1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Crash: DoS on 2nd monitor

Discussion in 'Windows XP' started by Boppy, 2005/01/20.

Thread Status:
Not open for further replies.
  1. 2005/01/20
    Boppy

    Boppy Inactive Thread Starter

    Joined:
    2004/10/20
    Messages:
    112
    Likes Received:
    0
    Whenever I run my hospitality reservations programme on my 2nd monitor, after a couple of times switching between applications I get a crash and reboot. This is the error message:

    C:\DOCUME~1\[my profile name]\LOCALS~1\Temp\WER4f8f.dir00\Mini011505-03.dmp
    C:\DOCUME~1\[my profile name]\LOCALS~1\Temp\WER4f8f.dir00\sysdata.xml

    Does this mean anything to anyone?

    I've also contacted the writers of the Dos programme, but thought I'd run it past the experts here too.

    Thanks in advance for any advice.
    Jo
     
  2. 2005/01/20
    JoeHobart

    JoeHobart Inactive Alumni

    Joined:
    2004/05/19
    Messages:
    919
    Likes Received:
    1
    run this: C:\DOCUME~1\[my profile name]\LOCALS~1\Temp\WER4f8f.dir00\Mini011505-03.dmp

    thru the dump tool in my signature
     

  3. to hide this advert.

  4. 2005/01/23
    Boppy

    Boppy Inactive Thread Starter

    Joined:
    2004/10/20
    Messages:
    112
    Likes Received:
    0
    Dump info

    Hi Joe, thanks for replying.

    I've done two things: what you asked, and also what the software asked. Here are the two text files:

    The first is for: C:\DOCUME~1\[my profile name]\LOCALS~1\Temp\WER4f8f.dir00\Mini011505-03.dmp
    Opened log file 'c:\debuglog.txt'
    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols

    Microsoft (R) Windows Debugger Version 6.3.0017.0
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\Documents and Settings\Jo Weir\Local Settings\Temp\WER9962.dir00\Mini011505-02.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers

    and this is for the file found under Dr Watson:

    Opened log file 'c:\debuglog.txt'
    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols

    Microsoft (R) Windows Debugger Version 6.3.0017.0
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp]
    User Mini Dump File: Only registers, stack and portions of memory are available

    Comment: 'Dr. Watson generated MiniDump'
    Windows XP Version 2600 (Service Pack 2) UP Free x86 compatible
    Product: WinNt, suite: SingleUserTS
    Debug session time: Sun Jan 23 15:39:57 2005
    System Uptime: not available
    Process Uptime: 0 days 0:00:59.000
    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    .......................................................................................
    (8d8.e68): Access violation - code c0000005 (!!! second chance !!!)
    eax=07070707 ebx=00000001 ecx=00000007 edx=000000c0 esi=01aef947 edi=01146ef8
    eip=01be3bfa esp=01b6f918 ebp=01b6f9dc iopl=0 nv up ei pl nz ac po cy
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000217
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for wmvdmod.dll -
    wmvdmod!CreateInstance+0x247a9:
    01be3bfa 0f6f26 movq mm4,qword ptr [esi] ds:0023:01aef947=????????????????
    0:009> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Exception Analysis *
    * *
    *******************************************************************************

    *** ERROR: Symbol file could not be found. Defaulted to export symbols for wmvcore.dll -

    FAULTING_IP:
    wmvdmod!CreateInstance+247a9
    01be3bfa 0f6f26 movq mm4,qword ptr [esi]

    EXCEPTION_RECORD: ffffffff -- (.exr ffffffffffffffff)
    .exr ffffffffffffffff
    ExceptionAddress: 01be3bfa (wmvdmod!CreateInstance+0x000247a9)
    ExceptionCode: c0000005 (Access violation)
    ExceptionFlags: 00000000
    NumberParameters: 2
    Parameter[0]: 00000000
    Parameter[1]: 01aef947
    Attempt to read from address 01aef947

    DEFAULT_BUCKET_ID: APPLICATION_FAULT

    PROCESS_NAME: wmplayer.exe

    ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at "0x%08lx" referenced memory at "0x%08lx ". The memory could not be "%s ".

    READ_ADDRESS: 01aef947

    BUGCHECK_STR: ACCESS_VIOLATION

    THREAD_ATTRIBUTES:
    LAST_CONTROL_TRANSFER: from 01b93c88 to 01be3bfa

    STACK_TEXT:
    WARNING: Stack unwind information not available. Following frames may be wrong.
    01b6f9dc 01b93c88 011551d8 000000c0 01146e38 wmvdmod!CreateInstance+0x247a9
    01b6fa0c 01b96bc9 011551d8 000000c0 01146e38 wmvdmod!DllGetClassObject+0x228a1
    01b6fa3c 01b96731 0120e850 011286b8 01146e38 wmvdmod!DllGetClassObject+0x257e2
    01b6fab4 01b8f2e9 011fa26c 01c98b38 00000006 wmvdmod!DllGetClassObject+0x2534a
    01b6fae8 01b8495c ffffffff 011fa26c 01071418 wmvdmod!DllGetClassObject+0x1df02
    01b6fafc 01b8455d 0580f0f3 000001a4 ffffffff wmvdmod!DllGetClassObject+0x13575
    01b6fb24 01b84463 0580f0f3 000001a4 00000006 wmvdmod!DllGetClassObject+0x13176
    01b6fb5c 01b84104 000001a4 00000000 011fa26c wmvdmod!DllGetClassObject+0x1307c
    01b6fb90 0870a379 01071418 00000000 011fa26c wmvdmod!DllGetClassObject+0x12d1d
    01b6fd70 0870abbb 011f7f60 00000000 539738c6 wmvcore!WMCreateReader+0x29e32
    01b6fe1c 08709835 00000000 011fa26c 1c1cf5e0 wmvcore!WMCreateReader+0x2a674
    01b6fe84 08708f82 011fa268 0000b83e 00000000 wmvcore!WMCreateReader+0x292ee
    01b6fec4 08708dbb 01d600d8 0000b83e 00000000 wmvcore!WMCreateReader+0x28a3b
    01b6fef8 08708d46 01d600d8 0000b83e 00000000 wmvcore!WMCreateReader+0x28874
    01b6ff20 08708cf7 00187b00 01064ab8 00000000 wmvcore!WMCreateReader+0x287ff
    01b6ff3c 08708c63 00187b00 00000001 01b6ff68 wmvcore!WMCreateReader+0x287b0
    01b6ff4c 08702561 00187b00 00000000 01064ab8 wmvcore!WMCreateReader+0x2871c
    01b6ff68 086cf69e 00000000 00770000 01065158 wmvcore!WMCreateReader+0x2201a
    01b6ff80 77c3a3b0 01064ab8 00770000 7c910732 wmvcore!WMCheckURLScheme+0x2fcb
    01b6ffb4 7c80b50b 01064c08 00770000 7c910732 msvcrt!_endthreadex+0xa9
    01b6ffec 00000000 77c3a341 01064c08 00000000 kernel32!BaseThreadStart+0x37


