75290000   imm32    imm32.dll   
752a0000 75eeb000   shell32  shell32.dll 
75fa0000 76040000   advapi32 advapi32.dll
76040000 76067000   cfgmgr32 cfgmgr32.dll
76070000 76089000   sechost  sechost.dll 
76090000 7611f000   oleaut32 oleaut32.dll
76120000 7614b000   imagehlp imagehlp.dll
76150000 76162000   devobj   devobj.dll  
76170000 761f3000   clbcatq  clbcatq.dll 
76550000 76660000   kernel32 kernel32.dll
76660000 766db000   comdlg32 comdlg32.dll
76940000 76975000   ws2_32   ws2_32.dll  
76980000 76a10000   gdi32    gdi32.dll   
76a10000 76b00000   rpcrt4   rpcrt4.dll  
76b00000 76b47000   KERNELBASE KERNELBASE.dll
76f20000 76f2c000   msasn1   msasn1.dll  
76f50000 770d0000   ntdll    ntdll.dll   

 

 

 

If needed be, I'll provide my mod list.

Link to comment

I have no good information about that crash, the stack_text part doesn't go far enough back and this A512A1 function is used in like a million places. I can tell you only that the function sets the string pointer from StringCache and this pointer was bad so when it tried to increase the ref count of StringCache entry it crashed. If it showed more of the stack I could see better.

Link to comment

hi

 

i have a problem with my skyrim when the game load after a death , i have a CTD.

I put the report if you have an idea for fix that.

 

Exception Record and Address:

 

ExceptionAddress: 7790f96b (nioverride+0x0000f96b)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 0000010c
Attempt to read from address 0000010c

DEFAULT_BUCKET_ID: NULL_CLASS_PTR_READ

PROCESS_NAME: TESV.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_PARAMETER1: 00000000

EXCEPTION_PARAMETER2: 0000010c

READ_ADDRESS: 0000010c

FOLLOWUP_IP:
nioverride+f96b
7790f96b ff760c push dword ptr [esi+0Ch]

FAULTING_THREAD: 00000c14

PRIMARY_PROBLEM_CLASS: NULL_CLASS_PTR_READ

BUGCHECK_STR: APPLICATION_FAULT_NULL_CLASS_PTR_READ

LAST_CONTROL_TRANSFER: from 7793d0df to 7790f96b

STACK_TEXT:
WARNING: Stack unwind information not available. Following frames may be wrong.
0018f650 7793d0df 00000108 06dc7950 06870860 nioverride+0xf96b
0018f668 500deb32 50127580 00000000 000003ee nioverride+0x3d0df
0018f66c 50127580 00000000 000003ee 01b333c0 skse_1_9_32+0x5eb32
0018f670 00000000 000003ee 01b333c0 00000000 skse_1_9_32+0xa7580

 

 

Loaded module list:

 

start end module name
003b0000 003c6000 XINPUT1_3 XINPUT1_3.dll
00400000 01e12000 TESV TESV.exe
0e270000 0ee30000 hdtPhysicsExtensions hdtPhysicsExtensions.dll
0fb60000 0fe21000 Steam2 Steam2.dll
10000000 10047000 binkw32 binkw32.dll
40550000 406a0000 gameoverlayrenderer gameoverlayrenderer.dll
40ac0000 413ed000 steamclient steamclient.dll
47890000 47f4a000 atiumdag atiumdag.dll
50010000 50032000 SafetyLoad SafetyLoad.dll
50040000 5007c000 MfgConsole MfgConsole.dll
50080000 5014a000 skse_1_9_32 skse_1_9_32.dll
50390000 503ef000 ltc_fpsi32_96006 ltc_fpsi32-96006.dll
50410000 50445000 Fuz_Ro_D_oh Fuz Ro D'oh.dll
50450000 50635000 D3DX9_42 D3DX9_42.dll
51810000 51f4e000 atiumdva atiumdva.dll
52cd0000 52d5e000 XAudio2_6 XAudio2_6.dll
54170000 5417f000 hdtSkyrimMemPatch hdtSkyrimMemPatch.dll
541b0000 541f1000 d3d9 d3d9.dll
54200000 542ee000 msvcr120 msvcr120.dll
542f0000 54361000 msvcp120 msvcp120.dll
54370000 543e1000 hook hook.dll
56690000 567a6000 aticfx32 aticfx32.dll
5cee0000 5cf01000 ltc_help32_96006 ltc_help32-96006.dll
5cf10000 5cfcf000 msvcr100 msvcr100.dll
5d080000 5d0e9000 msvcp100 msvcp100.dll
5e3b0000 5e3e0000 dinput8 dinput8.dll
60000000 60021000 CSERHelper CSERHelper.dll
61e60000 61e7c000 cryptnet cryptnet.dll
626e0000 62706000 skse_steam_loader skse_steam_loader.dll
62710000 62717000 X3DAudio1_7 X3DAudio1_7.dll
62720000 62748000 steam_api steam_api.dll
63b40000 63d03000 d3d9_63b40000 d3d9.dll
63d10000 63d49000 MMDevAPI MMDevAPI.dll
63d50000 63d86000 AudioSes AudioSes.dll
680a0000 680c5000 powrprof powrprof.dll
68840000 68893000 vstdlib_s vstdlib_s.dll
68ca0000 68d51000 tier0_s tier0_s.dll
6bb80000 6bbbc000 pdh pdh.dll
6f940000 6f972000 winmm winmm.dll
70410000 7044d000 bcryptprimitives bcryptprimitives.dll
70450000 70467000 bcrypt bcrypt.dll
70470000 704a8000 ncrypt ncrypt.dll
704b0000 7059b000 dbghelp dbghelp.dll
70740000 70746000 SensApi SensApi.dll
70830000 70925000 propsys propsys.dll
70c30000 70c38000 secur32 secur32.dll
71790000 717a6000 gpapi gpapi.dll
71a60000 71a81000 ntmarta ntmarta.dll
71be0000 71be7000 wsock32 wsock32.dll
71d20000 71d33000 dwmapi dwmapi.dll
71d40000 71dc0000 uxtheme uxtheme.dll
728d0000 7290b000 rsaenh rsaenh.dll
72910000 72926000 cryptsp cryptsp.dll
72af0000 72af6000 d3d8thk d3d8thk.dll
73150000 731c2000 dsound dsound.dll
73200000 7327d000 avghookx avghookx.dll
73280000 73289000 hid hid.dll
732e0000 732e7000 avrt avrt.dll
733a0000 733a7000 winnsi winnsi.dll
733b0000 733cc000 IPHLPAPI IPHLPAPI.DLL
73420000 734a4000 comctl32 comctl32.dll
734b0000 734b9000 version version.dll
73880000 73956000 msvcr110 msvcr110.dll
73960000 739e5000 msvcp110 msvcp110.dll
74fd0000 74fdc000 CRYPTBASE CRYPTBASE.dll
74fe0000 75040000 sspicli sspicli.dll
75040000 75045000 psapi psapi.dll
75050000 750a7000 shlwapi shlwapi.dll
750b0000 7524d000 setupapi setupapi.dll
75250000 75267000 userenv userenv.dll
75270000 75310000 advapi32 advapi32.dll
75310000 753dc000 msctf msctf.dll
753e0000 754e0000 user32 user32.dll
754e0000 75527000 KERNELBASE KERNELBASE.dll
75530000 75557000 cfgmgr32 cfgmgr32.dll
75560000 755db000 comdlg32 comdlg32.dll
75830000 75920000 rpcrt4 rpcrt4.dll
75920000 759cc000 msvcrt msvcrt.dll
75a30000 75a5e000 wintrust wintrust.dll
75a70000 75aa5000 ws2_32 ws2_32.dll
75ab0000 75adb000 imagehlp imagehlp.dll
75ae0000 75c3c000 ole32 ole32.dll
75c40000 75d60000 crypt32 crypt32.dll
75d60000 769aa000 shell32 shell32.dll
769b0000 769c2000 devobj devobj.dll
769d0000 76a30000 imm32 imm32.dll
76a40000 76ad0000 gdi32 gdi32.dll
76e00000 76e0b000 profapi profapi.dll
76e20000 76e26000 nsi nsi.dll
76e30000 76e49000 sechost sechost.dll
76e50000 76eed000 usp10 usp10.dll
76f00000 77010000 kernel32 kernel32.dll
770a0000 770ac000 msasn1 msasn1.dll
770b0000 770f5000 Wldap32 Wldap32.dll
77110000 7711a000 lpk lpk.dll
77120000 771a3000 clbcatq clbcatq.dll
771b0000 7723f000 oleaut32 oleaut32.dll
77640000 777c0000 ntdll ntdll.dll
777d0000 777eb000 atiu9pag atiu9pag.dll
777f0000 778c7000 Steam Steam.dll
778d0000 778f2000 showRaceMenu_preCacheKiller showRaceMenu_preCacheKiller.dll
77900000 7798d000 nioverride nioverride.dll
77990000 77a1b000 chargen chargen.dll
77a20000 77ae7000 StorageUtil StorageUtil.dll
77af0000 77b1b000 SexLabUtil SexLabUtil.dll
77b20000 77b73000 SchlongsOfSkyrim SchlongsOfSkyrim.dll
77e00000 77fff000 D3DX9_43 D3DX9_43.dll

 

 

sorry for my english :)

Link to comment

And yet another crash. This time with a different exception address.

