Skocz do zawartości


Maro240387

Rejestracja: 29 cze 2008
OFFLINE Ostatnio: 20 11 2012 23:36
-----

Moje tematy

Problem z BSOD i Debugging Tools for Windows

19 01 2009 - 20:48

Witam serdecznie wszystkich forumowiczów ;) (tych zwykłych i liderów hehe ^^ - Nie bierzcie tego do siebie za bardzo ;P)
W każdym razie witam ^^
ok, więc mam problem a mianowicie? jak że legendarny wśród licznych użytkowników komputera "Niebieski Ekran Śmierci". Dołączona grafika
Ostatnio około północy mi taki jeden się ukazał tuż po powitalnym ekranie "zapraszamy" - czujecie ironię? ^^ hehe
Od razu po automatycznym zresetowaniu komputera uruchomiłem Debugging Tools for Windows, załadowałem tablice symboli i wskazałem plik .dmp
po krótkim odczekaniu i zanalizowaniu prawdopodobnej przyczyny wystąpienia u mnie BlueScreen'a doszedłem do wniosku, że nie umiem rozwikłać problemu.
Proszę was o pomoc w tej sprawie. Poniżej umieszczam Bugcheck i w razie jak by ktoś z was potrzebowałby więcej informacji to proszę pisać ;)
------------------------------------------------------------------------------------------------------------
Microsoft ® Windows Debugger Version 6.6.0003.5
Copyright © Microsoft Corporation. All rights reserved.


Loading Dump File [C:\Documents and Settings\Marek\Pulpit\Mini011709-01.dmp]
Mini Kernel Dump File: Only registers and stack trace are available

Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
Executable search path is:
Windows XP Kernel Version 2600 (Service Pack 3) MP (4 procs) Free x86 compatible
Product: WinNt, suite: TerminalServer SingleUserTS
Built by: 2600.xpsp.080413-2111
Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055d720
Debug session time: Sat Jan 17 23:34:09.937 2009 (GMT+1)
System Uptime: 0 days 0:00:43.531
Loading Kernel Symbols
................................................................................
............................
Loading User Symbols
Loading unloaded module list
...........
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck C2, {7, cd4, 5b89bc, e2606aa8}

Probably caused by : ntkrpamp.exe ( nt!ExFreePoolWithTag+2a3 )

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

BAD_POOL_CALLER (c2)
The current thread is making a bad pool request. Typically this is at a bad IRQL level or double freeing the same allocation, etc.
Arguments:
Arg1: 00000007, Attempt to free pool which was already freed
Arg2: 00000cd4, (reserved)
Arg3: 005b89bc, Memory contents of the pool block
Arg4: e2606aa8, Address of the block of pool being deallocated

Debugging Details:
------------------


POOL_ADDRESS: e2606aa8

FREED_POOL_TAG: Gla5

BUGCHECK_STR: 0xc2_7_Gla5

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: DRIVER_FAULT

LAST_CONTROL_TRANSFER: from 8054b583 to 804f9f33

STACK_TEXT:
bacfbaf4 8054b583 000000c2 00000007 00000cd4 nt!KeBugCheckEx+0x1b
bacfbb44 ba5e56a1 e2606aa8 00000000 bacfbb6c nt!ExFreePoolWithTag+0x2a3
bacfbb54 8052ddff 8a4353c8 e2606aa8 00000000 Ntfs!NtfsFreeFcbTableEntry+0x4b
bacfbb6c ba61e294 8a4353c8 e2606aa8 8a435260 nt!RtlDeleteElementGenericTableAvl+0x4b
bacfbb94 ba5e5587 8a188008 bacfbbbc bacfbbc7 Ntfs!NtfsDeleteFcb+0x9f
bacfbbe0 ba606e7c 8a188008 8a435100 e1ddf0c8 Ntfs!NtfsTeardownFromLcb+0x1fd
bacfbc38 ba5e17a4 8a188008 e1ddf190 00000000 Ntfs!NtfsTeardownStructures+0x125
bacfbc64 ba6046b5 8a188008 01ddf190 00000000 Ntfs!NtfsDecrementCloseCounts+0x9e
bacfbce8 ba6095e3 8a188008 e1ddf190 e1ddf0c8 Ntfs!NtfsCommonClose+0x398
bacfbd7c 8053876d 00000000 00000000 8a46f020 Ntfs!NtfsFspClose+0xe3
bacfbdac 805cff64 00000000 00000000 00000000 nt!ExpWorkerThread+0xef
bacfbddc 805460de 8053867e 00000000 00000000 nt!PspSystemThreadStartup+0x34
00000000 00000000 00000000 00000000 00000000 nt!KiThreadStartup+0x16


STACK_COMMAND: kb

FOLLOWUP_IP:
nt!ExFreePoolWithTag+2a3
8054b583 8b45f8 mov eax,[ebp-0x8]

FAULTING_SOURCE_CODE:


SYMBOL_STACK_INDEX: 1

FOLLOWUP_NAME: MachineOwner

SYMBOL_NAME: nt!ExFreePoolWithTag+2a3

MODULE_NAME: nt

IMAGE_NAME: ntkrpamp.exe

DEBUG_FLR_IMAGE_TIMESTAMP: 4802516a

FAILURE_BUCKET_ID: 0xc2_7_Gla5_nt!ExFreePoolWithTag+2a3

BUCKET_ID: 0xc2_7_Gla5_nt!ExFreePoolWithTag+2a3

Followup: MachineOwner
---------