    FOLLOWUP_IP:
    wmvdmod!CreateInstance+247a9
    01be3bfa 0f6f26 movq mm4,qword ptr [esi]

    SYMBOL_STACK_INDEX: 0

    FOLLOWUP_NAME: MachineOwner

    SYMBOL_NAME: wmvdmod!CreateInstance+247a9

    MODULE_NAME: wmvdmod

    IMAGE_NAME: wmvdmod.dll

    DEBUG_FLR_IMAGE_TIMESTAMP: 4119ce91

    STACK_COMMAND: .ecxr ; kb

    BUCKET_ID: ACCESS_VIOLATION_wmvdmod!CreateInstance+247a9

    Followup: MachineOwner
    ---------

    eax=07070707 ebx=00000001 ecx=00000007 edx=000000c0 esi=01aef947 edi=01146ef8
    eip=01be3bfa esp=01b6f918 ebp=01b6f9dc iopl=0 nv up ei pl nz ac po cy
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000217
    wmvdmod!CreateInstance+0x247a9:
    01be3bfa 0f6f26 movq mm4,qword ptr [esi] ds:0023:01aef947=????????????????
    ChildEBP RetAddr Args to Child
    WARNING: Stack unwind information not available. Following frames may be wrong.
    01b6f9dc 01b93c88 011551d8 000000c0 01146e38 wmvdmod!CreateInstance+0x247a9
    01b6fa0c 01b96bc9 011551d8 000000c0 01146e38 wmvdmod!DllGetClassObject+0x228a1
    01b6fa3c 01b96731 0120e850 011286b8 01146e38 wmvdmod!DllGetClassObject+0x257e2
    01b6fab4 01b8f2e9 011fa26c 01c98b38 00000006 wmvdmod!DllGetClassObject+0x2534a
    01b6fae8 01b8495c ffffffff 011fa26c 01071418 wmvdmod!DllGetClassObject+0x1df02
    01b6fafc 01b8455d 0580f0f3 000001a4 ffffffff wmvdmod!DllGetClassObject+0x13575
    01b6fb24 01b84463 0580f0f3 000001a4 00000006 wmvdmod!DllGetClassObject+0x13176
    01b6fb5c 01b84104 000001a4 00000000 011fa26c wmvdmod!DllGetClassObject+0x1307c
    01b6fb90 0870a379 01071418 00000000 011fa26c wmvdmod!DllGetClassObject+0x12d1d
    01b6fd70 0870abbb 011f7f60 00000000 539738c6 wmvcore!WMCreateReader+0x29e32
    01b6fe1c 08709835 00000000 011fa26c 1c1cf5e0 wmvcore!WMCreateReader+0x2a674
    01b6fe84 08708f82 011fa268 0000b83e 00000000 wmvcore!WMCreateReader+0x292ee
    01b6fec4 08708dbb 01d600d8 0000b83e 00000000 wmvcore!WMCreateReader+0x28a3b
    01b6fef8 08708d46 01d600d8 0000b83e 00000000 wmvcore!WMCreateReader+0x28874
    01b6ff20 08708cf7 00187b00 01064ab8 00000000 wmvcore!WMCreateReader+0x287ff
    01b6ff3c 08708c63 00187b00 00000001 01b6ff68 wmvcore!WMCreateReader+0x287b0
    01b6ff4c 08702561 00187b00 00000000 01064ab8 wmvcore!WMCreateReader+0x2871c
    01b6ff68 086cf69e 00000000 00770000 01065158 wmvcore!WMCreateReader+0x2201a
    01b6ff80 77c3a3b0 01064ab8 00770000 7c910732 wmvcore!WMCheckURLScheme+0x2fcb
    01b6ffb4 7c80b50b 01064c08 00770000 7c910732 msvcrt!_endthreadex+0xa9 (FPO: [Non-Fpo])
    start end module name
    008a0000 00949000 FxHook FxHook.dll Sun Jul 20 10:04:08 2003 (3F19C058)
    00960000 0096d000 TabHook TabHook.dll Thu Nov 30 13:54:10 2000 (3A25A532)
    00a80000 00a97000 FileBXH FileBXH.dll Tue Feb 25 08:43:11 2003 (3E5A75CF)
    01000000 01012000 wmplayer wmplayer.exe Wed Aug 11 19:34:06 2004 (4119CBEE)
    01310000 01317000 itchhk itchhk.dll Fri Mar 19 06:26:48 2004 (4059DBD8)
    013b0000 013ce000 LGMSGHK LGMSGHK.DLL Fri Mar 19 06:26:47 2004 (4059DBD7)
    01b70000 01c46000 wmvdmod wmvdmod.dll Wed Aug 11 19:45:21 2004 (4119CE91)
    05b40000 05b8f000 MSWMDM MSWMDM.dll Wed Aug 11 19:45:15 2004 (4119CE8B)
    05b90000 05b9b000 WMDMLOG WMDMLOG.dll Wed Aug 11 19:45:14 2004 (4119CE8A)
    05ba0000 05bab000 WMDMPS WMDMPS.dll Wed Aug 11 19:45:14 2004 (4119CE8A)
    05c30000 05c67000 MsPMSP MsPMSP.dll Wed Aug 11 19:45:14 2004 (4119CE8A)
    05c70000 05cbf000 NeroBurnPlugin NeroBurnPlugin.dll Thu Jul 17 03:32:04 2003 (3F156FF4)
    070d0000 0710b000 wmasf wmasf.dll Wed Aug 11 19:28:24 2004 (4119CA98)
    07510000 07a5d000 wmp wmp.dll Wed Aug 11 19:32:30 2004 (4119CB8E)
    08120000 08180000 wmadmod wmadmod.dll Wed Aug 11 19:45:13 2004 (4119CE89)
    08260000 08597000 wmploc wmploc.dll Wed Aug 11 19:45:16 2004 (4119CE8C)
    086c0000 08904000 wmvcore wmvcore.dll Wed Aug 11 20:37:17 2004 (4119DABD)
    0ffd0000 0fff8000 rsaenh rsaenh.dll Wed Jul 07 14:17:12 2004 (40EB5D28)
    10000000 10006000 TempIadHide3 TempIadHide3.dll Mon Dec 10 06:05:36 2001 (3C1399E0)
    20000000 202c5000 xpsp2res xpsp2res.dll Wed Aug 04 19:56:41 2004 (411096B9)
    3f000000 3f00a000 frw1 frw1.tmp Fri Oct 22 13:44:41 1999 (380FB379)
    4ec50000 4edf3000 GdiPlus GdiPlus.dll Wed Aug 04 19:55:55 2004 (4110968B)
    5ad70000 5ada8000 uxtheme uxtheme.dll Wed Aug 04 19:56:43 2004 (411096BB)
    5b860000 5b8b4000 netapi32 netapi32.dll Wed Aug 04 19:56:28 2004 (411096AC)
    662b0000 66308000 hnetcfg hnetcfg.dll Wed Aug 04 19:56:16 2004 (411096A0)
    71a50000 71a8f000 mswsock mswsock.dll Wed Aug 04 19:59:20 2004 (41109758)
    71a90000 71a98000 wshtcpip wshtcpip.dll Wed Aug 04 19:57:49 2004 (411096FD)