 

 

 

 

EXCEPTION_RECORD: ffffffff -- (.exr 0xffffffffffffffff)
ExceptionAddress: 0068701d (TESV+0x0028701d)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 0000010c
Attempt to read from address 0000010c

DEFAULT_BUCKET_ID: NULL_CLASS_PTR_READ

PROCESS_NAME: TESV.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_PARAMETER1: 00000000

EXCEPTION_PARAMETER2: 0000010c

READ_ADDRESS: 0000010c

FOLLOWUP_IP:
TESV+28701d
0068701d 8b400c mov eax,dword ptr [eax+0Ch]

FAULTING_THREAD: 00000978

PRIMARY_PROBLEM_CLASS: NULL_CLASS_PTR_READ

BUGCHECK_STR: APPLICATION_FAULT_NULL_CLASS_PTR_READ

LAST_CONTROL_TRANSFER: from 00000000 to 0068701d

STACK_TEXT:
00000000 00000000 00000000 00000000 00000000 TESV+0x28701d

 

 

 

 

start end module name
003b0000 003c6000 XINPUT1_3 XINPUT1_3.dll
00400000 01e12000 TESV TESV.exe
02300000 02d55000 d3d9 d3d9.dll
0ed80000 0f6ad000 steamclient steamclient.dll
10000000 10047000 binkw32 binkw32.dll
451a0000 452e3000 nvspcap nvspcap.dll
53330000 53f6d000 nvd3dum nvd3dum.dll
54bb0000 54ffa000 D3DX9_40 D3DX9_40.dll
57540000 5783a000 nvapi nvapi.dll
57f90000 58251000 Steam2 Steam2.dll
58260000 5838e000 nvSCPAPI nvSCPAPI.dll
58390000 58553000 d3d9_58390000 d3d9.dll
58ba0000 58c2e000 XAudio2_6 XAudio2_6.dll
58c30000 58d80000 gameoverlayrenderer gameoverlayrenderer.dll
59000000 590d7000 Steam Steam.dll
590e0000 5916d000 nioverride nioverride.dll
59170000 591fb000 chargen chargen.dll
599a0000 59a5f000 msvcr100 msvcr100.dll
59bb0000 59c77000 StorageUtil StorageUtil.dll
59c80000 59cb7000 OneTweak OneTweak.dll
59cd0000 59cfb000 SexLabUtil SexLabUtil.dll
59d00000 59d69000 msvcp100 msvcp100.dll
59d70000 59dac000 MfgConsole MfgConsole.dll
59db0000 59dd3000 MemoryBlocksLog MemoryBlocksLog.dll
59de0000 59eaa000 skse_1_9_32 skse_1_9_32.dll
59eb0000 59ed6000 skse_steam_loader skse_steam_loader.dll
59ee0000 5a0c5000 D3DX9_42 D3DX9_42.dll
5a0d0000 5a1be000 msvcr120 msvcr120.dll
5a1c0000 5a231000 msvcp120 msvcp120.dll
5aef0000 5af61000 hook hook.dll
60000000 60021000 CSERHelper CSERHelper.dll
61940000 61a2b000 dbghelp dbghelp.dll
664b0000 66522000 dsound dsound.dll
66530000 66558000 steam_api steam_api.dll
665b0000 666c5000 dbghelp_665b0000 dbghelp.dll
67ce0000 67ce9000 hid hid.dll
67d30000 67d37000 avrt avrt.dll
68240000 682c4000 comctl32 comctl32.dll
69e60000 69e99000 MMDevAPI MMDevAPI.dll
69ea0000 69ed6000 AudioSes AudioSes.dll
6c670000 6c6c3000 vstdlib_s vstdlib_s.dll
702d0000 703c5000 propsys propsys.dll
70570000 70583000 dwmapi dwmapi.dll
70590000 70610000 uxtheme uxtheme.dll
71130000 7117c000 apphelp apphelp.dll
714a0000 714a8000 secur32 secur32.dll
71e80000 71f31000 tier0_s tier0_s.dll
72570000 72577000 X3DAudio1_7 X3DAudio1_7.dll
72580000 7258e000 CellStabilizer CellStabilizer.dll
72720000 72752000 winmm winmm.dll
729d0000 72a00000 dinput8 dinput8.dll
73540000 73546000 d3d8thk d3d8thk.dll
738c0000 738e5000 powrprof powrprof.dll
73c90000 73c97000 winnsi winnsi.dll
73ca0000 73cbc000 IPHLPAPI IPHLPAPI.DLL
73e70000 73e77000 wsock32 wsock32.dll
74f20000 74f29000 version version.dll
74ff0000 74ffc000 CRYPTBASE CRYPTBASE.dll
75000000 75060000 sspicli sspicli.dll
75060000 75065000 psapi psapi.dll
75070000 7507c000 msasn1 msasn1.dll
75080000 751dc000 ole32 ole32.dll
753d0000 753e9000 sechost sechost.dll
753f0000 75437000 KERNELBASE KERNELBASE.dll
75440000 7550c000 msctf msctf.dll
75510000 7558b000 comdlg32 comdlg32.dll
75590000 755e7000 shlwapi shlwapi.dll
755f0000 75711000 crypt32 crypt32.dll
75780000 757ab000 imagehlp imagehlp.dll
757b0000 75833000 clbcatq clbcatq.dll
75850000 759ed000 setupapi setupapi.dll
75a00000 75a8f000 oleaut32 oleaut32.dll
75af0000 75b8d000 usp10 usp10.dll
75ba0000 75baa000 lpk lpk.dll
75bb0000 75bd7000 cfgmgr32 cfgmgr32.dll
75bf0000 75cf0000 user32 user32.dll
75d00000 75e10000 kernel32 kernel32.dll
75e10000 75e16000 nsi nsi.dll
75e20000 75e32000 devobj devobj.dll
75e60000 75f50000 rpcrt4 rpcrt4.dll
75f50000 75f85000 ws2_32 ws2_32.dll
76020000 7604f000 wintrust wintrust.dll
76290000 7633c000 msvcrt msvcrt.dll
76340000 76f8b000 shell32 shell32.dll
76f90000 77020000 gdi32 gdi32.dll
77170000 77210000 advapi32 advapi32.dll
77210000 77270000 imm32 imm32.dll
77670000 777f0000 ntdll ntdll.dll

 

 

 

 

Link to comment
  • 4 weeks later...

Exception Anslysis

 

 

FAULTING_IP: 
TESV+2bac9a
006bac9a 8b4824          mov     ecx,dword ptr [eax+24h]

EXCEPTION_RECORD:  ffffffff -- (.exr 0xffffffffffffffff)
.exr 0xffffffffffffffff
ExceptionAddress: 006bac9a (TESV+0x002bac9a)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 00000000
   Parameter[1]: 00000024
Attempt to read from address 00000024

CONTEXT:  00000000 -- (.cxr 0x0;r)
.cxr 0x0;r
eax=00000000 ebx=2e071040 ecx=19eafbe0 edx=006c51a0 esi=2e070ff8 edi=2e071008
eip=76f7d28c esp=0018eb24 ebp=0018eb30 iopl=0         nv up ei pl nz na pe nc
cs=0023  ss=002b  ds=002b  es=002b  fs=0053  gs=002b             efl=00000206
ntdll!NtGetContextThread+0xc:
76f7d28c c20800          ret     8
.cxr

DEFAULT_BUCKET_ID:  NULL_CLASS_PTR_READ

PROCESS_NAME:  TESV.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.

EXCEPTION_PARAMETER1:  00000000

EXCEPTION_PARAMETER2:  00000024

READ_ADDRESS:  00000024 

FOLLOWUP_IP: 
TESV+2bac9a
006bac9a 8b4824          mov     ecx,dword ptr [eax+24h]

APP:  tesv.exe

ANALYSIS_VERSION: 6.3.9600.17336 (debuggers(dbg).150226-1500) amd64fre

FAULTING_THREAD:  000050d4

PRIMARY_PROBLEM_CLASS:  NULL_CLASS_PTR_READ

BUGCHECK_STR:  APPLICATION_FAULT_NULL_CLASS_PTR_READ_INVALID_POINTER_READ

LAST_CONTROL_TRANSFER:  from 00a4edb2 to 006bac9a

 

 

 

Stack Trace

 

 

STACK_TEXT:  
WARNING: Stack unwind information not available. Following frames may be wrong.
0018fbd8 00a4edb2 01b49d08 19f49494 01b418b0 TESV+0x2bac9a
0018fbf8 006c4feb 19eafbf4 19eafbe0 0018fc38 TESV+0x64edb2
0018fc0c 006ce618 19eafbf4 00ab536c 00000001 TESV+0x2c4feb
0018fc14 00ab536c 00000001 5fdaccfb 0004b3bc TESV+0x2ce618
0018fc1c 5fdaccfb 0004b3bc 00000000 09768290 TESV+0x6b536c
0018fc38 0043c484 19eafbe0 00000000 0043d0c1 hdtPhysicsExtensions!SKSEPlugin_Load+0x275b
0018fc44 0043d0c1 0018fc68 02012c00 8070e9d0 TESV+0x3c484
00000000 00000000 00000000 00000000 00000000 TESV+0x3d0c1


STACK_COMMAND:  ~0s; .ecxr ; kb

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  tesv+2bac9a

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: TESV

IMAGE_NAME:  TESV.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  51437ce5

