A forum for reverse engineering, OS internals and malware analysis 

Forum for discussion about kernel-mode development.
 #26609  by Vrtule
 Thu Aug 27, 2015 10:07 am
Hello,

I started to have problems with analyzing crash dumps from machines with recent versions of Windows kernel (ntkrnlmp). It seems that the symbols available on the Microsoft Symbol Server does not contain any type information. So, commands like !analyze, !thread, !object etc. do not work.

Did anyone experienced this problem? My symbol path is:
SRV*d:\Temp*http://msdl.microsoft.com/download/symbols

Thanks in advance
Vrtule

EDIT: I have this problem on W7 and W8.1. Did not test on W10.