Re: BSOD ntoskrnl.exe
Napsal: 13 pro 2015 17:42
Tak mne, krom opravy systému, také ne.luckies píše:Což to se stát může, ale už mě nenapadá co vyzkoušet.
Tak mne, krom opravy systému, také ne.luckies píše:Což to se stát může, ale už mě nenapadá co vyzkoušet.
Kód: Vybrat vše
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
ADDITIONAL_DEBUG_TEXT:
You can run '.symfix; .reload' to try to fix the symbol path and load symbols.
MODULE_NAME: nt
FAULTING_MODULE: fffff80003067000 nt
DEBUG_FLR_IMAGE_TIMESTAMP: 5625815c
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Instrukce na adrese 0x%08lx odkazovala na adresu pam
FAULTING_IP:
nt+31f1e0
fffff800`033861e0 49894210 mov qword ptr [r10+10h],rax
CONTEXT: fffff880094925d0 -- (.cxr 0xfffff880094925d0)
rax=000000000000122c rbx=0000000000000000 rcx=0000000000000081
rdx=0000000000000000 rsi=fffffa8008b06b50 rdi=fffffa8008ccc600
rip=fffff800033861e0 rsp=fffff88009492fb0 rbp=fffff88009493c60
r8=0000000002000000 r9=0000000000000000 r10=0000000000000000
r11=fffff88009492d90 r12=0000000000000001 r13=fffffa80089ab060
r14=fffff880094931b0 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246
nt+0x31f1e0:
fffff800`033861e0 49894210 mov qword ptr [r10+10h],rax ds:002b:00000000`00000010=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0x3B
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 00000000006c46f4 to fffff800033861e0
STACK_TEXT:
fffff880`09492fb0 00000000`006c46f4 : 00000000`00420040 00000000`00000000 00000000`00020000 00000000`006c47b4 : nt+0x31f1e0
fffff880`09492fb8 00000000`00420040 : 00000000`00000000 00000000`00020000 00000000`006c47b4 00000000`00360034 : 0x6c46f4
fffff880`09492fc0 00000000`00000000 : 00000000`00020000 00000000`006c47b4 00000000`00360034 00000000`00000000 : 0x420040
FOLLOWUP_IP:
nt+31f1e0
fffff800`033861e0 49894210 mov qword ptr [r10+10h],rax
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt+31f1e0
FOLLOWUP_NAME: MachineOwner
IMAGE_NAME: ntoskrnl.exe
STACK_COMMAND: .cxr 0xfffff880094925d0 ; kb
BUCKET_ID: WRONG_SYMBOLS
Followup: MachineOwner
---------
0: kd> .symfix; .reload
Loading Kernel Symbols
...............................................................
................................................................
.......................
Loading User Symbols
Loading unloaded module list
......
0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
SYSTEM_SERVICE_EXCEPTION (3b)
An exception happened while executing a system service routine.
Arguments:
Arg1: 00000000c0000005, Exception code that caused the bugcheck
Arg2: fffff800033861e0, Address of the instruction which caused the bugcheck
Arg3: fffff880094925d0, Address of the context record for the exception that caused the bugcheck
Arg4: 0000000000000000, zero.
Debugging Details:
------------------
EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - Instrukce na adrese 0x%08lx odkazovala na adresu pam
FAULTING_IP:
nt!PspInsertProcess+40
fffff800`033861e0 49894210 mov qword ptr [r10+10h],rax
CONTEXT: fffff880094925d0 -- (.cxr 0xfffff880094925d0)
rax=000000000000122c rbx=0000000000000000 rcx=0000000000000081
rdx=0000000000000000 rsi=fffffa8008b06b50 rdi=fffffa8008ccc600
rip=fffff800033861e0 rsp=fffff88009492fb0 rbp=fffff88009493c60
r8=0000000002000000 r9=0000000000000000 r10=0000000000000000
r11=fffff88009492d90 r12=0000000000000001 r13=fffffa80089ab060
r14=fffff880094931b0 r15=0000000000000000
iopl=0 nv up ei pl zr na po nc
cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010246
nt!PspInsertProcess+0x40:
fffff800`033861e0 49894210 mov qword ptr [r10+10h],rax ds:002b:00000000`00000010=????????????????
Resetting default scope
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: WIN7_DRIVER_FAULT
BUGCHECK_STR: 0x3B
PROCESS_NAME: svchost.exe
CURRENT_IRQL: 0
LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff800033861e0
STACK_TEXT:
fffff880`09492fb0 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!PspInsertProcess+0x40
FOLLOWUP_IP:
nt!PspInsertProcess+40
fffff800`033861e0 49894210 mov qword ptr [r10+10h],rax
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!PspInsertProcess+40
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntkrnlmp.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 5625815c
STACK_COMMAND: .cxr 0xfffff880094925d0 ; kb
FAILURE_BUCKET_ID: X64_0x3B_nt!PspInsertProcess+40
BUCKET_ID: X64_0x3B_nt!PspInsertProcess+40
Followup: MachineOwner
---------