FAILURE_BUCKET_ID:  NULL_CLASS_PTR_READ_c0000005_TESV.exe!Unknown

BUCKET_ID:  APPLICATION_FAULT_NULL_CLASS_PTR_READ_INVALID_POINTER_READ_tesv+2bac9a

ANALYSIS_SOURCE:  UM

FAILURE_ID_HASH_STRING:  um:null_class_ptr_read_c0000005_tesv.exe!unknown

FAILURE_ID_HASH:  {ea48a5eb-9592-43ed-0f95-d43cae309662}

Followup: MachineOwner
---------

eax=00000000 ebx=2e071040 ecx=19eafbe0 edx=006c51a0 esi=2e070ff8 edi=2e071008
eip=76f7d28c esp=0018eb24 ebp=0018eb30 iopl=0         nv up ei pl nz na pe nc
cs=0023  ss=002b  ds=002b  es=002b  fs=0053  gs=002b             efl=00000206
ntdll!NtGetContextThread+0xc:
76f7d28c c20800          ret     8
ChildEBP RetAddr  Args to Child              
0018eb24 6fafc815 2e07b4f8 00000000 76f815b1 ntdll!NtGetContextThread+0xc (FPO: [2,0,0])
0018eb30 76f815b1 aadeb52d 00000338 00000330 dbghelp!GenCheckCancel+0xcf (FPO: [Non-Fpo])
0018ecc0 74c1b2e4 0018f040 bca3cbd2 006c0064 ntdll!RtlpAllocateHeap+0x951 (FPO: [SEH])
0018ece4 6fb07cb9 6fa2be00 6fb07ce2 334205c0 msvcrt!_VEC_memzero+0x36 (FPO: [3,0,0])
0018ef38 6fafc815 0018f2f0 0018f3c0 6faf916f dbghelp!Win32LiveSystemProvider::QueryBuildString+0x89 (FPO: [Non-Fpo])
0018f2a4 6faf777b 2e060048 00000000 2e060048 dbghelp!GenCheckCancel+0xcf (FPO: [Non-Fpo])
0018f2c4 6faf9f93 2e060048 33420778 00000000 dbghelp!WriteDumpData+0x77 (FPO: [Non-Fpo])
0018f478 6fafa1f5 334205c0 33420750 334205a8 dbghelp!MiniDumpProvideDump+0x331 (FPO: [Non-Fpo])
*** ERROR: Module load completed but symbols could not be loaded for skse_1_9_32.dll
0018f4ec 6101b768 0018f5b4 60fb255c ffffffff dbghelp!MiniDumpWriteDump+0x185 (FPO: [7,17,4])
WARNING: Stack unwind information not available. Following frames may be wrong.
0018f52c 7573f675 0018f5e4 a8ae8952 00000000 skse_1_9_32+0xcb768
0018f5b4 76fef0a7 0018f5e4 76f80a70 0018ffdc KERNELBASE!UnhandledExceptionFilter+0x165 (FPO: [Non-Fpo])
0018ffdc 76f9acea ffffffff 76f8021d 00000000 ntdll!__RtlUserThreadStart+0x543b7
0018ffec 00000000 00f568a1 fffd3000 00000000 ntdll!_RtlUserThreadStart+0x1b (FPO: [Non-Fpo])
start    end        module name
003b0000 003c6000   XINPUT1_3 XINPUT1_3.dll Wed Apr 04 18:39:01 2007 (46145335)
00400000 01d88000   TESV     TESV.exe     Fri Mar 15 12:56:21 2013 (51437CE5)
02110000 02b66000   d3d9     d3d9.dll     Tue Jun 02 13:51:53 2015 (556E1769)
0f390000 0f394000   ToggleWalkRunFix ToggleWalkRunFix.dll Sat Sep 20 17:42:05 2014 (541E1EDD)
0f570000 0f657000   SKSE_Elys_Uncapper SKSE_Elys_Uncapper.dll Mon Dec 16 22:08:58 2013 (52AFEA7A)
10000000 10047000   binkw32  binkw32.dll  Wed May 11 00:20:18 2011 (4DCA38B2)
30c40000 30d84000   nvspcap  nvspcap.dll  Fri May 22 18:43:00 2015 (555FDB24)
3b400000 3b41e000   steam_api steam_api.dll Tue Nov 01 11:29:00 2011 (4EB03A6C)
5fa90000 5fb11000   dsound   dsound.dll   Tue Oct 28 18:47:50 2014 (54504746)
5fb20000 5fb36000   usp10    usp10.dll    Tue Oct 28 19:03:17 2014 (54504AE5)
5fb40000 5fb52000   enbhelper enbhelper.dll Tue Oct 08 10:43:45 2013 (52544451)
5fb60000 5fbc0000   AudioSes AudioSes.dll Tue Oct 28 17:53:42 2014 (54503A96)
5fbc0000 5fc4e000   XAudio2_6 XAudio2_6.dll Thu Feb 04 09:44:49 2010 (4B6B0791)
5fc50000 5fc67000   towConversation towConversation.dll Sat Apr 05 22:56:15 2014 (5340EC7F)
5fc70000 5fc92000   skse_widescreen_fix skse_widescreen_fix.dll Wed Apr 29 18:08:17 2015 (55418081)
5fca0000 5fd2d000   nioverride nioverride.dll Fri May 22 18:20:22 2015 (555FD5D6)
5fd30000 5fd59000   hudextension hudextension.dll Sun Oct 26 10:54:04 2014 (544D353C)
5fd60000 5fd92000   hdtSittingHeightFix hdtSittingHeightFix.dll Sat May 10 01:37:16 2014 (536DE53C)
5fda0000 60960000   hdtPhysicsExtensions hdtPhysicsExtensions.dll Fri Feb 28 04:51:33 2014 (53108655)
60960000 609eb000   chargen  chargen.dll  Sat Apr 04 12:20:12 2015 (5520396C)
609f0000 60a10000   UltimateCombat UltimateCombat.dll Mon Jul 14 07:39:15 2014 (53C3EB93)
60a10000 60a2e000   TKHitStop TKHitStop.dll Tue Mar 19 21:29:38 2013 (51493B32)
60a30000 60af7000   StorageUtil StorageUtil.dll Fri Oct 03 16:24:35 2014 (542F3033)
60b00000 60b35000   Smart_Souls Smart Souls.dll Fri Apr 05 04:13:23 2013 (515EB1D3)
60b40000 60b6b000   SexLabUtil SexLabUtil.dll Fri Oct 03 15:04:08 2014 (542F1D58)
60b70000 60b9c000   SKSE_EnhancedCamera SKSE_EnhancedCamera.dll Sun Sep 14 21:26:49 2014 (54166A89)
60ba0000 60bd7000   OneTweak OneTweak.dll Sun May 31 10:04:37 2015 (556B3F25)
60be0000 60c1c000   MfgConsole MfgConsole.dll Tue Oct 29 21:46:35 2013 (52708F2B)
60c20000 60c43000   MemoryBlocksLog MemoryBlocksLog.dll Mon Jan 27 16:21:06 2014 (52E6F7F2)
60c50000 60c73000   JaxonzConsolePlugIn JaxonzConsolePlugIn.dll Thu Jan 08 09:57:10 2015 (54AEC4F6)
60c80000 60e6a000   JContainers JContainers.dll Tue Oct 14 08:23:17 2014 (543D3FE5)
60e70000 60e9f000   EnchantReloadFix EnchantReloadFix.dll Tue Apr 22 17:44:48 2014 (53570D00)
60ea0000 60edc000   EnchArsenal EnchArsenal.dll Thu Sep 04 16:43:08 2014 (5408F90C)
60ee0000 60f41000   AHZmoreHUDPlugin AHZmoreHUDPlugin.dll Tue Jul 15 04:42:51 2014 (53C513BB)
60f50000 61035000   skse_1_9_32 skse_1_9_32.dll Sat May 23 17:49:25 2015 (55612015)
61040000 61066000   skse_steam_loader skse_steam_loader.dll Sat May 23 17:46:50 2015 (55611F7A)
61070000 614ba000   D3DX9_40 D3DX9_40.dll Tue Oct 07 19:39:44 2008 (48EC1D70)
614c0000 614f6000   dinput8  dinput8.dll  Tue Oct 28 18:55:53 2014 (54504929)
61500000 616e5000   D3DX9_42 D3DX9_42.dll Sun Jul 26 19:40:59 2009 (4A6D13BB)
616f0000 617de000   msvcr120 msvcr120.dll Fri Oct 04 19:43:50 2013 (524F7CE6)
617e0000 61851000   msvcp120 msvcp120.dll Fri Oct 04 19:43:57 2013 (524F7CED)
61860000 618d1000   hook     hook.dll     Sat May 30 11:59:07 2015 (556A087B)
653b0000 65583000   d3d9_653b0000 d3d9.dll     Tue Oct 28 18:58:25 2014 (545049C1)
6add0000 6ae23000   MMDevAPI MMDevAPI.dll Tue Oct 28 17:55:23 2014 (54503AFB)
6b3e0000 6b3ee000   CellStabilizer CellStabilizer.dll Tue Sep 03 20:45:12 2013 (5226ACC8)
6b5c0000 6b5c7000   X3DAudio1_7 X3DAudio1_7.dll Thu Feb 04 09:44:48 2010 (4B6B0790)
6b9d0000 6ba39000   msvcp100 msvcp100.dll Fri Jun 10 18:00:49 2011 (4DF2BE41)
6ba40000 6baff000   msvcr100 msvcr100.dll Fri Jun 10 18:00:14 2011 (4DF2BE1E)
6c870000 6c87a000   hid      hid.dll      Tue Oct 28 18:05:39 2014 (54503D63)
6d0b0000 6d0d3000   WINMMBASE WINMMBASE.dll Tue Oct 28 17:57:46 2014 (54503B8A)
6d0e0000 6d103000   winmm    winmm.dll    Tue Oct 28 17:55:38 2014 (54503B0A)
6d110000 6dd4e000   nvd3dum  nvd3dum.dll  Wed May 27 19:50:51 2015 (5566828B)
6e020000 6e0c0000   apphelp  apphelp.dll  Tue Oct 28 19:00:11 2014 (54504A2B)
6e0d0000 6e159000   comctl32 comctl32.dll Tue Oct 28 19:01:00 2014 (54504A5C)
6e530000 6e570000   powrprof powrprof.dll Tue Oct 28 18:04:54 2014 (54503D36)
6e6e0000 6e9de000   nvapi    nvapi.dll    Wed May 27 19:46:19 2015 (5566817B)
6eb90000 6ebaa000   dwmapi   dwmapi.dll   Tue Oct 28 17:58:22 2014 (54503BAE)
6f060000 6f14d000   uxtheme  uxtheme.dll  Tue Oct 28 17:48:23 2014 (54503957)
6f490000 6f4d7000   fraps32  fraps32.dll  Thu Aug 30 06:17:50 2012 (503F67FE)
6f950000 6f971000   devobj   devobj.dll   Tue Oct 28 18:03:21 2014 (54503CD9)
6fa10000 6fb51000   dbghelp  dbghelp.dll  Tue Mar 31 19:31:00 2015 (551B5864)
74290000 74298000   wsock32  wsock32.dll  Tue Oct 28 18:59:50 2014 (54504A16)
74350000 743db000   SHCore   SHCore.dll   Thu Jan 22 18:47:03 2015 (54C1B627)
743e0000 743e9000   kernel_appcore kernel.appcore.dll Tue Oct 28 18:04:26 2014 (54503D1A)
74580000 74588000   version  version.dll  Tue Oct 28 18:59:45 2014 (54504A11)
746d0000 74724000   bcryptPrimitives bcryptPrimitives.dll Tue Oct 28 18:05:57 2014 (54503D75)
74730000 7473a000   CRYPTBASE CRYPTBASE.dll Tue Oct 28 19:01:15 2014 (54504A6B)
74740000 7475e000   sspicli  sspicli.dll  Tue Oct 28 18:06:04 2014 (54503D7C)
74760000 7486e000   gdi32    gdi32.dll    Tue Oct 28 18:10:13 2014 (54503E75)
74870000 74905000   oleaut32 oleaut32.dll Thu Dec 18 20:49:55 2014 (5493AE73)
74910000 74ac1000   setupapi setupapi.dll Tue Oct 28 17:43:38 2014 (5450383A)
74ae0000 74c08000   ole32    ole32.dll    Tue Oct 28 17:47:16 2014 (54503914)
74c10000 74cd3000   msvcrt   msvcrt.dll   Tue Oct 28 19:04:30 2014 (54504B2E)
74ce0000 74e33000   user32   user32.dll   Tue Oct 28 18:04:32 2014 (54503D20)
74e40000 74f52000   msctf    msctf.dll    Fri Mar 13 17:53:05 2015 (55038671)
74f60000 74fa1000   sechost  sechost.dll  Thu Mar 19 20:20:59 2015 (550B921B)
74fb0000 74fbe000   msasn1   msasn1.dll   Tue Oct 28 18:06:31 2014 (54503D97)
74fc0000 7507a000   rpcrt4   rpcrt4.dll   Tue Oct 28 18:07:48 2014 (54503DE4)
75080000 751fd000   combase  combase.dll  Tue Oct 28 18:06:12 2014 (54503D84)
75370000 7540b000   comdlg32 comdlg32.dll Tue Oct 28 18:14:50 2014 (54503F8A)
75410000 7548c000   advapi32 advapi32.dll Tue Oct 28 18:57:48 2014 (5450499C)
754b0000 754ec000   cfgmgr32 cfgmgr32.dll Tue Oct 28 18:06:02 2014 (54503D7A)
754f0000 7552d000   wintrust wintrust.dll Tue Oct 28 18:00:13 2014 (54503C1D)
755c0000 755c7000   nsi      nsi.dll      Tue Oct 28 19:03:31 2014 (54504AF3)
75630000 75675000   shlwapi  shlwapi.dll  Tue Oct 28 17:43:08 2014 (5450381C)
75680000 75757000   KERNELBASE KERNELBASE.dll Tue Oct 28 19:03:10 2014 (54504ADE)
75770000 75797000   imm32    imm32.dll    Tue Oct 28 18:59:48 2014 (54504A14)
757a0000 758e0000   kernel32 kernel32.dll Tue Oct 28 18:58:22 2014 (545049BE)
75940000 759cd000   clbcatq  clbcatq.dll  Tue Oct 28 17:44:51 2014 (54503883)
759d0000 759d6000   psapi    psapi.dll    Tue Oct 28 18:06:26 2014 (54503D92)
759e0000 76c8c000   shell32  shell32.dll  Wed Feb 11 19:51:27 2015 (54DC233F)
76c90000 76ce0000   ws2_32   ws2_32.dll   Tue Oct 28 18:06:09 2014 (54503D81)
76ce0000 76e68000   crypt32  crypt32.dll  Tue Oct 28 17:21:18 2014 (545032FE)
76f40000 770ae000   ntdll    ntdll.dll    Sun Mar 22 15:31:30 2015 (550F42C2)

