1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129
| Loading Dump File [D:\WINDOWS\Minidump\Mini111606-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available
Symbol search path is: srv*d:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp_sp2_gdr.050301-1519
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055a420
Debug session time: Thu Nov 16 19:32:09.531 2006 (GMT+1)
System Uptime: 0 days 0:22:28.094
Loading Kernel Symbols
..........................................................................................................................
Loading User Symbols
Loading unloaded module list
..........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
Use !analyze -v to get detailed debugging information.
BugCheck 1000000A, {a0551280, 2, 0, 804dc2fb}
Probably caused by : ntoskrnl.exe ( nt!KiTimerExpiration+2e )
Followup: MachineOwner
---------
kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high. This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: a0551280, memory referenced
Arg2: 00000002, IRQL
Arg3: 00000000, value 0 = read operation, 1 = write operation
Arg4: 804dc2fb, address which referenced memory
Debugging Details:
------------------
READ_ADDRESS: a0551280
CURRENT_IRQL: 2
FAULTING_IP:
nt!KiTimerExpiration+2e
804dc2fb a180125580 mov eax,dword ptr [nt!KeTickCount (80551280)]
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: DRIVER_FAULT
BUGCHECK_STR: 0xA
PROCESS_NAME: WoW.exe
LAST_CONTROL_TRANSFER: from 804dbbd4 to 804dc2fb
STACK_TEXT:
f7c4afd0 804dbbd4 80559280 00000000 00015106 nt!KiTimerExpiration+0x2e
f7c4aff4 804db89e b8043a60 00000000 00000000 nt!KiRetireDpcList+0x46
f7c4aff8 b8043a60 00000000 00000000 00000000 nt!KiDispatchInterrupt+0x2a
WARNING: Frame IP not in any known module. Following frames may be wrong.
804db89e 00000000 00000009 bb835675 00000128 0xb8043a60
STACK_COMMAND: kb
FOLLOWUP_IP:
nt!KiTimerExpiration+2e
804dc2fb a180125580 mov eax,dword ptr [nt!KeTickCount (80551280)]
SYMBOL_STACK_INDEX: 0
SYMBOL_NAME: nt!KiTimerExpiration+2e
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: nt
IMAGE_NAME: ntoskrnl.exe
DEBUG_FLR_IMAGE_TIMESTAMP: 42250ff9
FAILURE_BUCKET_ID: 0xA_nt!KiTimerExpiration+2e
BUCKET_ID: 0xA_nt!KiTimerExpiration+2e
Followup: MachineOwner
---------
kd> lmvm nt
start end module name
804d7000 806eb900 nt (pdb symbols) d:\symbols\ntoskrnl.pdb\32962337F0F646388B39535CD8DD70E82\ntoskrnl.pdb
Loaded symbol image file: ntoskrnl.exe
Mapped memory image file: d:\symbols\ntoskrnl.exe\42250FF9214900\ntoskrnl.exe
Image path: ntoskrnl.exe
Image name: ntoskrnl.exe
Timestamp: Wed Mar 02 01:59:37 2005 (42250FF9)
CheckSum: 00217A75
ImageSize: 00214900
File version: 5.1.2600.2622
Product version: 5.1.2600.2622
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 040c.04b0
CompanyName: Microsoft Corporation
ProductName: Système d'exploitation Microsoft® Windows®
InternalName: ntoskrnl.exe
OriginalFilename: ntoskrnl.exe
ProductVersion: 5.1.2600.2622
FileVersion: 5.1.2600.2622 (xpsp_sp2_gdr.050301-1519)
FileDescription: Noyau et système NT
LegalCopyright: © Microsoft Corporation. Tous droits réservés. |
Partager