    71aa0000 71aa8000 ws2help ws2help.dll Wed Aug 04 19:57:39 2004 (411096F3)
    71ab0000 71ac7000 ws2_32 ws2_32.dll Wed Aug 04 19:57:38 2004 (411096F2)
    71ad0000 71ad9000 wsock32 wsock32.dll Wed Aug 04 19:57:51 2004 (411096FF)
    722b0000 722b5000 sensapi sensapi.dll Wed Aug 04 19:56:28 2004 (411096AC)
    72d10000 72d18000 msacm32 msacm32.drv Sat Aug 18 17:33:30 2001 (3B7DFE2A)
    72d20000 72d29000 wdmaud wdmaud.drv Wed Aug 04 19:56:54 2004 (411096C6)
    736b0000 736b7000 msdmo msdmo.dll Wed Aug 04 19:57:53 2004 (41109701)
    73760000 737a9000 ddraw ddraw.dll Wed Aug 04 19:56:16 2004 (411096A0)
    73940000 73a10000 d3dim700 d3dim700.dll Wed Aug 04 19:56:04 2004 (41109694)
    73bc0000 73bc6000 dciman32 dciman32.dll Wed Aug 04 19:56:15 2004 (4110969F)
    73ee0000 73ee4000 ksuser ksuser.dll Wed Aug 04 19:56:29 2004 (411096AD)
    73f10000 73f6c000 dsound dsound.dll Wed Aug 04 19:57:08 2004 (411096D4)
    74810000 7497d000 quartz quartz.dll Wed Aug 04 19:56:31 2004 (411096AF)
    754d0000 75550000 cryptui cryptui.dll Wed Aug 04 19:56:06 2004 (41109696)
    75a70000 75a91000 msvfw32 msvfw32.dll Wed Aug 04 19:59:15 2004 (41109753)
    75c50000 75cbe000 jscript jscript.dll Wed Aug 04 19:56:15 2004 (4110969F)
    75cf0000 75d81000 mlang mlang.dll Wed Aug 04 19:56:29 2004 (411096AD)
    75e90000 75f40000 sxs sxs.dll Wed Aug 04 18:14:57 2004 (41107EE1)
    75f40000 75f51000 devenum devenum.dll Wed Aug 04 19:56:22 2004 (411096A6)
    76080000 760e5000 msvcp60 msvcp60.dll Wed Aug 04 19:59:13 2004 (41109751)
    76380000 76385000 msimg32 msimg32.dll Wed Aug 04 19:58:31 2004 (41109727)
    763b0000 763f9000 comdlg32 comdlg32.dll Wed Aug 04 19:56:32 2004 (411096B0)
    769c0000 76a73000 userenv userenv.dll Wed Aug 04 19:56:41 2004 (411096B9)
    76b40000 76b6d000 winmm winmm.dll Wed Aug 04 19:57:10 2004 (411096D6)
    76c30000 76c5e000 wintrust wintrust.dll Wed Aug 04 19:56:41 2004 (411096B9)
    76c90000 76cb8000 imagehlp imagehlp.dll Wed Aug 04 19:56:25 2004 (411096A9)
    76d60000 76d79000 iphlpapi iphlpapi.dll Wed Aug 04 19:56:10 2004 (4110969A)
    76e80000 76e8e000 rtutils rtutils.dll Wed Aug 04 19:56:36 2004 (411096B4)
    76e90000 76ea2000 rasman rasman.dll Wed Aug 04 19:56:29 2004 (411096AD)
    76eb0000 76edf000 tapi32 tapi32.dll Wed Aug 04 19:56:38 2004 (411096B6)
    76ee0000 76f1c000 rasapi32 rasapi32.dll Wed Aug 04 19:56:25 2004 (411096A9)
    76f20000 76f47000 dnsapi dnsapi.dll Wed Aug 04 19:56:45 2004 (411096BD)
    76f60000 76f8c000 wldap32 wldap32.dll Wed Aug 04 19:56:43 2004 (411096BB)
    76fc0000 76fc6000 rasadhlp rasadhlp.dll Wed Aug 04 19:56:24 2004 (411096A8)
    76fd0000 7704f000 clbcatq clbcatq.dll Wed Aug 04 19:56:18 2004 (411096A2)
    77050000 77115000 comres comres.dll Wed Aug 04 19:56:36 2004 (411096B4)
    77120000 771ac000 oleaut32 oleaut32.dll Wed Aug 04 19:57:39 2004 (411096F3)
    771b0000 77256000 wininet wininet.dll Thu Sep 30 06:47:04 2004 (415B0328)
    77260000 772fe000 urlmon urlmon.dll Thu Sep 30 06:47:04 2004 (415B0328)
    773d0000 774d2000 comctl32 comctl32.dll Wed Aug 04 19:55:56 2004 (4110968C)
    774e0000 7761c000 ole32 ole32.dll Wed Aug 04 19:57:38 2004 (411096F2)
    77760000 778cc000 shdocvw shdocvw.dll Thu Sep 30 06:47:04 2004 (415B0328)
    77920000 77a13000 setupapi setupapi.dll Wed Aug 04 19:56:32 2004 (411096B0)
    77a80000 77b14000 crypt32 crypt32.dll Wed Aug 04 19:56:01 2004 (41109691)
    77b20000 77b32000 msasn1 msasn1.dll Wed Aug 04 19:57:23 2004 (411096E3)
    77b40000 77b62000 apphelp apphelp.dll Wed Aug 04 19:56:36 2004 (411096B4)
    77bd0000 77bd7000 midimap midimap.dll Wed Aug 04 19:56:25 2004 (411096A9)
    77be0000 77bf5000 msacm32_77be0000 msacm32.dll Wed Aug 04 19:57:03 2004 (411096CF)
    77c00000 77c08000 version version.dll Wed Aug 04 19:56:39 2004 (411096B7)
    77c10000 77c68000 msvcrt msvcrt.dll Wed Aug 04 19:59:14 2004 (41109752)
    77c70000 77c93000 msv1_0 msv1_0.dll Wed Aug 04 19:59:11 2004 (4110974F)
    77d40000 77dd0000 user32 user32.dll Wed Aug 04 19:56:40 2004 (411096B8)
    77dd0000 77e6b000 advapi32 advapi32.dll Wed Aug 04 19:56:23 2004 (411096A7)
    77e70000 77f01000 rpcrt4 rpcrt4.dll Wed Aug 04 19:56:30 2004 (411096AE)
    77f10000 77f56000 gdi32 gdi32.dll Wed Aug 04 19:56:07 2004 (41109697)
    77f60000 77fd6000 shlwapi shlwapi.dll Wed Aug 04 19:56:44 2004 (411096BC)
    77fe0000 77ff1000 secur32 secur32.dll Wed Aug 04 19:56:49 2004 (411096C1)
    7c800000 7c8f4000 kernel32 kernel32.dll Wed Aug 04 19:56:36 2004 (411096B4)
    7c900000 7c9b0000 ntdll ntdll.dll Wed Aug 04 19:56:36 2004 (411096B4)
    7c9c0000 7d1d4000 shell32 shell32.dll Wed Aug 04 19:56:39 2004 (411096B7)
    Closing open log file c:\debuglog.txt