 

 

Link to comment

@myztikrice

 

It happened when actor was removed of all spells and effects (possibly due to being deleted) but the base form of actor was not set yet or was already cleared. hdtPhysics plugin is being loaded in same frame this means it happens when skyrim first started up? There should be no actor deletion at this point.

Link to comment

@myztikrice

 

It happened when actor was removed of all spells and effects (possibly due to being deleted) but the base form of actor was not set yet or was already cleared. hdtPhysics plugin is being loaded in same frame this means it happens when skyrim first started up? There should be no actor deletion at this point.

 

Yeah when loading a save. Maybe Enhanced Camera is deleting an actor?

Link to comment

I've been having CTD problems since building my new PC.  Every time I approach Whiterun, I CTD.  If anyone could give me a point to start from, I'd greatly appreciate it.

Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
Online Crash Dump Analysis Service
See http://www.osronline.comfor more information
Windows 8 Version 9600 MP (8 procs) Free x86 compatible
Product: WinNt, suite: SingleUserTS Personal
kernel32.dll version: 6.3.9600.17415 (winblue_r4.141028-1500)
Machine Name:
Debug session time: Sun Jun 21 08:52:30.000 2015 (UTC - 4:00)
System Uptime: not available
Process Uptime: 0 days 0:03:43.000
Kernel time: 0 days 0:00:32.000
User time: 0 days 0:04:52.000
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\oca.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\winxp\triage.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\user.ini, error 2
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************

TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\guids.ini, error 2
*** WARNING: Unable to verify timestamp for nvd3dum.dll
*** ERROR: Module load completed but symbols could not be loaded for nvd3dum.dll
*** WARNING: Unable to verify timestamp for d3d9.dll
*** ERROR: Module load completed but symbols could not be loaded for d3d9.dll
*** WARNING: Unable to verify timestamp for hdtHighHeelNative.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtHighHeelNative.dll
*** WARNING: Unable to verify timestamp for hdtPhysicsExtensions.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtPhysicsExtensions.dll
*** WARNING: Unable to verify timestamp for XAudio2_6.dll
*** WARNING: Unable to verify timestamp for JContainers.dll
*** ERROR: Module load completed but symbols could not be loaded for JContainers.dll
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
*** The OS name list needs to be updated! Unknown Windows version: 6.3 ***

FAULTING_IP:
TESV+6beab4
00abeab4 3b08 cmp ecx,dword ptr [eax]

EXCEPTION_RECORD: ffffffff -- (.exr 0xffffffffffffffff)
ExceptionAddress: 00abeab4 (TESV+0x006beab4)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 0000000c
Attempt to read from address 0000000c

DEFAULT_BUCKET_ID: NULL_CLASS_PTR_READ

PROCESS_NAME: TESV.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_PARAMETER1: 00000000

EXCEPTION_PARAMETER2: 0000000c

READ_ADDRESS: 0000000c

FOLLOWUP_IP:
TESV+6beab4
00abeab4 3b08 cmp ecx,dword ptr [eax]

FAULTING_THREAD: 00002230

PRIMARY_PROBLEM_CLASS: NULL_CLASS_PTR_READ

BUGCHECK_STR: APPLICATION_FAULT_NULL_CLASS_PTR_READ

IP_ON_HEAP: fce3e790
The fault address in not in any loaded module, please check your build's rebase
log at \bin\build_logs\timebuild\ntrebase.log for module which may
contain the address if it were loaded.

FRAME_ONE_INVALID: 1

LAST_CONTROL_TRANSFER: from fce3e790 to 00abeab4

STACK_TEXT:
WARNING: Stack unwind information not available. Following frames may be wrong.
162ef80c fce3e790 e273ea60 00000011 00abeb56 TESV+0x6beab4
162ef810 e273ea60 00000011 00abeb56 e273ea60 0xfce3e790
162ef814 00000000 00abeb56 e273ea60 fce3e790 0xe273ea60


SYMBOL_STACK_INDEX: 0

SYMBOL_NAME: TESV+6beab4

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: TESV

IMAGE_NAME: TESV.exe

DEBUG_FLR_IMAGE_TIMESTAMP: 51437ce5

STACK_COMMAND: ~32s; .ecxr ; kb

FAILURE_BUCKET_ID: NULL_CLASS_PTR_READ_c0000005_TESV.exe!Unknown

BUCKET_ID: APPLICATION_FAULT_NULL_CLASS_PTR_READ_TESV+6beab4

WATSON_STAGEONE_URL: http://watson.microsoft.com/StageOne/TESV_exe/1_9_32_0/51437ce5/TESV_exe/1_9_32_0/51437ce5/c0000005/006beab4.htm?Retriage=1

Followup: MachineOwner

 

Link to comment

Looks like stack corruption but hard to say, can you post the log again but with loaded module addresses too. If you don't have that info then wait until next crash and run the analysis again it should give you loaded modules and addresses.

Link to comment

Oops. Sorry about that! Here there are.

Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
Online Crash Dump Analysis Service
See http://www.osronline.comfor more information
Windows 8 Version 9600 MP (8 procs) Free x86 compatible
Product: WinNt, suite: SingleUserTS Personal
kernel32.dll version: 6.3.9600.17415 (winblue_r4.141028-1500)
Machine Name:
Debug session time: Sun Jun 21 10:11:00.000 2015 (UTC - 4:00)
System Uptime: not available
Process Uptime: 0 days 0:16:38.000
Kernel time: 0 days 0:00:58.000
User time: 0 days 0:17:24.000
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\oca.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\winxp\triage.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\user.ini, error 2
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************

TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\guids.ini, error 2
*** WARNING: Unable to verify timestamp for nvd3dum.dll
*** ERROR: Module load completed but symbols could not be loaded for nvd3dum.dll
*** WARNING: Unable to verify timestamp for d3d9.dll
*** ERROR: Module load completed but symbols could not be loaded for d3d9.dll
*** WARNING: Unable to verify timestamp for hdtHighHeelNative.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtHighHeelNative.dll
*** WARNING: Unable to verify timestamp for hdtPhysicsExtensions.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtPhysicsExtensions.dll
*** WARNING: Unable to verify timestamp for XAudio2_6.dll
*** WARNING: Unable to verify timestamp for JContainers.dll
*** ERROR: Module load completed but symbols could not be loaded for JContainers.dll
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
*** The OS name list needs to be updated! Unknown Windows version: 6.3 ***

FAULTING_IP:
TESV+6edf0
0046edf0 8a08 mov cl,byte ptr [eax]

EXCEPTION_RECORD: ffffffff -- (.exr 0xffffffffffffffff)
ExceptionAddress: 0046edf0 (TESV+0x0006edf0)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000000
Parameter[1]: 00000010
Attempt to read from address 00000010

DEFAULT_BUCKET_ID: NULL_CLASS_PTR_READ

PROCESS_NAME: TESV.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_PARAMETER1: 00000000

EXCEPTION_PARAMETER2: 00000010

READ_ADDRESS: 00000010

FOLLOWUP_IP:
TESV+6edf0
0046edf0 8a08 mov cl,byte ptr [eax]

FAULTING_THREAD: 00000cf0

PRIMARY_PROBLEM_CLASS: NULL_CLASS_PTR_READ

BUGCHECK_STR: APPLICATION_FAULT_NULL_CLASS_PTR_READ_INVALID_POINTER_READ

IP_ON_HEAP: e3e3d7a0
The fault address in not in any loaded module, please check your build's rebase
log at \bin\build_logs\timebuild\ntrebase.log for module which may
contain the address if it were loaded.

FRAME_ONE_INVALID: 1

LAST_CONTROL_TRANSFER: from e3e3d7a0 to 0046edf0

STACK_TEXT:
WARNING: Stack unwind information not available. Following frames may be wrong.
162cf850 e3e3d7a0 00a511b0 162cfa0c e3879600 TESV+0x6edf0
162cf8a0 ffffffff dded6600 e38796a8 00000011 0xe3e3d7a0
00000000 00000000 00000000 00000000 00000000 0xffffffff


SYMBOL_STACK_INDEX: 0

SYMBOL_NAME: TESV+6edf0

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: TESV

IMAGE_NAME: TESV.exe

DEBUG_FLR_IMAGE_TIMESTAMP: 51437ce5

STACK_COMMAND: ~31s; .ecxr ; kb

FAILURE_BUCKET_ID: NULL_CLASS_PTR_READ_c0000005_TESV.exe!Unknown

BUCKET_ID: APPLICATION_FAULT_NULL_CLASS_PTR_READ_INVALID_POINTER_READ_TESV+6edf0

WATSON_STAGEONE_URL: http://watson.microsoft.com/StageOne/TESV_exe/1_9_32_0/51437ce5/TESV_exe/1_9_32_0/51437ce5/c0000005/0006edf0.htm?Retriage=1

Followup: MachineOwner



Loaded Module List

start end module name
00400000 01e12000 TESV TESV.exe
01e20000 01e36000 XINPUT1_3 XINPUT1_3.dll
03f00000 04802000 d3d9 d3d9.dll
0bdc0000 0bdfd000 wintrust wintrust.dll
0e920000 0ea64000 nvspcap nvspcap.dll
10000000 10047000 binkw32 binkw32.dll
38000000 3892c000 steamclient steamclient.dll
60000000 60021000 CSERHelper CSERHelper.dll
625b0000 628ae000 nvapi nvapi.dll
628b0000 62cfa000 D3DX9_40 D3DX9_40.dll
62d00000 62e2e000 nvSCPAPI nvSCPAPI.dll
62e30000 63a6e000 nvd3dum nvd3dum.dll
63a70000 63bc1000 gameoverlayrenderer gameoverlayrenderer.dll
63bd0000 63ce5000 dbghelp_63bd0000 dbghelp.dll
63cf0000 63fb1000 Steam2 Steam2.dll
63fc0000 640f7000 Steam Steam.dll
64100000 641c7000 StorageUtil StorageUtil.dll
641d0000 641fb000 SexLabUtil SexLabUtil.dll
64200000 64253000 SchlongsOfSkyrim SchlongsOfSkyrim.dll
64260000 642ed000 nioverride nioverride.dll
642f0000 6432c000 MfgConsole MfgConsole.dll
64330000 6455b000 JContainers JContainers.dll
64560000 65120000 hdtPhysicsExtensions hdtPhysicsExtensions.dll
65160000 65333000 d3d9_65160000 d3d9.dll
65340000 6536f000 d3d9injFX d3d9injFX.dll
65370000 65382000 enbhelper enbhelper.dll
65390000 6541e000 XAudio2_6 XAudio2_6.dll
65420000 65469000 hdtHighHeelNative hdtHighHeelNative.dll
65470000 654fb000 chargen chargen.dll
65500000 656ff000 D3DX9_43 D3DX9_43.dll
65700000 658e5000 D3DX9_42 D3DX9_42.dll
66790000 66830000 apphelp apphelp.dll
668e0000 66906000 ffutils ffutils.dll
66910000 669f5000 skse_1_9_32 skse_1_9_32.dll
66a00000 66a26000 skse_steam_loader skse_steam_loader.dll
66a30000 66a37000 X3DAudio1_7 X3DAudio1_7.dll
66a40000 66a68000 steam_api steam_api.dll
66a70000 66af9000 comctl32 comctl32.dll
66b00000 66d77000 AcLayers AcLayers.dll
6b410000 6b41e000 SortWindows61 SortWindows61.dll
6b5c0000 6b5f6000 dinput8 dinput8.dll
6c120000 6c12a000 hid hid.dll
6c130000 6c1b1000 dsound dsound.dll
6c200000 6c20a000 avrt avrt.dll
6c260000 6c3a1000 dbghelp dbghelp.dll
6c7d0000 6c823000 MMDevAPI MMDevAPI.dll
6c830000 6c870000 powrprof powrprof.dll
6c870000 6c8d0000 AudioSes AudioSes.dll
6c8d0000 6c8e6000 usp10 usp10.dll
6f5c0000 6f5c8000 wsock32 wsock32.dll
6f890000 6f8b3000 WINMMBASE WINMMBASE.dll
6f9a0000 6f9f3000 vstdlib_s vstdlib_s.dll
70200000 70311000 tier0_s tier0_s.dll
703f0000 70413000 winmm winmm.dll
72010000 72026000 mpr mpr.dll
720d0000 7214d000 avghookx avghookx.dll
730b0000 730bf000 sfc_os sfc_os.dll
730c0000 730c3000 sfc sfc.dll
73da0000 73daa000 secur32 secur32.dll
748b0000 748b9000 kernel_appcore kernel.appcore.dll
74f90000 74faa000 dwmapi dwmapi.dll
74fb0000 7509d000 uxtheme uxtheme.dll
750a0000 7512b000 SHCore SHCore.dll
75130000 75138000 winnsi winnsi.dll
751e0000 75200000 IPHLPAPI IPHLPAPI.DLL
75300000 75321000 devobj devobj.dll
75330000 75395000 winspool winspool.drv
753a0000 753a8000 version version.dll
753b0000 75404000 bcryptPrimitives bcryptPrimitives.dll
75410000 7541a000 CRYPTBASE CRYPTBASE.dll
75420000 7543e000 sspicli sspicli.dll
754d0000 75511000 sechost sechost.dll
75520000 7569d000 combase combase.dll
756b0000 75838000 crypt32 crypt32.dll
75840000 75903000 msvcrt msvcrt.dll
75a80000 75b15000 oleaut32 oleaut32.dll
75b20000 75b5c000 cfgmgr32 cfgmgr32.dll
75b60000 75c1a000 rpcrt4 rpcrt4.dll
75c20000 75c65000 shlwapi shlwapi.dll
75c70000 75c76000 psapi psapi.dll
75c80000 75cfc000 advapi32 advapi32.dll
75d00000 75d27000 imm32 imm32.dll
75d30000 75e58000 ole32 ole32.dll
75e60000 75f6e000 gdi32 gdi32.dll
75f70000 760c3000 user32 user32.dll
760d0000 7615d000 clbcatq clbcatq.dll
76160000 76167000 nsi nsi.dll
761e0000 762f2000 msctf msctf.dll
76360000 7760c000 shell32 shell32.dll
77610000 777c1000 setupapi setupapi.dll
777d0000 777de000 msasn1 msasn1.dll
77820000 77834000 imagehlp imagehlp.dll
77840000 778db000 comdlg32 comdlg32.dll
778e0000 77930000 ws2_32 ws2_32.dll
77930000 77a07000 KERNELBASE KERNELBASE.dll
77a10000 77b50000 kernel32 kernel32.dll
77c20000 77d8e000 ntdll ntdll.dll

 

Link to comment

It's definitely the same crash, something to do with NiNode name compare when the string is not valid but it's strange the stack is all wrong, maybe some SKSE plugin is hooking this part. Try removing temporarily any mods that would deal with this type of things, for example RaceMenu.

Link to comment

@ h38fh2mf Thanks for the tip, I'll try that out and see what happens.


Update:

Ok, I tried disabling all the mods were related to Race Menu and Skse and still CTDs. I did get the info for that test, maybe this will give a better idea of what is causing it.

Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
Online Crash Dump Analysis Service
See http://www.osronline.comfor more information
Windows 8 Version 9600 MP (8 procs) Free x86 compatible
Product: WinNt, suite: SingleUserTS Personal
kernel32.dll version: 6.3.9600.17415 (winblue_r4.141028-1500)
Machine Name:
Debug session time: Mon Jun 22 01:32:57.000 2015 (UTC - 4:00)
System Uptime: not available
Process Uptime: 0 days 0:02:20.000
Kernel time: 0 days 0:00:28.000
User time: 0 days 0:03:20.000
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\oca.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\winxp\triage.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\user.ini, error 2
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************

TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\guids.ini, error 2
*** WARNING: Unable to verify timestamp for hdtHighHeelNative.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtHighHeelNative.dll
*** WARNING: Unable to verify timestamp for hdtPhysicsExtensions.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtPhysicsExtensions.dll
*** WARNING: Unable to verify timestamp for XAudio2_6.dll
Unable to load image C:\Windows\System32\nvd3dum.dll, Win32 error 0n2
*** WARNING: Unable to verify timestamp for nvd3dum.dll
*** ERROR: Module load completed but symbols could not be loaded for nvd3dum.dll
*** WARNING: Unable to verify timestamp for JContainers.dll
*** ERROR: Module load completed but symbols could not be loaded for JContainers.dll
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2
*** The OS name list needs to be updated! Unknown Windows version: 6.3 ***

FAULTING_IP:
kernel32!InterlockedIncrementStub+b
77a2427b f00fc101 lock xadd dword ptr [ecx],eax

EXCEPTION_RECORD: ffffffff -- (.exr 0xffffffffffffffff)
ExceptionAddress: 77a2427b (kernel32!InterlockedIncrementStub+0x0000000b)
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 00000001
Parameter[1]: 0116a560
Attempt to write to address 0116a560

PROCESS_NAME: TESV.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_PARAMETER1: 00000001

EXCEPTION_PARAMETER2: 0116a560

WRITE_ADDRESS: 0116a560

FOLLOWUP_IP:
kernel32!InterlockedIncrementStub+b
77a2427b f00fc101 lock xadd dword ptr [ecx],eax

STACK_ADDR_RAW_STACK_SYMBOL: 162ae9bc

ADDITIONAL_DEBUG_TEXT: Followup set based on attribute [is_ChosenCrashFollowupThread] from Frame:[0] on thread:[PSEUDO_THREAD]

LAST_CONTROL_TRANSFER: from 00aae9ae to 77a2427b

FAULTING_THREAD: ffffffff

DEFAULT_BUCKET_ID: STACKIMMUNE

PRIMARY_PROBLEM_CLASS: STACKIMMUNE

BUGCHECK_STR: APPLICATION_FAULT_STACKIMMUNE_INVALID_POINTER_READ_INVALID_POINTER_WRITE

STACK_TEXT:
00000000 00000000 tesv.exe!Unknown+0x0


SYMBOL_STACK_INDEX: 0

SYMBOL_NAME: tesv.exe!Unknown

FOLLOWUP_NAME: MachineOwner

MODULE_NAME: tesv

IMAGE_NAME: TESV.exe

DEBUG_FLR_IMAGE_TIMESTAMP: 51437ce5

STACK_COMMAND: ** Pseudo Context ** ; kb

FAILURE_BUCKET_ID: STACKIMMUNE_c0000005_TESV.exe!Unknown

BUCKET_ID: APPLICATION_FAULT_STACKIMMUNE_INVALID_POINTER_READ_INVALID_POINTER_WRITE_tesv.exe!Unknown

WATSON_STAGEONE_URL: http://watson.microsoft.com/StageOne/TESV_exe/1_9_32_0/51437ce5/kernel32_dll/6_3_9600_17415/545049be/c0000005/0001427b.htm?Retriage=1

Followup: MachineOwner


start end module name
003e0000 003f6000 XINPUT1_3 XINPUT1_3.dll
00400000 01e12000 TESV TESV.exe
03e90000 04792000 d3d9 d3d9.dll
0bee0000 0bf1d000 wintrust wintrust.dll
0e8a0000 0e9e4000 nvspcap nvspcap.dll
10000000 10047000 binkw32 binkw32.dll
38000000 3892c000 steamclient steamclient.dll
60000000 60021000 CSERHelper CSERHelper.dll
66790000 66830000 apphelp apphelp.dll
66a80000 66d7e000 nvapi nvapi.dll
675d0000 67a1a000 D3DX9_40 D3DX9_40.dll
67a20000 67b4e000 nvSCPAPI nvSCPAPI.dll
67b50000 6878e000 nvd3dum nvd3dum.dll
68790000 68963000 d3d9_68790000 d3d9.dll
68970000 6899f000 d3d9injFX d3d9injFX.dll
689a0000 68a2e000 XAudio2_6 XAudio2_6.dll
68a30000 68b81000 gameoverlayrenderer gameoverlayrenderer.dll
68b90000 68ca5000 dbghelp_68b90000 dbghelp.dll
68cb0000 68f71000 Steam2 Steam2.dll
68f80000 690b7000 Steam Steam.dll
690c0000 69187000 StorageUtil StorageUtil.dll
69190000 691e3000 SchlongsOfSkyrim SchlongsOfSkyrim.dll
691f0000 6927d000 nioverride nioverride.dll
69280000 694ab000 JContainers JContainers.dll
694b0000 6a070000 hdtPhysicsExtensions hdtPhysicsExtensions.dll
6a070000 6a0b9000 hdtHighHeelNative hdtHighHeelNative.dll
6a0c0000 6a1a5000 skse_1_9_32 skse_1_9_32.dll
6a1b0000 6a3af000 D3DX9_43 D3DX9_43.dll
6a3b0000 6a595000 D3DX9_42 D3DX9_42.dll
6a5a0000 6a817000 AcLayers AcLayers.dll
6b420000 6b44b000 SexLabUtil SexLabUtil.dll
6b500000 6b512000 enbhelper enbhelper.dll
6b5c0000 6b5f6000 dinput8 dinput8.dll
6bad0000 6bb0c000 MfgConsole MfgConsole.dll
6bb10000 6bb9b000 chargen chargen.dll
6bba0000 6bbc6000 skse_steam_loader skse_steam_loader.dll
6bbd0000 6bbf8000 steam_api steam_api.dll
6bc00000 6bc89000 comctl32 comctl32.dll
6c120000 6c12a000 hid hid.dll
6c130000 6c1b1000 dsound dsound.dll
6c200000 6c20a000 avrt avrt.dll
6c260000 6c3a1000 dbghelp dbghelp.dll
6c7d0000 6c823000 MMDevAPI MMDevAPI.dll
6c830000 6c870000 powrprof powrprof.dll
6c870000 6c8d0000 AudioSes AudioSes.dll
6c8d0000 6c8e6000 usp10 usp10.dll
6f5c0000 6f5c8000 wsock32 wsock32.dll
6f890000 6f8b3000 WINMMBASE WINMMBASE.dll
6f9a0000 6f9f3000 vstdlib_s vstdlib_s.dll
70200000 70311000 tier0_s tier0_s.dll
703f0000 70413000 winmm winmm.dll
72010000 72026000 mpr mpr.dll
720d0000 7214d000 avghookx avghookx.dll
730b0000 730bf000 sfc_os sfc_os.dll
730c0000 730c3000 sfc sfc.dll
73da0000 73daa000 secur32 secur32.dll
748b0000 748b9000 kernel_appcore kernel.appcore.dll
74a70000 74a77000 X3DAudio1_7 X3DAudio1_7.dll
74a80000 74a8e000 SortWindows61 SortWindows61.dll
74f90000 74faa000 dwmapi dwmapi.dll
74fb0000 7509d000 uxtheme uxtheme.dll
750a0000 7512b000 SHCore SHCore.dll
75130000 75138000 winnsi winnsi.dll
751e0000 75200000 IPHLPAPI IPHLPAPI.DLL
75300000 75321000 devobj devobj.dll
75330000 75395000 winspool winspool.drv
753a0000 753a8000 version version.dll
753b0000 75404000 bcryptPrimitives bcryptPrimitives.dll
75410000 7541a000 CRYPTBASE CRYPTBASE.dll
75420000 7543e000 sspicli sspicli.dll
754d0000 75511000 sechost sechost.dll
75520000 7569d000 combase combase.dll
756b0000 75838000 crypt32 crypt32.dll
75840000 75903000 msvcrt msvcrt.dll
75a80000 75b15000 oleaut32 oleaut32.dll
75b20000 75b5c000 cfgmgr32 cfgmgr32.dll
75b60000 75c1a000 rpcrt4 rpcrt4.dll
75c20000 75c65000 shlwapi shlwapi.dll
75c70000 75c76000 psapi psapi.dll
75c80000 75cfc000 advapi32 advapi32.dll
75d00000 75d27000 imm32 imm32.dll
75d30000 75e58000 ole32 ole32.dll
75e60000 75f6e000 gdi32 gdi32.dll
75f70000 760c3000 user32 user32.dll
760d0000 7615d000 clbcatq clbcatq.dll
76160000 76167000 nsi nsi.dll
761e0000 762f2000 msctf msctf.dll
76360000 7760c000 shell32 shell32.dll
77610000 777c1000 setupapi setupapi.dll
777d0000 777de000 msasn1 msasn1.dll
77820000 77834000 imagehlp imagehlp.dll
77840000 778db000 comdlg32 comdlg32.dll
778e0000 77930000 ws2_32 ws2_32.dll
77930000 77a07000 KERNELBASE KERNELBASE.dll
77a10000 77b50000 kernel32 kernel32.dll
77c20000 77d8e000 ntdll ntdll.dll

 

Link to comment

As most everything else I've tried doesn't fix it, I thought I'd try here.

 

Classic crash on load. I load the save-file until it seems like it'll start up, and then CTD without any messages. I can load previous save files without issues, so the game itself is at leaast functioning with my current setup, but apparently not stable.