    Thanks for your assistance with this issue.

    Cheers,
    Jo
     
  5. 2005/01/23
    JoeHobart

    JoeHobart Inactive Alumni

    Joined:
    2004/05/19
    Messages:
    919
    Likes Received:
    1
    OK, Our goal here is to find a dump file that was generated as part of this 'crash and reboot' phenomenon. The Drwatson dump output you posted is from a media player crash. All three of the dumps should have that big long output like that, not a short output.

    Go look in c:\windows\minidump for Mini011505-03.dmp and try it again.
     
  6. 2005/01/23
    Boppy

    Boppy Inactive Thread Starter

    Joined:
    2004/10/20
    Messages:
    112
    Likes Received:
    0
    Hi again Joe, thanks for replying.

    Okay here is the text from last night's (most recent) dump:

    Opened log file 'c:\debuglog.txt'
    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols

    Microsoft (R) Windows Debugger Version 6.3.0017.0
    Copyright (c) Microsoft Corporation. All rights reserved.


    Loading Dump File [C:\WINDOWS\Minidump\Mini012305-01.dmp]
    Mini Kernel Dump File: Only registers and stack trace are available

    Symbol search path is: SRV*c:\symbols*http://msdl.microsoft.com/download/symbols
    Executable search path is: C:\WINDOWS;C:\WINDOWS\system32;C:\WINDOWS\system32\drivers
    Windows XP Kernel Version 2600 (Service Pack 2) UP Free x86 compatible
    Product: WinNt, suite: TerminalServer SingleUserTS
    Built by: 2600.xpsp_sp2_rtm.040803-2158
    Kernel base = 0x804d7000 PsLoadedModuleList = 0x8055ab20
    Debug session time: Sun Jan 23 19:41:42 2005
    System Uptime: 0 days 7:15:47.928
    Loading Kernel Symbols
    ..............................................................................................................................
    Loading unloaded module list
    ...................
    Loading User Symbols
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    Use !analyze -v to get detailed debugging information.

    BugCheck 10000050, {fff7ffff, 0, fff7ffff, 0}


    Could not read faulting driver name
    Probably caused by : win32k.sys ( win32k!GreBatchTextOut+344 )

    Followup: MachineOwner
    ---------

    kd> !analyze -v;r;kv;lmtn;.logclose;q
    *******************************************************************************
    * *
    * Bugcheck Analysis *
    * *
    *******************************************************************************

    PAGE_FAULT_IN_NONPAGED_AREA (50)
    Invalid system memory was referenced. This cannot be protected by try-except,
    it must be protected by a Probe. Typically the address is just plain bad or it
    is pointing at freed memory.
    Arguments:
    Arg1: fff7ffff, memory referenced.
    Arg2: 00000000, value 0 = read operation, 1 = write operation.
    Arg3: fff7ffff, If non-zero, the instruction address which referenced the bad memory
    address.
    Arg4: 00000000, (reserved)

    Debugging Details:
    ------------------


    Could not read faulting driver name

    READ_ADDRESS: fff7ffff

    FAULTING_IP:
    +fffffffffff7ffff
    fff7ffff ?? ???

    MM_INTERNAL_CODE: 0

    CUSTOMER_CRASH_COUNT: 1

    DEFAULT_BUCKET_ID: DRIVER_FAULT

    BUGCHECK_STR: 0x50

    LAST_CONTROL_TRANSFER: from 7ffd4410 to fff7ffff

    STACK_TEXT:
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f1d7d83c 7ffd4410 00ffff00 f1d7dd38 f1d7d978 0xfff7ffff
    f1d7da98 bf813b36 f1d7dd38 e3b11a94 e3b11af0 0x7ffd4410
    f1d7dc00 bf80dda0 f1d7dd38 7ffd43dc 00000060 win32k!GreBatchTextOut+0x344
    f1d7dd54 804df03d 00000092 0120fdbc 0120fe04 win32k!NtGdiFlushUserBatch+0x11b
    f1d7dd64 7c90eb94 badb0d00 0120fdbc 00000000 nt!KiFastCallEntry+0xca
    0120fe04 00000000 00000000 00000000 00000000 0x7c90eb94


    FAILED_INSTRUCTION_ADDRESS:
    +fffffffffff7ffff
    fff7ffff ?? ???

    FOLLOWUP_IP:
    win32k!GreBatchTextOut+344
    bf813b36 8b03 mov eax,[ebx]

    SYMBOL_STACK_INDEX: 2

    FOLLOWUP_NAME: MachineOwner

    SYMBOL_NAME: win32k!GreBatchTextOut+344

    MODULE_NAME: win32k

    IMAGE_NAME: win32k.sys

    DEBUG_FLR_IMAGE_TIMESTAMP: 41107f7a

    STACK_COMMAND: kb

    BUCKET_ID: 0x50_CODE_AV_BAD_IP_win32k!GreBatchTextOut+344

    Followup: MachineOwner
    ---------

    eax=00060841 ebx=e1fe2298 ecx=f1d7dab0 edx=00000001 esi=f1d7dd38 edi=00000d0d
    eip=fff7ffff esp=f1d7d840 ebp=f1d7da98 iopl=0 nv up ei pl nz na po nc
    cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010206
    fff7ffff ?? ???
    ChildEBP RetAddr Args to Child
    WARNING: Frame IP not in any known module. Following frames may be wrong.
    f1d7d83c 7ffd4410 00ffff00 f1d7dd38 f1d7d978 0xfff7ffff
    f1d7da98 bf813b36 f1d7dd38 e3b11a94 e3b11af0 0x7ffd4410
    f1d7dc00 bf80dda0 f1d7dd38 7ffd43dc 00000060 win32k!GreBatchTextOut+0x344 (FPO: [Non-Fpo])
    f1d7dd54 804df03d 00000092 0120fdbc 0120fe04 win32k!NtGdiFlushUserBatch+0x11b (FPO: [Non-Fpo])
    f1d7dd64 7c90eb94 badb0d00 0120fdbc 00000000 nt!KiFastCallEntry+0xca
    0120fe04 00000000 00000000 00000000 00000000 0x7c90eb94
    start end module name
    804d7000 806eb780 nt ntoskrnl.exe Wed Aug 04 18:19:48 2004 (41108004)
    806ec000 8070c380 hal halaacpi.dll Wed Aug 04 17:59:05 2004 (41107B29)
    bf800000 bf9c0380 win32k win32k.sys Wed Aug 04 18:17:30 2004 (41107F7A)
    bf9c1000 bf9d2580 dxg dxg.sys Wed Aug 04 18:00:51 2004 (41107B93)
    bf9d3000 bfc1bf00 G400DHD G400DHD.dll Wed Sep 15 02:35:37 2004 (414701B9)
    bffa0000 bffe5c00 ATMFD ATMFD.DLL Wed Aug 04 19:56:56 2004 (411096C8)
    f17c3000 f17ecf00 kmixer kmixer.sys Wed Aug 04 18:07:46 2004 (41107D32)
    f1c55000 f1c95380 HTTP HTTP.sys Wed Aug 04 18:00:09 2004 (41107B69)
    f2195000 f21a9400 wdmaud wdmaud.sys Wed Aug 04 18:15:03 2004 (41107EE7)
    f226a000 f2278d80 sysaudio sysaudio.sys Wed Aug 04 18:15:54 2004 (41107F1A)
    f25ba000 f260c180 srv srv.sys Wed Aug 04 18:14:44 2004 (41107ED4)
    f2725000 f2751400 mrxdav mrxdav.sys Wed Aug 04 18:00:49 2004 (41107B91)
    f2866000 f2868e40 mdmxsdk mdmxsdk.sys Thu Mar 18 08:04:10 2004 (4058A12A)
    f29d2000 f29d5280 ndisuio ndisuio.sys Wed Aug 04 18:03:10 2004 (41107C1E)
    f4d9a000 f4db1480 dump_atapi dump_atapi.sys Wed Aug 04 17:59:41 2004 (41107B4D)
    f4dda000 f4dea280 Udfs Udfs.SYS Wed Aug 04 18:00:27 2004 (41107B7B)
    f4deb000 f4e0e000 Fastfat Fastfat.SYS Wed Aug 04 18:14:15 2004 (41107EB7)
    f4e0e000 f4e97240 HSF_CNXT HSF_CNXT.sys Fri Mar 15 02:02:43 2002 (3C909F73)
    f4e98000 f4fa2000 HSF_DP HSF_DP.sys Fri Mar 15 02:08:40 2002 (3C90A0D8)
    f4fa2000 f4fc5f60 HSFHWCD2 HSFHWCD2.sys Fri Mar 15 05:47:55 2002 (3C90D43B)
    f4fc6000 f503fd60 avg7core avg7core.sys Thu Nov 25 03:56:04 2004 (41A4A104)
    f5040000 f5060f00 ipnat ipnat.sys Thu Sep 30 10:28:36 2004 (415B3714)
    f5061000 f50ce680 mrxsmb mrxsmb.sys Thu Oct 28 14:14:16 2004 (418047E8)
    f50f7000 f5121a00 rdbss rdbss.sys Thu Oct 28 14:13:57 2004 (418047D5)
    f5122000 f5143d00 afd afd.sys Wed Aug 04 18:14:13 2004 (41107EB5)
    f5144000 f516bc00 netbt netbt.sys Wed Aug 04 18:14:36 2004 (41107ECC)
    f516c000 f51c3a80 tcpip tcpip.sys Wed Aug 04 18:14:39 2004 (41107ECF)
    f51c4000 f51d6400 ipsec ipsec.sys Wed Aug 04 18:14:27 2004 (41107EC3)
    f51d7000 f51edd00 InCDfs InCDfs.SYS Mon Sep 13 21:54:06 2004 (41456E3E)
    f521e000 f5220900 Dxapi Dxapi.sys Sat Aug 18 08:53:19 2001 (3B7D843F)
    f72d6000 f7309200 update update.sys Wed Aug 04 17:58:32 2004 (41107B08)
    f730a000 f733a100 rdpdr rdpdr.sys Wed Aug 04 18:01:10 2004 (41107BA6)