 

Some background: I've started to have more CTDs lately. This is the third character that I think is lost due to something stacking up or whatever while playing. This character is roughly 10-15 hours in, and the previous ones have taken roughly as long before their saves start to CTD. I have tried loading the saves without any plugins: still crashes. I use Mod Organizer, LOOT (latest version, not MO "Sort"), I've fixed cleaned all my mods with TES5Edit and done a bashed patch. Still, the game starts crashing after a dozen hours or so on a character.

 

So, without further ado, here's the crash dump analysis:

 

 

Crash Dump Analysis provided by OSR Open Systems Resources, Inc. (http://www.osr.com)
Online Crash Dump Analysis Service
See http://www.osronline.comfor more information
Windows 7 Version 7601 (Service Pack 1) MP (8 procs) Free x86 compatible
Product: WinNt, suite: SingleUserTS
kernel32.dll version: 6.1.7601.18869 (win7sp1_gdr.150525-0603)
Machine Name:
Debug session time: Thu Jun 25 17:42:44.000 2015 (UTC - 4:00)
System Uptime: not available
Process Uptime: 0 days 0:00:30.000
  Kernel time: 0 days 0:00:06.000
  User time: 0 days 0:00:27.000
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\oca.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\winxp\triage.ini, error 2
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\user.ini, error 2
*******************************************************************************
*                                                                             *
*                        Exception Analysis                                   *
*                                                                             *
*******************************************************************************

*** WARNING: Unable to verify timestamp for nioverride.dll
*** ERROR: Module load completed but symbols could not be loaded for nioverride.dll
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\guids.ini, error 2
*** WARNING: Unable to verify timestamp for hdtHighHeelNative.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtHighHeelNative.dll
*** WARNING: Unable to verify timestamp for hdtPhysicsExtensions.dll
*** ERROR: Module load completed but symbols could not be loaded for hdtPhysicsExtensions.dll
*** WARNING: Unable to verify timestamp for XAudio2_6.dll
*** WARNING: Unable to verify timestamp for nvd3dum.dll
*** ERROR: Module load completed but symbols could not be loaded for nvd3dum.dll
*** WARNING: Unable to verify timestamp for JContainers.dll
*** ERROR: Module load completed but symbols could not be loaded for JContainers.dll
TRIAGER: Could not open triage file : e:\dump_analysis\program\triage\modclass.ini, error 2

FAULTING_IP:
TESV+4b437c
008b437c 8b90ac000000    mov     edx,dword ptr [eax+0ACh]

EXCEPTION_RECORD:  ffffffff -- (.exr 0xffffffffffffffff)
ExceptionAddress: 008b437c (TESV+0x004b437c)
   ExceptionCode: c0000005 (Access violation)
  ExceptionFlags: 00000000
NumberParameters: 2
   Parameter[0]: 00000000
   Parameter[1]: 000000ac
Attempt to read from address 000000ac

PROCESS_NAME:  TESV.exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx". The memory could not be "%s".

EXCEPTION_PARAMETER1:  00000000

EXCEPTION_PARAMETER2:  000000ac

READ_ADDRESS:  000000ac

FOLLOWUP_IP:
TESV+4b437c
008b437c 8b90ac000000    mov     edx,dword ptr [eax+0ACh]

FAULTING_THREAD:  00000628

BUGCHECK_STR:  APPLICATION_FAULT_NULL_CLASS_PTR_READ_BEFORE_CALL

PRIMARY_PROBLEM_CLASS:  NULL_CLASS_PTR_READ_BEFORE_CALL

DEFAULT_BUCKET_ID:  NULL_CLASS_PTR_READ_BEFORE_CALL

IP_ON_HEAP:  e1790100
The fault address in not in any loaded module, please check your build's rebase
log at \bin\build_logs\timebuild\ntrebase.log for module which may
contain the address if it were loaded.

FRAME_ONE_INVALID: 1

LAST_CONTROL_TRANSFER:  from e1790100 to 008b437c

STACK_TEXT:  
WARNING: Stack unwind information not available. Following frames may be wrong.
0018f1ac e1790100 54f438c0 0018f1d8 f36bcec0 TESV+0x4b437c
0018f1b0 54f438c0 0018f1d8 f36bcec0 54ec5ada 0xe1790100
0018f1b4 0018f1d8 f36bcec0 54ec5ada 0000003d nioverride+0x838c0
0018f1b8 f36bcec0 54ec5ada 0000003d e1790100 0x18f1d8
0018f1d8 54ee4553 e1790100 e5471dff e24c6090 0xf36bcec0
0018f234 54ee446b e24c6090 e293c780 e5471e73 nioverride+0x24553
0018f264 54ee44ae e1790100 f36bcec0 e29384c0 nioverride+0x2446b
0018f268 e1790100 f36bcec0 e29384c0 00000003 nioverride+0x244ae
0018f26c f36bcec0 e29384c0 00000003 0018f200 0xe1790100
0018f270 e29384c0 00000003 0018f200 00000000 0xf36bcec0
0018f274 00000000 0018f200 00000000 e293c780 0xe29384c0


STACK_COMMAND:  ~0s; .ecxr ; kb

SYMBOL_STACK_INDEX:  0

SYMBOL_NAME:  TESV+4b437c

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: TESV

IMAGE_NAME:  TESV.exe

DEBUG_FLR_IMAGE_TIMESTAMP:  51437ce5

FAILURE_BUCKET_ID:  NULL_CLASS_PTR_READ_BEFORE_CALL_c0000005_TESV.exe!Unknown

BUCKET_ID:  APPLICATION_FAULT_NULL_CLASS_PTR_READ_BEFORE_CALL_TESV+4b437c

WATSON_STAGEONE_URL:  http://watson.microsoft.com/StageOne/TESV_exe/1_9_32_0/51437ce5/TESV_exe/1_9_32_0/51437ce5/c0000005/004b437c.htm?Retriage=1

Followup: MachineOwner

 

 

 

Loaded module list:

 

 

start end module name
003b0000 003c6000 XINPUT1_3 XINPUT1_3.dll
00400000 01e12000 TESV TESV.exe
02340000 02c42000 d3d9 d3d9.dll
0baf0000 0bbd7000 SKSE_Elys_Uncapper SKSE_Elys_Uncapper.dll
0f990000 0f9c9000 MMDevAPI MMDevAPI.dll
0ffb0000 0ffe6000 AudioSes AudioSes.dll
10000000 10047000 binkw32 binkw32.dll
11060000 110e3000 clbcatq clbcatq.dll
38000000 3892c000 steamclient steamclient.dll
50a60000 51620000 hdtPhysicsExtensions hdtPhysicsExtensions.dll
51c30000 51f19000 nvapi nvapi.dll
51f20000 5236a000 D3DX9_40 D3DX9_40.dll
54410000 54472000 d3dref9 d3dref9.dll
54480000 544af000 d3d9injFX d3d9injFX.dll
544b0000 5453e000 XAudio2_6 XAudio2_6.dll
54830000 54981000 gameoverlayrenderer gameoverlayrenderer.dll
54990000 54aa5000 dbghelp_54990000 dbghelp.dll
54ab0000 54d71000 Steam2 Steam2.dll
54d80000 54eb7000 Steam Steam.dll
54ec0000 54f4d000 nioverride nioverride.dll
54f50000 54f99000 hdtHighHeelNative hdtHighHeelNative.dll
54fa0000 5502b000 chargen chargen.dll
55030000 550f7000 StorageUtil StorageUtil.dll
55100000 55310000 JContainers JContainers.dll
55310000 55411000 DeviousDevices DeviousDevices.dll
55420000 554ea000 skse_1_9_32 skse_1_9_32.dll
55510000 55522000 enbhelper enbhelper.dll
55530000 5555b000 SexLabUtil SexLabUtil.dll
55560000 555b3000 SchlongsOfSkyrim SchlongsOfSkyrim.dll
555c0000 557bf000 D3DX9_43 D3DX9_43.dll
567d0000 567e7000 towConversation towConversation.dll
576d0000 576f2000 showRaceMenu_preCacheKiller showRaceMenu_preCacheKiller.dll
57700000 578e5000 D3DX9_42 D3DX9_42.dll
57960000 57982000 SafetyLoad SafetyLoad.dll
57990000 579de000 OneTweak OneTweak.dll
58be0000 58c6d000 AcLayers AcLayers.dll
5b7d0000 5b805000 Fuz_Ro_D_oh Fuz Ro D'oh.dll
5b810000 5b84c000 MfgConsole MfgConsole.dll
5b850000 5b93e000 msvcr120 msvcr120.dll
5b940000 5b9b1000 msvcp120 msvcp120.dll
5b9c0000 5ba31000 hook hook.dll
5f420000 5f450000 dinput8 dinput8.dll
5f640000 5f6b2000 dsound dsound.dll
5fe90000 5fe97000 avrt avrt.dll
5fec0000 5fec9000 hid hid.dll
60000000 60021000 CSERHelper CSERHelper.dll
60210000 60263000 vstdlib_s vstdlib_s.dll
61230000 61341000 tier0_s tier0_s.dll
629d0000 629f5000 powrprof powrprof.dll
630e0000 630f2000 mpr mpr.dll
63450000 641c2000 nvd3dum nvd3dum.dll
65f10000 65f36000 skse_steam_loader skse_steam_loader.dll
65f40000 65f47000 X3DAudio1_7 X3DAudio1_7.dll
65f50000 65f78000 steam_api steam_api.dll
6a510000 6a605000 propsys propsys.dll
6a8f0000 6a903000 dwmapi dwmapi.dll
6a930000 6a938000 secur32 secur32.dll
6b310000 6b361000 winspool winspool.drv
6b650000 6b73b000 dbghelp dbghelp.dll
6b740000 6b7c4000 comctl32 comctl32.dll
6efe0000 6efe7000 wsock32 wsock32.dll
71b60000 71b67000 winnsi winnsi.dll
71cd0000 71d1c000 apphelp apphelp.dll
71fc0000 71fc6000 d3d8thk d3d8thk.dll
71fd0000 72193000 d3d9_71fd0000 d3d9.dll
73200000 7321c000 IPHLPAPI IPHLPAPI.DLL
735e0000 73660000 uxtheme uxtheme.dll
73660000 73692000 winmm winmm.dll
749c0000 749c9000 version version.dll
74a80000 74a8c000 CRYPTBASE CRYPTBASE.dll
74a90000 74af0000 sspicli sspicli.dll
74af0000 74b6b000 comdlg32 comdlg32.dll
74b80000 74b8a000 lpk lpk.dll
74ba0000 74bb2000 devobj devobj.dll
74bc0000 74beb000 imagehlp imagehlp.dll
74bf0000 74c25000 ws2_32 ws2_32.dll
74c40000 74ccf000 oleaut32 oleaut32.dll
74cd0000 74cf7000 cfgmgr32 cfgmgr32.dll
74d00000 74d0b000 profapi profapi.dll
74d10000 74dbc000 msvcrt msvcrt.dll
74dc0000 74e50000 gdi32 gdi32.dll
75120000 75126000 nsi nsi.dll
75130000 75147000 userenv userenv.dll
75150000 75260000 kernel32 kernel32.dll
75260000 75360000 user32 user32.dll
75360000 7538f000 wintrust wintrust.dll
75400000 75460000 imm32 imm32.dll
75460000 7552c000 msctf msctf.dll
75530000 7617b000 shell32 shell32.dll
76180000 761d7000 shlwapi shlwapi.dll
761f0000 7634c000 ole32 ole32.dll
76350000 76471000 crypt32 crypt32.dll
76480000 76521000 advapi32 advapi32.dll
76540000 765dd000 usp10 usp10.dll
765e0000 765e5000 psapi psapi.dll
76830000 7683c000 msasn1 msasn1.dll
76840000 76859000 sechost sechost.dll
76860000 769fd000 setupapi setupapi.dll
76a00000 76a47000 KERNELBASE KERNELBASE.dll
76c30000 76d20000 rpcrt4 rpcrt4.dll
77120000 772a0000 ntdll ntdll.dll