    f733b000 f733df80 mouhid mouhid.sys Sat Aug 18 08:47:57 2001 (3B7D82FD)
    f734b000 f734d580 hidusb hidusb.sys Sat Aug 18 09:02:16 2001 (3B7D8658)
    f7363000 f7373e00 psched psched.sys Wed Aug 04 18:04:16 2004 (41107C60)
    f7374000 f738a680 ndiswan ndiswan.sys Wed Aug 04 18:14:30 2004 (41107EC6)
    f7429000 f743c900 parport parport.sys Wed Aug 04 17:59:04 2004 (41107B28)
    f743d000 f7460980 portcls portcls.sys Wed Aug 04 18:15:47 2004 (41107F13)
    f7461000 f7528e80 cmuda cmuda.sys Fri Jun 25 21:13:39 2004 (40DBECC3)
    f7529000 f754be80 USBPORT USBPORT.SYS Wed Aug 04 18:08:34 2004 (41107D62)
    f754c000 f756e680 ks ks.sys Wed Aug 04 18:15:20 2004 (41107EF8)
    f756f000 f7582780 VIDEOPRT VIDEOPRT.SYS Wed Aug 04 18:07:04 2004 (41107D08)
    f7583000 f75d8280 g400dhm g400dhm.sys Wed Sep 15 02:36:46 2004 (414701FE)
    f7655000 f766f580 Mup Mup.sys Wed Aug 04 18:15:20 2004 (41107EF8)
    f7670000 f769ca80 NDIS NDIS.sys Wed Aug 04 18:14:27 2004 (41107EC3)
    f769d000 f7729480 Ntfs Ntfs.sys Wed Aug 04 18:15:06 2004 (41107EEA)
    f772a000 f7740780 KSecDD KSecDD.sys Wed Aug 04 17:59:45 2004 (41107B51)
    f7741000 f7752f00 sr sr.sys Wed Aug 04 18:06:22 2004 (41107CDE)
    f7753000 f7771780 fltmgr fltmgr.sys Wed Aug 04 18:01:17 2004 (41107BAD)
    f7772000 f7789480 atapi atapi.sys Wed Aug 04 17:59:41 2004 (41107B4D)
    f778a000 f77af700 dmio dmio.sys Wed Aug 04 18:07:13 2004 (41107D11)
    f77b0000 f77ce880 ftdisk ftdisk.sys Sat Aug 18 08:52:41 2001 (3B7D8419)
    f77cf000 f77dfa80 pci pci.sys Wed Aug 04 18:07:45 2004 (41107D31)
    f77e0000 f780dd80 ACPI ACPI.sys Wed Aug 04 18:07:35 2004 (41107D27)
    f782f000 f7837c00 isapnp isapnp.sys Sat Aug 18 08:58:01 2001 (3B7D8559)
    f783f000 f7849500 MountMgr MountMgr.sys Wed Aug 04 17:58:29 2004 (41107B05)
    f784f000 f785bc80 VolSnap VolSnap.sys Wed Aug 04 18:00:14 2004 (41107B6E)
    f785f000 f7867e00 disk disk.sys Wed Aug 04 17:59:53 2004 (41107B59)
    f786f000 f787b200 CLASSPNP CLASSPNP.SYS Wed Aug 04 18:14:26 2004 (41107EC2)
    f787f000 f7889e80 uagp35 uagp35.sys Wed Aug 04 18:07:43 2004 (41107D2F)
    f78af000 f78bdb80 drmk drmk.sys Wed Aug 04 18:07:54 2004 (41107D3A)
    f78bf000 f78ced80 serial serial.sys Wed Aug 04 18:15:51 2004 (41107F17)
    f78cf000 f78dbe00 i8042prt i8042prt.sys Wed Aug 04 18:14:36 2004 (41107ECC)
    f78df000 f78eb880 rasl2tp rasl2tp.sys Wed Aug 04 18:14:21 2004 (41107EBD)
    f78ef000 f78f9200 raspppoe raspppoe.sys Wed Aug 04 18:05:06 2004 (41107C92)
    f78ff000 f790ad00 raspptp raspptp.sys Wed Aug 04 18:14:26 2004 (41107EC2)
    f790f000 f7917900 msgpc msgpc.sys Wed Aug 04 18:04:11 2004 (41107C5B)
    f795f000 f7968f00 termdd termdd.sys Wed Aug 04 17:58:52 2004 (41107B1C)
    f797f000 f7988480 NDProxy NDProxy.SYS Sat Aug 18 08:55:30 2001 (3B7D84C2)
    f798f000 f799d100 usbhub usbhub.sys Wed Aug 04 18:08:40 2004 (41107D68)
    f799f000 f79a7700 netbios netbios.sys Wed Aug 04 18:03:19 2004 (41107C27)
    f79bf000 f79c7880 Fips Fips.SYS Sat Aug 18 13:31:49 2001 (3B7DC585)
    f79cf000 f79d7700 wanarp wanarp.sys Wed Aug 04 18:04:57 2004 (41107C89)
    f79df000 f79e7d80 HIDCLASS HIDCLASS.SYS Wed Aug 04 18:08:18 2004 (41107D52)
    f7a6f000 f7a78200 amdk7 amdk7.sys Wed Aug 04 17:59:19 2004 (41107B37)
    f7a7f000 f7a8b180 cdrom cdrom.sys Wed Aug 04 17:59:52 2004 (41107B58)
    f7a8f000 f7a9d080 redbook redbook.sys Wed Aug 04 17:59:34 2004 (41107B46)
    f7a9f000 f7aa9380 Imapi Imapi.SYS Wed Aug 04 18:00:12 2004 (41107B6C)
    f7aaf000 f7ab5200 PCIIDEX PCIIDEX.SYS Wed Aug 04 17:59:40 2004 (41107B4C)
    f7ab7000 f7abb900 PartMgr PartMgr.sys Sat Aug 18 13:32:23 2001 (3B7DC5A7)
    f7b3f000 f7b46000 InCDPass InCDPass.sys Mon Sep 13 21:54:45 2004 (41456E65)
    f7b47000 f7b4c000 usbuhci usbuhci.sys Wed Aug 04 18:08:34 2004 (41107D62)
    f7b4f000 f7b55800 usbehci usbehci.sys Wed Aug 04 18:08:34 2004 (41107D62)
    f7b57000 f7b5da00 fetnd5 fetnd5.sys Fri Jul 20 23:40:24 2001 (3B5818A8)
    f7b5f000 f7b60000 fdc fdc.sys unavailable (00000000)
    f7b67000 f7b6d000 kbdclass kbdclass.sys Wed Aug 04 17:58:32 2004 (41107B08)
    f7b6f000 f7b73880 TDI TDI.SYS Wed Aug 04 18:07:47 2004 (41107D33)
    f7b77000 f7b7b580 ptilink ptilink.sys Sat Aug 18 08:49:53 2001 (3B7D8371)
    f7b7f000 f7b83080 raspti raspti.sys Sat Aug 18 08:55:32 2001 (3B7D84C4)
    f7b87000 f7b8ca00 mouclass mouclass.sys Wed Aug 04 17:58:32 2004 (41107B08)
    f7b9f000 f7ba4000 flpydisk flpydisk.sys Wed Aug 04 17:59:24 2004 (41107B3C)
    f7bb7000 f7bbc200 vga vga.sys Wed Aug 04 18:07:06 2004 (41107D0A)
    f7bbf000 f7bc3a80 Msfs Msfs.SYS Wed Aug 04 18:00:37 2004 (41107B85)
    f7bc7000 f7bce880 Npfs Npfs.SYS Wed Aug 04 18:00:38 2004 (41107B86)
    f7bd7000 f7bdc280 avg7rsxp avg7rsxp.sys Thu Oct 28 04:51:57 2004 (417FC41D)
    f7bdf000 f7be5180 HIDPARSE HIDPARSE.SYS Wed Aug 04 18:08:15 2004 (41107D4F)
    f7bff000 f7c06580 Modem Modem.SYS Wed Aug 04 18:08:04 2004 (41107D44)
    f7c07000 f7c0ba80 point32 point32.sys Fri May 16 11:29:51 2003 (3EC422EF)
    f7c17000 f7c1b500 watchdog watchdog.sys Wed Aug 04 18:07:32 2004 (41107D24)
    f7c3f000 f7c42000 BOOTVID BOOTVID.dll Sat Aug 18 08:49:09 2001 (3B7D8345)
    f7cd7000 f7cd9280 rasacd rasacd.sys Sat Aug 18 08:55:39 2001 (3B7D84CB)
    f7cef000 f7cf2c80 serenum serenum.sys Wed Aug 04 17:59:06 2004 (41107B2A)
    f7cf3000 f7cf5dc0 itchfltr itchfltr.sys Thu Mar 11 10:42:24 2004 (404F8BC0)
    f7cf7000 f7cf9980 gameenum gameenum.sys Wed Aug 04 18:08:20 2004 (41107D54)
    f7cfb000 f7cfd580 ndistapi ndistapi.sys Sat Aug 18 08:55:29 2001 (3B7D84C1)
    f7d23000 f7d26c80 mssmbios mssmbios.sys Wed Aug 04 18:07:47 2004 (41107D33)
    f7d2f000 f7d30b80 kdcom kdcom.dll Sat Aug 18 08:49:10 2001 (3B7D8346)
    f7d31000 f7d32100 WMILIB WMILIB.SYS Sat Aug 18 09:07:23 2001 (3B7D878B)
    f7d33000 f7d34500 viaide viaide.sys Wed Aug 04 17:59:42 2004 (41107B4E)
    f7d35000 f7d36700 dmload dmload.sys Sat Aug 18 08:58:15 2001 (3B7D8567)
    f7d37000 f7d38da0 PenClass PenClass.sys Tue Apr 10 09:44:59 2001 (3AD22D5B)
    f7d55000 f7d56a20 incdrm incdrm.SYS Thu May 16 12:58:50 2002 (3CE3044A)
    f7d65000 f7d66100 swenum swenum.sys Wed Aug 04 17:58:41 2004 (41107B11)
    f7d77000 f7d78280 USBD USBD.SYS Sat Aug 18 09:02:58 2001 (3B7D8682)
    f7d85000 f7d86a80 ParVdm ParVdm.SYS Sat Aug 18 08:49:49 2001 (3B7D836D)
    f7d89000 f7d8a0e0 avgtdi avgtdi.sys Thu Oct 28 04:51:13 2004 (417FC3F1)
    f7d8f000 f7d90f00 Fs_Rec Fs_Rec.SYS Sat Aug 18 08:49:37 2001 (3B7D8361)
    f7d91000 f7d92080 Beep Beep.SYS Sat Aug 18 08:47:33 2001 (3B7D82E5)
    f7d93000 f7d94080 mnmdd mnmdd.SYS Sat Aug 18 08:57:28 2001 (3B7D8538)
    f7d95000 f7d96080 RDPCDD RDPCDD.sys Sat Aug 18 08:46:56 2001 (3B7D82C0)
    f7d97000 f7d98e00 InCDrec InCDrec.SYS Mon Sep 13 21:58:10 2004 (41456F32)
    f7d99000 f7d9a0e0 avg7rsw avg7rsw.sys Thu Oct 28 04:46:47 2004 (417FC2E7)
    f7db3000 f7db4100 dump_WMILIB dump_WMILIB.SYS Sat Aug 18 09:07:23 2001 (3B7D878B)
    f7e19000 f7e19d00 dxgthk dxgthk.sys Sat Aug 18 08:53:12 2001 (3B7D8438)
    f7eb0000 f7eb0b80 Null Null.SYS Sat Aug 18 08:47:39 2001 (3B7D82EB)
    f7ebb000 f7ebbb80 msmpu401 msmpu401.sys Sat Aug 18 08:59:59 2001 (3B7D85CF)
    f7ebc000 f7ebcc00 audstub audstub.sys Sat Aug 18 08:59:40 2001 (3B7D85BC)