 

 

 

In case it could be interesting, here's the load order as well:

 

 

# This file was automatically generated by Mod Organizer.
Skyrim.esm
Update.esm
Unofficial Skyrim Patch.esp
Dawnguard.esm
Unofficial Dawnguard Patch.esp
HearthFires.esm
Unofficial Hearthfire Patch.esp
Dragonborn.esm
Unofficial Dragonborn Patch.esp
ApachiiHair.esm
ApachiiHairFemales.esm
ApachiiHairMales.esm
ClimatesOfTamriel.esm
CreatureFramework.esm
SkyTEST-RealisticAnimals&Predators.esm
SexLab.esm
Devious Devices - Assets.esm
SexLabAroused.esm
ZaZAnimationPack.esm
Devious Devices - Integration.esm
daymoyl.esm
hdtHighHeel.esm
MFVM.esm
Schlongs of Skyrim - Core.esm
Heels Sound.esm
HighResTexturePack01.esp
HighResTexturePack02.esp
HighResTexturePack03.esp
Guard Dialogue Overhaul.esp
PerkusMaximus_Master.esp
PerkusMaximus_Mage.esp
SoS - The Wilds.esp
SoS - Civilization.esp
AMatterOfTime.esp
Auto Unequip Ammo.esp
Babette.esp
Better Dynamic Snow.esp
ClimatesOfTamriel-Dawnguard-Patch.esp
ClimatesOfTamriel-Dragonborn-Patch.esp
ClimatesOfTamriel-Interiors-Warm.esp
ClimatesOfTamriel-Nights-Level-1.esp
SoS - The Wilds-PatchCoT.esp
ClimatesOfTamriel-Sound.esp
SoS - The Wilds-PatchCoTSounds.esp
ClimatesOfTamriel-Sound-Dawnguard-Patch.esp
Convenient Horses.esp
Convenient Horses - Faster Sprint.esp
SkyUI.esp
Customizable Camera.esp
dD - Realistic Ragdoll Force - Medium.esp
DeadlyDragons.esp
Dual Wield Parrying_SKSE.esp
Dynamic TimeScale.esp
Fantasy Soundtrack Project.esp
SoS - The Dungeons.esp
FSP - Unique Towns & Locations.esp
Dragon Lilly.esp
Feminine Females.esp
Footprints.esp
FSP - Dragonborn Edition.esp
GoldenVendors.esp
Headbomb's Better Sorting - Miscellaneous.esp
Headbomb's Better Sorting - Soul Gems (PseudoVanilla).esp
HelmetToggle2.02b.esp
iHUD.esp
Immersive Weapons.esp
Remodeled Armor - Vanilla Replacer.esp
SexLabNudeCreatures.esp
SexLabNudeCreaturesDB.esp
SexLabNudeCreaturesDG.esp
HentaiCreatures.esp
SSv2.esp
UFO - Ultimate Follower Overhaul.esp
StavesofSkyrim.esp
SMIM-ShackRoofFixes.esp
SkyTEST-RealisticAnimals&Predators-Dragonborn.esp
Skyrim Flora Overhaul.esp
DungeonQuestAwareness.esp
SFO - Dragonborn.esp
Blacksmith Chests.esp
FSP - Unique Towns & Locations - SoS.esp
Devious Deviants.esp
Argonian Access.esp
Vampire Skin Color Fix.esp
Review Studio.esp
MF_RadiantProstitution.esp
R18pn - Shanoa Armors.esp
FNISspells.esp
Apocalypse - The Spell Package.esp
Apocalypse - PerMa Compatibility Patch.esp
PerMaDefluffedPerkDescriptions.esp
PerkusMaximus_Warrior.esp
FSP - Dawnguard Edition.esp
Headbomb's Better Sorting - Ammo.esp
Improved Combat Sounds v2.2.esp
MFVM_Hearthfire_Patch.esp
MoreNastyCritters.esp
Moss Rocks.esp
msAMV - PunisherArmor.esp
No Skill Limit.esp
NonSexLabAnimationPack.esp
NS_HuntingGroundsOutfit.esp
OpenFaceGuardHelmets.esp
RaceMenu.esp
RaceMenuMorphsCBBE.esp
RaceMenuMorphsUUNP.esp
RaceMenuOverlays.esp
RaceMenuPlugin.esp
RaceMenuPluginXPMSE.esp
Radiant-SchlongsPatch.esp
Remodeled Armor - Underwear.esp
Remodeled Armor - Vanilla Replacer - Dawnguard.esp
Remodeled Armor - Vanilla Replacer - Dragonborn.esp
ScarletDawnArmor.esp
Schlongs of Skyrim.esp
SkyTEST-RealisticAnimals&Predators-Dawnguard.esp
SOS - VectorPlexus Muscular Addon.esp
Strap.esp
TERAArmors_CBBE.esp
Unique Uniques.esp
Headbomb's Better Sorting - Potions (Light Weight).esp
RevampedExteriorFog.esp
ENB Snow FX.esp
RewardYourFollowers.esp
SexLabDefeat.esp
Sextreme Pinups.esp
Sextreme-AO_Series.esp
Sextreme-BEG_Series.esp
Sextreme-BND_Series.esp
Sextreme-BST_Series.esp
Sextreme-DEV_Series.esp
Sextreme-FF_Series.esp
Sextreme-FR_Series.esp
Sextreme-G_Series.esp
Sextreme-K_Series.esp
Sextreme-LYCAN_Series.esp
Sextreme-SB_Series.esp
Sextreme-T_Series.esp
Sextreme_HCR.esp
SMIM-DragonbornTernFix.esp
SMIM-DungeonsCliffsIceSkirts.esp
SMIM-FarmhouseFlickeringFix.esp
SMIM-FurnitureChestSnowFix.esp
SMIM-ShackRoofFixesDragonborn.esp
SoS - Civilization -PatchCoTSounds.esp
SoS - Civilization-PatchCoT.esp
SOS Equipable Schlong.esp
SOSRaceMenu.esp
SPS - Sexlab Position Selector.esp
The Eyes Of Beauty - Elves Edition.esp
TheEyesOfBeauty.esp
towConversation.esp
UIExtensions.esp
AlynShirArmor.esp
AsharaElvenKnight.esp
Ayumi Set.esp
DraconicArmor.esp
DragonQueen.esp
Gatti13AshesOn.esp
R18Pn - Eisen Platte Armor.esp
HentaisJamellaArmor.esp
ScrapArmor.esp
ValkyrieArmor.esp
Osare Culort Outfit.esp
Custom Clothes for Pandora.esp
Theminiblacks Merged Armor Shop.esp
HealerRobes.esp
Lich King's Armor.esp
RagingMoon.esp
RB0102.esp
stalkerarmor.esp
Vampiric Knight.esp
Extended UI.esp
Headbomb's Better Sorting - Books.esp
PerkusMaximus_Thief.esp
PerMa_USKP master patch.esp
Alternate Start - Live Another Life.esp
SexLabSolutions_LAL_Patch.esp
Bashed Patch, 0.esp
PatchusMaximus.esp

 

 

Can any conclusions be drawn from this?

Link to comment

Try removing RaceMenu, not just disabling but completely removing, including the DLL file. If you still get a crash post it here again, I would like to see if it's the same one and how removing the DLL affected it.

 

Huh. I unticked it in MO (not the ESP; the mod itself), and... well, at least we got different results. Instead of CTD, the game just froze, seemingly at the end of loading.

 

I had to end the process through the task manager, so the dump file produced was empty (0 kb). Is there anything else I can test?

 

EDIT: I tried again to run completely clean (untick all mods in MO, not just the esp-files), but the game still CTD when loading the save. (though it didn't freeze, so there must've been something specific about the RaceMenu-case above).

Link to comment

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue. For more information, see our Privacy Policy & Terms of Use