    Unloaded modules:
    f17c3000 f17ed000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f17c3000 f17ed000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f17c3000 f17ed000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f17c3000 f17ed000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f17c3000 f17ed000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f17c3000 f17ed000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f1959000 f1983000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f1959000 f1983000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f1959000 f1983000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f1b63000 f1b8d000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f20a8000 f20d2000 kmixer.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7f63000 f7f64000 drmkaud.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f2172000 f2195000 aec.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f220a000 f2217000 DMusic.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f221a000 f2228000 swmidi.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7de1000 f7de3000 splitter.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f79af000 f79b8000 processr.sys
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7baf000 f7bb4000 Cdaudio.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    f7cd3000 f7cd6000 Sfloppy.SYS
    Timestamp: unavailable (00000000)
    Checksum: 00000000
    Closing open log file c:\debuglog.txt


    Cheers,
    Jo
     
  7. 2005/01/23
    JoeHobart

    JoeHobart Inactive Alumni

    Joined:
    2004/05/19
    Messages:
    919
    Likes Received:
    1
    Well, not much we can do here. App doesnt like whatever it is you did. You mention second monitor, so i assume you are running multimon? Does it crash if you keep it on monitor 1?
    Have you played with color depth?
    Try right clicking on the program, go to properties->Screen and uncheck Fast ROM and Dynamic and see if that helps

    hopefully your vendor has a new version availible that runs in windows.
     
  8. 2005/01/25
    Boppy

    Boppy Inactive Thread Starter

    Joined:
    2004/10/20
    Messages:
    112
    Likes Received:
    0
    Hi Joe, thanks for the suggestion. I've unchecked those two boxes so we shall see what happens. Meantime I've been running that programme on the primary monitor (Matrox dual head card, two LCD monitors) and it's been pretty much fine. Still the odd crash-reboot, but even when the DOS app is not running.

    The programme writers have been promising a windows version for three years now. I hassle them monthly.

    Cheers,
    Jo
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.